Post job

Cyber security analyst jobs in Carrollton, GA - 121 jobs

All
Cyber Security Analyst
Information Security Engineer
Security Engineer
Cyber Security Specialist
Information Security Analyst
Senior Security Analyst
Information Systems Security Officer
Security Systems Specialist
Data Security Analyst
Senior Security Engineer
  • E-Mail Security Engineer

    Mavensoft Technologies 3.9company rating

    Cyber security analyst job in Atlanta, GA

    Job Title: E-Mail Security Engineer (Local Candidates only) Duration: ~6 Months Work Hours: Hybrid (Some evenings; NTE 40 hrs/week) Key Skills: Microsoft 365 Exchange Online, Exchange Server 2013/2016/2019, Hybrid Exchange, Proofpoint, Microsoft Defender for Office 365, Email Security, SMTP, DNS (MX, SPF, DKIM, DMARC), Azure Active Directory, SSO, Identity Integration Preferred Skills: PowerShell automation and reporting, message tracing, transport rules, Microsoft Purview compliance tools, government or regulated enterprise experience Job Description: This Email Security & Exchange Engineer will serve as the technical lead and subject matter expert (SME) for enterprise messaging and email security platforms. This role supports Microsoft 365 Exchange, on-premises Exchange, Proofpoint, Microsoft Defender for Email, and Azure-based identity services, with a focus on platform reliability, security, modernization, and incident response in a large enterprise environment. Job Responsibilities Administer and optimize Microsoft 365 Exchange Online and on-prem Exchange in hybrid environments. Manage mail flow, routing, compliance, retention, and messaging security controls. Support Exchange upgrades, migrations, and modernization initiatives. Administer and tune email security platforms including Proofpoint and Microsoft Defender for Office 365. Troubleshoot complex email delivery issues, security threats, and user-impacting incidents. Support Azure AD integration, SSO, and hybrid identity synchronization. Lead high-severity incident response, root cause analysis, and remediation efforts. Develop operational documentation including SOPs, runbooks, dashboards, and reports. Provide technical guidance and knowledge transfer to internal engineering teams. Required Qualifications 7+ years of experience supporting enterprise messaging systems. Strong hands-on experience with Microsoft 365 Exchange Online, Exchange Server 2013/2016/2019, and hybrid Exchange environments. Proven experience administering Proofpoint and Microsoft Defender for Office 365. Advanced troubleshooting skills with SMTP, email routing, and DNS (MX, SPF, DKIM, DMARC). Experience supporting Azure Active Directory and enterprise identity integrations.
    $87k-119k yearly est. 13h ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Specialist, Security Systems & Dockmaster

    AEG 4.6company rating

    Cyber security analyst job in Atlanta, GA

    In order to be considered for this role, after clicking "Apply Now" above and being redirected, you must fully complete the application process on the follow-up screen. Who are we: A professional basketball team and state-of-the-art arena/entertainment venue that specializes in creating memorable experiences for each guest we interact with. Some of our favorite things are live sports, concerts, comedy shows, family shows, and most any other world-class event you can think of, and we're looking for someone who shares the same interests. We live for the fast-paced world of sports & live entertainment, and as such, we work hard, run fast, execute flawlessly, and party it up when it all comes together. Lastly, we strive to deliver wonderful experiences that create lasting memories, and we prefer to surround ourselves with those who are the best at what they do. Who are you: An enthusiastic lover of sports, live entertainment, and people. You have true passion for engaging in meaningful interactions and creating memorable experiences for all guests. You strive to be helpful, engaging, and knowledgeable of all things Atlanta Hawks and State Farm Arena. You enjoy being a part of an exciting and dynamic group, and you're committed to continuously enhancing the productivity and effectiveness of your team. Lastly, you enjoy working hard and celebrating hard, and you'd be shocked if guests weren't positively impacted by their interactions with you. Who are we: Creating memorable experiences for each guest we interact with. Some of our favorite things are live sports, concerts, comedy shows, family shows, and most any other world-class event you can think of, and we're looking for someone who shares the same interests. We live for the fast-paced world of sports & live entertainment, and as such, we work hard, run fast, execute flawlessly, and party it up when it all comes together. Lastly, we strive to deliver wonderful experiences that create lasting memories, and we prefer to surround ourselves with those who are the best at what they do. Who are you: An enthusiastic lover of sports, live entertainment and people. You have true passion for engaging in meaningful interactions and creating memorable experiences for all guests. You strive to be helpful, engaging and knowledgeable of all things Atlanta Hawks and State Farm Arena. You enjoy being a part of an exciting and dynamic group, and you're committed to continuously enhancing the productivity and effectiveness of your team. Lastly, you enjoy working hard and celebrating hard, and you'd be shocked if guests weren't positively impacted by their interactions with you. Job Summary: The Specialist, Security Systems & Dockmaster plays a critical role in maintaining and enhancing the physical security infrastructure of the facility. This position is responsible for overseeing key security systems, supporting daily operations, and ensuring the safe and efficient management of the loading dock. The role also contributes to the development and implementation of procedures that promote a secure and well-organized environment. Key Responsibilities: Operations, Training, and Compliance Supports the training of security personnel and executes all employee, vendor, and contractor badges while maintaining visual standards and consistency on badges and the database. Maintain Safety and Security and Loading Dock documents, checklists, and supplies. Control access to all Loading Dock bays and restricted areas to include establishing and implementing procedures for the receipt, shipment, documentation, and distribution of all incoming mail, packages, and material in support of State Farm Arena. Systems and assets Responsible for partnering with the Asset Manager for the Building Security's fleet and golf cart maintenance and repairs. Assist with Emergency Preparedness training and supplies. Coordinates certification and refresher First Aid training for various departments. Maintains supplies for AED's and Emergency First Aid kits in collaboration with building operations. Assists in the execution and planning of various security training classes for internal and external departments. Communicate all incoming and outgoing package details with employees and vendors receiving freight or packages to ensure that the recipient is aware of what storage and pickup procedures are available and expected for incoming and outgoing deliveries. Organizational and department oversight Security Technology oversight to include 24/7 devices, shipping and receiving, and I Lobby guest check-in technology. Implementing department projects and other duties as assigned Assist in researching, developing, and implementing policies and procedures around staff and event safety requirements that are, as well as ensuring the programs put in place remain relative to the arena, event, and applicable laws. Requirements: 2-4 Year college degree required At least 3 years of experience in a professional environment and/or training or equivalent combination of education and experience, this can include security, law enforcement, or military experience Possesses excellent written and verbal communication skills, strong reflective listening skills Possesses excellent time management and organizational skills Proven ability to deal with and resolve difficult situations involving customers and/or staff members Ability to read and interpret documents such as safety rules, operating and maintenance instructions, and procedure manuals Ability to work flexible hours, including evenings, weekends, and holidays Preferred Qualifications: Strong knowledge of safety and security principles, regulations, and best practices. Excellent leadership and communication skills, with the ability to engage and influence stakeholders at all levels At least three years of industry experience or working in an arena environment Experience in developing and implementing security programs, policies, and procedures. Strong organizational and project management skills. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, sex, sexual orientation, age, disability, gender identity, marital or veteran status, or any other protected class. If this opportunity looks exciting to you, please complete the application process. Go Hawks!
    $54k-75k yearly est. 6d ago
  • Cyber Security Analyst, Data Security and Awareness

    Kennesaw State University 4.3company rating

    Cyber security analyst job in Kennesaw, GA

    About Us Are you ready to transform lives through academic excellence, innovative research, strong community partnerships and economic opportunity? Do you want to cultivate an inclusive environment that encourages free expression and civil discourse? Kennesaw State University is one of the 50 largest public institutions in the country. With growing enrollment and global reach, we continue to expand our institutional influence and prominence beyond the state of Georgia. We offer more than 190 undergraduate, graduate, and doctoral degrees to empower our 47,000 students to become thought leaders, lifelong learners, and informed global citizens. Our entrepreneurial spirit, high-impact research, and Division I athletics draw students from throughout the region and from more than 100 countries across the globe. Our university's vibrant culture, career opportunities, rich benefits, and values of respect, integrity, collaboration, inclusivity, and accountability make us an employer of choice. We are part of the University System of Georgia. We are searching for talented people to join Kennesaw State University in our vision. Come Take Flight at KSU! Location (Primary Location for Job Responsibilities) Our Kennesaw campus is located at 1000 Chastain Road NW, Kennesaw, GA 30144. Our Marietta campus is located at 1100 South Marietta Parkway, Marietta, GA 30060. Department Information DEPARTMENT SPECIFIC TASKS AND RESPONSIBILITIES: 1.Collaborates with cybersecurity data security and awareness team members to triage, investigate, and resolve services tickets related to data security alerts, compromised accounts, security awareness incidents, and other data security issues 2.Collaborates with team members to improve security posture by supporting enhancements to KnowBe4, Microsoft Purview DLP, or similar programs policies, and processes for identifying, analyzing, and remediating compromised accounts 3.Assists with designing, coordinating, and delivering cybersecurity awareness campaigns to educate faculty, staff, and students on secure behaviors, institutional policies, and data protection best practices DEPARTMENT SPECIFIC KNOWLEDGE, SKILLS, AND ABILITIES*: * Working knowledge of Microsoft Purview DLP, Microsoft 365 security features, and security awareness platforms (e.g., KnowBe4) * Hands-on experience with KnowBe4, Microsoft Purview DLP, and ServiceNow to support security operations, ticket management, and incident response activities * Able to interpret alerts, analyze trends, and support risk-based improvements * Able to collaborate effectively with cybersecurity team members and campus stakeholders, communicate security concepts to non-technical audiences, and support incident responses, ticketing workflows, and awareness initiatives Able to document security incidents, analyze metrics, and support reporting efforts to drive continuous improvement in security posture Able to develop foundational skills in identifying and responding to account compromise incidents, understanding data loss prevention policies, data classification, compliance requirements, and cybersecurity awareness program delivery Job Summary Leverages skills and tools to identify security concerns affecting campus systems. Creates, monitors, and maintains safeguards to ensure the secure option of all systems on campus. Responsibilities KEY RESPONSIBILITIES*: 1. Collaborates with stakeholders to resolve computer security incidents and vulnerability compliance 2. Receives and analyzes network alerts from various sources within the enterprise 3. Determines possible causes of security alerts 4. Documents and escalates incidents including event s history, status and potential impact for further action that may cause ongoing and immediate impact to the environment 5. Utilizes cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity Required Qualifications Educational Requirements High School diploma or equivalent Required Experience Two (2) years related Information Technology experience Preferred Qualifications Preferred Educational Qualifications Degree from an accredited institution of higher education in related field preferred Preferred Experience Previous experience in higher education preferred Working knowledge of enterprise security tools, such as M365, ServiceNow, and Data Loss Prevention Previous experience with Security Awareness programs and applications Prior experience with IT support or customer service is a plus Knowledge, Skills, & Abilities ABILITIES Ability to conduct vulnerability scans and recognize vulnerabilities in security systems Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute) Ability to accurately define incidents, problems, and events in the trouble ticketing system Ability to identify systemic security issues based on the analysis of vulnerability and configuration data Able to handle multiple tasks or projects at one time meeting assigned deadlines KNOWLEDGE Knowledge of computer networking concepts, communications, and protocols Knowledge of the common attack vectors on the network layer Knowledge of operating system command-line tools and network tools to identify vulnerabilities Knowledge of operating systems and Database Concepts Knowledge of cyber attackers, adversarial tactics, techniques, and procedures; Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks) Knowledge of regulations pertaining to storage and handling of confidential data, to include PII, PCI, HIPPA, FERPA, etc. Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools, technologies and applications SKILLS Skilled in recognizing and categorizing types of vulnerabilities and associated attacks Skilled in identifying hidden patterns or relationships Skilled in reviewing logs to identify evidence of past intrusions Skilled in performing root cause analysis Excellent interpersonal, initiative, teamwork, problem solving, independent judgment, organization, communication (verbal and written), time management, project management and presentation skills Proficient with computer applications and programs associated with the position (i.e. Microsoft Office suite and other required applications) Strong attention to detail and follow up skills Strong customer service skills and phone and e-mail etiquette USG Core Values The University System of Georgia is comprised of our 26 institutions of higher education and learning as well as the System Office. Our USG Statement of Core Values are Integrity, Excellence, Accountability, and Respect. These values serve as the foundation for all that we do as an organization, and each USG community member is responsible for demonstrating and upholding these standards. More details on the USG Statement of Core Values and Code of Conduct are available in USG Board Policy 8.2.18.1.2 and can be found on-line at ************************************************************************** Additionally, USG supports Freedom of Expression as stated in Board Policy 6.5 Freedom of Expression and Academic Freedom found on-line at ************************************************ Equal Employment Opportunity Kennesaw State University is an Equal Employment Opportunity Employer. The University is committed to maintaining a fair and respectful environment for living, work and study. To that end, and in accordance with federal and state law, Board of Regents policy, and University policy, the University prohibits harassment of or discrimination against any person because of race, color, sex (including sexual harassment, pregnancy, and medical conditions related to pregnancy), sexual orientation, gender identity, gender expression, ethnicity or national origin, religion, age, genetic information, disability, or veteran or military status by any member of the KSU Community on campus, in connection with a University program or activity, or in a manner that creates a hostile environment for members of the KSU community. For additional information on this policy, or to file a complaint under the provisions of this policy, students, employees, applicants for employment or admission or other third parties should contact the Office of Institutional Equity at English Building, Suite 225, ****************. Other Information This is not a supervisory position. This position does not have any financial responsibilities. This position will not be required to drive. This role is considered a position of trust. This position does not require a purchasing card (P-Card). This position may travel 1% - 24% of the time This position does not require security clearance. Background Check * Standard Enhanced Per the University System of Georgia background check policy, all final candidates will be required to consent to a criminal background investigation. Final candidates may be asked to disclose criminal record history during the initial screening process and prior to a conditional offer of employment. Applicants for positions of trust with screening results which confirm a disqualifying criminal history will be immediately disqualified from employment eligibility. All applicants are required to include professional references as part of their application process. Some positions may require additional job-based screenings such as motor vehicle report, credit check, pre-employment drug screening and/or verification of academic credentials. *****************************************************************************************
    $71k-91k yearly est. Easy Apply 11d ago
  • Cyber Security Analyst

    Uptime365

    Cyber security analyst job in Atlanta, GA

    Role Value Proposition: The Incident Response Analyst will be a member of UpTime365's Global Cyber Incident Response Team. In this role, an analyst will use cutting edge tools and solutions, and collaborate with global team members across the organization to perform cyber incident response and protect UpTime365's partners against cyber threats. Key Responsibilities: Response to cyber security events and incidents by analyzing forensic data, logs, and threat intel to validate security threats, assess impact, determine root cause, and help coordinate remediation actions. Maintain awareness of emerging threats. Willingness and self -motiviation to learn and take advantage of all training opportunities provided. Perform proactive threat hunting to identify potential threats to UpTime365 and its partners. Partner with global incident response teams to coordinate global incident response. Eventual participation on a rotating on -call roster for off hour escalations. Requirements Essential Business Experience and Technical Skills: A bachelor's degree in cyber security or computer science, or 2 -4 years of combined IT and Cyber Security related work experience. 1 -3 years of experience analyzing logs (e.g. endpoint, network, identity), performing data correlation, and using SIEM or log management tools. Basic understanding of the Windows operating system and command line tools, network fundamentals, and cyber security concepts and frameworks. Scripting experience for analysis and automation of repeatable processes. Security specific certifications from SANS and other industry recognized organizations are desirable. Benefits Dental insurance Medical insurance Vision insurance 401K Paid vacation and sick leave Tuition fee reimbursement Students loan assistance
    $75k-102k yearly est. 60d+ ago
  • Data Analyst, II - Information Security Metrics and Reporting

    UNUM Group 4.4company rating

    Cyber security analyst job in Atlanta, GA

    Our Fortune 500 company is driving a digital transformation and looking for forward-thinking innovators to disrupt how our industry thinks about and uses technology. As one of the world's leading employee benefits providers, we help millions of people gain affordable access to benefits that help them protect their families, their finances and their futures. Are you an asker of questions, a solver of problems, and a challenger of the status quo? Our mission is to provide a differentiated customer experience and exceed the expectations people have of technology at any company - not just insurers. We are seeking individuals to join our team of talented IT professionals who share never-ending passion and an unwavering focus on our customer experience. Team members comfortable working in an agile, fast-paced, and delivery-focused environment thrive in our environment where we value an entrepreneurial spirit and those who challenge the status-quo. Unum is changing, and we're excited about what's next. Join us. General Summary: The Information Security Metrics and Quality Data Analyst is responsible for simple to moderately complex data profiling, analysis and mapping with little to no oversight and exhibits a mastery of the tools and technical skillset subject matter expertise with data organization and visualization supporting information security (cyber security) risks and operations. This candidate works closely with Security Analysts, Security Engineers, Project Managers, and Global Information Security leadership. They deliver to high quality KRI/KPI and are able to accurately estimate work required to deliver on their responsibilities. They use critical thinking skills applied to data analysis in order to advance the delivery and maintenance of information security KRI and KPI. Job Specifications * Bachelors Degree preferred, and/or equivalent experience * 4+ years experience with demonstrated success at the Data Analyst 1 level or equivalent experience * Mastery of data profiling and analysis concepts, including data anomalies, data mapping activities. * Mastery of data modeling concepts * Mastery of PowerBI data modeling and visualization development * Clearly demonstrates data analytical ability and critical thinking skills * Ability to manage multiple tasks by paying close attention to detail * Ability to work as part of a team and interact effectively with others * Ability to embrace change, adapt to the unexpected, and focus energies, people, and solutions on practical and positive results * Takes an innovative approach to problem solving * Strong communications skills * Strong team player; able to work effectively within a team and more broadly with people from a variety of backgrounds and areas across the organization. Principal Duties and Responsibilities * Responsible for data profiling and analysis to evaluate data sources to determine the best source for business information. * Responsible for source to target data mapping specifications (e.g. source to target can be from one DBMS table to another DBMS table, from a DBMS table into a canonical message structure, etc.) * Design simple to moderately complex, flexible data models (conceptual and logical) and visualizations through collaborations with analysts, engineers, and leadership. Leads sizing and estimation activities within the agile team. * Create/Capture documentation (metadata) that is up-to-date. * Collaborate with the test engineers to perform data validation and testing activities as appropriate. * Develop and maintain knowledge of information security practices and the insurance industry. * Develop and maintain knowledge of information security-owned and other relevant data sources. * Adhere to approved architectural standards. * Uses critical thinking skills to recommend and implement data management practices that advance business value. * Thinks with the mind of the end customer at all times, ensuring solutions seek to improve the customer experience and delight their customers. #LI-TO1 #LI-MULTI IN4 Our company is built on helping individuals and families, and this starts with our employees. We want employees to maintain a positive balance, which is why we provide access to the benefits and resources they need to invest in themselves. From our onsite fitness facilities and generous paid time off to employee professional development programs, we are committed to helping employees live and work their best - both inside and outside the office. Unum is an equal opportunity employer, considering all qualified applicants and employees for hiring, placement, and advancement, without regard to a person's race, color, religion, national origin, age, genetic information, military status, gender, sexual orientation, gender identity or expression, disability, or protected veteran status. The base salary range for applicants for this position is listed below. Unless actual salary is indicated above in the job description, actual pay will be based on skill, geographical location and experience. $73,300.00-$150,500.00 Additionally, Unum offers a portfolio of benefits and rewards that are competitive and comprehensive including healthcare benefits (health, vision, dental), insurance benefits (short & long-term disability), performance-based incentive plans, paid time off, and a 401(k) retirement plan with an employer match up to 5% and an additional 4.5% contribution whether you contribute to the plan or not. All benefits are subject to the terms and conditions of individual Plans. Company: Unum
    $73.3k-150.5k yearly Auto-Apply 14d ago
  • Cyber Security Specialist - Data Analysis

    The Hertz Corporation 4.3company rating

    Cyber security analyst job in Atlanta, GA

    A Day in the Life: The Cyber Security Specialist is a key member of the Security team that helps to assemble key performance metrics to demonstrate the effectiveness of the Cybersecurity organization. The starting salary for this role is $90K; commensurate with experience. What You'll Do: + Design, develop, and maintain various interactive data visualizations and reports. These in-depth insights will empower organizations to streamline the decision-making process. + Analyzes and researches known indicators of compromise, key metrics and can correlates events. + Collaborates with IT and business leaders to ensure the reports are meeting the defined metrics. + Experience in analytical thinking to analyze data and provide relevant narratives. + Work with threat intelligence data from multiple sources and databases. + Familiar with Cybersecurity trends. + Drive optimal cyber security services to complete resolution according to security SLA's. + Handle all private information with discretion and keep sensitive information private. + Excellent teamwork competencies, seeks out opportunities to partner with all stakeholders. What We're Looking For: + Bachelor degree in Computer Science, MIS, or related field. + 1 - 5 years of Information Security experience required. Security certification(s) preferred. + Experience with PowerBi. + Capable of working under pressure in a continually changing fast paced environment. + Ability to effectively collaborate with stakeholders across a global environment. + Strong written and verbal communication skills. + Strong analytical and problem-solving skills. What You'll Get: + Up to 40% off any standard Hertz Rental + Paid Time Off + Medical, Dental & Vision plan options + Retirement programs, including 401(k) employer matching + Paid Parental Leave & Adoption Assistance + Employee Assistance Program for employees & family + Educational Reimbursement & Discounts + Voluntary Insurance Programs - Pet, Legal/Identity Theft, Critical Illness + Perks & Discounts -Theme Park Tickets, Gym Discounts & more The Hertz Corporation operates the Hertz, Dollar Car Rental, Thrifty Car Rental brands in approximately 9,700 corporate and franchisee locations throughout North America, Europe, The Caribbean, Latin America, Africa, the Middle East, Asia, Australia and New Zealand. The Hertz Corporation is one of the largest worldwide airport general use vehicle rental companies, and the Hertz brand is one of the most recognized in the world. **US EEO STATEMENT** At Hertz, we champion and celebrate a culture of diversity and inclusion. We take affirmative steps to promote employment and advancement opportunities. The endless variety of perspectives, experiences, skills and talents that our employees invest in their work every day represent a significant part of our culture - and our success and reputation as a company. Individuals are encouraged to apply for positions because of the characteristics that make them unique. EOE, including disability/veteran
    $90k yearly 60d+ ago
  • Sr. Cybersecurity Analyst, Security Awareness & Employee Engagement

    Rivian 4.1company rating

    Cyber security analyst job in Atlanta, GA

    About Rivian Rivian is on a mission to keep the world adventurous forever. This goes for the emissions-free Electric Adventure Vehicles we build, and the curious, courageous souls we seek to attract. As a company, we constantly challenge what's possible, never simply accepting what has always been done. We reframe old problems, seek new solutions and operate comfortably in areas that are unknown. Our backgrounds are diverse, but our team shares a love of the outdoors and a desire to protect it for future generations. Role Summary Working in an agile environment, the Senior Cybersecurity Analyst (Security Awareness and Employee Engagement) will design and drive Rivian's global, behavior-focused security awareness program and engagement strategy to reduce human risk and strengthen our culture of security. This role will report to the Senior Director of Cybersecurity in the Rivian Enterprise Cybersecurity organization and will partner closely across Cybersecurity, IT, People Team, Communications, Legal/Privacy, and business operations. The ideal candidate brings a blend of security domain knowledge, behavior change expertise, crisp storytelling, and data-driven program management to deliver measurable risk reduction and an employee experience people love. The location of this role is flexible, and will report to our Sr. Director, Cybersecurity. Responsibilities Serve as the program lead for Rivian's security awareness and employee engagement strategy, defining the annual plan, editorial calendar, and outcomes that drive measurable behavior change. Design and deliver engaging, multi-channel campaigns (e.g., Cybersecurity Awareness Month), sustained microlearning, and just-in-time guidance aligned to top human risks and business priorities. Develop high-quality content and experiences across formats and channels, including e- learning, micro-modules, short-form video, live sessions, infographics, intranet content, Slack/Email, and site/poster assets. Customize education and messages for distinct audiences (manufacturing, service centers, corporate, engineering, executives) and roles based on risk profiles and workflows. Develop cybersecurity communications for employee engagement and awareness and partner with the Enterprise Communications teams to distribute communications through various channels. Partner with People Team/Learning to manage mandatory training cycles, role-based learning paths, and compliance-ready tracking aligned to applicable standards and regulations (e.g., NIST CSF, ISO 27001, OWASP, HIPAA, TISAX). Establish and manage a global Security Champions/Cybersecurity Drivers network; equip champions with toolkits, office hours, and recognition that amplifies local impact. In addition, manage the Cybersecurity Drivers Slack channel. Define and report KPIs/KRIs that matter (e.g., completion and pass rates, report rates, behavior adoption, risk reduction indicators, sentiment); provides visual displays of insights. Localize content and experiences for global audiences, account for cultural nuances, accessibility, and inclusive design. Model best-in-class project and change management practices, track milestones, identify awareness and engagement risks and dependencies across multiple concurrent initiatives. Provide valuable delivery insights derived from multiple sources and communicate metrics which teams can use to drive continuous improvement. Communicate expectations and carefully track progress to ensure standards are met at a systematic level; follows up to keep work on track. Stay updated on industry trends and best practices in risk and controls and proactively recommend improvements to the Cybersecurity Risk Management Program. Seek to understand different perspectives to resolve conflict. Qualifications 5+ years leading or significantly contributing to security awareness, internal communications, behavior change, or learning programs in a global, cross-functional environment. BA/BS in Communications, Instructional Design, Information Security, or a related field, or equivalent practical experience. Certifications such as SANS Security Awareness Professional (SSAP) or Certified Security Awareness Practitioner (CSAP) are preferred; CISSP, CISM, Change Management, or PMP are a plus. Proven ability to craft clear, compelling narratives and educational materials across formats (presentations, videos, e-learning, written communications) Demonstrated behavior change mindset, applying human-centered design, nudge techniques, and experimentation to drive measurable outcomes Integrate the use of approved AI platforms to accelerate content development, localization, and analytics while adhering to Rivian's security and privacy requirements. Data-driven with experience defining metrics, building dashboards (e.g., PowerBI/Tableau), and using analytics to assess and iterate on program performance. Hands-on experience with LMS and authoring tools (e.g., Articulate/Captivate), phishing simulation platforms, and collaboration channels (e.g., Google Workspace, Slack, intranet) Strong stakeholder management, and consulting skills; able to influence across levels and functions and resolve competing priorities Excellent verbal and written communication skills; comfortable speaking both technically and non-technically as appropriate Critical thinking and creative problem-solving skills Able to triage multiple initiatives to address the right problems at the right time Excellent interpersonal and team building skills Pay Disclosure Salary Range (California Applicants): $132,100 - 175,000 (actual compensation will be determined based on experience, location, and other factors permitted by law). Benefits Summary: Rivian provides robust medical/Rx, dental and vision insurance packages for full-time employees, their spouse or domestic partner, and children up to age 26. Coverage is effective on the first day of employment, and Rivian covers most of the premiums. Equal Opportunity Rivian is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, ancestry, sex, sexual orientation, gender, gender expression, gender identity, genetic information or characteristics, physical or mental disability, marital/domestic partner status, age, military/veteran status, medical condition, or any other characteristic protected by law. Rivian is committed to ensuring that our hiring process is accessible for persons with disabilities. If you have a disability or limitation, such as those covered by the Americans with Disabilities Act, that requires accommodations to assist you in the search and application process, please email us at candidateaccommodations@rivian.com. Candidate Data Privacy Rivian may collect, use and disclose your personal information or personal data (within the meaning of the applicable data protection laws) when you apply for employment and/or participate in our recruitment processes ("Candidate Personal Data"). This data includes contact, demographic, communications, educational, professional, employment, social media/website, network/device, recruiting system usage/interaction, security and preference information. Rivian may use your Candidate Personal Data for the purposes of (i) tracking interactions with our recruiting system; (ii) carrying out, analyzing and improving our application and recruitment process, including assessing you and your application and conducting employment, background and reference checks; (iii) establishing an employment relationship or entering into an employment contract with you; (iv) complying with our legal, regulatory and corporate governance obligations; (v) recordkeeping; (vi) ensuring network and information security and preventing fraud; and (vii) as otherwise required or permitted by applicable law. Rivian may share your Candidate Personal Data with (i) internal personnel who have a need to know such information in order to perform their duties, including individuals on our People Team, Finance, Legal, and the team(s) with the position(s) for which you are applying; (ii) Rivian affiliates; and (iii) Rivian's service providers, including providers of background checks, staffing services, and cloud services. Rivian may transfer or store internationally your Candidate Personal Data, including to or in the United States, Canada, the United Kingdom, and the European Union and in the cloud, and this data may be subject to the laws and accessible to the courts, law enforcement and national security authorities of such jurisdictions. Please note that we are currently not accepting applications from third party application services. 5+ years leading or significantly contributing to security awareness, internal communications, behavior change, or learning programs in a global, cross-functional environment. BA/BS in Communications, Instructional Design, Information Security, or a related field, or equivalent practical experience. Certifications such as SANS Security Awareness Professional (SSAP) or Certified Security Awareness Practitioner (CSAP) are preferred; CISSP, CISM, Change Management, or PMP are a plus. Proven ability to craft clear, compelling narratives and educational materials across formats (presentations, videos, e-learning, written communications) Demonstrated behavior change mindset, applying human-centered design, nudge techniques, and experimentation to drive measurable outcomes Integrate the use of approved AI platforms to accelerate content development, localization, and analytics while adhering to Rivian's security and privacy requirements. Data-driven with experience defining metrics, building dashboards (e.g., PowerBI/Tableau), and using analytics to assess and iterate on program performance. Hands-on experience with LMS and authoring tools (e.g., Articulate/Captivate), phishing simulation platforms, and collaboration channels (e.g., Google Workspace, Slack, intranet) Strong stakeholder management, and consulting skills; able to influence across levels and functions and resolve competing priorities Excellent verbal and written communication skills; comfortable speaking both technically and non-technically as appropriate Critical thinking and creative problem-solving skills Able to triage multiple initiatives to address the right problems at the right time Excellent interpersonal and team building skills Serve as the program lead for Rivian's security awareness and employee engagement strategy, defining the annual plan, editorial calendar, and outcomes that drive measurable behavior change. Design and deliver engaging, multi-channel campaigns (e.g., Cybersecurity Awareness Month), sustained microlearning, and just-in-time guidance aligned to top human risks and business priorities. Develop high-quality content and experiences across formats and channels, including e- learning, micro-modules, short-form video, live sessions, infographics, intranet content, Slack/Email, and site/poster assets. Customize education and messages for distinct audiences (manufacturing, service centers, corporate, engineering, executives) and roles based on risk profiles and workflows. Develop cybersecurity communications for employee engagement and awareness and partner with the Enterprise Communications teams to distribute communications through various channels. Partner with People Team/Learning to manage mandatory training cycles, role-based learning paths, and compliance-ready tracking aligned to applicable standards and regulations (e.g., NIST CSF, ISO 27001, OWASP, HIPAA, TISAX). Establish and manage a global Security Champions/Cybersecurity Drivers network; equip champions with toolkits, office hours, and recognition that amplifies local impact. In addition, manage the Cybersecurity Drivers Slack channel. Define and report KPIs/KRIs that matter (e.g., completion and pass rates, report rates, behavior adoption, risk reduction indicators, sentiment); provides visual displays of insights. Localize content and experiences for global audiences, account for cultural nuances, accessibility, and inclusive design. Model best-in-class project and change management practices, track milestones, identify awareness and engagement risks and dependencies across multiple concurrent initiatives. Provide valuable delivery insights derived from multiple sources and communicate metrics which teams can use to drive continuous improvement. Communicate expectations and carefully track progress to ensure standards are met at a systematic level; follows up to keep work on track. Stay updated on industry trends and best practices in risk and controls and proactively recommend improvements to the Cybersecurity Risk Management Program. Seek to understand different perspectives to resolve conflict.
    $132.1k-175k yearly 8d ago
  • Sr. Security Analyst

    Maximus 4.3company rating

    Cyber security analyst job in Atlanta, GA

    Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned. *This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. * Essential Duties and Responsibilities: - Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary. - Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget. - Work closely with management and work groups to create and maintain work plan documents. - Track the status and due dates of projects. - Manage relationships with project staff responsible for projects. - Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed. - Facilitate regular meetings and reviews. - Adhere to contract requirements and comply with all corporate policies and procedures. Job Specific Duties and Responsibilities: -Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects. -Review project documentation and client materials and provide analysis of technical and security related topics. -Participate in client meetings and offer observations and insight on technical and security related topics. -Identify risk areas and potential problems that require proactive attention. -Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to: *System Security Plan *Plan of Action and Milestones (POA&M) *Security Assessment Plan *Risk Assessment reports *CMS ARC-AMPE forms and documentation *Data Conversion and Migration Management Plan *Deployment and/or roll-out plans -Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects. -Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues. -Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work. -Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager. -Complete project work in compliance with Maximus standards and procedures. -Support team to complete assigned responsibilities as outlined in the Project schedule. -Support all other tasks assigned by Senior Manager / Project Manager. Minimum Requirements - Bachelor's degree in related field. - 7-10 years of relevant professional experience required. - Equivalent combination of education and experience considered in lieu of degree. Job Specific Requirements: -Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required. -Bachelor's degree from an accredited college or university, or equivalent work experience. -7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry. -5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks. -Familiar with operating systems: Windows, Linux/UNIX, OS/X. -Familiar with AI tools, capabilities. -Strong command of cloud computing topics. -Strong command of agile software development practices as well as waterfall development practices. -Strong desktop software skills: proficient in MS Office, Excel, Word, Project. -Ability to explain and communicate technical subjects to non-technical audiences. -Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills. -Ability to work independently. -Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously. -Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential. -Excellent verbal and writing skills and be comfortable working with customers. -Ability to multi-task with supervision. -Self-motivated fast learner. Preferred Skills: -Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid). -Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional). EEO Statement Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Accommodations Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************. Minimum Salary $ 120,000.00 Maximum Salary $ 140,000.00
    $87k-116k yearly est. Easy Apply 7d ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Cyber security analyst job in Atlanta, GA

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills. **Responsibilities:** + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Experience with scripting languages (e.g., PowerShell, Python) for automation and integration. + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Understanding of DevOps practices. + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. + Adaptability to stay ahead of evolving IAM technologies and security threats. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 60d+ ago
  • Information Security Analyst (Risk) - Tech

    Gray Media

    Cyber security analyst job in Atlanta, GA

    Gray Media, or Gray, is a multimedia company headquartered in Atlanta, Georgia, formally known as Gray Television, Inc. The company is the nation's largest owner of top-rated local television stations and digital assets serving 113 television markets that collectively reach approximately 36 percent of US television households. The portfolio includes 77 markets with the top-rated television station and 100 markets with the first and/or second-highest-rated television station, as well as the largest Telemundo Affiliate group with 45 markets totaling nearly 1.5 million Hispanic TV Households. The company also owns Gray Digital Media, a full-service digital agency offering national and local clients digital marketing strategies with the most advanced digital products and services. Gray's additional media properties include video production companies Raycom Sports, Tupelo Media Group, and PowerNation Studios, and studio production facilities Assembly Atlanta and Third Rail Studios. Job Summary/Description: The security analyst reviews information from various streams, determines risks, and assists in mitigation efforts. This may include working with end users, IT administrators, vendors, and security providers. This position uses various Governance, Risk, and Compliance tools to determine if the company and vendors are in alignment with industry standard guidelines for safe cyber-related practices. This includes working with divisions, stations, and vendors to gather information and provide guidance to adhere to established standards. Included with this is working with security tools to identify and remediate potential threats to endpoints due to misconfiguration, vulnerabilities, and unsafe operation. Please note - primary job duties and responsibilities include, but are not limited to, the information listed above This position is listed as local to our Atlanta office; however, a qualified candidate residing within fifty miles of Gray Media's owned corporate office, business unit, or television station may be considered. Qualifications/Requirements: - Preferred is two years or more, working with an industry-recognized endpoint detection and remediation platform or with GRC and Third-Party Risk Management. - Required is a solid background in the administration of desktop and server computer systems, along with demonstrable written communication skills. If you feel you're qualified and want to work with a great group of people, go to *************************************** , you may type in the job title, station call letters, or click on "apply now", upload your resume, cover letter, and references (Current employees who are interested in this position can apply through the Gray-TV UltiPro self-service portal ) TECH-TV/Gray Media is a drug-free company Additional Info: Gray Media provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, or genetics. In addition to federal law requirements, Gray Media complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Gray Media expressly prohibits any form of workplace harassment based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of Gray's employees to perform their job duties may result in discipline up to and including discharge.
    $72k-102k yearly est. 4d ago
  • Information Security Analyst

    360 It Professionals 3.6company rating

    Cyber security analyst job in Atlanta, GA

    360 IT Professionals is a Software Development Company based in Fremont, California that offers complete technology services in Mobile development, Web development, Cloud computing and IT staffing. Merging Information Technology skills in all its services and operations, the company caters to its globally positioned clients by providing dynamic feasible IT solutions. 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement. Our services are vast and we produce software and web products. We specialize in Mobile development, i.e. iPhone and Android apps. We use Objective C and Swift programming languages to create native applications for iPhone, whereas we use Android Code to develop native applications for Android devices. To create applications that work on cross-platforms, we use a number of frameworks such as Titanium, PhoneGap and JQuery mobile. Furthermore, we build web products and offer services such as web designing, layouts, responsive designing, graphic designing, web application development using frameworks based on model view controller architecture and content management system. Our services also extend to the domain of Cloud Computing, where we provide Salesforce CRM to effectively manage one's business and ease out all the operations by giving an easy platform. Apart from this, we also provide IT Staffing services that can help your organization to a great extent as you can hire highly skilled personnel's through us. We make sure that we deliver performance driven products that are optimally developed as per your organization's needs. Take a shot at us for your IT requirements and experience a radical change. Job Description The candidate will be a member of the Application Security Assessment (ASA) Team enforcing Global Cyber Security & Fraud at First Data. This includes automated vulnerability scanning mixed with manual penetration testing against web-based applications, web services, and thick client applications. Job Specific Responsibilities Utilize dynamic and static application security testing tools effectively, including IBM AppScan Standard, Fortify SCA, Burp Suite Pro, and Qualys. Host developer-focused appsec training workshops on topics including secure coding and vulnerability remediation. Coordinate testing objectives, reporting deliverables, and remediation efforts as the liaison between the financial institution(s), First Data, and third-party assessors. Provide documented guidance to development teams that define effective remediation solutions for vulnerabilities. Contribute to maintaining First Data Corporation's PCI-DSS certifications through addressing regulatory requirements. Availability to work occasional off-hours to complete assessments tied to meeting critical business objectives. Interview Required: Yes Information Technology-Info Security Analyst - Information Technology-Info Security Analyst Qualifications Bachelors Degree in Information Security, Computer Science, I.T., I.S., Engineering, Analytics or equivalent. Hands on technical experience with dynamic and static security testing tools, including source code assessments. Deep analytical skills, strong out-of-the-box thinking. Ability to effectively perform detailed-oriented technical information security work on a full-time basis. Excel independently in a fast-paced environment. Effective oral and written communication skills. Preferred Qualifications Masters Degree in Information Security, Computer Science, I.T., I.S., Engineering, Analytics or equivalent. Proficient web-application developer with demonstrable knowledge of HTML, C/C++, Java, VB, Ruby, etc. CEH, Security+, GWAPT Additional Information Regards, Vikas Kumar vikas.kumar(@)360itpro.com
    $81k-109k yearly est. 60d+ ago
  • Information Systems Security Officer (ISSO)

    Contact Government Services, LLC

    Cyber security analyst job in Atlanta, GA

    ISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cyber security and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment. Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality. Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: ******************* #CJ
    $68k-93k yearly est. Auto-Apply 60d+ ago
  • Information Security Engineer

    Brightwell 4.1company rating

    Cyber security analyst job in Atlanta, GA

    What We Do Brightwell is a pioneering payments company dedicated to providing innovative solutions and technology for global money transfers while navigating the intricate landscape of regulatory requirements. Through strategic partnerships and technological advancements, Brightwell facilitates cross-border payments, offering a range of options including bank transfers, mobile wallets, and cash transactions, empowering businesses and individuals to seamlessly manage and move money worldwide. Who We Need We're searching for a senior Information Security Engineer to play a key role in our security and compliance programs. You'll balance hands-on security engineering with compliance program management, working closely with our Chief Compliance Officer and General Counsel on risk decisions and audit matters. You'll lead SOC2 Type II and PCI DSS program execution (~50% of your time) while conducting security assessments, penetration testing, and vulnerability management across our applications and Azure infrastructure (~50% of your time). You should be the security subject matter expert who can independently drive programs while partnering with our CCO on compliance strategy. This role is perfect for a seasoned security professional who thrives at balancing compliance rigor with hands-on security work. You'll write control narratives for auditors in the morning and pentest APIs in the afternoon. Reporting to the VP of Engineering within IT Operations, you'll have direct access to our Chief Compliance Officer and General Counsel for compliance matters and risk decisions. **This is a HYBRID position based in Atlanta, GA. Candidates will be expected in the office a minimum of two days per week. What You'll Do SOC2 & PCI Compliance Programs (~50%): Own SOC2 Type II program execution, including control design, audit preparation, and evidence collection in partnership with our Chief Compliance Officer Develop and maintain information security policies, procedures, and control narratives aligned with SOC2 Trust Services Criteria and PCI DSS requirements Lead risk assessments and security audits, ensuring documentation meets industry and regulatory requirements Create and maintain technical documentation (network diagrams, system architecture, data flows) and conduct internal control testing Serve as primary technical liaison with external auditors and manage PCI vulnerability scans and penetration testing Application & Infrastructure Security (~50%): Conduct threat modeling, security assessments, and penetration testing of Azure-based applications and APIs, including code reviews focused on authentication, authorization, and data protection Review, validate, and design security controls across Azure infrastructure, including Network Security Groups, firewalls, Azure AD/Entra ID, and Key Vault Manage and optimize security tools (endpoint protection, SIEM, vulnerability scanners, automated testing platforms) and coordinate continuous vulnerability scanning and remediation with development and infrastructure teams Investigate and respond to security incidents with root cause analysis and implement preventive measures Partner with DevOps to integrate security into CI/CD pipelines Evaluate and implement new security and automation technologies Provide security training and guidance to promote a strong security culture As an Information Security Engineer, you have Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience) 7+ years of hands-on information security experience, preferably in financial services or highly regulated environments Proven experience managing SOC2 Type II and PCI DSS compliance programs, including control design, policy development, and audit coordination Strong technical skills in penetration testing, vulnerability assessments, and security code reviews Experience with Azure security (Network Security Groups, Azure AD, Key Vault, Security Center) and security tooling (SIEM, vulnerability scanners, endpoint protection) Experience investigating and responding to security incidents with strong analytical and problem-solving skills Excellent communication skills with the ability to explain technical security concepts to both technical and non-technical stakeholders Proven ability to work independently as a security subject matter expert Security certifications (CISSP, OSCP, CEH, GIAC, or Azure Security) are preferred but not required What We're Offering in Return Empowered Work: Own your work and grow your career with real autonomy and impact Hybrid Flexibility: 3 days remote, 2 days in our Atlanta office at the Battery Global Impact: Join a passionate team building mission-critical tools for people around the world Great Benefits: Medical, dental, vision, disability, 401(k), paid parental leave, PTO, and more Supportive Environment: Thrive in a collaborative, inclusive workplace that values innovation and continuous learning Brightwell is an equal opportunity employer (EOE) committed to employing a diverse workforce and sustaining an inclusive culture.
    $77k-101k yearly est. Auto-Apply 12d ago
  • Cyber Security Professional

    Hl Mando America Corp

    Cyber security analyst job in Hogansville, GA

    Job Purpose: This position is responsible for protecting the organization's information systems, networks, and data from cyber threats. Responsibilities include the following (other duties may be assigned as needed) Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization's data, systems, and networks Troubleshooting security and network problems Responding to all system and/or network security breaches Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls Testing and identifying network and system vulnerabilities Cybersecurity awareness training for end users Perform other assigned responsibilities Qualifications: Bachelor's Degree in Computer Science, Information Systems or Related Field Minimum 3 years' work experience in IT security, network security, or related areas Minimum 3 years' work experience in SIEM, SSE, IPS,/IDS, firewall, and endpoint protection Knowledge of cybersecurity frameworks (e.g., ISO 27001) Great awareness of cybersecurity trends and hacking techniques Technical Competencies: Cisco ASA Firewall, Cisco Firepower Firewall, Netgate PFsense Firewall, Palo Alto Firewall skills Proficiency in managing SIEM and SSE solutions Strong skills in Python and PowerShell for automating security tasks, log analysis, and system admin Solid understanding of Windows and Linux environments Knowledge of securing cloud platform, implementing access controls, and monitoring Non-Technical Competencies: Highly self-motivated, Dedicated, Ability to work independently and be results-driven Excellent communication skills - Written & Oral Positive and optimistic approach to problem-solving Collaborative team spirit Multi-Tasking Ability to Work under minimal supervision & be conscious about his effort & productivity Supervisory Responsibility: N/A
    $70k-99k yearly est. Auto-Apply 33d ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Cyber security analyst job in Atlanta, GA

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding. **Responsibilities:** + **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture. + **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders. + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 60d+ ago
  • Information Systems Security Officer (ISSO)

    Contact Government Services, LLC

    Cyber security analyst job in Atlanta, GA

    Job DescriptionISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cyber security and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment. Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality. Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: ******************* #CJ We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
    $68k-93k yearly est. Easy Apply 6d ago
  • IT Applications Security Engineer/Analyst

    360 It Professionals 3.6company rating

    Cyber security analyst job in Atlanta, GA

    360 IT Professionals is a California base Minority Business Enterprise specializing in the field of IT Consulting and Staffing. Since our Inception we have been providing industry leading IT solutions for Staffing and Software Development. We have more than 30 IT Staffing Services contracts across USA and working closely with Fortune 500 Companies and Key Private sector Agencies. We are providing staffing support to more than 10 State Customers across USA and have successfully staffed for more than 260 roles in last 6 months. PSB job description for your reference: Job Title: IT Applications Security Engineer/Analyst Duration: 11 months contract Location: Atlanta GA IT Applications Security Engineer/Analyst · This project is responsible for ensuring that key security risks associated with the client's applications are identified, assessed, communicated and is mitigated appropriately. Project is also responsible for ensuring that secure software development principals become fundamental at the client site. Must Have: · 5+ years IT experience as a Security Engineer · Ability to provide secure design, implementation documentation, and troubleshooting with a focus on application security · Ability to provide guidance based on industry standards such as Open Web Application Security Project (OWASP) · Experience conducting manual and automated application assessments both dynamically and statically, producing reports, opening tickets, and meeting with development teams · Be available and willing to provide 24x7 operational support and troubleshooting to ensure systems are available to support Client's business functions · Experience planning and conducting complex project studies, including analysis of multiple data sources, and publishing results to the team or to the technical user community · Ability to review and document current architecture and configurations, propose changes needed, and implement processes/procedures as needed · Monitor systems to identify and solve data communication problems and user performance issues; this includes understanding chronic issues causing inefficiency in operation and seek resolution Qualifications Education: Bachelor's degree or greater in computer science, computer engineering, information technology or public health Additional Information Local candidates preferred. Immediate interview and placement! any visa status, but who are available for the in person interview.
    $78k-102k yearly est. 1d ago
  • Information Security Engineer

    Brightwell 4.1company rating

    Cyber security analyst job in Atlanta, GA

    Job Description What We Do Brightwell is a pioneering payments company dedicated to providing innovative solutions and technology for global money transfers while navigating the intricate landscape of regulatory requirements. Through strategic partnerships and technological advancements, Brightwell facilitates cross-border payments, offering a range of options including bank transfers, mobile wallets, and cash transactions, empowering businesses and individuals to seamlessly manage and move money worldwide. Who We Need We're searching for a senior Information Security Engineer to play a key role in our security and compliance programs. You'll balance hands-on security engineering with compliance program management, working closely with our Chief Compliance Officer and General Counsel on risk decisions and audit matters. You'll lead SOC2 Type II and PCI DSS program execution (~50% of your time) while conducting security assessments, penetration testing, and vulnerability management across our applications and Azure infrastructure (~50% of your time). You should be the security subject matter expert who can independently drive programs while partnering with our CCO on compliance strategy. This role is perfect for a seasoned security professional who thrives at balancing compliance rigor with hands-on security work. You'll write control narratives for auditors in the morning and pentest APIs in the afternoon. Reporting to the VP of Engineering within IT Operations, you'll have direct access to our Chief Compliance Officer and General Counsel for compliance matters and risk decisions. **This is a HYBRID position based in Atlanta, GA. Candidates will be expected in the office a minimum of two days per week. What You'll Do SOC2 & PCI Compliance Programs (~50%): Own SOC2 Type II program execution, including control design, audit preparation, and evidence collection in partnership with our Chief Compliance Officer Develop and maintain information security policies, procedures, and control narratives aligned with SOC2 Trust Services Criteria and PCI DSS requirements Lead risk assessments and security audits, ensuring documentation meets industry and regulatory requirements Create and maintain technical documentation (network diagrams, system architecture, data flows) and conduct internal control testing Serve as primary technical liaison with external auditors and manage PCI vulnerability scans and penetration testing Application & Infrastructure Security (~50%): Conduct threat modeling, security assessments, and penetration testing of Azure-based applications and APIs, including code reviews focused on authentication, authorization, and data protection Review, validate, and design security controls across Azure infrastructure, including Network Security Groups, firewalls, Azure AD/Entra ID, and Key Vault Manage and optimize security tools (endpoint protection, SIEM, vulnerability scanners, automated testing platforms) and coordinate continuous vulnerability scanning and remediation with development and infrastructure teams Investigate and respond to security incidents with root cause analysis and implement preventive measures Partner with DevOps to integrate security into CI/CD pipelines Evaluate and implement new security and automation technologies Provide security training and guidance to promote a strong security culture As an Information Security Engineer, you have Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience) 7+ years of hands-on information security experience, preferably in financial services or highly regulated environments Proven experience managing SOC2 Type II and PCI DSS compliance programs, including control design, policy development, and audit coordination Strong technical skills in penetration testing, vulnerability assessments, and security code reviews Experience with Azure security (Network Security Groups, Azure AD, Key Vault, Security Center) and security tooling (SIEM, vulnerability scanners, endpoint protection) Experience investigating and responding to security incidents with strong analytical and problem-solving skills Excellent communication skills with the ability to explain technical security concepts to both technical and non-technical stakeholders Proven ability to work independently as a security subject matter expert Security certifications (CISSP, OSCP, CEH, GIAC, or Azure Security) are preferred but not required What We're Offering in Return Empowered Work: Own your work and grow your career with real autonomy and impact Hybrid Flexibility: 3 days remote, 2 days in our Atlanta office at the Battery Global Impact: Join a passionate team building mission-critical tools for people around the world Great Benefits: Medical, dental, vision, disability, 401(k), paid parental leave, PTO, and more Supportive Environment: Thrive in a collaborative, inclusive workplace that values innovation and continuous learning Brightwell is an equal opportunity employer (EOE) committed to employing a diverse workforce and sustaining an inclusive culture. Powered by JazzHR Tj5aNisvS8
    $77k-101k yearly est. 13d ago
  • Cyber Security Professional

    Hl Mando America Corp

    Cyber security analyst job in Hogansville, GA

    Job Purpose: This position is responsible for protecting the organization's information systems, networks, and data from cyber threats. Responsibilities include the following (other duties may be assigned as needed) Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization's data, systems, and networks Troubleshooting security and network problems Responding to all system and/or network security breaches Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls Testing and identifying network and system vulnerabilities Cybersecurity awareness training for end users Perform other assigned responsibilities Qualifications: Bachelor's Degree in Computer Science, Information Systems or Related Field Minimum 3 years' work experience in IT security, network security, or related areas Minimum 3 years' work experience in SIEM, SSE, IPS,/IDS, firewall, and endpoint protection Knowledge of cybersecurity frameworks (e.g., ISO 27001) Great awareness of cybersecurity trends and hacking techniques Technical Competencies: Cisco ASA Firewall, Cisco Firepower Firewall, Netgate PFsense Firewall, Palo Alto Firewall skills Proficiency in managing SIEM and SSE solutions Strong skills in Python and PowerShell for automating security tasks, log analysis, and system admin Solid understanding of Windows and Linux environments Knowledge of securing cloud platform, implementing access controls, and monitoring Non-Technical Competencies: Highly self-motivated, Dedicated, Ability to work independently and be results-driven Excellent communication skills - Written & Oral Positive and optimistic approach to problem-solving Collaborative team spirit Multi-Tasking Ability to Work under minimal supervision & be conscious about his effort & productivity Supervisory Responsibility: N/A
    $70k-99k yearly est. Auto-Apply 35d ago
  • IT Applications Security Engineer/Analyst

    360 It Professionals 3.6company rating

    Cyber security analyst job in Atlanta, GA

    360 IT Professionals is a California base Minority Business Enterprise specializing in the field of IT Consulting and Staffing. Since our Inception we have been providing industry leading IT solutions for Staffing and Software Development. We have more than 30 IT Staffing Services contracts across USA and working closely with Fortune 500 Companies and Key Private sector Agencies. We are providing staffing support to more than 10 State Customers across USA and have successfully staffed for more than 260 roles in last 6 months. PSB job description for your reference: Job Title: IT Applications Security Engineer/Analyst Duration: 11 months contract Location: Atlanta GA IT Applications Security Engineer/Analyst · This project is responsible for ensuring that key security risks associated with the client's applications are identified, assessed, communicated and is mitigated appropriately. Project is also responsible for ensuring that secure software development principals become fundamental at the client site. Must Have: · 5+ years IT experience as a Security Engineer · Ability to provide secure design, implementation documentation, and troubleshooting with a focus on application security · Ability to provide guidance based on industry standards such as Open Web Application Security Project (OWASP) · Experience conducting manual and automated application assessments both dynamically and statically, producing reports, opening tickets, and meeting with development teams · Be available and willing to provide 24x7 operational support and troubleshooting to ensure systems are available to support Client's business functions · Experience planning and conducting complex project studies, including analysis of multiple data sources, and publishing results to the team or to the technical user community · Ability to review and document current architecture and configurations, propose changes needed, and implement processes/procedures as needed · Monitor systems to identify and solve data communication problems and user performance issues; this includes understanding chronic issues causing inefficiency in operation and seek resolution Qualifications Education: Bachelor's degree or greater in computer science, computer engineering, information technology or public health Additional Information Local candidates preferred. Immediate interview and placement! any visa status, but who are available for the in person interview.
    $78k-102k yearly est. 60d+ ago

Learn more about cyber security analyst jobs

How much does a cyber security analyst earn in Carrollton, GA?

The average cyber security analyst in Carrollton, GA earns between $65,000 and $116,000 annually. This compares to the national average cyber security analyst range of $66,000 to $117,000.

Average cyber security analyst salary in Carrollton, GA

$87,000
Job type you want
Full Time
Part Time
Internship
Temporary