Post job

Security Engineer jobs at BlueVoyant - 87 jobs

  • Senior Security Engineer I

    Aledade 4.1company rating

    Bethesda, MD jobs

    As a Senior Security Engineer I at Aledade, you will play a central role in enhancing the security posture of our enterprise, cloud-native environments, and applications. We are seeking a dedicated professional with in-depth knowledge of security principles, standards, and best practices to help safeguard our systems and support our security compliance initiatives. In this role, you will work to design, implement, and maintain robust security solutions across diverse platforms and technologies. You will collaborate closely with various teams to ensure alignment between security solutions and organizational requirements, enabling secure operations across the enterprise. Your ability to partner cross-functionally will be key to driving impactful security outcomes and strengthening our digital landscape. Your expertise will be crucial as we continue to mature our security capabilities and maintain our commitment to protecting critical systems and data. Primary Duties Working cross-functionally to design, build, and operate solutions that improve and mature our security capabilities Leveraging data to understand trends, metrics, and opportunities to improve our security posture, researching options, and then making recommendations as options to secure those opportunities with stakeholders Leading and enhancing incident / issues response efforts, spearheading analysis, containment, and mitigation strategies in a cross-functional environment to ensure effective resolution and remediation of security incidents / issues Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures Minimum Qualifications BS / BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 6 years security domain experience without degree. 4+ years combined experience as a security engineer in an enterprise environment (preferably cloud) across multiple disciplines. 3+ years of relevant work experience in security posture management. 2+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long term business value. Preferred KSA's Prior experience working in the healthcare industry with health-tech systems, like Electronic Health Records, Clinical data, etc. Experience in scripting languages such as Python and Bash is required. Experience with Cloud Native Software Development environments and practices with a focus on multi-cloud deployments in AWS, Azure and/or GCP is required. Prior experience with a focus on tooling, automation, and distributed systems development is preferred. Experience with continuous integration tools (e.g. Cloud formation, Code deploy, Jenkins, CircleCI, Codefresh, Github Actions etc.). Experience with configuration management platforms (e.g. Ansible, Chef, Salt). Hands-on experience using Terraform, Python and/or other orchestration platforms at scale. Familiarity with Agile and waterfall development methodologies. Familiarity with automated testing methodologies, and continuous integration concepts. Experience in creating, deploying, maintaining, and troubleshooting Docker images. Experience in scoping, deploying, maintaining and troubleshooting Kubernetes clusters. Experience with deploying policies with AWS Control tower, Azure Security hub, Google Resource Manager etc. Experience generating automated metrics to measure service and program effectiveness and consistency Strong communication skills, both written and verbal, with the capability to articulate complex technical issues to a diverse audience Physical Requirements Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required. Who We Are: Aledade, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care. We were founded in 2014, and since then, we've become the largest network of independent primary care in the country - helping practices, health centers and clinics deliver better care to their patients and thrive in value-based care. Additionally, by creating value-based contracts across a wide variety of health plans, we aim to flip the script on the traditional fee-for-service model. Our work strengthens continuity of care, aligns incentives and ensures primary care physicians are paid for what they do best - keeping patients healthy. If you want to help create a health care system that is good for patients, good for practices and good for society - and if you're eager to join a collaborative, inclusive and remote-first culture - you've come to the right place. What Does This Mean for You? At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission. In addition to time off to support work-life balance and enjoyment, we offer the following comprehensive benefits package designed for the overall well-being of our team members: Flexible work schedules and the ability to work remotely are available for many roles Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners Robust time-off plan (21 days of PTO in your first year) Two paid volunteer days and 11 paid holidays 12 weeks paid parental leave for all new parents Six weeks paid sabbatical after six years of service Educational Assistant Program and Clinical Employee Reimbursement Program 401(k) with up to 4% match Stock options And much more! At Aledade, we don't just accept differences, we celebrate them! We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation. Privacy Policy: By applying for this job, you agree to Aledade's Applicant Privacy Policy available at ************************************************* #J-18808-Ljbffr
    $102k-141k yearly est. 5d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Senior Security Engineer II (IAM)

    Aledade, Inc. 4.1company rating

    Bethesda, MD jobs

    As a Senior Security Engineer II for Identity and Access Management (IAM) at Aledade, you will play a central role in enhancing the security posture of our enterprise, cloud‑native environments, and applications. We are seeking a dedicated professional with in‑depth knowledge of IAM principles, standards, and best practices to help safeguard our systems and support our security compliance initiatives. In this role, you will work to design, implement, and maintain robust IAM solutions, managing authentication, authorization, and provisioning across diverse platforms. You will also collaborate closely with various teams to ensure alignment between IAM solutions and organizational security requirements, enabling secure and seamless access across the enterprise and cloud services. Your ability to partner cross‑functionally will be key to driving impactful outcomes and further strengthening our digital landscape. Primary Duties Working cross functionally to design, build, and operate solutions that continuously improve and automate our security capabilities Leveraging data to understand trends, metrics, and opportunities to improve our security posture and then helping execute on those opportunities with stakeholders Leading and enhancing incident response efforts, spearheading analysis, containment, and mitigation strategies in a cross‑functional environment to ensure effective resolution and remediation of security incidents Helping craft and refine security documentation pertinent to our Security Program, such as policies, standards, baselines, and standard operating procedures Mentoring and coaching more junior engineers or analysts Minimum Qualifications BS / BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 8 years security domain experience without degree 6+ years of experience in software or security engineering within Cloud Native environments 4+ years of experience working with large datasets to identify opportunities for security posture improvements or to detect, investigate and respond to threats 4+ years of experience acting as a trusted advisor in a team setting, solving for short‑term and long‑term business value 4+ years of experience coaching other engineers or analysts Preferred KSA's Identity & Access Management Experience with Identity & Access Management (IaM) systems and practices In‑depth knowledge of authentication protocols, authorization mechanisms, and directory services Strong proficiency implementing IAM solutions within very complex environments Familiarity with regulatory compliance and security standards Experience generating automated metrics to measure service and program effectiveness and consistency Strong communication skills, both written and verbal, with the capability to articulate complex security issues to a diverse audience Automation skills: Powershell, Python, Terraform Expertise on Okta products - Directory, SSO, MFA, Workflows, ISPM and IGA Experience with tools in the security stack strongly preferred: Auth0/Entra ID/Ping Identity, Cloud Platforms - AWS/Azure/GCP Physical Requirements Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required. Who We Are Aledade, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care. We were founded in 2014, and since then, we've become the largest network of independent primary care in the country - helping practices, health centers and clinics deliver better care to their patients and thrive in value‑based care. Additionally, by creating value‐based contracts across a wide variety of health plans, we aim to flip the script on the traditional fee‑for‑service model. Our work strengthens continuity of care, aligns incentives and ensures primary care physicians are paid for what they do best - keeping patients healthy. If you want to help create a health care system that is good for patients, good for practices and good for society - and if you're eager to join a collaborative, inclusive, and remote‑first culture - you've come to the right place. What Does This Mean for You? At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open‑mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission. Benefits Flexible work schedules and the ability to work remotely are available for many roles Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners Robust time‑off plan (21 days of PTO in your first year) Two paid volunteer days and 11 paid holidays 12 weeks paid parental leave for all new parents Six weeks paid sabbatical after six years of service Educational Assistant Program and Clinical Employee Reimbursement Program 401(k) with up to 4% match Stock options And much more! Equal Employment Opportunity Statement At Aledade, we don't just accept differences, we celebrate them! We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation. Privacy Policy By applying for this job, you agree to Aledade's Applicant Privacy Policy available at ************************************************* #J-18808-Ljbffr
    $102k-141k yearly est. 3d ago
  • Senior Cloud Security Engineer: Incident Response & IAM

    Aledade 4.1company rating

    Bethesda, MD jobs

    A healthcare technology firm located in Maryland is seeking a Senior Security Engineer I to enhance security capabilities within cloud-native environments. The candidate will design and implement security solutions, lead incident response efforts, and collaborate with various teams to strengthen security posture. Applicants should have a degree in Computer Science or related field, extensive experience in security engineering, and proficiency in scripting languages like Python and Bash. This role offers a supportive workplace that values diversity and innovation. #J-18808-Ljbffr
    $102k-141k yearly est. 5d ago
  • Staff Security Engineer (DevSecOps)

    Aledade 4.1company rating

    Bethesda, MD jobs

    The Staff Security Engineer will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and know how to actively employ these ingredients at scale. Beyond the technical expertise, we value individuals who can partner cross-functionally across various teams, driving impactful outcomes and further securing our digital landscape. Primary Duties * Lead the development, implementation, and ongoing maintenance of comprehensive security strategies and solutions. * Design and deploy advanced security controls to safeguards networks, systems, and applications. * Work across disciplines to shape our security services strategy and execution * Mentor and galvanize new engineers to do their best work * Set and uphold the standard for security processes to support high-quality engineering Minimum Qualifications * BS/BTech (or higher) in Computer Science, Information Technology, Cybersecurity or a related field, 10 years security domain experience without degree * 8+ years of experience in software or security engineering within Cloud Native environments Preferred KSA's * Experience architecting, developing, and deploying large-scale distributed systems at scale * Experience with cloud technologies, e.g., AWS, Azure, GCP * Experience building continuous integration and continuous development (CI/CD) pipelines * Strong familiarity with server-side web technologies (eg: Java, Python, Scala, C#, C++, Go) * 4+ years of experience acting as a trusted technical decision-maker in a team setting, solving for short-term and long-term business value * Experience with health-tech systems, like Electronic Health Records, Clinical data, etc. Domain Specific Experience Dev Security Ops Led security architecture reviews for enterprise-scale systems including microservices architectures, data platforms (Databricks, Snowflake), and cloud-native applications, identifying and mitigating security risks before implementation.Established Infrastructure Security as Code practices including automated security policy enforcement, drift detection, and infrastructure vulnerability scanning integrated into Pulumi deployment workflows Established security review processes and governance frameworks with standardized security requirements, risk assessment methodologies, and security architecture decision records (ADRs) integrated into SDLC workflows Developed security automation and tooling documentation including security scanner integration guides, vulnerability management procedures, and security monitoring runbooks for DevSecOps teams Collaborated with platform and infrastructure teams to design secure CI/CD pipelines, container security strategies, and Kubernetes security policies with automated compliance validation and reporting Physical Requirements * Sitting for prolonged periods of time. Extensive use of computers and keyboard. Occasional walking and lifting may be required. Who We Are: Aledade, a public benefit corporation, exists to empower the most transformational part of our health care landscape - independent primary care. We were founded in 2014, and since then, we've become the largest network of independent primary care in the country - helping practices, health centers and clinics deliver better care to their patients and thrive in value-based care. Additionally, by creating value-based contracts across a wide variety of health plans, we aim to flip the script on the traditional fee-for-service model. Our work strengthens continuity of care, aligns incentives and ensures primary care physicians are paid for what they do best - keeping patients healthy. If you want to help create a health care system that is good for patients, good for practices and good for society - and if you're eager to join a collaborative, inclusive and remote-first culture - you've come to the right place. What Does This Mean for You? At Aledade, you will be part of a creative culture that is driven by a passion for tackling complex issues with respect, open-mindedness and a desire to learn. You will collaborate with team members who bring a wide range of experiences, interests, backgrounds, beliefs and achievements to their work - and who are all united by a shared passion for public health and a commitment to the Aledade mission. In addition to time off to support work-life balance and enjoyment, we offer the following comprehensive benefits package designed for the overall well-being of our team members: Flexible work schedules and the ability to work remotely are available for many roles Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners Robust time-off plan (21 days of PTO in your first year) Two paid volunteer days and 11 paid holidays 12 weeks paid parental leave for all new parents Six weeks paid sabbatical after six years of service Educational Assistant Program and Clinical Employee Reimbursement Program 401(k) with up to 4% match Stock options And much more! At Aledade, we don't just accept differences, we celebrate them! We strive to attract, develop and retain highly qualified individuals representing the diverse communities where we live and work. Aledade is committed to creating a diverse environment and is proud to be an equal opportunity employer. Employment policies and decisions at Aledade are based on merit, qualifications, performance and business needs. All qualified candidates will receive consideration for employment without regard to age, race, color, national origin, gender (including pregnancy, childbirth or medical conditions related to pregnancy or childbirth), gender identity or expression, religion, physical or mental disability, medical condition, legally protected genetic information, marital status, veteran status, or sexual orientation. Privacy Policy: By applying for this job, you agree to Aledade's Applicant Privacy Policy available at ************************************************* We may use automated tools, including artificial intelligence (AI), to help organize and evaluate application materials. These tools support our recruiters and hiring managers by helping manage large applicant pools. Human judgment plays an essential role in our hiring process, including in the oversight and use of any automated tools. If you would like more information about our screening and hiring process, please contact us.
    $93k-129k yearly est. 48d ago
  • Security Success Engineer

    Veeam Software 4.1company rating

    Boston, MA jobs

    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data recovery, data portability, data security, and data intelligence. Based in Seattle, Veeam protects over 550,000 customers worldwide who trust Veeam to keep their businesses running. Join us as we move forward together, growing, learning, and making a real impact for some of the world's biggest brands. The future of data resilience is here - go fearlessly forward with us. About the Role as a Security Success Engineer: The ideal candidate will be naturally collaborative, articulate, extremely organized, have a solid technical understanding of Veeam products, and motivated by maximizing customer success and outcomes. Soft skills combined with technical skills are key in this role. You will partner with Customer Success Engineers (CSEs) and Account Executives (AEs) to drive customer outcomes across security-related products and use cases within the Veeam Data Platform (VDP). You'll lead readiness checks, data modeling, and risk conversations with CISO/CIO stakeholders, while monitoring telemetry and maturity against the Veeam Data Resilience Maturity Model (DRMM) to optimize posture and identify expansion opportunities. What You'll Do Engage customers on security-related products, architectures, and risk topics across the Veeam Data Platform (VDP). Run readiness checks and lead data modeling to validate solution design and accelerate decisions. Monitor attack surfaces and vulnerabilities (including DRMM scoring), track telemetry or recurring inspection signals, report trends, and capture potential health checks. Validate designs to de-risk adoption and accelerate time to value. Identify and articulate expansion opportunities; review consumption trends and schedule checkpoint reviews (with or without AE coordination). Engage CISO/CIO stakeholders for risk, status, and opportunity discussions; synthesize inputs from account health and CSE-led QBRs. Support AEs on security- and AI-driven expansion motions; influence roadmap priorities with CSE counterparts. Operate as a pooled resource covering Enterprise and Commercial-Named accounts (generally $100K+ ARR), typically at a 1 Security Success Engineer to 6-8 CSE coverage ratio. Note: Not the primary owner for Onboarding motions nor directly responsible for Renewals What You'll Bring 5+ years of experience in engineering architecture for cybersecurity-related products (e.g., Security Engineer/Architect, Cloud Solution Architect, MLOps/ML Engineer). Bachelor's degree in Computer Science, Electrical Engineering, or a related technical field; advanced degree is a plus. Relevant certifications (e.g., CompTIA Security+, CISSP, or equivalent). Expertise in data security and governance, including DSPM/DLP; familiarity with AI/ML architectures. Demonstrated ability to engage CISO/CIO stakeholders on risk, resilience, and modernization roadmaps. Hands-on experience with solution design, POCs, telemetry monitoring, and maturity modeling (DRMM familiarity is a plus). Strong communication, stakeholder management, and cross-functional collaboration skills. VMCE certification (can be completed after joining) #LI-TN1 #LI-REMOTE What you'll get Unlimited paid time off, 12 paid holidays, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents Medical, dental, and vision coverage starting on your first day Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program 401(k) retirement plan with company matching contributions Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time AirVet: 24/7 virtual veterinary care at no cost Legal services, identity protection, and supplemental health insurance options Tax-advantaged spending accounts for healthcare, dependent care, and commuting Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O'Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning Compensation Transparency Veeam is committed to pay transparency and equitable compensation. For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus. For roles with a commission plan, the compensation range represents On Target Earnings (OTE), which includes base salary plus variable commission. When determining compensation, Veeam takes into consideration factors such as experience, education, skills, and geographic zone. Offers are typically made below the midpoint of the range. In addition to compensation, Veeam provides a comprehensive benefits package, including health coverage, retirement plans, and unlimited time off. U.S. Geographic Zones & Compensation Ranges (TTC / OTE) Zone 1: San Francisco Bay Area, New York City Boroughs$140,900-$234,800 USDZone 2: Washington, California (excluding San Francisco Bay Area)$129,200-$215,300 USDZone 3: Texas, Illinois, North Carolina, Colorado, Massachusetts, Pennsylvania, Virginia, Oregon, Nevada, Hawaii, New York (excluding NYC boroughs); Sales roles located in Georgia, Ohio, and Arizona$117,400-$195,700 USDZone 4: All other US locations$102,200-$170,300 USD Veeam Software is an equal opportunity employer and does not tolerate discrimination in any form on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state or local law. All your information will be kept confidential. Please note that any personal data collected from you during the recruitment process will be processed in accordance with our Recruiting Privacy Notice. The Privacy Notice sets out the basis on which the personal data collected from you, or that you provide to us, will be processed by us in connection with our recruitment processes. By applying for this position, you consent to the processing of your personal data in accordance with our Recruiting Privacy Notice. By submitting your application, you acknowledge that the information provided in your job application and any supporting documents is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification of information may result in disqualification from consideration for employment or, if discovered after employment begins, termination of employment.
    $140.9k-234.8k yearly Auto-Apply 19d ago
  • Cloud Security Engineer

    Peraton 3.2company rating

    Linthicum, MD jobs

    Responsibilities A Cloud Security Engineer is needed to assist in the planning, building and management of cybersecurity for a federal customer's Cloud Environment. These responsibilities would require a technical understanding and include addressing the cybersecurity of cloud deployments by ensuring the design, configuration, implementation, data controls, monitoring, logging, networking, and general architecture are all compliant with DoD regulations. The Cloud Security Engineer would help configure and build out tooling to scan and remediate vulnerabilities with production deployments and the Continuous Integration/Continuous Delivery pipelines used by development teams to deploy solutions. This position would be responsible for applying the proper cybersecurity controls and working with the architecture teams to make sure the build out of the cloud environments is properly hardened and secured. Location: Baltimore metropolitan area Qualifications Required: Proficiency in cybersecurity principles and technologies (firewalls, IDS, SIEMs). Knowledge of the Risk Management Framework (RMF) and Security Technical Implementation Guides (STIGs). Knowledge of the Authorization to Operation (ATO) process and Continuous ATO along with needed documentation. Experience with cloud platforms (AWS, Azure). Knowledge of cloud networking, storage, and architecture. Experience with cloud observability toolsets. Experience with AWS cloud migration. Understanding of version control systems (Git). Experience configuring continuous integration/continuously delivery (CI/CD) cybersecurity tools. Familiarity with Kubernetes environments and container security. Basic understanding of Linux administration and programming (Java, Python, C#). Understanding of Infrastructure and Configuration as Code tools (Ansible/Terraform). Experience with identity and access management (IAM) solutions (Azure Entra ID, AWS IAM, Keycloak). Active Top Secret clearance with SCI eligibility. Bachelor's degree and 5+ years of experience, or Master's Degree and 3+ years of experience, or 0+ years with PhD. A degree should be within one of the following fields: Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering. In lieu of a Bachelor's degree in one of these fields of study, an additional 4 years of relevant experience or specialized training is required and one of the following active certifications: GMON, CASP+, CCSP, CISSO, Cloud+, CSSLP, FITSP-D, GCSA, GSEC, CCNP Enterprise, CISM, CISSP-ISSAP, CISSP-ISSEP, GCIA, GDSA, or GICSP. Required Certification: Active IAT Level II (Security+) Certification Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $104k-166k yearly Auto-Apply 23h ago
  • Security Engineer

    Devo 4.2company rating

    Boston, MA jobs

    We are seeking a Security Engineer to operate Product Security, AI security, and core Security Operations capabilities across our environment. This is a hands-on, execution-focused role responsible for building, integrating, and running security controls that protect our products, customers, internal systems, and AI-enabled capabilities, from secure design and development through detection, response, and continuous improvement. The ideal candidate is technically strong, pragmatic, and collaborative, comfortable working directly with Engineering, Product, Infrastructure, and Data teams to embed security and AI governance into how systems are built and operated, rather than bolting it on through process or escalation. JOB DETAILS * Partner with Engineering and Product teams to embed security into the SDLC and product lifecycle * Perform threat modeling, architecture reviews, and design risk assessments for new and existing products, including AI-enabled features * Implement, operate, and improve application security controls, including: SAST, DAST, and SCA, Secrets management, Dependency, vulnerability, and configuration management * Work directly with Engineering teams to prioritize and remediate findings pragmatically * Define secure coding and design patterns that scale across teams * Support security controls aligned to SOC 2, PCI DSS, and ISO/IEC 27001 as they relate to product security * Support the implementation and operation of ISO/IEC 42001 from a technical and security controls perspective * Partner with Product, Engineering, and Data teams on: AI and model threat modeling, Model lifecycle security and change management, Data sourcing, training data protection, and usage controls, Access control and monitoring for AI systems * Implement security controls that support AI risk management, traceability, and accountability * Support audits, internal reviews, and continuous monitoring related to AI governance and responsible AI practices * Integrate AI security requirements into existing security operations and workflows * Ensure operational security controls align with SOC 2, PCI DSS, ISO/IEC 27001, and ISO/IEC 42001 requirements * Implement, integrate, and optimize security tooling across product, cloud, and AI environments * Integrate security tools into CI/CD pipelines, ML pipelines, and cloud platforms * Automate repetitive security tasks using scripts, APIs, SOAR platforms, and workflow tools * Continuously improve security workflows to increase speed, signal quality, and reliability CANDIDATE REQUIREMENTS 1. KNOWLEDGES, SKILLS AND ABILITIES Qualifications: * 5+ years of experience in Security Engineering, Product Security, or Security Operations * Strong understanding of application security principles and secure system design * Hands-on experience with: Vulnerability management, Incident response, Detection and monitoring * Experience working directly with Engineering teams on security control implementation * Familiarity with CI/CD pipelines and modern development environments * Strong problem-solving and communication skills 2. BACKGROUND EXPERIENCES * A Bachelor's or Master's degree in Computer Science, Security Assurance or Relevant field * Experience securing AI/ML systems or AI-enabled products * Familiarity with ISO/IEC 42001 or AI governance frameworks * Experience securing SaaS or cloud-native products * Familiarity with cloud platforms (AWS, GCP, Azure) * Experience with Infrastructure as Code (Terraform, CloudFormation) * Scripting or automation experience (Python, Bash, Go, etc.)
    $97k-136k yearly est. Auto-Apply 7d ago
  • Staff Product Security Engineer

    Datarobot 4.2company rating

    Boston, MA jobs

    DataRobot delivers AI that maximizes impact and minimizes business risk. Our platform and applications integrate into core business processes so teams can develop, deliver, and govern AI at scale. DataRobot empowers practitioners to deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on DataRobot for AI that makes sense for their business - today and in the future. DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This is a highly technical, high-impact role where you will operate at the intersection of engineering, automation, and federal compliance (FedRAMP High / DoD IL5). You will serve as a subject matter expert for our Federal group, handle high-stakes customer security inquiries, and build automation using Python and Go. This role requires a unique blend of technical expertise, regulatory fluency, and diplomatic communication skills to navigate complex customer conversations. Key Responsibilities: Federal Compliance & Strategy: Lead Federal Security: Serve as a primary technical lead for the DataRobot Federal Group, driving the acquisition and maintenance of Authority to Operate (ATO) at FedRAMP High and DoD IL5 levels. Compliance Engineering: Translate complex federal controls (NIST 800-53) into actionable engineering requirements for commercial developers. Audit & Policy Management: Write and maintain security policies (SSPs) and procedures. Develop, track, and remediate Plans of Action and Milestones (POA&Ms) and provide technical evidence during third-party audits. Security Engineering & Automation: Automate Everything: Develop custom automation to manage security tooling and implement "Secure-by-Design" processes in the CI/CD pipeline using Python or Go. Container Security: Identify, design, and implement controls to safeguard our containerized production environments. Tooling Management: Deploy and manage security testing tools for SAST, DAST, and SCA analysis (e.g., Semgrep, Trivy, Burp Suite). Threat Modeling: Review technical designs for new features, performing threat models to prioritize risks and educate developer teams on secure coding practices. Customer Trust & Vulnerability Management: Customer Engagement: Act as the external face of DataRobot Security. Work directly with customers' security teams to resolve concerns regarding CVE exposure and architecture. Customer-Centric Communication: Balance business needs with security rigor. You must be able to stand firm on security policies while maintaining strong professional relationships through clear, diplomatic, and solutions-oriented communication. Knowledge, Skills, and Abilities: Federal Fluency: Deep understanding of the FedRAMP authorization process, NIST 800-53, and DoD Cloud Computing Security Requirements Guide (SRG). Technical Proficiency: Fluent in writing code using Python or Go to build security automation. Must have a deep understanding of Linux containers (internals, security isolation). Familiarity with Kubernetes orchestration is strongly preferred. Hands-on experience with common security tools such as Semgrep, Trivy, and Burp Suite. Strategic Mindset: Experience determining not just how to fix a bug, but why it happened and how to prevent it systemically. Soft Skills: Strong leadership skills for guiding teams and liaising with various stakeholders. Requisite Education and Experience: Citizenship: Must be a United States Citizen residing in the United States. 8+ years of experience working in Information Security, with significant time spent in Product Security or AppSec roles. Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent experience). The talent and dedication of our employees are at the core of DataRobot's journey to be an iconic company. We strive to attract and retain the best talent by providing competitive pay and benefits with our employees' well-being at the core. Here's what your benefits package may include depending on your location and local legal requirements: Medical, Dental & Vision Insurance, Flexible Time Off Program, Paid Holidays, Paid Parental Leave, Global Employee Assistance Program (EAP) and more! DataRobot Operating Principles: Wow Our Customers Set High Standards Be Better Than Yesterday Be Rigorous Assume Positive Intent Have the Tough Conversations Be Better Together Debate, Decide, Commit Deliver Results Overcommunicate Research shows that many women only apply to jobs when they meet 100% of the qualifications while many men apply to jobs when they meet 60%. At DataRobot we encourage ALL candidates, especially women, people of color, LGBTQ+ identifying people, differently abled, and other people from marginalized groups to apply to our jobs, even if you do not check every box. We'd love to have a conversation with you and see if you might be a great fit. DataRobot is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. DataRobot is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. Please see the United States Department of Labor's EEO poster and EEO poster supplement for additional information. All applicant data submitted is handled in accordance with our Applicant Privacy Policy.
    $96k-135k yearly est. Auto-Apply 17d ago
  • Staff Product Security Engineer

    Datarobot 4.2company rating

    Boston, MA jobs

    DataRobot delivers AI that maximizes impact and minimizes business risk. Our platform and applications integrate into core business processes so teams can develop, deliver, and govern AI at scale. DataRobot empowers practitioners to deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on DataRobot for AI that makes sense for their business - today and in the future. DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This is a highly technical, high-impact role where you will operate at the intersection of engineering, automation, and federal compliance (FedRAMP High / DoD IL5). You will serve as a subject matter expert for our Federal group, handle high-stakes customer security inquiries, and build automation using Python and Go. This role requires a unique blend of technical expertise, regulatory fluency, and diplomatic communication skills to navigate complex customer conversations. **Key Responsibilities:** **Federal Compliance & Strategy:** + Lead Federal Security: Serve as a primary technical lead for the DataRobot Federal Group, driving the acquisition and maintenance of Authority to Operate (ATO) at FedRAMP High and DoD IL5 levels. + Compliance Engineering: Translate complex federal controls (NIST 800-53) into actionable engineering requirements for commercial developers. + Audit & Policy Management: Write and maintain security policies (SSPs) and procedures. Develop, track, and remediate Plans of Action and Milestones (POA&Ms) and provide technical evidence during third-party audits. **Security Engineering & Automation:** + Automate Everything: Develop custom automation to manage security tooling and implement "Secure-by-Design" processes in the CI/CD pipeline using Python or Go. + Container Security: Identify, design, and implement controls to safeguard our containerized production environments. + Tooling Management: Deploy and manage security testing tools for SAST, DAST, and SCA analysis (e.g., Semgrep, Trivy, Burp Suite). + Threat Modeling: Review technical designs for new features, performing threat models to prioritize risks and educate developer teams on secure coding practices. **Customer Trust & Vulnerability Management:** + Customer Engagement: Act as the external face of DataRobot Security. Work directly with customers' security teams to resolve concerns regarding CVE exposure and architecture. + Customer-Centric Communication: Balance business needs with security rigor. You must be able to stand firm on security policies while maintaining strong professional relationships through clear, diplomatic, and solutions-oriented communication. **Knowledge, Skills, and Abilities:** + Federal Fluency: Deep understanding of the FedRAMP authorization process, NIST 800-53, and DoD Cloud Computing Security Requirements Guide (SRG). + Technical Proficiency: + Fluent in writing code using Python or Go to build security automation. + Must have a deep understanding of Linux containers (internals, security isolation). + Familiarity with Kubernetes orchestration is strongly preferred. + Hands-on experience with common security tools such as Semgrep, Trivy, and Burp Suite. + Strategic Mindset: Experience determining not just _how_ to fix a bug, but _why_ it happened and how to prevent it systemically. + Soft Skills: Strong leadership skills for guiding teams and liaising with various stakeholders. **Requisite Education and Experience:** + Citizenship:Must be a United States Citizen residing in the United States. + 8+ years of experience working in Information Security, with significant time spent in Product Security or AppSec roles. + Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent experience). The talent and dedication of our employees are at the core of DataRobot's journey to be an iconic company. We strive to attract and retain the best talent by providing competitive pay and benefits with our employees' well-being at the core. Here's what your benefits package may include depending on your location and local legal requirements: Medical, Dental & Vision Insurance, Flexible Time Off Program, Paid Holidays, Paid Parental Leave, Global Employee Assistance Program (EAP) and more! **DataRobot Operating Principles:** + Wow Our Customers + Set High Standards + Be Better Than Yesterday + Be Rigorous + Assume Positive Intent + Have the Tough Conversations + Be Better Together + Debate, Decide, Commit + Deliver Results + Overcommunicate Research shows that many women only apply to jobs when they meet 100% of the qualifications while many men apply to jobs when they meet 60%. **At DataRobot we encourage ALL candidates, especially women, people of color, LGBTQ+ identifying people, differently abled, and other people from marginalized groups to apply to our jobs, even if you do not check every box.** We'd love to have a conversation with you and see if you might be a great fit. DataRobot is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. DataRobot is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. Please see the United States Department of Labor's EEO poster and EEO poster supplement for additional information. All applicant data submitted is handled in accordance with our Applicant Privacy Policy (*************************************************** . DataRobot delivers AI that maximizes impact and minimizes business risk. Our AI applications and platform integrate into core business processes so teams can develop, deliver, and govern AI at scale. DataRobot empowers practitioners to deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on DataRobot for AI that makes sense for their business - today and in the future. For more information, visit our website (************************* and connect with us on LinkedIn (******************************************** . **_DataRobot has become aware of scams involving false offers of DataRobot employment. The scams and false offers use imposter websites, email addresses, text messages, and other fraudulent means. None of these offers are legitimate, and DataRobot's recruiting process never involves conducting interviews via instant messages, nor requires candidates to purchase products or services, or to process payments on our behalf._** **_Please note that DataRobot does not ask for money in its recruitment process._** **_DataRobot is committed to providing a safe and secure environment for all job applicants. We encourage all job seekers to be vigilant and protect themselves against recruitment scams by verifying the legitimacy of any job offer before providing personal information or paying any_** **_fees. Communication_** **_from our company will be sent from a verified email address using the @_** **_datarobot.com_** **_email domain. If you receive any suspicious emails or messages claiming to be from DataRobot, please do not respond._** **_Thank you for your interest in DataRobot, and we look forward to receiving your application through our official channels._** Don't see the dream job you are looking for? Drop off your contact information and resume and we will reach out to you if we find the perfect fit!
    $96k-135k yearly est. 16d ago
  • Senior / Lead Security Engineer, Cloud Infrastructure

    Klaviyo 4.2company rating

    Boston, MA jobs

    At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you're a close but not exact match with the description, we hope you'll still consider applying. Want to learn more about life at Klaviyo? Visit careers.klaviyo.com to see how we empower creators to own their own destiny. As a Lead Security Engineer, you'll be a vital part of the Infrastructure Security Team, focusing on strengthening the security posture across Klaviyo's entire technology environment, developing security architectures and repeatable patterns and mentoring colleagues and junior security engineers. Unlike roles with a narrowly defined specialty, this position offers the opportunity to demonstrate your unique expertise-whether that's in cloud security, identity and access management, data protection, secure systems design, or other security domains. Your work will involve evaluating and hardening our infrastructure, collaborating with cross-functional teams, and leveraging AI to build scalable solutions to address emerging threats. We are looking for someone who is excited to bring their specialized skills to the team, shaping Klaviyo's security practices and helping us continue to raise the bar. How You Will Make a Difference Secure Klaviyo's infrastructure by designing, implementing, and maintaining scalable security controls across cloud, on-prem, and hybrid environments Evaluate and improve security configurations and policies across a range of technologies, using your domain expertise to reduce risk and enable secure-by-default architectures Collaborate with engineering and IT teams to embed security practices and develop repeatable security patterns across the development and deployment lifecycle Lead threat modeling, risk assessments, and architecture reviews in areas aligned with your specialty Develop automated solutions and infrastructure-as-code to drive consistent and reproducible security outcomes Stay ahead of the latest threats and advocate for innovative security solutions aligned with business needs Help define security standards and best practices at Klaviyo, championing their adoption across teams Who You Are Have 5+ years of experience in infrastructure or security engineering roles, with deep knowledge in one or more security focus areas (e.g., cloud security, IAM, endpoint security, data protection, detection engineering, compliance) Comfortable navigating ambiguity and defining priorities in a broad-scoped role Experienced working in modern cloud environments such as AWS, GCP, or Azure Familiar with infrastructure-as-code tools such as Terraform, CloudFormation, or Pulumi Proficient in secure systems design, threat modeling, and vulnerability management AI Agentic development and prompt engineering, MCP (AWS Bedrock, OpenAI, Anthropic) Able to clearly articulate complex security topics to technical and non-technical stakeholders Passionate about security, eager to learn from others and share your expertise Nice to have - certifications (e.g., CISSP, CKS, GCP/AWS Security certs) or equivalent practical experience We use Covey as part of our hiring and / or promotional process. For jobs or candidates in NYC, certain features may qualify it as an AEDT. As part of the evaluation process we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound on April 3, 2025. Please see the independent bias audit report covering our use of Covey here Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Our salary range reflects the cost of labor across various U.S. geographic markets. The range displayed below reflects the minimum and maximum target salaries for the position across all our US locations. The base salary offered for this position is determined by several factors, including the applicant's job-related skills, relevant experience, education or training, and work location. In addition to base salary, our total compensation package may include participation in the company's annual cash bonus plan, variable compensation (OTE) for sales and customer success roles, equity, sign-on payments, and a comprehensive range of health, welfare, and wellbeing benefits based on eligibility. Your recruiter can provide more details about the specific salary/OTE range for your preferred location during the hiring process. Base Pay Range For US Locations:$175,200-$262,800 USD Get to Know Klaviyo We're Klaviyo (pronounced clay-vee-oh). We empower creators to own their destiny by making first-party data accessible and actionable like never before. We see limitless potential for the technology we're developing to nurture personalized experiences in ecommerce and beyond. To reach our goals, we need our own crew of remarkable creators-ambitious and collaborative teammates who stay focused on our north star: delighting our customers. If you're ready to do the best work of your career, where you'll be welcomed as your whole self from day one and supported with generous benefits, we hope you'll join us. AI fluency at Klaviyo includes responsible use of AI (including privacy, security, bias awareness, and human-in-the-loop). We provide accommodations as needed. By participating in Klaviyo's interview process, you acknowledge that you have read, understood, and will adhere to our Guidelines for using AI in the Klaviyo interview Process. For more information about how we process your personal data, see our Job Applicant Privacy Notice. Klaviyo is committed to a policy of equal opportunity and non-discrimination. We do not discriminate on the basis of race, ethnicity, citizenship, national origin, color, religion or religious creed, age, sex (including pregnancy), gender identity, sexual orientation, physical or mental disability, veteran or active military status, marital status, criminal record, genetics, retaliation, sexual harassment or any other characteristic protected by applicable law. IMPORTANT NOTICE: Our company takes the security and privacy of job applicants very seriously. We will never ask for payment, bank details, or personal financial information as part of the application process. All our legitimate job postings can be found on our official career site. Please be cautious of job offers that come from non-company email addresses (@klaviyo.com), instant messaging platforms, or unsolicited calls. By clicking "Submit Application" you consent to Klaviyo processing your Personal Data in accordance with our Job Applicant Privacy Notice. If you do not wish for Klaviyo to process your Personal Data, please do not submit an application. You can find our Job Applicant Privacy Notice here and here (FR).
    $175.2k-262.8k yearly Auto-Apply 8d ago
  • Senior Cloud Security Engineer

    Starburst Data, Inc. 4.4company rating

    Boston, MA jobs

    About Starburst Starburst is the data platform for analytics, applications, and AI, unifying data across clouds and on-premises to accelerate AI innovation. Organizations-from startups to Fortune 500 enterprises in 60+ countries-rely on Starburst for fast data access, seamless collaboration, and enterprise-grade governance on an open hybrid data lakehouse. Wherever data lives, Starburst unlocks its full potential, powering data and AI from development to deployment. By future-proofing data architecture, Starburst helps businesses fuel innovation with AI. About the Role: As a Senior Cloud Security Engineer, you will be a key player in integrating security practices throughout the software development lifecycle. You will lead initiatives to design, implement, and automate security controls, ensuring the secure development and deployment of applications. This role requires a strong understanding of security principles, DevOps methodologies, and cloud environments, with a focus on continuous improvement and risk mitigation. You will collaborate closely with development, operations, and security teams, and mentor junior engineers to foster a culture of security. Responsibilities: * Integrate security into the CI/CD pipeline, automating security controls and embedding security throughout the development lifecycle. * Support, and maintain Application Security Testing (AST) tools (SAST, DAST, IAST, SCA) to identify code and dependency vulnerabilities. * Conduct security assessments, vulnerability analysis, and penetration testing to identify and mitigate security risks. * Develop and maintain secure infrastructure as code (IaC) scripts using tools like Pulumi, Terraform, or CloudFormation. * Implement and manage security tools and technologies such as SIEMs, IDS/IPS, firewalls, and endpoint protection. * Monitor and respond to security incidents, performing root cause analysis and implementing corrective measures. * Educate and train development and operations teams on secure coding practices and security tooling. * Stay up to date with the latest security threats, trends, and technologies, and proactively address potential risks. * Create and maintain documentation related to security policies, procedures, and standards. * Participate in security audits and compliance initiatives to ensure adherence to industry regulations and standards. * Provide thorough unit testing and automated testing to ensure a quality product is delivered. * Improve, enhance, and support existing operations. * Design, build, install, configure, and support production deployments. * Manage the work of teams implementing DevOps solutions in complex projects. Minimum Qualifications: * Bachelor's degree in Engineering, Computer Science, Management Information Systems, or a related study, or equivalent experience. * Minimum of 5+ years of professional experience in DevOps, security engineering, or a related field. * Strong understanding of security principles and best practices, including threat modeling, risk assessment, and vulnerability management. * Proficiency with DevOps tools and practices, including CI/CD pipelines, containerization (Docker, Kubernetes), and version control systems (Git). * Solid understanding of cloud security concepts and experience with cloud platforms (AWS, Azure, Google Cloud). * Strong scripting and automation skills using languages such as Python, Bash, or PowerShell. * Experience with security tools such as OWASP ZAP, Burp Suite, Nessus, Metasploit, or similar. * Experience in development with shell scripting such as Python, GoLang, etc.. * Expertise in the Linux operating system. * Must be able to demonstrate innovation in problem-solving. * Clear communication with team members and product owners. * Ability to effectively communicate technical findings to both technical and non-technical stakeholders. * Must follow and support agile methodologies and practices by actively participating in all SCRUM ceremonies. * Must adhere to and develop best practices in software engineering. Preferred Qualifications: * Experience integrating Cloud Security Posture Management (CSPM) tooling with application security pipelines. * Experience with Kubernetes security and best practices. * Experience collaborating with vulnerability and risk management partners to interface with risk management and acceptance processes. * Experience developing and/or deploying training for software engineers around DevSecOps tooling, secure development standards, and application security fundamentals. * Ability to Travel: This role will require occasional in-person travel for purposes including but not limited to new hire onboarding, team and department offsites, customer engagements, and other company events. Actual travel expectations may vary by role and business needs. Where could this role be based? This role is based in our Boston office and follows a hybrid model, with an expectation of being onsite 1-2 days per week. Starburst is dedicated to maintaining fair and equitable compensation practices. The salary range provided for this role reflects the minimum and maximum targets for candidates across all U.S. locations and could be inclusive of variable compensation, such as commission or bonus. All employees receive equity packages (ISOs) and have access to a comprehensive benefits offering. Actual compensation packages are determined based on relevant skills, experience, education and training, and specific work location. For more information, connect with the recruiting team or Hiring Manager during the process as they can provide more detailed information about the salary range. Pay Range $180,000 - $220,000 USD Build your career at Starburst All-Stars have the opportunity and freedom to realize their true potential. By building alongside top talent, we're empowered to take ownership of our careers and drive meaningful change. Anchored in industry-proven technology and unprecedented success, All-Stars are taking on the challenge everyday to disrupt our industry - and the future. Our global workforce is supported by a competitive Total Rewards program that reflects our commitment to a rewarding and supportive work environment. This includes a variety of benefits like competitive pay, attractive stock grants, flexible paid time off, and more. We are committed to fostering an intentional, inclusive, and diverse culture that drives deep engagement, authentic belonging, and an exceptional All-Star experience. We believe that diversity of thought, perspective, background and experience will enable us to own what we do, drive our success and empower our All-Stars to show up authentically. Starburst provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Create a Job Alert Interested in building your career at Starburst? Get future opportunities sent straight to your email. Create alert
    $180k-220k yearly 60d+ ago
  • Senior Cloud Security Engineer

    Starburst 4.4company rating

    Boston, MA jobs

    Starburst is the data platform for analytics, applications, and AI, unifying data across clouds and on-premises to accelerate AI innovation. Organizations-from startups to Fortune 500 enterprises in 60+ countries-rely on Starburst for fast data access, seamless collaboration, and enterprise-grade governance on an open hybrid data lakehouse. Wherever data lives, Starburst unlocks its full potential, powering data and AI from development to deployment. By future-proofing data architecture, Starburst helps businesses fuel innovation with AI. About the Role: As a Senior Cloud Security Engineer, you will be a key player in integrating security practices throughout the software development lifecycle. You will lead initiatives to design, implement, and automate security controls, ensuring the secure development and deployment of applications. This role requires a strong understanding of security principles, DevOps methodologies, and cloud environments, with a focus on continuous improvement and risk mitigation. You will collaborate closely with development, operations, and security teams, and mentor junior engineers to foster a culture of security. Responsibilities: Integrate security into the CI/CD pipeline, automating security controls and embedding security throughout the development lifecycle. Support, and maintain Application Security Testing (AST) tools (SAST, DAST, IAST, SCA) to identify code and dependency vulnerabilities. Conduct security assessments, vulnerability analysis, and penetration testing to identify and mitigate security risks. Develop and maintain secure infrastructure as code (IaC) scripts using tools like Pulumi, Terraform, or CloudFormation. Implement and manage security tools and technologies such as SIEMs, IDS/IPS, firewalls, and endpoint protection. Monitor and respond to security incidents, performing root cause analysis and implementing corrective measures. Educate and train development and operations teams on secure coding practices and security tooling. Stay up to date with the latest security threats, trends, and technologies, and proactively address potential risks. Create and maintain documentation related to security policies, procedures, and standards. Participate in security audits and compliance initiatives to ensure adherence to industry regulations and standards. Provide thorough unit testing and automated testing to ensure a quality product is delivered. Improve, enhance, and support existing operations. Design, build, install, configure, and support production deployments. Manage the work of teams implementing DevOps solutions in complex projects. Minimum Qualifications: Bachelor's degree in Engineering, Computer Science, Management Information Systems, or a related study, or equivalent experience. Minimum of 5+ years of professional experience in DevOps, security engineering, or a related field. Strong understanding of security principles and best practices, including threat modeling, risk assessment, and vulnerability management. Proficiency with DevOps tools and practices, including CI/CD pipelines, containerization (Docker, Kubernetes), and version control systems (Git). Solid understanding of cloud security concepts and experience with cloud platforms (AWS, Azure, Google Cloud). Strong scripting and automation skills using languages such as Python, Bash, or PowerShell. Experience with security tools such as OWASP ZAP, Burp Suite, Nessus, Metasploit, or similar. Experience in development with shell scripting such as Python, GoLang, etc.. Expertise in the Linux operating system. Must be able to demonstrate innovation in problem-solving. Clear communication with team members and product owners. Ability to effectively communicate technical findings to both technical and non-technical stakeholders. Must follow and support agile methodologies and practices by actively participating in all SCRUM ceremonies. Must adhere to and develop best practices in software engineering. Preferred Qualifications: Experience integrating Cloud Security Posture Management (CSPM) tooling with application security pipelines. Experience with Kubernetes security and best practices. Experience collaborating with vulnerability and risk management partners to interface with risk management and acceptance processes. Experience developing and/or deploying training for software engineers around DevSecOps tooling, secure development standards, and application security fundamentals. Ability to Travel: This role will require occasional in-person travel for purposes including but not limited to new hire onboarding, team and department offsites, customer engagements, and other company events. Actual travel expectations may vary by role and business needs. Where could this role be based? This role is based in our Boston office and follows a hybrid model, with an expectation of being onsite 1-2 days per week. Starburst is dedicated to maintaining fair and equitable compensation practices. The salary range provided for this role reflects the minimum and maximum targets for candidates across all U.S. locations and could be inclusive of variable compensation, such as commission or bonus. All employees receive equity packages (ISOs) and have access to a comprehensive benefits offering. Actual compensation packages are determined based on relevant skills, experience, education and training, and specific work location. For more information, connect with the recruiting team or Hiring Manager during the process as they can provide more detailed information about the salary range. Pay Range$180,000-$220,000 USDBuild your career at Starburst All-Stars have the opportunity and freedom to realize their true potential. By building alongside top talent, we're empowered to take ownership of our careers and drive meaningful change. Anchored in industry-proven technology and unprecedented success, All-Stars are taking on the challenge everyday to disrupt our industry - and the future. Our global workforce is supported by a competitive Total Rewards program that reflects our commitment to a rewarding and supportive work environment. This includes a variety of benefits like competitive pay, attractive stock grants, flexible paid time off, and more. We are committed to fostering an intentional, inclusive, and diverse culture that drives deep engagement, authentic belonging, and an exceptional All-Star experience. We believe that diversity of thought, perspective, background and experience will enable us to own what we do, drive our success and empower our All-Stars to show up authentically. Starburst provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
    $180k-220k yearly Auto-Apply 6d ago
  • Security Engineer Co-op (Fall 2026)

    Klaviyo 4.2company rating

    Boston, MA jobs

    At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you're a close but not exact match with the description, we hope you'll still consider applying. This is a 6-month (July 6th - December 18th, 2026) paid co-op experience out of our Boston, MA headquarters. Our Security Engineering team is looking for a student to join as a Security Engineering Co-op. The co-op program at Klaviyo is designed to provide each student with a meaningful and robust experience that impacts our fellow Klaviyos' experience. Security Engineering Co-ops dive into substantial projects with concrete goals and objectives that allow plenty of room for exploration and problem solving. You will get exposure to a wide range of tasks involving front-end and back-end engineering. We offer a supportive environment where students can test, fail, iterate and launch while building a solid career foundation, awesome connections across Klaviyo, and have fun. How you will make an impact: Develop internal security tooling in support of Security Operations mission Experiment with and incorporate AI technologies into development practices Build integrations and automate Security Operations workflows Contribute to establishing telemetry data across Klaviyo cloud environments, platforms, and technologies Work on big data problems to help identify cyber threats Create heuristics and statistical models to find security anomalies Ship code in an agile fashion, pairing with various Security Operations or Engineering Teams to craft better software by soliciting feedback Work on a cloud first product, learning about scalable platforms and applying those skills in our production security environment Help the entire company understand security best practices Who you are: Undergraduate with a target graduation date between December 2026 - May 2028 with a BA/BS in Computer Science, Engineering or similar field Have at least one previous internship or co-op experience in Information Security or Security Engineering A passion for building security tools and products that matter Enjoy working with new technologies ranging from the frontend to backend, and are particularly passionate in multiple stack areas. You show this by having exposure to various technologies and have good instincts to pick the right tool for any job Love digging into performance and scalability issues to drive breakthrough solutions-- whether it's a slow loading UI or too many clicks in a workflow, a database query timing out, or a queue that just won't drain. You recognize all problems can be solved If you're curious, here are some of the technologies we use (not exhaustive). While we don't expect interns to have experience with all of these, you may get exposure to them during your co-op with us: Python, Django, Celery, MySQL, Cassandra, RabbitMQ, Redis, HTML, JavaScript, LESS, Backbone.js, React, Amazon Web Services (EC2, RDS, Aurora, etc.) Terraform, Ansible, Packer, and other DevOps tools We use Covey as part of our hiring and / or promotional process. For jobs or candidates in NYC, certain features may qualify it as an AEDT. As part of the evaluation process we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound on April 3, 2025. Please see the independent bias audit report covering our use of Covey here Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Our salary range reflects the cost of labor across various U.S. geographic markets. The range displayed below reflects the minimum and maximum target salaries for the position across all our US locations. The base salary offered for this position is determined by several factors, including the applicant's job-related skills, relevant experience, education or training, and work location. In addition to base salary, our total compensation package may include participation in the company's annual cash bonus plan, variable compensation (OTE) for sales and customer success roles, equity, sign-on payments, and a comprehensive range of health, welfare, and wellbeing benefits based on eligibility. Your recruiter can provide more details about the specific salary/OTE range for your preferred location during the hiring process. Base Pay Range For US Locations:$49-$49 USD Get to Know Klaviyo We're Klaviyo (pronounced clay-vee-oh). We empower creators to own their destiny by making first-party data accessible and actionable like never before. We see limitless potential for the technology we're developing to nurture personalized experiences in ecommerce and beyond. To reach our goals, we need our own crew of remarkable creators-ambitious and collaborative teammates who stay focused on our north star: delighting our customers. If you're ready to do the best work of your career, where you'll be welcomed as your whole self from day one and supported with generous benefits, we hope you'll join us. AI fluency at Klaviyo includes responsible use of AI (including privacy, security, bias awareness, and human-in-the-loop). We provide accommodations as needed. Klaviyo is committed to a policy of equal opportunity and non-discrimination. We do not discriminate on the basis of race, ethnicity, citizenship, national origin, color, religion or religious creed, age, sex (including pregnancy), gender identity, sexual orientation, physical or mental disability, veteran or active military status, marital status, criminal record, genetics, retaliation, sexual harassment or any other characteristic protected by applicable law. IMPORTANT NOTICE: Our company takes the security and privacy of job applicants very seriously. We will never ask for payment, bank details, or personal financial information as part of the application process. All our legitimate job postings can be found on our official career site. Please be cautious of job offers that come from non-company email addresses (@klaviyo.com), instant messaging platforms, or unsolicited calls. You can find our Job Applicant Privacy Notice here . By clicking "Submit Application" you consent to Klaviyo processing your Personal Data in accordance with our Job Applicant Privacy Notice. If you do not wish for Klaviyo to process your Personal Data, please do not submit an application. You can find our Job Applicant Privacy Notice here .
    $49-49 hourly Auto-Apply 6d ago
  • Talent Pool - Cyber & Engineering Roles - TS/SCI w/Poly

    Sixgen, Inc. 4.1company rating

    Maryland jobs

    Talent Pool, Cyber & Engineering Roles Job Type: Full Time Clearance Requirements: TS/SCI & Polygraph (required; applications without clearance will be automatically rejected) Travel: May vary by role ABOUT THE TEAM SIXGEN delivers agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. Our operators, engineers, and mission planners conduct real-world research, assessments, and solution development to help customers overcome global cybersecurity challenges. We are continuously hiring talented professionals across a range of disciplines. Joining our Talent Pool ensures your resume will be considered for current and upcoming opportunities across multiple mission areas. OPEN ROLES We are looking for the following folks who have 3+ years in any of the following Reverse Engineers CNO Developers Configuration Managers Systems Engineers (0 - 3 years) ISSO ISSE Data Scientists Data Engineers Salaries range from $125-$250K and is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. If you don't see your exact role listed but hold a TS/SCI with Polygraph, we still encourage you to apply. New positions open weekly. All roles are 5 days a week onsite and require a TS/SCI & Polygraph if you do not have these clearances you will be auto rejected. REQUIRED QUALIFICATIONS Minimum of 3 years of relevant professional experience in one or more of the above technical or security disciplines Bachelor's degree in a related field preferred; equivalent professional experience considered Active TS/SCI clearance with Polygraph (required) U.S. Citizen Ability to work full-time onsite COMPENSATION & BENEFITS Salary Range: $125,000-$250,000 annually. Final offers are based on experience, education, training, critical skills, and business considerations. Benefits include: Employer-paid health insurance premiums (medical, dental, vision) for you and your family Employer-paid short/long-term disability and basic life/AD&D insurance 401K with a 4% employer contribution Professional development reimbursement (training, certifications, education, etc.) Flexible PTO and holiday schedule OUR COMMITMENT SIXGEN is an Equal Opportunity Employer. We ensure that all applicants are considered for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class. We are committed to fostering an inclusive culture that values diversity in our people, reflecting the communities we serve and our customer base. We strive to attract and retain a diverse talent pool and create an environment where everyone is empowered to be their authentic selves at work.
    $82k-113k yearly est. Auto-Apply 60d+ ago
  • Security/Systems Administrator

    Peraton 3.2company rating

    Fort Meade, MD jobs

    Responsibilities Peraton is seeking a Security/Systems Administrator to join our team in the Annapolis Junction, MD area. This role is a hybrid position which encompasses both SA and ISSE related duties. Our dynamic team delivers information security solutions that facilitate secure data flows and the detection/prevention of unauthorized behaviors, performs system security vulnerability assessments and solution development, provide enterprise-level network, server, desktop, and application security services. Responsibilities may include supporting the design of systems, mission architecture and associated hardware, as well as analyzing and resolving complex problems associated with server hardware, applications and software integration. Qualifications Required Qualifications: Bachelor's degree in a technical discipline from an accredited college or university is required. Minimum of 15 years' experience as a System Administrator on programs or contracts of similar scope, type, and complexity is required. 5 years of additional SA experience may be substituted for a BS degree, totaling 20 years of SA experience. Demonstrated experience in Linux environments is required. Experience in building/configuring, maintaining, troubleshooting network devices (i.e. Switches), Linux OS, Windows Server OS, Virtualization (VMWare). Ability to automate processes such as device hardening, patching, vulnerability remediation, system monitoring. Ability to support evening hours (until 7pm, at least 6 times per year). DOD 8570 compliance with minimum of IAT Level II is required. Current TS/SCI clearance with polygraph is required. Preferred Requirements: Dell Avamar software experience is preferred. Salary Range Estimate: The estimate displayed represents the typical salary range for this position and is just one component of Peraton's total compensation package for employees. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Peraton provides a variety of benefits to employees. Benefits: Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and participation in an attractive bonus plan. #AJCM Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $75k-103k yearly est. Auto-Apply 60d+ ago
  • Monitoring Cyber Incident Response Team (CIRT) Analyst

    Peraton 3.2company rating

    Beltsville, MD jobs

    Responsibilities Peraton is seeking an experienced Monitoring Cyber Incident Response Team (CIRT) Analyst to join Peratons' Federal Strategic Cyber Mission program. Work Hours: Days Shift, 0600 - 1400 EST, SUN-THU. In this role, you will: * Detect, classify, process, track, and report on cyber security events and incidents. * Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment. * Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity. * Characterize and analyze network traffic to identify anomalous activity and potential threats. * Protect against and prevent potential cyber security threats and vulnerabilities. * Perform forensic analysis of hosts artifacts, network traffic, and email content. * Analyze malicious scripts and code to mitigate potential threats. * Conduct malware analysis to generate IOCs to identify and mitigate threats. * Collaborate with Department of State teams to analyze and respond to events and incidents. * Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes. * Create tickets and initiate workflows as instructed in technical SOPs. * Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA). * Collaborate with other local, national and international CIRTs as directed. * Submit alert tuning requests. #DSCM Qualifications Required: * Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience. * One of the professional certifications listed below, or have the ability to obtain one prior to start date: * A+ CE, CCNA-Security, CND, Network+ CE, SSCP * Continued certification is required as a condition of employment. * Demonstrated experience in the Incident Response lifecycle. * Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel). * Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar). * Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike). * Knowledge of cloud security monitoring and incident response. * Knowledge of integrating IOCs and Advanced Persistent Threat actors. * Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques. * Knowledge of malware analysis techniques. * Knowledge of the MITRE ATT&CK and D3FEND frameworks. * U.S. Citizenship required. * Active Interim Secret clearance in order to start. Preferred: * Active Secret clearance. * Proficiency with Splunk for security monitoring, alert creation, and threat hunting. * Knowledge of Microsoft Azure access and identity management. * Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations. * Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman-Tools, KAPE, CyLR, Volatility). * Experience with using ServiceNow SOAR for ticketing and automated response. * Knowledge of Python, PowerShell and BASH scripting languages. * Experience with cloud security monitoring and incident response. * Demonstrated ability to perform static/dynamic malware analysis and reverse engineering. * Experience with integrating cyber threat intelligence and IOC-based hunting. * Technical certifications such as: Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA. * Advanced technical certifications such as: SecurityX/CASP+, PRMP, GREM, GEIR, GNFA, or GCFA. Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $66k-106k yearly Auto-Apply 42d ago
  • Security Systems Engineer

    Peraton 3.2company rating

    Fort Meade, MD jobs

    Responsibilities Peraton is seeking a Security Systems Engineer to join our team in the Annapolis Junction, MD area. This role requires the ability to support CONUS and OCONUS travel. Our dynamic team delivers information security solutions that facilitate secure data flows and the detection/prevention of unauthorized behaviors, performs system security vulnerability assessments and solution development, provide enterprise-level network, server, desktop, and application security services. Responsibilities may include supporting the design of systems, mission architecture and associated hardware, as well as analyzing and resolving complex problems associated with server hardware, applications and software integration. Qualifications Required Qualifications: Bachelor's degree in System Engineering, Computer Science, Information Systems, Engineering Science, Engineering Management, or related discipline from an accredited college or university is required. Minimum of 14 years' experience as a Systems Engineer on programs or contracts of similar scope, type, and complexity is required. 5 years of additional SE experience may be substituted for a BS degree, totaling 19 years of SE experience. Ability to support CONUS and OCONUS TDY travel: approximately 1-2 trips every 3 months (up to 2 weeks per time). Experience in building/configuring, maintaining, troubleshooting network devices (i.e. Switches), Linux OS, Virtualization (VMWare). Ability to automate processes such as device hardening, patching, vulnerability remediation, system monitoring, (preferably using Ansible). AWS Cloud experience is required. Knowledge and understanding NIST Controls and how to apply to systems. Experience with scripting (Python, Bash, etc). DOD 8570 compliance with minimum IAT Level 2 is required. Current TS/SCI clearance with polygraph is required. Preferred Requirements: AWS cert is preferred. Ansible experience is preferred. Salary Range Estimate: The estimate displayed represents the typical salary range for this position and is just one component of Peraton's total compensation package for employees. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Peraton provides a variety of benefits to employees. Benefits: Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and participation in an attractive bonus plan. #AJCM Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $176,000 - $282,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $86k-122k yearly est. Auto-Apply 19d ago
  • Security Systems Engineer

    Peraton 3.2company rating

    Fort Meade, MD jobs

    Responsibilities Peraton is seeking a Security Systems Engineer to join our team in the Annapolis Junction, MD area. This role requires ability to support CONUS and OCONUS TDY. Our dynamic team delivers information security solutions that facilitate secure data flows and the detection/prevention of unauthorized behaviors, performs system security vulnerability assessments and solution development, provide enterprise-level network, server, desktop, and application security services. Responsibilities may include supporting the design of systems, mission architecture and associated hardware, as well as analyzing and resolving complex problems associated with server hardware, applications and software integration. Qualifications Required Qualifications: Bachelor's degree in System Engineering, Computer Science, Information Systems, Engineering Science, Engineering Management, or related discipline from an accredited college or university is required. Minimum of 20 years' experience as a Systems Engineer on programs or contracts of similar scope, type, and complexity is required. 5 years of additional SE experience may be substituted for a BS degree, totaling 25 years of SE experience. Ability to support CONUS and OCONUS TDY travel: approximately 1-2 trips every 3 months (up to 2 weeks per time). Experience in building/configuring, maintaining, troubleshooting network devices (i.e. Switches), Linux OS, Virtualization (VMWare). Ability to automate processes such as device hardening, patching, vulnerability remediation, system monitoring, (preferably using Ansible). AWS Cloud experience is required. Knowledge and understanding NIST Controls and how to apply to systems. Experience with scripting (Python, Bash, etc). DOD 8570 compliance with minimum IAT Level II is required. Current TS/SCI clearance with polygraph is required. Preferred Requirements: AWS cert is preferred. Ansible experience is preferred. Salary Range Estimate: The estimate displayed represents the typical salary range for this position and is just one component of Peraton's total compensation package for employees. Other rewards may include annual bonuses, short- and long-term incentives, and program-specific awards. In addition, Peraton provides a variety of benefits to employees. Benefits: Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and participation in an attractive bonus plan. #AJCM Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $176,000 - $282,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $86k-122k yearly est. Auto-Apply 19d ago
  • Computer Network Defense Analyst (CNDA), Advisor

    Peraton 3.2company rating

    Fort Meade, MD jobs

    Responsibilities Peraton's Cyber Mission in Annapolis Junction, MD supplies the Intel community with mission essential Next Generation SIGINT Analysts and Cyber professionals that support and defend our nation's security. Be a part of a team of SIGINT, Intelligence and Cyber professionals that are supplying our nation with leading Next Generation cybersecurity solutions. Peraton delivers unique intelligence, analytics, and data management solutions to address the world's most difficult challenges. Peraton is seeking Next Generation Computer Network Defense Analyst (CNDA3) to support our mission to defend and protect our national security. Responsibilities may include: Identify potential vulnerabilities, respond to cyber events and defend against events by using information collected from a variety sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs) Develop mitigations to strengthen network defenses and protect against attacks on network infrastructure devices or systems. Support a wide range of data transport possibilities, such as traditional wired networks, wireless transport (including Wi-Fi and cellular), collaborative platforms such as video teleconferencing, and the hardware and software that enable it all. Develop expertise in networking protocols and architectures, cloud security, Internet of Things protocols, and advanced network security. Work as part of a team, with government, military, and contractor personnel to develop shared understanding of intelligence needs, mission relevance, and areas of expertise. Apply analytical skills to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights. Distill, document, contextualize and share findings--including any new tradecraft developed with teammates, stakeholders, and intelligence consumers. #AJ Qualifications #25 Basic Qualifications: 10 years' experience with an associate's degree OR 8 years' experience with a bachelor's degree OR 6 years' experience with a master's Degree OR 4 years' experience with a PhD Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance and/or systems engineering JCAC (Joint Cyber Analysis Course), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC)/Intermediate Network Warfare Training (INWT), Cyber Defense Operations may be considered towards the relevant experience requirement. (i.e., 20-24-week JCAC course may count as 6 months of experience OR 10-14-week JCAC may count as 3 months of experience) OR may also be considered equivalent to a technical associates degree Foreign language proficiency and Defense Language Proficiency Test (DLPT) scores may be considered as relevant experience. Experience in network or system administration Active TS SCI security clearance with a current polygraph is Additional Qualifications Degree in Network Engineering, Systems Engineering, Information Technology or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or Computer Security) Ability to conduct computer/network security and target development Knowledge of all aspects of computer/network security, including firewall administration, encryption technologies and network protocols Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and participation in an attractive bonus plan. #NextGenFF #AJCM Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure. Target Salary Range $135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
    $70k-96k yearly est. Auto-Apply 60d+ ago
  • Information Security Analyst

    Conga 4.6company rating

    Boston, MA jobs

    A career that's the whole package! At Conga, we've built a community where our colleagues can thrive. Here you'll find opportunities to innovate and support growth through individual and team development, all within an environment where every voice is heard. Conga accelerates the customer's journey to becoming a more connected and intelligent business. The Conga Advantage Platform is recognized worldwide for enhancing this journey, bringing together Configure, Price, Quote, Contract Lifecycle Management, and Document Automation capabilities on a single open platform. It integrates seamlessly with any ERP, CRM, and Cloud. Powered by a unified data model and purpose-built AI, Conga helps companies achieve a unique advantage-one built on seamless connection, actionable intelligence, and scalable growth. Our approach is grounded in the Conga Way, a framework that reflects our values and drives everything from hiring to decision-making, as well as key programs including recognition. Created with direct input from our colleagues, the Conga Way forms the foundation of our vibrant culture. Job Title: Information Security Analyst Location: Boston or Houston area Hybrid: minimum 2 days per week in the office Reports To: Director, Compliance and Information Security A quick snapshot….. Conga is seeking an Information Security Analyst to help shape and maintain a robust information security program. In this role, you'll work closely with stakeholders across the company to identify and remediate security issues, promote awareness, and ensure compliance with legal, regulatory, and customer requirements. You'll be part of the Security & Compliance Team, but also operate independently, managing alerts, vulnerabilities, incident response, and risk assessments. Your day-to-day will involve hands-on security operations, cross-functional collaboration, and continuous improvement of security practices. Why it's a big deal….. This role is critical to protecting Conga's information assets and maintaining trust with customers and partners. By proactively managing threats, vulnerabilities, and compliance, you'll help safeguard the company's reputation and ensure business continuity. Your work directly supports Conga's strategic goals by enabling secure innovation, enhancing customer confidence, and fostering a culture of security awareness across the organization. Required experience. Bachelor's Degree in Computer Science, Cybersecurity, Engineering, or other relevant subject areas OR equivalent experience. 3-4 years of experience in information security, preferably with a focus on IT and product security. Foundational knowledge of cloud security principles (AWS, Azure, GCP), DevSecOps practices, and secure software development lifecycle (SDLC). Hands-on experience with application security and vulnerability management practices. Foundational knowledge of at least one or more security/compliance frameworks such as ISO 27001, ISO 27701, SOC, PCI, HIPAA, etc. Understanding of privacy frameworks such as GDPR, CCPA, CPRA, etc. Strong communication and interpersonal skills. You're not just comfortable engaging in collaborative discussions, but initiating them, too, communicating clearly and concisely while leveraging strong listening skills to gather accurate information and resolve issues efficiently. Cross-Functional Collaboration. You know how to build strong relationships across Cloud Ops, Engineering and IT teams. teams. You communicate priorities and goals clearly, helping both technical and non-technical stakeholders stay aligned and moving in the same direction. Detail oriented. Consistently ensures accuracy in security assessments, documentation, and incident response processes, minimizing risk and maintaining high standards of compliance. Self‑starter. You take a proactive approach, independently identifying and addressing work‑related tasks to ensure continuous progress and timely delivery. Here's what will give you an edge…… SaaS industry experience CISSP or other security certifications #LI-AM1 In the spirit of the Conga Way, we strive to design easy-to-understand compensation programs that are fair and free from any type of discrimination. In keeping with this approach, we are committed to delivering competitive compensation and benefits packages to our colleagues worldwide and communicating transparently about the structure of our compensation programs. Listed below is the U.S. base salary range for this full-time position. Within the range, individual pay is determined by job-related skills, experience, and relevant education, or training. In addition to base salary, Conganeers receive a variable incentive pay component, perks such as flexible work options, and a full range of benefits including medical and dental insurance. The posted salary ranges are for the expectations outlined in the . We are often open to a wide variety of profiles and sometimes have flexibility within our organizational structure to adjust the role responsibilities up or down should we select a candidate that is less or more experienced than the posted job requirements. In these occasional cases, we will communicate the revised salary range to the candidate during the selection process. U.S base salary range:$107,000-$125,000 USD Did we pique your interest? If this sounds like the kind of job you would love in the kind of environment where you would thrive, please click apply. We'd love to hear from you! Preferred Resume Format We accept resumes in any format, we suggest using PDF or plain text. These formats help ensure that your resume's formatting remains intact, making it easier for our recruiters to review your application promptly. Don't meet every requirement for the role? Studies have shown that women and members of ethnic minorities are less likely to apply to jobs unless they meet every single qualification. At Conga we are dedicated to building a diverse, inclusive, and authentic workplace, so if you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You just might be the right candidate for this or other roles. Additional Information Conga is proud to be an Equal Opportunity Employer and provides equal employment opportunities to all employees and applicants regardless of race, color, religion, gender, gender identity, age, national origin, disability, parental or pregnancy status, marriage and civil partnership, sexual orientation, veteran status, or any other characteristic protected by law. We understand interviewing can be stressful for those with disabilities. If reasonable accommodation is needed to allow you to show us your best self, please let your recruiter know as soon as possible. All your information will be kept confidential according to EEO guidelines. Conga is not open to third party solicitation or resumes for our posted FTE positions. Resumes received from third party agencies that are unsolicited will be considered complimentary. Conga's Applicant Privacy Statement The information you provide during the application process will be used in accordance with Conga's Applicant Privacy Statement (*********************************************** By submitting your application, you acknowledge and agree to the terms outlined in this privacy statement.
    $107k-125k yearly Auto-Apply 6d ago

Learn more about BlueVoyant jobs