Cyber Security Solutions Engineer - GES
Cyber security analyst job in Augusta, ME
States: MA, NH, RI, ME, CT, VT, NJ, NY is home office based. Meet the Team You will provide guidance and assist Security Sellers and Account teams within the territory in a pre-sales technical role, showcasing Cisco security product solutions, setting up demonstrations, explaining features and benefits to customers, and designing and configuring products to address specific customer security needs. You will form relationships with our customer's key decision-makers, positioning Cisco security solutions aligned accurately to their requirements.
You will be a part of an outstanding technical pre-sales team in our Global Security Sales Organization (GSSO), responsible for driving the success of Cisco's Security Portfolio and focusing on protecting Customer Application Environments no matter where they live (on-prem / any cloud).
Our mission is simple: democratize security by making it easy and effective for everyone. We're transforming security from the ground up by solving the world's most pressing geopolitical challenge - safe, secure information access. We engineer our business to enable our customers to easily address their ever-evolving security challenges.
We believe that impactful work is rewarding work and that our team is at its best when everyone feels empowered to bring their whole self to work. We learn together by hiring for cultural contribution, not cultural fit, and recognize that diversity in background and thought are essential to building high-impact teams.
We invest in growth and learning opportunities and encourage our people to never stop learning. We foster collaboration and believe in being recognized (and rewarded!) for hard work. We champion a healthy work-life balance. We're kinder than necessary.
Together we build for the future by designing simple solutions for complex problems. And that's why we're the most loved and trusted name in security.
Your Impact
As an advisor to the customer, you'll be working with technology experts to craft architectures and configure products to meet customer-specific needs, are prepared to lead all technical aspects of pre-sales activities, and position security solutions effectively against competing offerings. You are an aggressive starter, self-starter with the ability to build executive relationships, develop and execute sales strategies and tactics that improve Cisco's opportunity with a customer environment, position and promote the partner and customer value proposition for Cisco security architecture, articulate Cisco's product and business strategies, and create the demand that makes deals happen! You will:
- Serve as the subject matter expert in Cisco security solutions
- Provide guidance and assist account teams within the territory in building solutions to address specific customer security needs
- Understand business requirements for a customer base and be able to translate them into technical requirements
- Understand and articulate Cisco's architecture and services within security technologies
- Create, present, and document technical solutions
- Perform in-depth and high-level technical presentations for customers partners and prospects
- Drive identified major account opportunities (i.e. technical consulting, upper-level management presentations, and Cisco technology solutions) while allowing local account teams to maintain long-term ownership
Who You Are
You are passionate about the customer experience and excited about new technology. You are a true teammate and love to learn. Being a self-starter, our SEs act as an industry domain authority, and strive to help Cisco make customers for life.
Minimum Qualifications
-Minimum of 4 years of pre-sales experience
-Hands on experience with one or more of these Cisco Security Products (or their competitive equivalent):
********************************************************************
- Experience with whiteboard discussions that transform customer requirements into security solutions
Preferred Qualifications
- History of successful quota achievement.
- Ability to demo / POV any of these Cisco Security products (the more the better): ********************************************************************
- Knowledge of public clouds AWS, Azure, GCP, and OCI.
- Experience with incident response a plus
- Experience with administering security for a company (e.g. purchased and deployed Cisco security products as a customer) is a plus.
- Solid presentation and interpersonal skills.
- Highly motivated self-starter who does not need day-to-day management
- Experience with APIs and scripting languages
**Why Cisco?**
At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
**Message to applicants applying to work in the U.S. and/or Canada:**
The starting salary range posted for this position is $217,200.00 to $274,100.00 and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation*, equity, or benefits.
Individual pay is determined by the candidate's hiring location, market conditions, job-related skillset, experience, qualifications, education, certifications, and/or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.
U.S. employees are offered benefits, subject to Cisco's plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short and long-term disability coverage, and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.
U.S. employees are eligible for paid time away as described below, subject to Cisco's policies:
+ 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees
+ 1 paid day off for employee's birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness determined by Cisco
+ Non-exempt employees** receive 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees
+ Exempt employees participate in Cisco's flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use (subject to availability and some business limitations)
+ 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours of unused sick time carried forward from one calendar year to the next
+ Additional paid time away may be requested to deal with critical or emergency issues for family members
+ Optional 10 paid days per full calendar year to volunteer
For non-sales roles, employees are also eligible to earn annual bonuses subject to Cisco's policies.
Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components, subject to the applicable Cisco plan. For quota-based incentive pay, Cisco typically pays as follows:
+ .75% of incentive target for each 1% of revenue attainment up to 50% of quota;
+ 1.5% of incentive target for each 1% of attainment between 50% and 75%;
+ 1% of incentive target for each 1% of attainment between 75% and 100%; and
+ Once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.
For non-quota-based sales performance elements such as strategic sales objectives, Cisco may pay 0% up to 125% of target. Cisco sales plans do not have a minimum threshold of performance for sales incentive compensation to be paid.
The applicable full salary ranges for this position, by specific state, are listed below:
New York City Metro Area:
$223,000.00 - $330,300.00
Non-Metro New York state & Washington state:
$217,200.00 - $315,300.00
* For quota-based sales roles on Cisco's sales plan, the ranges provided in this posting include base pay and sales target incentive compensation combined.
** Employees in Illinois, whether exempt or non-exempt, will participate in a unique time off program to meet local requirements.
Cisco is an Affirmative Action and Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.
Cisco will consider for employment, on a case by case basis, qualified applicants with arrest and conviction records.
Senior Analyst, Security Compliance (SOX IT)
Cyber security analyst job in Augusta, ME
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
Coinbase stores more digital currency than any company in the world, making us a top tier target on the internet. Security is core to our mission and has been a key competitive differentiator for us as we scale worldwide. Essential to scaling is building and running a security compliance program that reflects how we protect the data and assets in our care, to open the doors with customers, regulators, auditors, and other external stakeholders. If you love working with fast moving companies to grow and scale security compliance engines and create positive change across the business, we'd like to speak with you about joining our team. Coinbase is looking for a Security Compliance Senior Analyst to drive the second line of defense IT SOX initiatives and help mature the IT SOX program.
*What you'll be doing (ie. job duties):*
* Lead Security and IT initiatives to support the SOX roadmap and advance program maturity
* Assist with SOX planning activities, including scoping of IT systems and creating training material to owners in preparation for SOX audit
* Lead security control gap assessments over SOX control environment, recommend remediation plans and track through completion
* Assess SOX implications of new products, update relevant controls, and communicate requirements to product organization and other stakeholders
* Provide ongoing reporting to stakeholders and leadership on above responsibilities and communicate progress and escalations management
* Perform SOX audit and control impact analysis as a result of security and technology incidents and partner with owning teams on control uplift activities
* Build close relationships with stakeholder teams including Security, IT, Infrastructure, Engineering, Data, and Finance to advise on SOX requirements and ensure excellence in control ownership
* Create and improve SOX procedural documentation, including process documentation, data flow diagrams, and uplifting templates
* Work closely with internal and external auditors to educate them about a complex technology control environment
* Oversee quality of audit initiatives, identify and analyze process gaps, provide guidance and expertise to team members
* Develop creative solutions to prove risk mitigation and solve for complex audit problems faced by the crypto industry
* Identify opportunities to address systemic program challenges, recommend solutions and drive efficiency through AI and automation
*What we look for in you (ie. job requirements):*
* Minimum of 5+ years of security/IT compliance or equivalent experience
* Strong knowledge and hands-on experience in Internal Controls over Financial Reporting, SOX 404 frameworks, and testing to support compliance
* Prior experience at a big 4 accounting firm
* Experience leading compliance initiatives from start to finish
* Proven understanding and audit experience of cloud technologies, AWS preferred
* Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations with minimal supervision
* Strong oral and written communication skills
* Ability to multitask, direct cross functional work, and hold others accountable to committed deadlines in a fast paced environment
* Ability to communicate with technical / non-technical stakeholders to align on shared outcomes
* Experience in Financial services, Big Tech, or FinTech
*Nice to haves:*
* BA or BS in a technical field or equivalent experience
* Security certifications e.g. CISA, CISSP, CISM or other relevant certifications
* Experience auditing in Crypto space
Position ID: P73675
\#LI-Remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$167,280-$196,800 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Product Security Engineer, AI
Cyber security analyst job in Augusta, ME
Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys.
**Required Skills:**
Product Security Engineer, AI Responsibilities:
1. Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more
2. Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities
3. Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products
**Minimum Qualifications:**
Minimum Qualifications:
4. BS or MS in Computer Science or a related field, or equivalent experience
5. 8+ years of experience finding vulnerabilities in interpreted languages. Knowledge of best practice secure code development
6. Experience with exploiting common security vulnerabilities
7. Knowledge of common exploit mitigations and how they work
8. Coding and scripting experience in one or more general purpose languages
**Preferred Qualifications:**
Preferred Qualifications:
9. Experience creating software that enables security processes, especially those leveraging AI/ML for automation or augmentation
10. Experience integrating or building AI-powered tools to assist with vulnerability detection, code review, or threat modeling
11. Experience creating software that enables security processes
12. 8+ years of experience finding vulnerabilities in C/C++ code
13. Contributions to the security community (public research, blogging, presentations, bug bounty)
14. Demonstrated ability to collaborate with AI researchers or engineers to apply AI in security workflows
**Public Compensation:**
$177,000/year to $251,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Principal Security Engineer
Cyber security analyst job in Augusta, ME
1. Nashville, TN 2. Austin, TX 3. Ireland 4. United Kingdom Security Architecture is comprised of security experts who are focused and specialized in securing all aspects of OCI Cloud. As security experts, we are sought out by our partner engineering organizations to provide guidance on designing their products, services and features. We set OCI wide security standards and hold a high security requirement bar for all services to ensure the highest level of security to our customers.
We are currently looking for a highly motivated security engineer with expertise in Cloud security to join our team. This candidate would be involved in architecture, design, prototyping and development of the security aspects of Oracle Cloud's products and services.
You should be a security-minded leader who can work with architects and/or a development team as they design new capabilities to ensure that security requirements are set and the design implements the necessary controls to increase security posture for the service. As a member of the Security Architecture team, you will be required to have a firm grasp on security technologies, trends in cloud security practices, and ability to communicate complex technical security requirements clearly to the development teams, risk assessment, risk mitigation and security tools/automation.
**Responsibilities**
Key responsibilities:
+ Conduct threat modeling, security architecture reviews, risk assessment and provide guidance on mitigating the identified issues.
+ Create and maintain technical security standards and patterns and set the benchmark for AI security requirement bar at OCI.
+ Stay up-to-date on the latest advancements in AI technologies and apply them to improve OCI's security posture.
+ Provide expert security guidance to service teams to ensure their products, services and feature are secure by default.
+ Lead OCI-wide cloud security initiatives to enhance overall cloud security posture.
+ Provide mentorship to junior engineers on the team.
Qualifications:
+ A minimum of 8+ years of experience with at least 5+ years in Cloud Security required and 2+ years in AI and ML is good to have.
+ Or a BS or MS in Computer Science/Engineering with a focus on AI/Security, or a related field with a minimum of 8 years of experience in the field is required.
+ Experience in architecture, design, deployment, and handling of standard security practices and policies is required.
Preferred qualifications includes,
+ A strong background in AI, machine learning, and deep learning.
+ Experience in applying AI technology to security domain.
+ Experience as a security leader for a cloud product or set of cloud services, with expertise in IaaS, PaaS.
+ Experience with architecture security reviews for products or services operating in a cloud environment, especially those which are reliant on homegrown or third-party LLMs and APIs is a plus.
+ Expertise in concepts of Multi-tenancy, Cloud Security and Virtualization, Access Management, OAuth, Cloud SSO, Identity Provisioning, Identity Governance etc.
+ Expertise in Encryption, Key management, Cybersecurity fundamentals (e.g., access controls, common software vulnerabilities, and security best practices), Deployment Methodologies, and Security Standards Compliance Certification (STIG, FedRAMP, PCI-DSS), etc.
+ Very good understanding of concepts related to Docker, Container, Serverless Computing, and Kubernetes.
+ Ability to design large scalable systems for cloud customers with focus on security.
+ Network security, VPN/Firewalls and software-defined networking experience is a plus.
+ Experience operating within and supporting a security assurance and assessment program
+ Excellent written and verbal communication skills, strong analytical and problem-solving skills.
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $106,300 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Lead Security Engineer - Cyber Security
Cyber security analyst job in Maine
Posting Type
Remote
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure. In this role, the main responsibilities will be to investigate and analyze emerging threats against our assets, identities, and clients. You will also provide actionable remediation guidance to end users and collaborate with highly skilled cyber experts to anticipate and mitigate evolving threats using world-class toolsets and next generation capabilities.
Job Description and Requirements
Responsibilities:
Review, validation, and triage of alerts and technical analysis of log data from a diverse inventory of sensors, correlated signature logic, and threat intelligence sources.
Assess the impact of security events by leveraging host, cloud and network-based indicators and evidence to deliver actionable incident escalations.
Develop and deploy detection and prevention signatures with response actions as part of a layered defensive strategy leveraging multiple technologies and data types.
Build automation to search through collected telemetry to detect and isolate advanced threats that evade existing security solutions.
Create Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards.
Automate incident handling processes.
Engage in the continuous research of emerging threats and apply appropriate countermeasures within the context of a rapidly changing environment.
Serve as a subject matter expert in the mechanism and analysis of observed malicious activity.
Clearly document and communicate investigation findings to both technical and executive stakeholders.
Identify and automate away technical burden.
Build automation to deploy, operate and connect multiple cyber security tools and applications.
Preferred Qualifications:
7+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team for Cloud applications and corporate networks
Exposure to threat detection development and tuning
Experience in software design and development
DevSecOps experience
Ability to perform threat hunting, threat emulation, and/or purple teaming exercises
Familiarity with industry standard security devices and their configuration
Experience in reverse engineering malicious code to explore infection and propagation mechanisms
Experience with threat intelligence tools and processes
Certifications: One or more of the following certifications are preferred (GCFA, GCIA, GCIH, GNFA, GREM, OSCP, OSEP, OSED, OSWE, OSDA, OSCE3, CompTIA Security+, CCNA CyberOps, or CEH)
5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team
Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)
Ability to read, write and analyze PowerShell, C#, and Python
Capability to independently manage the prioritization of complex security events
Advanced understanding of common SOC/CIRT operational processes and documentation
Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks
Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture
Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls
Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data
Strong analytical and problem-solving skills
Minimum Qualifications:
5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team
Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)
Ability to read, write and analyze PowerShell, C#, and Python
Capability to independently manage the prioritization of complex security events
Advanced understanding of common SOC/CIRT operational processes and documentation
Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks
Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture
Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls
Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data
Strong analytical and problem-solving skills
Ability to leverage programming and scripting languages to build automations and develop SOAR playbooks
Relativity is committed to competitive, fair, and equitable compensation practices.
This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.
The expected salary range for this role is between following values:
$150,000 and $226,000
The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position.
Suggested Skills:
Cybersecurity, Infrastructure Security, Network Security, Penetration Testing, Security Architecture Design, Security Audit, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management
Auto-ApplyCyber Security Engineer
Cyber security analyst job in Norway, ME
We are seeking a detail-oriented and analytical Security Engineer to join a growing Information Security team. The ideal candidate will be responsible for designing, implementing, and managing a variety of security technologies and controls in accordance with the Information Security Program. This role plays a critical part in protecting the organization from cyber threats and ensuring compliance with security policies and regulations.
Responsibilities:
+ Monitor security systems, SIEM tools, and threat intelligence feeds for anomalies and potential threats.
+ Investigate and respond to security incidents, including malware infections, phishing attempts, and unauthorized access.
+ Conduct vulnerability assessments and assist in remediation efforts.
+ Maintain and update security policies, procedures, and documentation.
+ Collaborate with IT and other departments to implement security best practices.
+ Assist in security audits, risk assessments, and compliance initiatives (e.g., ISO 27001, NIST, SOC 2).
+ Stay current with emerging threats, vulnerabilities, and regulatory requirements.
+ Support security awareness training and phishing simulations for employees.
Requirements
+ Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
+ 2+ years of experience in a security or similar role.
+ Familiarity with security tools such as firewalls, IDS/IPS, antivirus, and SIEM platforms.
+ Understanding of networking protocols, operating systems, and common attack vectors.
+ Familiarity with cloud infrastructure; Azure, AWS, Entra ID O365/M365.
+ Understanding of Microsoft Server, Windows 10/11, Active Directory, AD CS, IDS/IPS, NGFW, DLP, EDR, SIEM, MDM, PAM, MFA, Netwrix.
+ Experience with cloud security (AWS, Azure, or GCP).
+ Knowledge of scripting or automation (Python, PowerShell, etc.).
Technology Doesn't Change the World, People Do.
Robert Half is the world's first and largest specialized talent solutions firm that connects highly qualified job seekers to opportunities at great companies. We offer contract, temporary and permanent placement solutions for finance and accounting, technology, marketing and creative, legal, and administrative and customer support roles.
Robert Half works to put you in the best position to succeed. We provide access to top jobs, competitive compensation and benefits, and free online training. Stay on top of every opportunity - whenever you choose - even on the go. Download the Robert Half app (https://www.roberthalf.com/us/en/mobile-app) and get 1-tap apply, notifications of AI-matched jobs, and much more.
All applicants applying for U.S. job openings must be legally authorized to work in the United States. Benefits are available to contract/temporary professionals, including medical, vision, dental, and life and disability insurance. Hired contract/temporary professionals are also eligible to enroll in our company 401(k) plan. Visit roberthalf.gobenefits.net for more information.
© 2025 Robert Half. An Equal Opportunity Employer. M/F/Disability/Veterans. By clicking "Apply Now," you're agreeing to Robert Half's Terms of Use (https://www.roberthalf.com/us/en/terms) .
Information Security Analyst
Cyber security analyst job in Westbrook, ME
INFORMATION SECURITY ANALYST SUMMARY: The Information Security Analyst is responsible for contributing, implementing, and maintaining the credit union's cyber security program. Leveraging the required skills and experience, the Information Security Analyst will investigate and respond to security incidents, work closely with internal departments and/or third parties, and provide status updates to management. ESSENTIAL DUTIES AND RESPONSIBILITIES include the following:
Review daily log reports generated from information security systems and investigate anomalous behavior.
Process reported social engineering attempts to determine if a threat exists and communicate outcomes to involved parties.
Monitor, investigate, remediate, and report security incidents as they arise. Work with other members of the Incident Response Team, as needed.
Conduct social engineering exercises across the organization and assist with training remediation efforts.
Administer the organizations vulnerability management program to identify and prioritize vulnerabilities. Will also work closely with the Information Technology team and product owners to remediate discovered vulnerabilities.
Administer the credit union's information security systems and tools.
Contribute to the organizations security policies, procedures, and processes.
Implements the information security strategy and objectives, as approved by the Chief Information Officer, including strategies to monitor and address current and emerging risks.
Participates on the Change Control Board ensuring systems changes are made with appropriate Confidentiality, Availability, Integrity and Cyber Security design and controls
Participates in industry collaborative efforts to monitor, share, and discuss emerging security threats. Maintains up-to-date knowledge of the security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors.
Contributes to the deployment, integration, and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprise's security documents specifically.
Champions security awareness and training programs.
Participate in security NIST based incident response process including event handling, process reviews and tabletop exercises. Supervise all investigations into problematic activity and provide on-going communication and reports significant security events to the board, supervisory committee, and management as appropriate.
Responds to and complies with audit, regulatory, and credit union policies and procedures.
Monitor and respond to security related alerts during non-business hours.
QUALIFICATION REQUIREMENTS:
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
KEYS TO SUCCESS: Knowledge Of:
Experience in enterprise security document creation.
Experience in enterprise security architecture design.
Experience in NIST based Incident Handling
Working technical knowledge of Firewalls, Intrusion Detection, Networking technologies ( LAN / WAN ), Data Loss Prevention (DLP), Network Access Controls (NAC), Security Incident and Event Management Systems (SIEM), Email Security.
Vulnerability Management Tools (Nessus, Nexpose, Etc)
Command Line Utilities such as Nmap, netcat, etc.
Experience with security in cloud environments (Azure preferred) required.
Microsoft Windows Server, Active Directory, DNS and DHCP, etc.
Microsoft Windows 10 and later
Microsoft Office and Visio 2016 and later
Ability To:
Create and maintain detailed technical documentation
Proven analytical and problem-solving abilities.
Good written, oral, and interpersonal communication skills.
Ability to conduct research into IT security issues and products as required.
Ability to present ideas in business-friendly and user-friendly language.
Highly self-motivated and directed.
Team-oriented and skilled in working within a collaborative environment.
EDUCATION, EXPERIENCE, & TRAINING GUIDELINES: Any equivalent combination of education and experience that provides the applicant with the knowledge, skills, and abilities, required to perform the job is acceptable. A typical way to obtain the knowledge and abilities would be: Education/Experience:
Bachelor's degree preferably in Information Systems or Computer Science
3-5 years of relevant Information Technology or Information Security experience.
License or Certification:
Security certifications such as Security+, CySA+, SSCP, etc.
Bondable
Acceptable Credit History
Compensation & Benefits:
Salary Range: $62,200 - $93,300
Health, Dental & Vision Benefits
Bonus opportunity
401(k) with match and profit sharing
Flexible Time Off
Engineer, Information Security and Risk
Cyber security analyst job in Augusta, ME
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Senior Security Engineer
Cyber security analyst job in Portland, ME
Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading employee benefits providers, we help millions of people gain affordable access to benefits that help them protect their families, their finances and their futures.
Are you an asker of questions, a solver of problems, and a challenger of the status quo? Our mission is to provide a differentiated customer experience and exceed the expectations people have of technology at any company - not just insurers.
We are seeking individuals to join our team of talented IT professionals who share never-ending passion and an unwavering focus on our customer experience. Team members comfortable working in an agile, fast-paced, and delivery-focused environment thrive in our environment where we value an entrepreneurial spirit and those who challenge the status-quo.
Unum is changing, and we're excited about what's next. Join us.
**General Summary:**
Senior Security Engineer
Join a team where your expertise shapes enterprise-wide security strategy. We're seeking a Senior Security Engineer to lead the design and execution of cutting-edge security architecture and defense frameworks that protect critical assets across our global organization.
In this role, you'll:
Influence corporate-level security decisions
Architect and operate a depth-in-defense security framework
Drive Identity & Access Management and privileged access solutions
Collaborate with IT and business leaders to integrate secure technologies
Partner with internal and external audit teams to ensure compliance
You'll be solving complex security challenges, building scalable solutions, and helping shape the future of cybersecurity at Unum.
**Job Specifications**
+ Bachelor's or advanced degree in computer science or related discipline preferred or comparable work experience.
+ 6+ years of related work experience in information technology engineering, support or consulting experience. Preferred if two of those years was spent in networking, application development, system security or IT Audit related positions.
Demonstrated ability and success in:
+ Working effectively in an ambiguous environment, functioning independently, and effectively working across geographical locations.
+ Detecting and analyzing hostile and other improper actions in such an environment.
+ Investigating and responding to security alerts, or new security threats with a sense of urgency.
+ Strong oral and written communications skills
+ Strong analytical and problem-solving skills and proactive thinking skills
+ Strong Knowledge of (at least one) UNIX, Windows, Mainframe, and/or Apple Operating System vulnerabilities and secure configuration settings
+ Strong Knowledge of threats and vulnerabilities associated with application and network security.
+ Strong Knowledge of the principles of implementation and operation and experience with security technology such as firewalls, multi-level security implementation, security assessment, monitoring and profiles tools (e.g. IDS/IPS, SEIM, AV, Qualys, etc.), and password crackers.
+ Mentor and support junior level security staff
+ Develops strong partnerships with client management, business clients, application developers, software vendors and other technical resources which includes, but not limited to, legal, compliance, and privacy
+ Maintain close relationships with the business to understand strategy, processes, plans and needs to help influence planning by advising on best practices, innovation/technology enablement opportunities
+ Communicates effectively with business partners, customers, brokers, third party suppliers/partners, and systems resources at all levels.
+ Delivers effective, high-quality solutions in a timely manner while balancing shifting priorities and, at times, accelerated timelines.
+ Facilitate matching business needs and services options by leveraging knowledge of business strategy, processes, and market offerings to assist in evaluating the most appropriate products and services to meet its requirements
+ Provide an overall perspective or point of clarification to partner on operational aspects of a service. Has a good overall understanding of infrastructure and application portfolios to provide guidance to service partner provider.
**Technical Skills for Identity & Access Management**
+ Experience in implementing and supporting global Identity and Access Management solutions (Identi-ty Management, Access Management, Virtual Directory, SSO)
+ Knowledge and experience on Oracle OAM ,ForgeRock OpenAM and/or other Web Access Manage-ment systems (like CA SiteMinder), and API integration
+ Experience on ForgeRock OpenIDM, Oracle OIM and/or other Identity management systems
+ Experience on SSO (Single-Sign-On) technologies including Cloud, SAML and federation of identities (IdP initiated and SP initiated), multi-factor authentication
+ Experience on CyberArk, Enterprise Certificate Management and Enterprise Token Services technol-ogies.
+ Experience with LDAP/Directory Services including Active Directory and Radiant Logic
+ Experience with RACF, DB2, SQL
+ Experience with Azure, O365 and AWS
+ Familiar with Regulations, including, GLPA, HIPAA, GDPR, CCPA, and other Cyber Security Regulatory compliance requirements and related programs
+ ISO 27001/27002 the NIST Cyber Security Framework
+ CISSP, CISM, SANS, and other security related certifications a plus
**Technical Skills for Cyber Security**
**Excellent working knowledge of one or more of the following security areas desired:**
+ Operating System Security (Windows, Apple, AIX, Linux, zOS)
+ Internet Technologies (NNTP, Proxy, HTTP, HTTPS, HTLM, SSL, X.509)
+ TCP/IP and networking (LAN/WAN/Wireless)
+ Intrusion Detection and Prevention products
+ Incident Response Management
+ Public Key Infrastructure technologies including encryption, Kerberos, certification authorities
+ Application and Network Security Assessments methodologies and tools
+ General Access Control Security (Active Directory, Linux, and Mainframe security)
+ IPSEC and remote access technologies
+ End Point Security products (i.e. Anti-virus, Malware, Hard Drive encryption)
+ Ethical Hacking, Incident Response and case management.
+ Forensic tools such as Oxygen, encase, Atola Forensic equipment
+ Experience in implementing and operating security technology such as firewalls, multi-level security implementation, security assessment scanners, and security monitoring tools (e.g. IDS/IPS, SEIM, AV, Qualys, etc.)
+ Experience in application and network security assessment methodologies, tools, and techniques
+ Experience in implementing and operating global end-point security products (anti-virus, anti-malware, hard drive encryption, DLP, etc.)
+ Security Coding Standards (e.g. OWASP) and Secure Software Development Lifecycles.SOX and HIPPA compliance requirements and related programs
**Familiar with Regulations, including, GLPA, HIPAA, GDPR, CCPA, and other Cyber Security Regulatory compliance requirements and related programs**
+ ISO 27001/27002 the NIST Cyber Security Framework
+ CISSP, CISM, SANS, and other security related certifications a plus
**Principal Duties and Responsibilities**
Performing cyber security monitoring and security incident response, including:
+ Monitors for external threats and indicators of compromise
+ Responds to and leads incident response for threat alerts
+ Monitors for inappropriate utilization of computer resources
+ Assesses reported security threats and weaknesses.
+ Provides level II support for Operations
+ Participates in 24/7 on-call rotation.
+ Participates in ethical hacking red team/blue team exercises.
+ Performs day-to-day operations and technical support, including system upgrades, on the Unum security technology portfolio.
+ Consults on the security framework to IT/Business project teams, and in day-to-day business operations.
+ Consults with development and business partners on integration and security configuration for new or existing software or solutions
+ Participates in the evaluation of vendor's product strategies, technology roadmaps and software enhancements, and consults on the inclusion and rollout these recommendations in the corporate security roadmap.
+ Develops and consults on sound security policies and procedures.
+ Assists with application and network security assessments, as assigned.
+ Maintains expertise to function as subject matter expert in one or more security disciplines.
+ Develops strong partnerships with business clients, application developers, software vendors and other technical resources.
+ Performs other duties as assigned.
\#LI-AD1
\#LI-MULTI
~IN1
Our company is built on helping individuals and families, and this starts with our employees. We want employees to maintain a positive balance, which is why we provide access to the benefits and resources they need to invest in themselves. From our onsite fitness facilities and generous paid time off to employee professional development programs, we are committed to helping employees live and work their best - both inside and outside the office.
Unum is an equal opportunity employer, considering all qualified applicants and employees for hiring, placement, and advancement, without regard to a person's race, color, religion, national origin, age, genetic information, military status, gender, sexual orientation, gender identity or expression, disability, or protected veteran status.
The base salary range for applicants for this position is listed below. Unless actual salary is indicated above in the job description, actual pay will be based on skill, geographical location and experience.
$98,340.00-$201,900.00
Additionally, Unum offers a portfolio of benefits and rewards that are competitive and comprehensive including healthcare benefits (health, vision, dental), insurance benefits (short & long-term disability), performance-based incentive plans, paid time off, and a 401(k) retirement plan with an employer match up to 5% and an additional 4.5% contribution whether you contribute to the plan or not. All benefits are subject to the terms and conditions of individual Plans.
Company:
Unum
Information Security Specialist
Cyber security analyst job in Biddeford, ME
Fiber Materials Inc. | solutions for the most extreme places in the universe
FMI's manufacturing facility has been a leading solutions provider of high temperature materials and composites for more than 50 years, serving the Department of Defense and NASA. The focus in Maine is on multidirectional reinforced Carbon/Carbon (C/C) and Ceramic Matrix Composites (CMCs) that enable high-temperature components such as: thermal protection systems, re-entry vehicle nose tips as well as rocket motor throats and nozzles.
Our materials are being used on ground-breaking space initiatives such as the Orion Multi-Purpose Crew Vehicle and the heat shield for NASA's Mars 2020 mission, important missile programs, airfoils in commercial and military jet engines, and as lightweight armor for U.S. military ground vehicles.
Your role: FMI is seeking an Information Security Specialist to support a small, stand-alone classified information system(s) in support of a U.S. Government contract(s). As the Information Security Specialist, you will encompass the responsibilities of an Information System Security Officer (ISSO) and Information System Security Engineer (ISSE). To be successful, you will be responsible for compliance, operations, and technical security engineering of the classified environment. Please keep in mind this role is NOT remote.
Job Responsibilities:
Operational Security (ISSO Duties):
Perform continuous monitoring and day-to-day security administration of the system.
Manage user access, account creation, and audit log reviews.
Conduct security training and briefings for system users.
Document and report security incidents, vulnerabilities, and mitigation actions.
Engineering & Technical Security (ISSE Duties):
Design, implement, and maintain technical security controls for the system.
Evaluate, recommend, and integrate security solutions for classified IT environments.
What we need from you:
Associate's degree in Cybersecurity, Information Technology, or related field; equivalent experience considered
1-3 years of experience in information system security
Active or ability to obtain and maintain an U.S. Government security clearance (Secret or above)
Effective time management
Technical proficiency
Detail oriented
Strong listening skills
Customer focus
Self-motivated
Strong interpersonal skills
Ability to work independently and as part of a team in a fast-paced environment
Knowledge of NIST and or CMMC cybersecurity frameworks and standards
Understanding in cyber security assessment tools and methodologies
Understanding network and system security, intrusion detection and prevention, and incident response
Excellent analytical and problem-solving skills
Commitment to continuous learning and staying current with industry developments
Excellent communication and documentation skills
What you'll get from us:
16 ETO days
12 paid holidays (including Winter Closure!)
Medical / Dental / Vision
401k Company Match
Tuition Reimbursement
$1000 Sign-On Bonus
Security Technical Engineer
Cyber security analyst job in Auburn, ME
Connectivity Point is seeking a highly skilled Security Technical Engineer to serve as the critical link between our field technicians and design team. This role ensures that purchased systems are installed accurately, efficiently, and in alignment with customer expectations-delivering exceptional customer service while supporting project profitability.
JOB RESPONSIBILITIES:
Review project documentation to gain thorough understanding and check for accuracy.
Create and maintain system configuration software.
Work with design team to create and update project installation documents using Bluebeam, Visio, Excel, and/or CAD as needed.
Coordinate on-site implementation process for security installations and service requests.
Travel as necessary. This may include overnight travel out of state.
Work with the security design engineers both presale and post-sale.
Oversee implementation of security solutions to ensure that equipment is installed per industry standards and best practices. This may require working in the field along with security technicians to accomplish the installation objective, timeline, and goal of customer satisfaction.
Report any out of scope work required to allow for change order generation as needed.
Participate in customer construction status calls/meetings as required.
Provide detailed project field status updates to security PM and Division Manager.
Provide end user training on newly installed systems.
Strengthen customer relationships by being responsible, accurate, helpful, and trustworthy.
Proactively look for opportunities to provide more value-add services to customers.
Assist with maintaining customer profiles and standards documents to ensure accuracy.
Provide remote technical support for out-of-market technicians in the field as needed.
Assist with ensuring customer profile documents are maintained and updated.
Stay up to date on security technologies and installation practices.
Work with the rest of the security team to evaluate new products and services.
Support existing customers remotely or in person as needed.
Perform other assigned duties as requested.
SKILLS/EXPERIENCE/TRAINING:
High School Diploma or General Education Degree (GED)
and
four to five years minimum industry experience in security system sales, management, service, or installation;
or
the equivalent combination of education and experience
Solid security system industry experience including sales, service, project management and/or installation of security systems, access control, and CCTV.
Kantech, DSC, and Exacqvision software experience.
Ability to follow blueprints, notes and specifications to meets the job requirements.
Basic written and verbal communications skills.
Proven ability to follow instructions and focused attention to detail.
Experience with construction and adherence to large and small project scheduling.
Enjoys hands-on problem solving in a fast paced work environment.
Ability to work well both independently and as part of a professional team.
Excellent time management, planning and forward-thinking skills.
Self-motivated with a positive and professional attitude.
Excellent communication and listening skills.
Strong teambuilding, customer service, and interpersonal skills.
Must possess good decision-making skills, be very organized and detail oriented.
Strong computer skills using Microsoft Office suite (i.e., Word, Excel, Outlook) required.
T
his job description is not intended to be and should not be construed as an all-inclusive list of all the responsibilities, skills or working conditions associated with the position. While it is intended to accurately reflect the position activities and requirements, the Company reserves the right to modify, add or remove duties and assign other duties as necessary.
Security Engineer II
Cyber security analyst job in Augusta, ME
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
Facility Security Officer & Information Systems Security Officer (Onsite)
Cyber security analyst job in North Berwick, ME
Country: United States of America Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
Pratt & Whitney is working to once again transform the future of flight-designing, building and servicing engines unlike any the world has ever seen. And because transformation begins from within, we're seeking the people to drive it. So, calling all curious.
Come ready to explore and you'll find a place where your talent takes flight-beyond the borders of title, a country or your comfort zone. Bring your passion and commitment and we'll welcome you into a tight-knit team that takes our mission personally. Channel your drive to make a difference into shaping an organization and an industry that's evolving fast to the future.
At Pratt & Whitney, the difference you make is on display every day. Just look up. Are you ready to go beyond?
What You Will Do:
Support Pratt & Whitney's Government Security Compliance team as the Facility Security Officer (FSO) / Information Systems Security Officer (ISSO) for the North Berwick, ME facility. This critical leadership role ensures compliance with the National Industrial Security Program (NISP), NISP Operating Manual (NISPOM), Defense Counterintelligence and Security Agency (DCSA) standards, and other applicable government regulations. The FSO/ISSO will oversee security operations for a cleared facility, ensuring the protection of classified information, systems, and personnel while fostering a culture of security excellence.
Key Responsibilities:
The FSO/ISSO will report directly to the Pratt & Whitney Associate Director, Corporate Facility Security Officer, and will be responsible for the following:
* Leadership and Compliance:
* Lead the formulation, establishment, and execution of local collateral security policies, procedures, and protocols to ensure compliance with NISP, DAAPM, ICDs, and other governing regulations.
* Serve as the primary interface with internal and external stakeholders, including government agencies, subcontractors, and P&W leadership.
* Security Program Oversight:
* Manage the facility's classified holdings, maintain CAGE code facility clearance, and process changes in conditions.
* Conduct and oversee security program reviews, including DCSA inspections, self-inspections, and formal audits.
* Investigate and report security incidents/violations in collaboration with the Corporate FSO and Cognizant Security Authority.
* Insider Threat Program:
* Serve as a key member of the Insider Threat Management Council and liaise with the Corporate Insider Threat Program Senior Official (ITPSO).
* Provide North Berwick leadership and guidance on Insider Threat Program activities and initiatives.
* Information Systems Security:
* Collaborate with the Information Systems Security Manager (ISSM) to ensure the operational security posture of information systems.
* Manage user account requests, monitor user activity, and analyze audit records to identify and address anomalies.
* Support incident response activities in the event of security violations or breaches.
* Stakeholder Engagement:
* Foster effective communication and collaboration with government customers, associated contractors, subcontractors, P&W teams, and North Berwick senior leadership.
* Represent the GSC team as a project manager on select core projects and initiatives.
* Training and Development:
* Attend technical and security training to maintain expertise in security management, operating systems, and networking.
* Provide guidance and training to facility staff on security responsibilities and best practices.
* Serve as the Government Security Compliance Data Transfer Agent program focal:
* Provide leadership and oversight for the Data Transfer Agent (DTA) program, ensuring compliance with regulatory and customer requirements.
* Serve as the primary point of contact for customers regarding DTA program compliance and functionality.
* Collaborate with internal stakeholders to maintain and enhance program effectiveness and security.
* Develop and implement best practices, policies, and procedures for secure and efficient data transfer.
* Monitor program performance and drive continuous improvement to meet evolving security and customer needs.
* Other Duties:
* Perform additional tasks as directed by the Corporate Facility Security Officer.
* Coordinate and support the North Berwick Security Staff as directed.
Qualifications You Must Have:
* Advanced degree and 5+ years of experience in industrial security, cybersecurity, government compliance, or government regulated industry; OR Bachelor's degree and 8+ years of relevant industry experience; OR an Associate's degree and 10+ years of relevant industry experience. We will also consider high school diploma, technical or military training, or recognized industry certifications in combination with 12+ years or relevant industry experience.
* 1+ Year of hands-on experience supporting administering and/or maintaining computing systems, networks and/or software
* Active U.S. government issued Secret level security clearance required plus ability to obtain and maintain a Top-Secret level security clearance. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
* Must be able to obtain industry recognized Cybersecurity certification within 12 months of hire (i.e. Security + CE)
Qualifications You Prefer:
* Strong understanding of the NISPOM, DAAPM, ICDs, and other security regulations.
* Experience with DISS, NISS, SIMS, and other DCSA related databases.
* Proficiency in managing classified information systems and working with DCSA inspections.
* Cybersecurity certification (i.e. Security + CE).
* Facility Security Officer (FSO) certification.
* Information Systems Security Officer (ISSO) certification.
* Proven leadership experience, preferably within a defense, aerospace, or government environment.
* Experience with Insider Threat Programs and related compliance activities.
* Strong project management skills and the ability to manage multiple priorities effectively.
What is my Role Type?
In addition to transforming the future of flight, we are also transforming how and where we work. We've introduced role types to help you understand how you will operate in our blended work environment. This role is:
* Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance workers, as they are essential to the development of our engines.
Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility.
Learn more & apply today!
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 101,000 USD - 203,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplyFacility Security Officer & Information Systems Security Officer (Onsite)
Cyber security analyst job in North Berwick, ME
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
Pratt & Whitney is working to once again transform the future of flight-designing, building and servicing engines unlike any the world has ever seen. And because transformation begins from within, we're seeking the people to drive it. So, calling all curious.
Come ready to explore and you'll find a place where your talent takes flight-beyond the borders of title, a country or your comfort zone. Bring your passion and commitment and we'll welcome you into a tight-knit team that takes our mission personally. Channel your drive to make a difference into shaping an organization and an industry that's evolving fast to the future.
At Pratt & Whitney, the difference you make is on display every day. Just look up. Are you ready to go beyond?
What You Will Do:
Support Pratt & Whitney's Government Security Compliance team as the Facility Security Officer (FSO) / Information Systems Security Officer (ISSO) for the North Berwick, ME facility. This critical leadership role ensures compliance with the National Industrial Security Program (NISP), NISP Operating Manual (NISPOM), Defense Counterintelligence and Security Agency (DCSA) standards, and other applicable government regulations. The FSO/ISSO will oversee security operations for a cleared facility, ensuring the protection of classified information, systems, and personnel while fostering a culture of security excellence.
Key Responsibilities:
The FSO/ISSO will report directly to the Pratt & Whitney Associate Director, Corporate Facility Security Officer, and will be responsible for the following:
Leadership and Compliance:
Lead the formulation, establishment, and execution of local collateral security policies, procedures, and protocols to ensure compliance with NISP, DAAPM, ICDs, and other governing regulations.
Serve as the primary interface with internal and external stakeholders, including government agencies, subcontractors, and P&W leadership.
Security Program Oversight:
Manage the facility's classified holdings, maintain CAGE code facility clearance, and process changes in conditions.
Conduct and oversee security program reviews, including DCSA inspections, self-inspections, and formal audits.
Investigate and report security incidents/violations in collaboration with the Corporate FSO and Cognizant Security Authority.
Insider Threat Program:
Serve as a key member of the Insider Threat Management Council and liaise with the Corporate Insider Threat Program Senior Official (ITPSO).
Provide North Berwick leadership and guidance on Insider Threat Program activities and initiatives.
Information Systems Security:
Collaborate with the Information Systems Security Manager (ISSM) to ensure the operational security posture of information systems.
Manage user account requests, monitor user activity, and analyze audit records to identify and address anomalies.
Support incident response activities in the event of security violations or breaches.
Stakeholder Engagement:
Foster effective communication and collaboration with government customers, associated contractors, subcontractors, P&W teams, and North Berwick senior leadership.
Represent the GSC team as a project manager on select core projects and initiatives.
Training and Development:
Attend technical and security training to maintain expertise in security management, operating systems, and networking.
Provide guidance and training to facility staff on security responsibilities and best practices.
Serve as the Government Security Compliance Data Transfer Agent program focal:
Provide leadership and oversight for the Data Transfer Agent (DTA) program, ensuring compliance with regulatory and customer requirements.
Serve as the primary point of contact for customers regarding DTA program compliance and functionality.
Collaborate with internal stakeholders to maintain and enhance program effectiveness and security.
Develop and implement best practices, policies, and procedures for secure and efficient data transfer.
Monitor program performance and drive continuous improvement to meet evolving security and customer needs.
Other Duties:
Perform additional tasks as directed by the Corporate Facility Security Officer.
Coordinate and support the North Berwick Security Staff as directed.
Qualifications You Must Have:
Advanced degree and 5+ years of experience in industrial security, cybersecurity, government compliance, or government regulated industry; OR Bachelor's degree and 8+ years of relevant industry experience; OR an Associate's degree and 10+ years of relevant industry experience. We will also consider high school diploma, technical or military training, or recognized industry certifications in combination with 12+ years or relevant industry experience.
1+ Year of hands-on experience supporting administering and/or maintaining computing systems, networks and/or software
Active U.S. government issued Secret level security clearance required plus ability to obtain and maintain a Top-Secret level security clearance. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
Must be able to obtain industry recognized Cybersecurity certification within 12 months of hire (i.e. Security + CE)
Qualifications You Prefer:
Strong understanding of the NISPOM, DAAPM, ICDs, and other security regulations.
Experience with DISS, NISS, SIMS, and other DCSA related databases.
Proficiency in managing classified information systems and working with DCSA inspections.
Cybersecurity certification (i.e. Security + CE).
Facility Security Officer (FSO) certification.
Information Systems Security Officer (ISSO) certification.
Proven leadership experience, preferably within a defense, aerospace, or government environment.
Experience with Insider Threat Programs and related compliance activities.
Strong project management skills and the ability to manage multiple priorities effectively.
What is my Role Type?
In addition to transforming the future of flight, we are also transforming how and where we work. We've introduced role types to help you understand how you will operate in our blended work environment. This role is:
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance workers, as they are essential to the development of our engines.
Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility.
Learn more & apply today!
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 101,000 USD - 203,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplyCyber Security Solutions Engineer - GES
Cyber security analyst job in Augusta, ME
States: MA, NH, RI, ME, CT, VT, NJ, NY is home office based. Meet the Team You will provide guidance and assist Security Sellers and Account teams within the territory in a pre-sales technical role, showcasing Cisco security product solutions, setting up demonstrations, explaining features and benefits to customers, and designing and configuring products to address specific customer security needs. You will form relationships with our customer's key decision-makers, positioning Cisco security solutions aligned accurately to their requirements.
You will be a part of an outstanding technical pre-sales team in our Global Security Sales Organization (GSSO), responsible for driving the success of Cisco's Security Portfolio and focusing on protecting Customer Application Environments no matter where they live (on-prem / any cloud).
Our mission is simple: democratize security by making it easy and effective for everyone. We're transforming security from the ground up by solving the world's most pressing geopolitical challenge - safe, secure information access. We engineer our business to enable our customers to easily address their ever-evolving security challenges.
We believe that impactful work is rewarding work and that our team is at its best when everyone feels empowered to bring their whole self to work. We learn together by hiring for cultural contribution, not cultural fit, and recognize that diversity in background and thought are essential to building high-impact teams.
We invest in growth and learning opportunities and encourage our people to never stop learning. We foster collaboration and believe in being recognized (and rewarded!) for hard work. We champion a healthy work-life balance. We're kinder than necessary.
Together we build for the future by designing simple solutions for complex problems. And that's why we're the most loved and trusted name in security.
Your Impact
As an advisor to the customer, you'll be working with technology experts to craft architectures and configure products to meet customer-specific needs, are prepared to lead all technical aspects of pre-sales activities, and position security solutions effectively against competing offerings. You are an aggressive starter, self-starter with the ability to build executive relationships, develop and execute sales strategies and tactics that improve Cisco's opportunity with a customer environment, position and promote the partner and customer value proposition for Cisco security architecture, articulate Cisco's product and business strategies, and create the demand that makes deals happen! You will:
* Serve as the subject matter expert in Cisco security solutions
* Provide guidance and assist account teams within the territory in building solutions to address specific customer security needs
* Understand business requirements for a customer base and be able to translate them into technical requirements
* Understand and articulate Cisco's architecture and services within security technologies
* Create, present, and document technical solutions
* Perform in-depth and high-level technical presentations for customers partners and prospects
* Drive identified major account opportunities (i.e. technical consulting, upper-level management presentations, and Cisco technology solutions) while allowing local account teams to maintain long-term ownership
Who You Are
You are passionate about the customer experience and excited about new technology. You are a true teammate and love to learn. Being a self-starter, our SEs act as an industry domain authority, and strive to help Cisco make customers for life.
Minimum Qualifications
* Minimum of 4 years of pre-sales experience
* Hands on experience with one or more of these Cisco Security Products (or their competitive equivalent):
********************************************************************
* Experience with whiteboard discussions that transform customer requirements into security solutions
Preferred Qualifications
* History of successful quota achievement.
* Ability to demo / POV any of these Cisco Security products (the more the better): ********************************************************************
* Knowledge of public clouds AWS, Azure, GCP, and OCI.
* Experience with incident response a plus
* Experience with administering security for a company (e.g. purchased and deployed Cisco security products as a customer) is a plus.
* Solid presentation and interpersonal skills.
* Highly motivated self-starter who does not need day-to-day management
* Experience with APIs and scripting languages
Why Cisco?
At Cisco, we're revolutionizing how data and infrastructure connect and protect organizations in the AI era - and beyond. We've been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you'll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Message to applicants applying to work in the U.S. and/or Canada:
The starting salary range posted for this position is $217,200.00 to $274,100.00 and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation*, equity, or benefits.
Individual pay is determined by the candidate's hiring location, market conditions, job-related skillset, experience, qualifications, education, certifications, and/or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.
U.S. employees are offered benefits, subject to Cisco's plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short and long-term disability coverage, and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.
U.S. employees are eligible for paid time away as described below, subject to Cisco's policies:
* 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees
* 1 paid day off for employee's birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness determined by Cisco
* Non-exempt employees receive 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees
* Exempt employees participate in Cisco's flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use (subject to availability and some business limitations)
* 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours of unused sick time carried forward from one calendar year to the next
* Additional paid time away may be requested to deal with critical or emergency issues for family members
* Optional 10 paid days per full calendar year to volunteer
For non-sales roles, employees are also eligible to earn annual bonuses subject to Cisco's policies.
Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components, subject to the applicable Cisco plan. For quota-based incentive pay, Cisco typically pays as follows:
* .75% of incentive target for each 1% of revenue attainment up to 50% of quota;
* 1.5% of incentive target for each 1% of attainment between 50% and 75%;
* 1% of incentive target for each 1% of attainment between 75% and 100%; and
* Once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.
For non-quota-based sales performance elements such as strategic sales objectives, Cisco may pay 0% up to 125% of target. Cisco sales plans do not have a minimum threshold of performance for sales incentive compensation to be paid.
The applicable full salary ranges for this position, by specific state, are listed below:
New York City Metro Area:
$223,000.00 - $330,300.00
Non-Metro New York state & Washington state:
$217,200.00 - $315,300.00
* For quota-based sales roles on Cisco's sales plan, the ranges provided in this posting include base pay and sales target incentive compensation combined.
Employees in Illinois, whether exempt or non-exempt, will participate in a unique time off program to meet local requirements.
Detection & Response Security Engineer, Threat Intelligence
Cyber security analyst job in Augusta, ME
Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a broad set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Meta's security posture. You will help the team establish, lead and execute multi-year roadmaps that improve research efficiency and quality across the team, and drive improvements to stakeholder management across a broad range of intelligence requirements.
**Required Skills:**
Detection & Response Security Engineer, Threat Intelligence Responsibilities:
1. Influence and align the team's vision and strategy. Collaboratively prioritize and deliver specific multi-year roadmaps and projects
2. Build, cultivate, and maintain impactful relationships with intelligence stakeholders to identify and facilitate solutions to increase the impact of the team's work
3. Refine operational metrics, key performance indicators, and service level objectives to measure Intelligence research and services
4. Lead cross-functional projects to improve the security posture of Meta's infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
5. Track threat clusters posing threats to Meta's infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
6. Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
7. Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
8. Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
**Minimum Qualifications:**
Minimum Qualifications:
9. 8+ years threat intelligence experience
10. B.S. or M.S. in Computer Science or related field, or equivalent experience
11. Be a technical and process subject matter expert regarding Security Operations and Threat Intelligence services
12. Experience developing and delivering information on threats, incidents and program status for leadership
13. Expertise with campaign tracking techniques and converting tracking results to long term countermeasures
14. Expertise with threat modeling frameworks, such as Diamond Model or/and MITRE ATT&CK framework
15. Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
16. Proven track record of managing and executing on short term and long term projects
17. Ability to work with a team spanning multiple locations/time zones
18. Ability to prioritize and execute tasks with minimal direction or oversight
19. Ability to think critically and qualify assessments with solid communications skills
20. Coding or scripting experience in one or more scripting languages such as Python or PHP
**Preferred Qualifications:**
Preferred Qualifications:
21. Experience recruiting, building, and leading technical teams, including performance management
22. Experience close collaborating with incident responders on incident investigations
23. Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
24. Familiarity with malware analysis or network traffic analysis
25. Familiarity with nation-state, sophisticated criminal, or supply chain threats
26. Familiarity with file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort
27. Experience in one or more query languages such as SQL
28. Experience authoring production code for threat intelligence tooling
29. Experience conducting large scale data analysis
30. Experience working across the broader security community
**Public Compensation:**
$177,000/year to $251,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Engineer, Information Security and Risk
Cyber security analyst job in Augusta, ME
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Senior Security Engineer
Cyber security analyst job in Portland, ME
Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading employee benefits providers, we help millions of people gain affordable access to benefits that help them protect their families, their finances and their futures.
Are you an asker of questions, a solver of problems, and a challenger of the status quo? Our mission is to provide a differentiated customer experience and exceed the expectations people have of technology at any company - not just insurers.
We are seeking individuals to join our team of talented IT professionals who share never-ending passion and an unwavering focus on our customer experience. Team members comfortable working in an agile, fast-paced, and delivery-focused environment thrive in our environment where we value an entrepreneurial spirit and those who challenge the status-quo.
Unum is changing, and we're excited about what's next. Join us.
General Summary:
Senior Security Engineer
Join a team where your expertise shapes enterprise-wide security strategy. We're seeking a Senior Security Engineer to lead the design and execution of cutting-edge security architecture and defense frameworks that protect critical assets across our global organization.
In this role, you'll:
Influence corporate-level security decisions
Architect and operate a depth-in-defense security framework
Drive Identity & Access Management and privileged access solutions
Collaborate with IT and business leaders to integrate secure technologies
Partner with internal and external audit teams to ensure compliance
You'll be solving complex security challenges, building scalable solutions, and helping shape the future of cybersecurity at Unum.
Job Specifications
* Bachelor's or advanced degree in computer science or related discipline preferred or comparable work experience.
* 6+ years of related work experience in information technology engineering, support or consulting experience. Preferred if two of those years was spent in networking, application development, system security or IT Audit related positions.
Demonstrated ability and success in:
* Working effectively in an ambiguous environment, functioning independently, and effectively working across geographical locations.
* Detecting and analyzing hostile and other improper actions in such an environment.
* Investigating and responding to security alerts, or new security threats with a sense of urgency.
* Strong oral and written communications skills
* Strong analytical and problem-solving skills and proactive thinking skills
* Strong Knowledge of (at least one) UNIX, Windows, Mainframe, and/or Apple Operating System vulnerabilities and secure configuration settings
* Strong Knowledge of threats and vulnerabilities associated with application and network security.
* Strong Knowledge of the principles of implementation and operation and experience with security technology such as firewalls, multi-level security implementation, security assessment, monitoring and profiles tools (e.g. IDS/IPS, SEIM, AV, Qualys, etc.), and password crackers.
* Mentor and support junior level security staff
* Develops strong partnerships with client management, business clients, application developers, software vendors and other technical resources which includes, but not limited to, legal, compliance, and privacy
* Maintain close relationships with the business to understand strategy, processes, plans and needs to help influence planning by advising on best practices, innovation/technology enablement opportunities
* Communicates effectively with business partners, customers, brokers, third party suppliers/partners, and systems resources at all levels.
* Delivers effective, high-quality solutions in a timely manner while balancing shifting priorities and, at times, accelerated timelines.
* Facilitate matching business needs and services options by leveraging knowledge of business strategy, processes, and market offerings to assist in evaluating the most appropriate products and services to meet its requirements
* Provide an overall perspective or point of clarification to partner on operational aspects of a service. Has a good overall understanding of infrastructure and application portfolios to provide guidance to service partner provider.
Technical Skills for Identity & Access Management
* Experience in implementing and supporting global Identity and Access Management solutions (Identi-ty Management, Access Management, Virtual Directory, SSO)
* Knowledge and experience on Oracle OAM ,ForgeRock OpenAM and/or other Web Access Manage-ment systems (like CA SiteMinder), and API integration
* Experience on ForgeRock OpenIDM, Oracle OIM and/or other Identity management systems
* Experience on SSO (Single-Sign-On) technologies including Cloud, SAML and federation of identities (IdP initiated and SP initiated), multi-factor authentication
* Experience on CyberArk, Enterprise Certificate Management and Enterprise Token Services technol-ogies.
* Experience with LDAP/Directory Services including Active Directory and Radiant Logic
* Experience with RACF, DB2, SQL
* Experience with Azure, O365 and AWS
* Familiar with Regulations, including, GLPA, HIPAA, GDPR, CCPA, and other Cyber Security Regulatory compliance requirements and related programs
* ISO 27001/27002 the NIST Cyber Security Framework
* CISSP, CISM, SANS, and other security related certifications a plus
Technical Skills for Cyber Security
Excellent working knowledge of one or more of the following security areas desired:
* Operating System Security (Windows, Apple, AIX, Linux, zOS)
* Internet Technologies (NNTP, Proxy, HTTP, HTTPS, HTLM, SSL, X.509)
* TCP/IP and networking (LAN/WAN/Wireless)
* Intrusion Detection and Prevention products
* Incident Response Management
* Public Key Infrastructure technologies including encryption, Kerberos, certification authorities
* Application and Network Security Assessments methodologies and tools
* General Access Control Security (Active Directory, Linux, and Mainframe security)
* IPSEC and remote access technologies
* End Point Security products (i.e. Anti-virus, Malware, Hard Drive encryption)
* Ethical Hacking, Incident Response and case management.
* Forensic tools such as Oxygen, encase, Atola Forensic equipment
* Experience in implementing and operating security technology such as firewalls, multi-level security implementation, security assessment scanners, and security monitoring tools (e.g. IDS/IPS, SEIM, AV, Qualys, etc.)
* Experience in application and network security assessment methodologies, tools, and techniques
* Experience in implementing and operating global end-point security products (anti-virus, anti-malware, hard drive encryption, DLP, etc.)
* Security Coding Standards (e.g. OWASP) and Secure Software Development Lifecycles.SOX and HIPPA compliance requirements and related programs
Familiar with Regulations, including, GLPA, HIPAA, GDPR, CCPA, and other Cyber Security Regulatory compliance requirements and related programs
* ISO 27001/27002 the NIST Cyber Security Framework
* CISSP, CISM, SANS, and other security related certifications a plus
Principal Duties and Responsibilities
Performing cyber security monitoring and security incident response, including:
* Monitors for external threats and indicators of compromise
* Responds to and leads incident response for threat alerts
* Monitors for inappropriate utilization of computer resources
* Assesses reported security threats and weaknesses.
* Provides level II support for Operations
* Participates in 24/7 on-call rotation.
* Participates in ethical hacking red team/blue team exercises.
* Performs day-to-day operations and technical support, including system upgrades, on the Unum security technology portfolio.
* Consults on the security framework to IT/Business project teams, and in day-to-day business operations.
* Consults with development and business partners on integration and security configuration for new or existing software or solutions
* Participates in the evaluation of vendor's product strategies, technology roadmaps and software enhancements, and consults on the inclusion and rollout these recommendations in the corporate security roadmap.
* Develops and consults on sound security policies and procedures.
* Assists with application and network security assessments, as assigned.
* Maintains expertise to function as subject matter expert in one or more security disciplines.
* Develops strong partnerships with business clients, application developers, software vendors and other technical resources.
* Performs other duties as assigned.
#LI-AD1
#LI-MULTI
~IN1
Our company is built on helping individuals and families, and this starts with our employees. We want employees to maintain a positive balance, which is why we provide access to the benefits and resources they need to invest in themselves. From our onsite fitness facilities and generous paid time off to employee professional development programs, we are committed to helping employees live and work their best - both inside and outside the office.
Unum is an equal opportunity employer, considering all qualified applicants and employees for hiring, placement, and advancement, without regard to a person's race, color, religion, national origin, age, genetic information, military status, gender, sexual orientation, gender identity or expression, disability, or protected veteran status.
The base salary range for applicants for this position is listed below. Unless actual salary is indicated above in the job description, actual pay will be based on skill, geographical location and experience.
$98,340.00-$201,900.00
Additionally, Unum offers a portfolio of benefits and rewards that are competitive and comprehensive including healthcare benefits (health, vision, dental), insurance benefits (short & long-term disability), performance-based incentive plans, paid time off, and a 401(k) retirement plan with an employer match up to 5% and an additional 4.5% contribution whether you contribute to the plan or not. All benefits are subject to the terms and conditions of individual Plans.
Company:
Unum
Auto-ApplyOffensive Security Engineer, Assessments (Web3)
Cyber security analyst job in Augusta, ME
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior security engineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Facility Security Officer & Information Systems Security Officer (Onsite)
Cyber security analyst job in North Berwick, ME
**Country:** United States of America ** Onsite **U.S. Citizen, U.S. Person, or Immigration Status Requirements:** Active and transferable U.S. government issued security clearance is required prior to start date.
U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
**Security Clearance:**
DoD Clearance: Secret
Pratt & Whitney is working to once again transform the future of flight-designing, building and servicing engines unlike any the world has ever seen. And because transformation begins from within, we're seeking the people to drive it. **So, calling all curious.**
Come ready to explore and you'll find a place where your talent takes flight-beyond the borders of title, a country or your comfort zone. Bring your passion and commitment and we'll welcome you into a tight-knit team that takes our mission personally. Channel your drive to make a difference into shaping an organization and an industry that's evolving fast to the future.
At Pratt & Whitney, the difference you make is on display every day. Just look up. **Are you ready to go beyond?**
**What You Will Do:**
Support Pratt & Whitney's Government Security Compliance team as the **Facility Security Officer (FSO) / Information Systems Security Officer (ISSO)** for the North Berwick, ME facility. This critical leadership role ensures compliance with the National Industrial Security Program (NISP), NISP Operating Manual (NISPOM), Defense Counterintelligence and Security Agency (DCSA) standards, and other applicable government regulations. The FSO/ISSO will oversee security operations for a cleared facility, ensuring the protection of classified information, systems, and personnel while fostering a culture of security excellence.
**Key Responsibilities:**
The FSO/ISSO will report directly to the Pratt & Whitney Associate Director, Corporate Facility Security Officer, and will be responsible for the following:
+ Leadership and Compliance:
+ Lead the formulation, establishment, and execution of local collateral security policies, procedures, and protocols to ensure compliance with NISP, DAAPM, ICDs, and other governing regulations.
+ Serve as the primary interface with internal and external stakeholders, including government agencies, subcontractors, and P&W leadership.
+ Security Program Oversight:
+ Manage the facility's classified holdings, maintain CAGE code facility clearance, and process changes in conditions.
+ Conduct and oversee security program reviews, including DCSA inspections, self-inspections, and formal audits.
+ Investigate and report security incidents/violations in collaboration with the Corporate FSO and Cognizant Security Authority.
+ Insider Threat Program:
+ Serve as a key member of the Insider Threat Management Council and liaise with the Corporate Insider Threat Program Senior Official (ITPSO).
+ Provide North Berwick leadership and guidance on Insider Threat Program activities and initiatives.
+ Information Systems Security:
+ Collaborate with the Information Systems Security Manager (ISSM) to ensure the operational security posture of information systems.
+ Manage user account requests, monitor user activity, and analyze audit records to identify and address anomalies.
+ Support incident response activities in the event of security violations or breaches.
+ Stakeholder Engagement:
+ Foster effective communication and collaboration with government customers, associated contractors, subcontractors, P&W teams, and North Berwick senior leadership.
+ Represent the GSC team as a project manager on select core projects and initiatives.
+ Training and Development:
+ Attend technical and security training to maintain expertise in security management, operating systems, and networking.
+ Provide guidance and training to facility staff on security responsibilities and best practices.
+ Serve as the Government Security Compliance Data Transfer Agent program focal:
+ Provide leadership and oversight for the Data Transfer Agent (DTA) program, ensuring compliance with regulatory and customer requirements.
+ Serve as the primary point of contact for customers regarding DTA program compliance and functionality.
+ Collaborate with internal stakeholders to maintain and enhance program effectiveness and security.
+ Develop and implement best practices, policies, and procedures for secure and efficient data transfer.
+ Monitor program performance and drive continuous improvement to meet evolving security and customer needs.
+ Other Duties:
+ Perform additional tasks as directed by the Corporate Facility Security Officer.
+ Coordinate and support the North Berwick Security Staff as directed.
**Qualifications You Must Have:**
+ Advanced degree and 5+ years of experience in industrial security, cybersecurity, government compliance, or government regulated industry; **OR** Bachelor's degree and 8+ years of relevant industry experience; **OR** an Associate's degree and 10+ years of relevant industry experience. We will also consider high school diploma, technical or military training, or recognized industry certifications in combination with 12+ years or relevant industry experience.
+ 1+ Year of hands-on experience supporting administering and/or maintaining computing systems, networks and/or software
+ Active U.S. government issued Secret level security clearance required plus ability to obtain and maintain a Top-Secret level security clearance. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
+ Must be able to obtain industry recognized Cybersecurity certification within 12 months of hire (i.e. Security + CE)
**Qualifications You Prefer:**
+ Strong understanding of the NISPOM, DAAPM, ICDs, and other security regulations.
+ Experience with DISS, NISS, SIMS, and other DCSA related databases.
+ Proficiency in managing classified information systems and working with DCSA inspections.
+ Cybersecurity certification (i.e. Security + CE).
+ Facility Security Officer (FSO) certification.
+ Information Systems Security Officer (ISSO) certification.
+ Proven leadership experience, preferably within a defense, aerospace, or government environment.
+ Experience with Insider Threat Programs and related compliance activities.
+ Strong project management skills and the ability to manage multiple priorities effectively.
**What is my Role Type?**
In addition to transforming the future of flight, we are also transforming how and where we work. We've introduced role types to help you understand how you will operate in our blended work environment. This role is:
+ **Onsite:** Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance workers, as they are essential to the development of our engines.
Candidates will learn more about role type and current site status throughout the recruiting process. For onsite and hybrid roles, commuting to and from the assigned site is the employee's personal responsibility.
**Learn more & apply today!**
**_As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote._**
The salary range for this role is 101,000 USD - 203,000 USD. The salary range provided is a good faith estimate representative of all experience levels.
RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
_RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act._
**Privacy Policy and Terms:**
Click on this link (******************************************************** to read the Policy and Terms
Raytheon Technologies is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.