Senior Security Engineer
Cyber security analyst job in Owatonna, MN
Candidates Only no 3rd Party Candidates!
Company is seeking a Senior Security Engineer or Security Solutions Architect with deep experience in Zscaler Internet Access (ZIA) and Secure Web Gateway (SWG) solutions. The resource will review and assess the current Zscaler deployment, identify best practices, implement configuration and policy improvements, and optimize workflows to improve security posture and user experience.
Key Responsibilities
Assess Company's current Zscaler ZIA (SWG) deployment and provide best practice recommendations.
Perform configuration updates, policy tuning, and remediations based on assessment findings.
Review and optimize the website approval workflow, reducing turnaround time for URL requests (currently 2-3 days).
Implement granular Zscaler policies allowing differentiated access based on user identity (e.g., allow downloads but restrict uploads).
Assist with Zscaler DLP policy design and management.
Develop and document end-user and administrator processes, ensuring consistency and clarity.
Identify opportunities to automate policy or workflow management via scripting or ServiceNow integrations.
Collaborate with internal teams (SOC, Engineering, GRC) to align configurations with security requirements.
Required Qualifications
7+ years of experience in IT security engineering or architecture.
Proven expertise with Zscaler Internet Access (ZIA) and Secure Web Gateway (SWG) design, deployment, and optimization.
Working knowledge of Zscaler Private Access (ZPA) and Zscaler DLP.
Strong understanding of enterprise networking, including firewalls, proxies, and DNS.
Experience designing and implementing identity-based policies within Zscaler.
Familiarity with Zero Trust architecture, encryption, and access control principles.
Proficiency in Python scripting or API integration for automation and workflow improvements.
Experience integrating with ServiceNow or similar platforms.
Excellent communication skills and ability to operate independently in a fast-paced environment.
Strong process orientation with proven experience analyzing, optimizing, and documenting workflows.
Security Engineer (28801)
Cyber security analyst job in Brooklyn Park, MN
Title: Security Engineer
Job Type: Contract (12 months)
Compensation: $90.00 - $112.00 per hour (W2)
Industry: Retail
---
About the Role
We are seeking a Security Engineer to join a leading organization in the retail and e-commerce industry. This role focuses on implementing secure identity frameworks and workload authentication across distributed systems. You will work on cutting-edge technologies to ensure secure communication between services in a dynamic, large-scale environment.
Job Description
As a Security Engineer, you will be responsible for designing, deploying, and maintaining SPIFFE/SPIRE-based identity solutions. You will integrate these frameworks with container orchestration platforms, service meshes, and proxy workloads to enhance security posture. This position requires hands-on experience with SPIRE components and the ability to customize attestors and identity issuance workflows.
Key responsibilities include:
Deploy and manage SPIRE Server and SPIRE Agent in production environments.
Design and implement secure workload identity solutions using SPIFFE IDs and trust domains.
Build or customize workload and node attestors to meet organizational needs.
Implement SVID issuance and rotation for X.509 and JWT formats.
Integrate SPIRE with Kubernetes clusters, service meshes (e.g., Istio, Linkerd), and Envoy-based workloads.
Collaborate with cross-functional teams to ensure seamless identity management across distributed systems.
Qualifications
Required:
Proven hands-on experience deploying and managing SPIRE Server and SPIRE Agent.
Strong understanding of SPIFFE IDs, trust domains, and workload identity concepts.
Experience designing and implementing SVID issuance and rotation (X.509/JWT).
Ability to build or customize workload and node attestors.
Practical experience integrating SPIRE with Kubernetes, service meshes (Istio, Linkerd), and Envoy-based workloads.
Preferred:
Background in large-scale distributed systems or cloud-native environments.
Familiarity with container security and zero-trust architectures.
Experience with scripting or automation tools for identity management.
Knowledge of TLS, PKI, and cryptographic principles.
---
Benefits
Dahl Consulting is proud to offer a comprehensive benefits package to eligible employees that will allow you to choose the best coverage to meet your family's needs. For details, please review the DAHL Benefits Summary: ***********************************************
Equal Opportunity Statement
As an equal opportunity employer, Dahl Consulting welcomes candidates of all backgrounds and experiences to apply. If this position sounds like the right opportunity for you, we encourage you to take the next step and connect with us. We look forward to meeting you!
Senior Cyber Security Analyst
Cyber security analyst job in Minnetonka, MN
- Bachelor's Degree in Computer Science or related field or equivalent experience
- Certified Information Systems Security Professional (CISSP) and/or Certified Cloud Security Certification (CCSP) and/or equivalent
- AWS certifications (or ability to obtain within 6 months
- Entry to junior level, 1-2 years of hands on Penetration Testing of web applications and infrastructure experience
- 2-4 years of hands on cyber security operations, threat analysis, and/or incident response
- Good appreciation of other security roles such as intelligence, vulnerability and patch management, Risk, auditing, Awareness and Security Architecture
- A good understanding of the OSI stack and the various protocols from layer 1 - 7 including SNMP, HTTP, VPN, 802.11.
- Social engineering engagement experience (i.e. phishing)
- Excellent communication skills with the ability to communicate at a technical and business user level
This role will be part of the Cyber Security Operations team within CWT's Global Security and Risk department at our Minnetonka office.
You will support the global operations by participating in the security incident response program and identifying vulnerabilities via standard penetration testing assessments and identifying threats posing a genuine risk to CWT. This information will enable CWT to proactively adjust its defensive posture.
We are seeking an individual to be part of the team, to help as it grows with maturity. The team will carry out or coordinate (third parties) penetration testing across a number of environments including infrastructure, web app, and mobile platforms. In addition, you will collect and distribute Cyber Threat Intelligence as it relates to CWT.
The role offers some exciting opportunities including the potential to develop your talents and skills, and investigating in more detail vulnerabilities and techniques that could be used against CWT.
- Ability to create investigation results into a report
- Ability to influence others where there is no direct authority
- Data analysis, Network, OS systems (Windows, Unix, Linux)
- Strong technical background and great understanding on emerging security trends
- Deep technical knowledge IT Network, Infrastructure, Software, Cloud, Mobile
- Red Team experience or experience of using Open Source and COTS for penetration testing which could include Nmap, Nessus, Metasploit, Kali Linux, Burp Suite Pro and similar
- Experience in common scripting languages such as Python, Ruby, LUA, Powershell or BASH
- Experience in at least one development language e.g. Java, C, C# or similar
- A good understanding of Cloud based architectures primarily AWS
Auto-ApplySenior Cyber Security Analyst
Cyber security analyst job in Minnetonka, MN
Senior Cyber Security Analyst - 180001PV) This role will be part of the Cyber Security Operations team within CWT's Global Security and Risk department at our Minnetonka office.You will support the global operations by participating in the security incident response program and identifying vulnerabilities via standard penetration testing assessments and identifying threats posing a genuine risk to CWT. This information will enable CWT to proactively adjust its defensive posture. We are seeking an individual to be part of the team, to help as it grows with maturity. The team will carry out or coordinate (third parties) penetration testing across a number of environments including infrastructure, web app, and mobile platforms. In addition, you will collect and distribute Cyber Threat Intelligence as it relates to CWT. The role offers some exciting opportunities including the potential to develop your talents and skills, and investigating in more detail vulnerabilities and techniques that could be used against CWT. - Ability to create investigation results into a report- Ability to influence others where there is no direct authority- Data analysis, Network, OS systems (Windows, Unix, Linux)- Strong technical background and great understanding on emerging security trends- Deep technical knowledge IT Network, Infrastructure, Software, Cloud, Mobile- Red Team experience or experience of using Open Source and COTS for penetration testing which could include Nmap, Nessus, Metasploit, Kali Linux, Burp Suite Pro and similar - Experience in common scripting languages such as Python, Ruby, LUA, Powershell or BASH - Experience in at least one development language e.g. Java, C, C# or similar - A good understanding of Cloud based architectures primarily AWS Qualifications - Bachelor's Degree in Computer Science or related field or
equivalent experience
- Certified Information Systems Security Professional (CISSP) and/or Certified
Cloud Security Certification (CCSP) and/or equivalent
- AWS certifications (or ability to obtain within 6 months- Entry to junior level, 1-2 years of hands on Penetration Testing of web applications and infrastructure experience - 2-4 years of hands on cyber security operations, threat analysis, and/or incident response- Good appreciation of other security roles such as intelligence, vulnerability and patch management, Risk, auditing, Awareness and Security Architecture - A good understanding of the OSI stack and the various protocols from layer 1 - 7 including SNMP, HTTP, VPN, 802.11. - Social engineering engagement experience (i.e. phishing) - Excellent communication skills with the ability to communicate at a technical and business user level Primary Location: MinnetonkaEmployment type: StandardJob Family: Information TechnologyScope: GlobalTravel: Yes, 5 % of the TimeShift: Day JobOrganization: P&T_Security & RiskExperience Level: 3 to 5 years Job Posting: Apr 25, 2018 As an Equal Opportunity Employer/Affirmative Action employer, the organization will not discriminate in its employment practices due to an applicant's race, color, religion, sex, national origin, veteran status, disability status, sexual orientation, gender identity or any other federal, state or local protected class
Auto-ApplyCyber Resilience Specialist
Cyber security analyst job in Minneapolis, MN
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies. We are currently looking for a Senior Consultant or Principal level Security strategist with deep technical and functional expertise in Business Continuity and Disaster Recovery.
What You'll Do
* Lead and facilitate Business Impact Assessments (BIAs) across business units
* Develop and update Business Continuity Plans (BCPs) and Disaster Recovery Plans (DRPs) aligned to critical business functions and systems
* Assess organizational risk and capability gaps related to crisis management, workforce continuity, and infrastructure resilience
* Design tiered recovery strategies based on RTOs, RPOs, and MVC (Minimum Viable Company) principles
* Coordinate and conduct tabletop exercises, test execution, and post-mortem reviews
* Align BC/DR practices with enterprise risk management frameworks, compliance requirements (e.g., HIPAA, ISO 22301), and audit expectations
* Support program governance, metrics, training, and awareness efforts
What You'll Bring
* 6+ years of experience in Business Continuity, Disaster Recovery, or operational resilience consulting
* Strong working knowledge of BIAs, BCP/DRP development, and crisis management planning
* Understanding of IT infrastructure concepts and DR technologies (e.g., backup systems, cloud platforms)
* Experience supporting risk assessments and regulatory audits
* Excellent facilitation and stakeholder management skills
* Strong writing skills to produce clear, client-ready plans and reports
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this role, we are hiring at the following levels and targeted base pay salary ranges: The targeted base salary pay range for Senior Consultant in New Jersey, New York City, and Washington DC is $153,000 to $186,000. The targeted base salary range for Senior Consultant in Atlanta, Chicago, Detroit, Kansas City, Minneapolis, Nashville, Philadelphia, Phoenix, St. Louis is $140,000 to $171,000. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************.
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
#LI-MS12
Easy ApplyInformation Security Engineer Lead
Cyber security analyst job in Duluth, MN
The Lead Security Engineer position is part of the Information Technology team, reporting directly to the Manager, Information Security. The focus of this role is to design, implement, and maintain advanced security solutions that protect the confidentiality, integrity, and availability of Cirrus digital assets. This role requires deep technical expertise in Microsoft technologies, cybersecurity engineering, and enterprise security architecture, as well as the ability to mentor Security analysts and partner with IT teams on secure system design and operations.
Duties and Responsibilities/Essential Functions
Design, implement, and maintain enterprise security controls across Microsoft environments, including Azure, Entra ID (Azure AD), Microsoft 365, Microsoft Defender, and Windows Server platforms.
Lead incident response activities, including investigation, containment, eradication, and recovery, as well as post-incident lessons learned.
Analyze security events and alerts from IDS/IPS, SIEM, EDR/XDR, vulnerability scanners, and Microsoft security tools to identify and mitigate threats.
Develop and implement security hardening baselines, patch management processes, and secure configuration standards for Microsoft platforms and hybrid environments.
Collaborate with IT and business stakeholders to design secure solutions, ensuring security requirements are integrated into Windows, Active Directory/Entra ID, Azure, and Microsoft 365 systems.
Conduct threat modeling and risk assessments, making recommendations for risk treatment and mitigation strategies.
Oversee vulnerability management program, including regular assessments, prioritization, and remediation validation.
Create strategies to mitigate risks and ensure compliance with relevant laws and regulations
Focus on continuous improvement to stay updated on cybersecurity trends and emerging threats to enhance security measures.
Provide mentorship and technical guidance to Information Security Analysts and IT staff.
Assist in the development and enforcement of security policies, standards, and procedures, with specific emphasis on Microsoft platforms.
Stay current with emerging threats, vulnerabilities, and security technologies; recommend improvements to strengthen the security posture
Regular, reliable, and predictable attendance
Qualifications:
To perform this job successfully, an individual must be able to perform each essential function satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.
Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent combination of education and experience.
7+ years of progressive experience in information security, engineering, or related IT disciplines.
Advanced knowledge of Microsoft technologies, including Azure, Entra ID (Azure AD), Office 365, Microsoft Defender suite, and Windows Server.
Experience with SIEM, SOAR, EDR/XDR, vulnerability management, and forensic analysis tools, preferably integrated with Microsoft Sentinel and Defender.
Strong understanding of cloud platforms (Azure, AWS, Google Cloud) and securing hybrid infrastructures.
Relevant security certifications preferred: CISSP, CISM, OSCP, GIAC (GCIA, GCIH, GPEN), Microsoft Certified: Azure Security Engineer Associate, Microsoft 365 Security Administrator Associate, or equivalent.
Demonstrated expertise in incident response, malware analysis, and intrusion detection.
Proficiency with scripting/automation languages (PowerShell, Python, etc.) to enhance security operations.
In-depth knowledge of common frameworks and standards (NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK).
Proven ability to design and implement Zero Trust and defense-in-depth strategies.
Applies advanced knowledge of Microsoft security technologies and enterprise platforms to solve complex challenges.
Mentors and guides team members, builds trust, and fosters a culture of continuous improvement
Competencies
To perform the job successfully, an individual should demonstrate the following competencies:
Manages Complexity - Asks the right questions to accurately analyze situations, acquires data from multiple and diverse sources when solving problems, uncovers root causes to difficult problems, evaluates pros and cons, risks and benefits of different solution options.
Situational Adaptability - Picks up on situation cues and adjusts in the moment. Readily adapts personal, interpersonal, and leadership behavior. Understands that different situations may call for different approaches. Can act differently depending on the circumstance.
Optimizes Work Processes - Identifies and creates the processes necessary to get work done, Separates and combines activities into efficient workflow, Designs processes and procedures that allow managing from a distance, Seeks ways to improve processes,
Collaborates: Builds partnerships and works collaboratively with others to meet shared objectives.
Organizational Savvy: Maneuvers comfortably through complex policy, process, and people-related organizational dynamics.
Directs Work: Provides direction, delegates, and removes obstacles to get work done.
Other Duties
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice. Work beyond 40 hours per week may be required.
Cirrus is dedicated to a drug free work environment promoting equal employment opportunity. Qualified applicants will receive consideration for employment without regard to race, sex, national origin, color, age, disability, religion, pregnancy, veteran status, marital and family status, sexual orientation, receipt of public assistance, genetic information or any other characteristic protected by applicable law.
Our Benefits: Cirrus provides a range of exciting benefits, including:
401(k) Plan: Dollar-for-dollar match up to 5% after 90 days, with 100% vesting.
Employer-Paid Coverages: Group term life, short- and long-term disability insurance.
Comprehensive Health Coverage: Medical, vision, dental, with additional dependent coverage options.
Free Health Tracking: With rewards for meeting health goals.
Generous PTO: 120+ hours accrued within the first year.
Employee Referral Bonus: For referring talented candidates.
Career Development: Tuition reimbursement and professional growth opportunities.
Exclusive Discounts: Access to partner and marketplace discounts.
Community & Engagement: Company and employee clubs at various locations.
These benefits are designed to support your well-being, growth, and enjoyment at Cirrus!
Cyber Security Specialist IV
Cyber security analyst job in Eagan, MN
Title: Cyber Security Risk Expert IV Terms: 6 months contract with possible extension * Design, administer, and execute procedures for the identification, assessment, documentation, and communication of risks that could compromise Postal Service data and operations stemming from weaknesses in technology platforms, solution architectures, governance processes, and security capabilities, against industry standards and best practices.
* Provide recommendations to improve and sustain the security of the enterprise's data and operations and document the organizational risk response plan (accept, mitigate, transfer, or avoid).
* Monitor, report on, and validate, the status and efficacy of risk mitigation, transfer, or avoidance plans.
Task description and/or any specific requirements:
* Demonstrate expert-level knowledge and proficiency with ServiceNow (SNow) Vulnerability Response (VR) and generally associated modules, including but not limited to the following skills, abilities and knowledge:
* General: Deep understanding of SNow platforms core functionalities and components, including forms, MID servers, tables, dashboards and access control lists (ACLs)
* Scripting: Proficiency in rules and scripting (e.g., JavaScript), adequate to develop, test and deploy
* Integrations: Proficiency to develop and troubleshoot VR integrations, including knowledge of APIs and service graph connectors
* ]Dashboarding: Proficiency in designing and developing VR-focused dashboards and reports
* Design and administer procedures within the organization to sustain the security of the organizations data and access to its technology and communication systems
* Assess the risk of exposure of proprietary data through weaknesses in platforms, access procedures and forms of access, to the organizations systems and data contained within
* Ability to review, collate, understand and present data, from various sources, to meet the remediation needs and expectations of the organization
* Knowledge of automation coding, to automate data extrapolation, organization and dissemination, to meet the needs of the organization
* Ability to review, investigate and assign cybersecurity vulnerabilities, for a variety of applications, systems and hardware, including cloud computing
* Manage several projects/initiatives of various sizes, complexities and risks
* Demonstrated proficiency in successfully evaluating and supporting documentation, validation and remediation processes required to ensure new and existing information technology (IT) systems meet the organization's vulnerability remediation expectations and requirements
* Demonstrated ability to review and understand security blueprints, principles, models, designs, standards, and guidelines to ensure enterprise cybersecurity remediation support is consistent and beneficial to the organization
* Experience with vulnerability remediation and remediation processes and efforts, as well as remediation tools
* Ability to serve as subject matter expert (SME) for the USPS VRM process, including providing guidance to stakeholders, business units and new CISO resources, as necessary
* Strong organizational skills and ability to build and maintain schedules and step-by-step action plans
* Effective communication and collaboration skills to work with cross-functional teams, business units, stakeholders and IT professionals, and to conduct presentations to varying audiences and technical knowledge levels.
Experience/Education:
* A minimum of thirteen (13) to twenty (20) years relevant experience.
* A degree from an accredited College/University in the applicable field of services is preferred. four additional years of relevant experience in lieu of a college degree is required. If the indiviual's degree is not in the applicable field then four additional years of related experience is required.
* Works on high-visibility, or mission critical aspects of a given program, and performs all functional duties independently.
* Oversees the efforts of direct reporting resources and/or be responsible for the efforts of all staff assigned to a specific job.
* Note: Special credentials (licenses and/or certifications) may be required at the Task Order level on a case-specific basis.
Pay Range: $45-$50/hr W2
About Seneca Resources:
At Seneca Resources, we are more than just a staffing and consulting firm-we are a trusted career partner. With offices across the U.S. and clients ranging from Fortune 500 organizations to government agencies, we connect professionals with opportunities that drive meaningful impact and support long-term career growth.
When you join Seneca, you gain a team committed to your success. We offer competitive compensation, comprehensive health, dental, and vision coverage, 401(k) plans, and continuous support throughout your assignment. Our recruiters and account managers invest in understanding your goals and placing you in roles aligned with your talents and ambitions.
Seneca Resources is proud to be an Equal Opportunity Employer, dedicated to building a diverse and inclusive workplace where all qualified applicants are encouraged to apply.
Information Security Analyst
Cyber security analyst job in Eagan, MN
Established in 1991, Collabera has been a leader in IT staffing for over 22 years and is one of the largest diversity IT staffing firms in the industry. As a half a billion dollar IT company, with more than 9,000 professionals across 30+ offices, Collabera offers comprehensive, cost-effective IT staffing & IT Services. We provide services to Fortune 500 and mid-size companies to meet their talent needs with high quality IT resources through Staff Augmentation, Global Talent Management, Value Added Services through CLASS (Competency Leveraged Advanced Staffing & Solutions) Permanent Placement Services and Vendor Management Programs.
Job Description
Position Details: Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension) Location - Eagan , MN - 55123
Qualifications
Primary Objective Perform in the delivery and development of processes and services which support best practices in information security and risk management for Client enterprise. Knowledge, Skills & Behaviors • 2+ years related information security risk management experience • 3+ years related information technology experience • Preferred industry-related certifications: GSEC, CISSP, CISA, CISM, ITIL • Preferred exposure in SOC2, ISO 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC • Demonstrate results in planning and delivering complex projects on time • Maintain focus and manage multiple efforts concurrently • Perform independently to expectations while being collaborative and maintaining alignment with the team • Work effectively with all levels of the organization including subject matter experts, stakeholders, and leadership • Strong written and verbal communication skills to include executive audiences • Apply tactical and strategic methods appropriately • Effective negotiation and influence • Focused on supporting the customer, the team, and the business • Strong collaboration and problem-solving skills Major Areas of Accountability • Operate as a key contributor to the Vendor Risk Management processes. • Interface with subject matter experts, peers and stakeholders; and business or technology leaders across the Client enterprise. • Demonstrate subject matter expertise on information security best practices and Client security posture focused on performing due diligence for vendor assurance inquiries and attestations. • Assist in initiatives to evaluate and provide input on the effectiveness of processes and solutions, and to determine or support a course of action. Track and report on mitigation progress. • Contribute to the strategic and tactical development of information security, risk management and compliance initiatives, to include policy and standards development, solution development, security awareness and training, and other information security initiatives as assigned. • Track, verify and collect data points for reporting and metrics on identified services to identify gaps and inform leadership. • Serve as a subject matter expert in information technology operations, information security and risk management practices, global legal and regulatory requirements, and other applicable security and privacy trends and practices. • Participate as a member of a team for Vendor Risk Management • Contribute to and achieve business and departmental goals and objectives • Deliver processes and services consistently and accurately • Accept feedback and flex to address tactical needs • Report on status of initiatives to all levels in the organization • Work across the organization to contribute to departmental initiatives and programs Education • Prefer 4 year (Bachelor's) Degree in a technology related field
If you are interested please contact NEHA KALIA (Technical Recruiter) at ************ and email an updated copy of your resume (preferably WORD format) to ***************************
Additional InformationIf you are interested please contact NEHA KALIA (Technical Recruiter) at ************ and email an updated copy of your resume (preferably WORD format) to ***************************
Easy ApplyInformation Systems Security Officer
Cyber security analyst job in Grand Forks, ND
SAIC is looking for an Information Systems Security Officer (ISSO). The ISSO's primary function is working within classified areas supporting US Space Force / Space Development Agency (SDA) / Battle Management Command, Control, and Communications (BMC3) mission areas. The position will provide "day-to-day" support for Collateral and Sensitive Compartmented Information (SCI) activities. This position is in Grand Forks, ND.
**Performance shall include:**
+ Must be familiar with security policy/manuals and the appropriate ICDs/JAFANs/DOD Manuals and other guiding policy documents.
+ Must have the ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners.
+ Possess a high degree of originality, creativity, initiative requiring minimal supervision.
+ Review, prepare, and update RMF accreditation packages.
+ Notify customers when changes occur that might affect RMF accreditation/certification.
+ Perform RMF self-inspections, provide security coordination and review of all system test plans.
+ Identify RMF vulnerabilities and implement countermeasures.
+ Conduct security surveys and gather pertinent security documentation for inclusion into system accreditation packages.
+ Coordinate, prepare, and track RMF inspections, reports, and responses.
+ Maintain RMF security records.
+ Prepare reports on the status of security safeguards applied to information systems.
+ Ensure RMF authorized information systems are operated, maintained, and disposed of in accordance with security policies and practices.
+ Perform ISSO duties in support of in-house and external customers.
+ Assist SDA and other government agencies with Cyber Test & Evaluation (CT&E) efforts.
+ Maintain Information Systems security postures IAW the RMF Authorization.
+ Collect and analyze security scans and audit logs.
+ Perform vulnerability management.
+ Perform Continuous Monitoring of RMF authorized information systems in classified environments.
**Qualifications**
Qualifications - External
+ 5-9 years total related experience.
+ Extensive knowledge of Assured Compliance Assessment Solution (ACAS) and Splunk.
+ Systems Administrator (Sys Ad) experience.
**Education:**
+ Bachelor's degree or equivalent additional experience (4 years).
**Certifications:**
+ Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance
+ Technician Level 2 within 6 months on the date of hire.
**Security Clearance:**
+ Top Secret (SCI eligible) required.
REQNUMBER: 2511612
SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability
Senior Security Analyst - AppSec
Cyber security analyst job in Saint Paul, MN
Patterson isn't just a place to work, it's a partner that cares about your success.
One of the distinguishing marks of our company is the talented people who embrace the people-first, always advancing, and results-driven culture. Professional growth abounds in this motivating environment. We value the diverse talents and experiences our employees bring to Patterson and believe that they build a stronger and successful organization.
Job Description:
The Application Senior Security Analyst leads the implementation and maintenance of network and application security systems to protect Patterson's information assets. This role drives technical support, incident response, and ensures alignment with security and project goals. The analyst develops and enhances the application security program using industry best practices and frameworks. Expertise in secure coding, static and dynamic code analysis, and vulnerability remediation is essential. The candidate integrates security controls into CI/CD pipelines using SecDevOps methodologies. Responsibilities include tool integration, policy enforcement, and continuous monitoring. Collaboration across DevOps, compliance, risk, and audit teams ensures enterprise-wide security alignment. A methodical approach to assessing and triaging security findings is critical for success.
Essential Functions
To perform this job successfully, an employee must be able to perform each essential function satisfactorily, with or without reasonable accommodation. To request a reasonable accommodation, notify Human Resources or the manager who oversees the position.
Perform application security triage, oversee issue resolution, and track remediation metrics
Oversees the maintenance, support, and delivery of associated security platforms
Drives continuous improvements in acting on alerts, service requests, and incidents
Integrates best practices to proactively analyze and monitor systems and applications for system and security related issues
Considered subject matter expert in assigned platforms and keeps up-to-date knowledge to drive improvements
Strong mentor with the ability to work with junior team members and provide leadership and training on new tools or projects
Provide support and ongoing input in the evolution of the application security program
Ensure the application security tool set is optimized, tuned, and maintained
Collaborate with Devs and Ops teams to embed security into CI/CD pipelines and SecDevOps workflows
Perform security testing to include SAST, DAST, SCA, Container, APIs, IaC, Secrets
Interact with Infrastructure, DevOps, and application owners to ensure alignment with Patterson's roadmaps
Prioritize workload depending on business direction, compliance, and / or security requirements
Embedded in the SDLC process for all major applications, working with DevOps, SecDevOps, Developers, QA, Principal Architects, Security Champions,
Actively participate and / or lead weekly meetings with application team leads and security champions
Track and manage identified vulnerabilities through resolution, ensuring timely remediation and documentation.
Oversee the planning, execution, and follow-up of penetration tests conducted by internal teams and external security partners.
Additional functions
In addition to the essential functions listed above, the incumbent may perform the following additional functions.
Experience with .Net, C#, Javascript, Angular and related languages
Familiarity with AzureDevOPs (ADO), Package Management, SBOM, TFS and / or VSTS
Familiarity with major cloud platforms, including Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP)
General knowledge of Application Security frameworks such as BSIMM, OWASP SAMM / ASVS, NIST, etc
Experience with Thick Clients, Web Apps, Cloud Solutions, SPA, Web Services, MVC, APIs, etc
Familiar with Azure DevOps Pipelines for automated build, test and deployment workflows
Ability to support and manage Azure services including Azure Container Apps (ACA), Azure Kubernetes Service (AKS), and Azure Artifacts
Familiarity with software supply chain security processes, including vulnerability scanning, artifact integrity validation, and dependency risk management
Experience implementing and maintaining gating workflows in CI/CD pipelines to enforce security and compliance checks prior to deployment
Experience communicating security concerns and issues to non-technical audiences
Proficient in assessing microservices and APIs for security flaws using automated and manual testing techniques.
Familiar with key application security tools such as BurpSuite, HCL AppScan, Veracode, Qualsys WAS, Micro Focus WebInspect, Checkmarx, Mend.io (White Source), DevTools, Fiddler, Owasp Zap, Metasploit, BeeF, SQLMap, Postman, etc
Experience with Swagger, SOAPUI, Visual Studio
Required Qualifications
Bachelor's Degree with an emphasis in security, technology, or engineering or equivalent work experience
At least 4 years work experience in information technology, cyber security, or information security
Preferred Qualifications
Security industry certification desired
This person must be located within a commutable distance to Mendota Heights, MN or Loveland, CO. This will be 2 days in the office hybrid model.
What's In It For You
We provide competitive benefits, unique incentive programs and rewards for our eligible employees:
Full Medical, Dental, and Vision benefits and an integrated Wellness Program.
401(k) Match Retirement Savings Plan.
Paid Time Off (PTO).
Holiday Pay & Floating Holidays.
Volunteer Time Off (VTO).
Educational Assistance Program.
Full Paid Parental and Adoption Leave.
LifeWorks (Employee Assistance Program).
Patterson Perks Program.
The potential compensation range for this role is below. The final offer amount could exceed this range, based on various factors such as candidate location (geographical labor market), experience, and skills.
$94,100.00 - $117,700.00EEO Statement
Patterson provides equal employment opportunities to applicants and employees without regard to race; color; sex; gender identity; sexual orientation; religious practices and observances; national origin; pregnancy, childbirth, or other related medical conditions; status as a protected veteran or spouse/family member of a protected veteran; or disability.
Auto-ApplyEngineer, Information Security and Risk
Cyber security analyst job in Saint Paul, MN
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Information Security Analyst
Cyber security analyst job in Saint Paul, MN
The Information Security Analyst Identifies security risks and exposures, determine the causes of security violations, and configuring systems to optimize notification of future incidents. The Security Analyst Integrates appropriate systems and logs into the enterprise security incident and event management system to effectively monitor and detect various people and enterprise asset activity. The Information Security Analyst works under the direction of the Information Security Director on the IT Security Operations Team.
This is a hybrid job, must be located in Saint Paul MN
Responsibilities
• Investigates and analyzes security events to evaluate risk, prioritizing findings based on internal and external information.
• Configures and maintains SIEM platform, including areas such as source feeds, alerts, alarms, and API integrations.
• Configures and maintains EDR/antivirus.
• Configures and maintains vulnerability management platform, including areas such as vulnerability scanning, remediation, and mitigation as well as impact and risk analysis.
• Communicates security concerns to the business stakeholders to collectively develop and execute an appropriate remediation/mitigation plan.
• Interacts with security risk and compliance group, adjacent IT departments, and business units as needed to ensure compliance with IT Security goals and policies.
• When needed, assists in administration of other security tools (Data Loss Prevention, Email Security/Spam Filter, End User Training, Mobile Device Management).
• Maintains up-to-date knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and evolving attacks and threat vectors.
General Job Responsibilities:
• Ability to work in a team environment and independently as required
• Contributes to project planning and scheduling.
• Normally receives minimal instructions on routine work and detailed instructions on new assignments.
• Participate in Architecture design reviews and other technical governance forums across the organization representing the security team across multiple projects.
• Be on call and available after business hours, would require working Holidays and weekends if major security incident occurs.
• Establish and maintain pertinent policies, standards, and procedures
• Perform duties in compliance with applicable regulations and standards such as Sarbanes Oxley Act, FDA Quality System, and ISO (International Organization for Standardization) Works on routine assignments per written procedures, where ability to recognize deviation from accepted practice is required.
• Contributes to the overall operations and to the achievement of departmental goals
• Perform job specific tasks in compliance with applicable Regulations, International Standards, and WuXi AppTec Policies and Standard Operating Procedures.
• Understanding of Good Laboratory Practices and Good Manufacturing Practices
• Other duties as assigned
Qualifications
• Degree in Cyber Security, Management Information Systems, Information Security or equivalent work experience
o Minimum 2 years prior experience in a Cyber Security
• In depth knowledge of LogRhythm SIEM platform or other SIEM platforms, which includes configuring and maintaining API integrations and source feeds, alerts and alarms
• In depth knowledge in Qualys Vulnerability Management System, which includes configuring and maintaining
• In depth knowledge in Cisco AMP Anti-Virus software, which includes configuring and maintaining
• Knowledge of ISO/IEC 27001 standards.
• Strong technical acumen with a solid understanding of security technologies and network architecture
• Strong verbal and written communication skills
• Independent driver of self-development and continuous learning
• Knowledge of information security technology, design, research techniques, administration, operating standards, and quality control methods.
• Basic understanding of LAN/WAN technologies and protocols, FTP, Active Directory, VPN technologies (MPLS, IPSEC, etc.), IIS and other network services.
• Experience in a large, formal vulnerability program.
• General knowledge of cloud, wireless network and mobile security.
• Team-oriented and skilled in working within a collaborative environment.
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability
This job description does not state or imply that the above are the only duties and responsibilities assigned to this position. Employees holding this position will be required to perform any other job-related duties as requested by Management.
Auto-ApplyInformation Security Analyst
Cyber security analyst job in Bismarck, ND
Bravera is hiring for an Information Security Analyst at any Bravera Bank location (MT, ND or MN). The Information Security Analyst supports the Information Security Officer (ISO) in safeguarding the bank's information assets by assisting in the development, implementation, and monitoring of security policies, procedures, and controls. This role is critical in helping maintain the confidentiality, integrity, and availability of the bank's information systems and data. In addition, this position will assist with performing audits for Bravera Holdings Corp. & Subsidiaries, remaining independent and objective while assessing compliance with controls, policies/procedures, and regulations.
MEASURES OF SUCCESS:
Contribution to successful regulatory or external audit outcomes.
Security awareness training to prevent cybersecurity incidents.
Attention to detail
Strong Communication - written and verbal
Willingness to learn, work independently, and ask questions
DUTIES AND RESPONSIBILITIES:
Assist the ISO in implementing and maintaining the bank's information security program. This includes Information Security, Information Systems, Access Control, Incident Response Plan and Vendor Management Program.
Assist with vendor risk assessments and third-party due diligence. (includes vendor risk assessment, due diligence, ongoing monitoring, proper documentation and reporting, and contracts)
Ensure appropriate administrative, physical, and technical safeguards are in place to protect information assets from internal and external threats.
Information Security Monitoring (Firewall, core system, internet banking platforms, etc.)
Coordinate phishing simulations, security awareness campaigns, and training for security awareness month.
Evaluate and recommend information security technologies to countermeasures against threats to information or privacy.
Monitor, analyze and report on internal/external threats, cyber-crimes, and critical third-party vendor risks. Stay updated on the latest security trends and technologies to enhance the organization's security posture.
Assist with annual access control review.
Assist with Incident Response functional testing for appropriate staff.
Assist with Information Technology Risk Assessments.
Assist with CRI Profile, CIS Controls, and PCI compliance reviews/updates.
Lead Clean Desk and Fedline Audit.
Monitor Phishlabs, Information Security Committee & Abuse email accounts.
Will assist with examinations of Federal Regulators, external and internal audits, and investigations of fraud as requested. (Including evidence collection and remediation tracking)
Work with IT teams to ensure security measures are integrated into the organization's infrastructure.
Must maintain a high level of confidentiality and professionalism regarding all employee and customer issues and information.
The employee will adhere to all rules and regulations, including but not limited to the requirements of the Bank Secrecy Act. In addition, the employee will be proactive in the prevention of illegal activities, will vigilantly look for activities that may constitute any type of fraud including money laundering, and will report any suspicious activity to the BSA Officer.
Will assist with special projects and new technology initiatives, as requested.
Stay current on emerging threats, vulnerabilities, and regulatory changes.
Contribute to the overall success of the organization.
Responsibilities require a high degree of accuracy and strong communication skills.
Earn and maintain the respect and trust of people. Display honesty, integrity, and morality.
Must be able to efficiently organize work assignments in order to meet deadlines.
SECONDARY DUTIES AND RESPONSIBLITIES:
Create a monthly/quarterly fraud report.
Will assist with internal audits and FDICIA Testing.
QUALIFICATIONS (KNOWLEDGE, SKILLS AND ABILITIES):
Education: Bachelor's degree in Computer Science, Information Technology, Management Information Systems, Cybersecurity or related field (or equivalent experience).
2+ years of experience in cybersecurity, Information Security, or Information Technology (banking or financial services preferred).
Familiarity with cybersecurity/regulatory frameworks such as FFIEC, GLBA, NIST, or CRI Profile.
Obtain and keep current professional certification and training, as required. (Certified Community Bank Technology Officer, Certified Banking Vendor Manager)
LOCATION:
Any of Bravera's locations in Montana, North Dakota or Minnesota.
BENEFITS:
To support this, we provide a competitive and rewarding compensation package which includes a competitive salary, incentive compensation opportunities, retirement plan with company match, health insurance, paid holidays, paid time off (PTO), paid community volunteer time and stock opportunities. As a learning organization, we are committed to investing in the growth and development of our team members, offering training opportunities and tuition reimbursement.
Our Values
Give and earn trust. We support and empower one another to earn trust through accountable performance.
Learn, teach and mentor. We are a learning organization that invests in growth and development.
Collaborate and innovate. We work together to drive continuous improvement to enhance your experience.
Want to learn more about careers with Bravera? Go to bravera.bank/careers.
#ForgeYourPath with us! Find us on Facebook, Instagram, X, LinkedIn, Youtube, and Tik Tok.
---
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing or action, including an investigation conducted by the employer or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c).
Lottery Information Security Specialist
Cyber security analyst job in Bismarck, ND
125-23653 Salary Range: $4,882 - $6,380 per month. For full benefits package, click here: Total Rewards Calculator. Status: Full-Time with State Benefit Package Recruitment: Internal/External
Selecting Supervisor: Thomas Lawler, Director, Lottery Division
Summary of Work
The purpose of this position is to assist the Lottery Security Officer in ensuring the integrity and operability of all lottery systems and its assets. These systems include the Central Gaming System (CGS), Internal Control System (ICS), and the Sci-Core subscription service, and all related network access and security. This position is responsible for assisting in ensuring that all systems meet or exceed the Multi-State Lottery (MUSL) rules and security requirements. Additionally, this position assists in the investigation of any thefts, ticket disputes, and breaches of confidentiality or rule requirements by users.
Typical duties for this position include the following tasks:
* Assisting the Lottery Security Officer in user acceptance testing for system implementations, changes, upgrades, and enhancements meeting or exceeding all lottery regulatory requirements while delivering quality results within budget and on schedule.
* Assisting in the management and review of informational and physical security to ensure the integrity of the lottery and its assets.
* Adherence to and compliance with MUSL Rules.
* Assisting in investigations of player and retailer disputes.
* Participating in nightly draws on an as needed/rotational basis.
* Conduct draws balancing procedures. This includes certain on call rotations, which may include evenings, weekends and holidays.
* Availability to troubleshoot any system issues.
* Ensure firewall configurations and exceptions align with organizational security policies, compliance requirements, and operational needs.
In addition to the monthly salary, this position includes fully paid health insurance for employee and family, the option to participate in employee-paid dental and vision for employee and family, participation in the state NDPERS defined contribution retirement plan as well as the option to participate in the 457 deferred compensation plan, the option to contribute to a medical spending account, and earning annual and sick leave.
Location of Work:
The Division office is located in Bismarck, North Dakota.
Minimum Qualifications
* Bachelor's degree and at least one year of information technology experience or the combined equivalent of relevant years of experience and education
* High ethical standards; clean discipline record.
* Ability to maintain a high degree of confidentiality.
* Excellent written and verbal communication skills.
* Interpersonal skills needed to work well with colleagues, vendors, and the public.
* The judgment, reliability, and willingness to devote time and energy necessary to provide excellent work to the Lottery Division and the State of North Dakota.
* Ability, demonstrated in previous employment experience or otherwise shown, to establish and maintain effective, harmonious working relationships with colleagues, vendors, and supervisors.
* Excellent time management and organizational skills.
* Successful completion of the interview process, reference checks, and standard background and criminal record checks to determine knowledge, skills, and abilities to perform assistant attorney general tasks.
About Team ND
"Far and away the best prize life offers is the chance to work hard at work worth doing." - Theodore Roosevelt
More than 7,500 talented, hard-working people across sixty-three agencies have come together as Team North Dakota. At Team ND, we are driven to succeed through gratitude, humility, curiosity and courage. Our purpose is to empower people, improve lives, and inspire success. Join us in being legendary.
Total Rewards: The State of North Dakota is committed to providing team members with a strong and competitive rewards package that support you, your health and your family.
Considering a new position on Team ND? How does your current position stack up? Use our Total Rewards Calculator to estimate.
Application Procedures
Applicants are screened based on qualifications, successful completion of the interview process and a background and criminal investigation. Applicants must be currently authorized to work in the United States on a full-time basis. The Office of Attorney General does not provide sponsorships.
Application package must be received by 11:59 PM Central Standard Time (CST) on the closing date listed on the opening.
TO BE CONSIDERED FOR THIS POSITION APPLICATIONS MUST BE SUBMITTED ONLINE AT: ******************
Documents to be submitted:
* Resume
* Cover letter with a summary that clearly explains how the applicant's work experience is related to the summary of work and minimum/preferred qualifications
* 3 Professional References
* College Transcripts (copies or unofficial versions are acceptable for the initial application process but when the top candidate is given a conditional employment offer, they are required to present official transcripts)
The North Dakota Office of Attorney General prohibits candidates from plagiarizing any portion of their employment application and interview process to include responses to questions in which you must provide a narrative and/or verbal response. You must create your own responses originally and not copy or adapt them from other sources. While the North Dakota Office of Attorney General encourages you to create your narratives and interview responses with great care, including correct use of grammar and style, you are prohibited from using any artificial intelligence (AI) or AI-assisted tool, to include but not limited to ChatGPT during the interview process. Any information you provide during the application and interview process is subject to verification. The North Dakota Office of Attorney General will discontinue your candidacy if we find you have violated this prohibition on use of AI tools in the application and interview process.
All hiring decisions are subject to approval by the Attorney General. No offer of employment is final or binding until approved by the Attorney General.
Anyone needing assistance or accommodations during any part of the application or interview process please contact Ashley, Office of Attorney General: E-mail: *****************; phone: ************** or TTY: **************.
* Learn more about Office of Attorney General at: *******************************
* Learn more about Employment Benefits at: ******************************************************
* Visit North Dakota State government: *****************
To learn more about living in North Dakota, visit ***************************
Equal Employment Opportunity
The State of North Dakota and this hiring agency do not discriminate on the basis of race, color, national origin, sex (including sexual orientation and gender identity), genetics, religion, age or disability in employment or the provisions of services and complies with the provisions of the North Dakota Human Rights Act.
As an employer, the State of North Dakota prohibits smoking in all places of state employment in accordance with N.D.C.C. § 23-12-10.
Systems Security Engineer
Cyber security analyst job in Prior Lake, MN
Are you an identity innovator ready to jump in, look at a system, and take it somewhere? Join us as a Systems Security Engineer - a role that blends the technical depth of IAM with the creativity to improve and automate how access happens across the enterprise. This isn't your typical side of cybersecurity - it's where code development, system management, and smart integration meet. From auditing permissions and refining processes to collaborating across teams, you'll have the opportunity to make a wide variety of impacts every day. Enjoy weekly pay, 401(k) starting day one, and health benefits. Whatever your career goals may be, let Mystic Lake Casino help get you there!
Job Overview: Provide engineering development and support for Identity and Access (IAM) management activities related to system software, hardware, performance, problem determination or resource management requiring communication and coordination with vendors, technicians, clients, and management. Actively integrate identity system with other operational systems to achieve single view of all identity access, while providing efficient automation for identity access changes. Perform procedures necessary to manage security and account permissions to protect information systems across the enterprise. Validate information security procedures are updated, communicated and followed. Audit and grant account permissions to network resources and applications. Perform reviews of security logs and controls. Facilitate the remediation of vulnerabilities and inconsistencies. Document and track information security issues or incidents. Assist with security assessments based on the direction of the Director of Cybersecurity.
Elevate & Thrive: Key Responsibilities:
Work with Identity Access Management (IAM) suite of products and processes; developing and providing support services for IAM deployment; defining and standardizing IAM processes; code development; performing analysis of various projects and requests; developing designs for projects that have medium to high complexity; formulating procedures and implementing business solutions.
Building Identity and Access (IAM) management systems integrations across various applications, technologies and cloud services, providing both identity and data governance to entire organization.
Work closely with business units, application teams, infrastructure areas and vendors to identity, review and evaluate the solution requirements.
Review and provide recommendation on new technologies, roadmaps and vendor product offerings specific to server, software technologies and other products.
Provide consultation and work closely with other functional infrastructure areas on multiple initiatives to meet common organizational business goals and objectives.
Participate in and provide consulting to project teams on design development, integration opportunities, planning of systems and assures it is aligned to our established strategies, guiding principles, rationales and practices.
Ensure IAM solution provides best in class governance, availability and operational efficiency to meet business needs.
Job Requirements:
Bachelor's degree required (Cybersecurity or an equivalent discipline preferred)
5+ years of IT experience with 3+ years of Information Security experience
Strong scripting knowledge (PowerShell, Beanshell and JavaScript) preferred
Sailpoint IAM product suite experience preferred
Demonstrate a strong understanding of tools, technologies, security strategies and their implications on the broader business environment
Have a strong understanding of Information Security concepts, protocols, industry best practices and strategies
Have experience with Active Directory security administration in a large Windows network
Demonstrated background of Windows NTFS and Share Permissions
Ability to develop internal processes and procedures as it relates to day-to-day system security administration
Have experience with common Information Security Management frameworks, such as International Standards Organization (ISO) 17799/27001, the IT Infrastructure Library (ITIL) and the National Institute of Standards and Technology (NIST) frameworks
Have excellent technical knowledge of mainstream operating systems (for example, Microsoft Windows and Unix/Linux) and a range of security technologies such as identity and access management systems
Experience in general technical knowledge of current network hardware/software, protocols, and standards
Experience in conducting research into information security issues, reviewing logs and evaluating security controls
Outstanding Benefits & Awesome Perks: Enjoy competitive weekly pay, outstanding benefits, and advancement opportunities at the SMSC Gaming Enterprise. Eligible Team Members are offered a comprehensive benefits package include medical, dental, life and disability insurance, onsite medical clinics and pharmacy, 401(k) retirement plan, paid time off, wellness programs and more. Plus, take advantage of perks like discounts on childcare, fuel, bus passes and fitness membership, free uniforms and free uniform cleaning, and tuition reimbursement.
Who We Are: We're not just in the business of entertainment; we're in the business of crafting unforgettable experiences. We believe in the power of possibility, to unite and uplift, rallying around every triumph, big and small. At Mystic Lake and Little Six, every moment is a chance to be the experience.
Different backgrounds, different strengths, and different passions, we value the diversity that everyone brings to the table. Our values are a direct reflection of the diverse communities that we proudly serve, represent, and invest in. We invite you to the place to learn, grow, thrive and lead. Let's create moments that matter, celebrate diversity, and build a brighter future for all.
Be the Experience. Be Bold. Be Mystic.
Information Security Engineer Lead
Cyber security analyst job in Duluth, MN
The Lead Security Engineer position is part of the Information Technology team, reporting directly to the Manager, Information Security. The focus of this role is to design, implement, and maintain advanced security solutions that protect the confidentiality, integrity, and availability of Cirrus digital assets. This role requires deep technical expertise in Microsoft technologies, cybersecurity engineering, and enterprise security architecture, as well as the ability to mentor Security analysts and partner with IT teams on secure system design and operations.
Duties and Responsibilities/Essential Functions
* Design, implement, and maintain enterprise security controls across Microsoft environments, including Azure, Entra ID (Azure AD), Microsoft 365, Microsoft Defender, and Windows Server platforms.
* Lead incident response activities, including investigation, containment, eradication, and recovery, as well as post-incident lessons learned.
* Analyze security events and alerts from IDS/IPS, SIEM, EDR/XDR, vulnerability scanners, and Microsoft security tools to identify and mitigate threats.
* Develop and implement security hardening baselines, patch management processes, and secure configuration standards for Microsoft platforms and hybrid environments.
* Collaborate with IT and business stakeholders to design secure solutions, ensuring security requirements are integrated into Windows, Active Directory/Entra ID, Azure, and Microsoft 365 systems.
* Conduct threat modeling and risk assessments, making recommendations for risk treatment and mitigation strategies.
* Oversee vulnerability management program, including regular assessments, prioritization, and remediation validation.
* Create strategies to mitigate risks and ensure compliance with relevant laws and regulations
* Focus on continuous improvement to stay updated on cybersecurity trends and emerging threats to enhance security measures.
* Provide mentorship and technical guidance to Information Security Analysts and IT staff.
* Assist in the development and enforcement of security policies, standards, and procedures, with specific emphasis on Microsoft platforms.
* Stay current with emerging threats, vulnerabilities, and security technologies; recommend improvements to strengthen the security posture
* Regular, reliable, and predictable attendance
Qualifications:
To perform this job successfully, an individual must be able to perform each essential function satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.
* Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent combination of education and experience.
* 7+ years of progressive experience in information security, engineering, or related IT disciplines.
* Advanced knowledge of Microsoft technologies, including Azure, Entra ID (Azure AD), Office 365, Microsoft Defender suite, and Windows Server.
* Experience with SIEM, SOAR, EDR/XDR, vulnerability management, and forensic analysis tools, preferably integrated with Microsoft Sentinel and Defender.
* Strong understanding of cloud platforms (Azure, AWS, Google Cloud) and securing hybrid infrastructures.
* Relevant security certifications preferred: CISSP, CISM, OSCP, GIAC (GCIA, GCIH, GPEN), Microsoft Certified: Azure Security Engineer Associate, Microsoft 365 Security Administrator Associate, or equivalent.
* Demonstrated expertise in incident response, malware analysis, and intrusion detection.
* Proficiency with scripting/automation languages (PowerShell, Python, etc.) to enhance security operations.
* In-depth knowledge of common frameworks and standards (NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK).
* Proven ability to design and implement Zero Trust and defense-in-depth strategies.
* Applies advanced knowledge of Microsoft security technologies and enterprise platforms to solve complex challenges.
* Mentors and guides team members, builds trust, and fosters a culture of continuous improvement
Competencies
To perform the job successfully, an individual should demonstrate the following competencies:
* Manages Complexity - Asks the right questions to accurately analyze situations, acquires data from multiple and diverse sources when solving problems, uncovers root causes to difficult problems, evaluates pros and cons, risks and benefits of different solution options.
* Situational Adaptability - Picks up on situation cues and adjusts in the moment. Readily adapts personal, interpersonal, and leadership behavior. Understands that different situations may call for different approaches. Can act differently depending on the circumstance.
* Optimizes Work Processes - Identifies and creates the processes necessary to get work done, Separates and combines activities into efficient workflow, Designs processes and procedures that allow managing from a distance, Seeks ways to improve processes,
* Collaborates: Builds partnerships and works collaboratively with others to meet shared objectives.
* Organizational Savvy: Maneuvers comfortably through complex policy, process, and people-related organizational dynamics.
* Directs Work: Provides direction, delegates, and removes obstacles to get work done.
Other Duties
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice. Work beyond 40 hours per week may be required.
Cirrus is dedicated to a drug free work environment promoting equal employment opportunity. Qualified applicants will receive consideration for employment without regard to race, sex, national origin, color, age, disability, religion, pregnancy, veteran status, marital and family status, sexual orientation, receipt of public assistance, genetic information or any other characteristic protected by applicable law.
Our Benefits: Cirrus provides a range of exciting benefits, including:
* 401(k) Plan: Dollar-for-dollar match up to 5% after 90 days, with 100% vesting.
* Employer-Paid Coverages: Group term life, short- and long-term disability insurance.
* Comprehensive Health Coverage: Medical, vision, dental, with additional dependent coverage options.
* Free Health Tracking: With rewards for meeting health goals.
* Generous PTO: 120+ hours accrued within the first year.
* Employee Referral Bonus: For referring talented candidates.
* Career Development: Tuition reimbursement and professional growth opportunities.
* Exclusive Discounts: Access to partner and marketplace discounts.
* Community & Engagement: Company and employee clubs at various locations.
These benefits are designed to support your well-being, growth, and enjoyment at Cirrus!
Information Security Analyst
Cyber security analyst job in Eagan, MN
Established in 1991, Collabera is one of the fastest growing end-to-end information technology services and solutions companies globally. As a half a billion dollar IT company, Collabera's client-centric business model, commitment to service excellence and Global Delivery Model enables its global 2000 and leading mid-market clients to deliver successfully in an increasingly competitive marketplace.
With over 8200 IT professionals globally, Collabera provides value-added onsite, offsite and offshore technology services and solutions to premier corporations. Over the past few years, Collabera has been awarded numerous accolades and Industry recognitions including.
Collabera awarded Best Staffing Company to work for in 2012 by SIA. (hyperlink here)
Collabera listed in GS 100 - recognized for excellence and maturity
Collabera named among the Top 500 Diversity Owned Businesses
Collabera listed in GS 100 & ranked among top 10 service providers
Collabera was ranked:
32 in the Top 100 Large Businesses in the U.S
18 in Top 500 Diversity Owned Businesses in the U.S
3 in the Top 100 Diversity Owned Businesses in New Jersey
3 in the Top 100 Privately-held Businesses in New Jersey
66th on FinTech 100
35th among top private companies in New Jersey
***********************************************
Collabera recognizes true potential of human capital and provides people the right opportunities for growth and professional excellence. Collabera offers a full range of benefits to its employees including paid vacations, holidays, personal days, Medical, Dental and Vision insurance, 401K retirement savings plan, Life Insurance, Disability Insurance.
Job Description
Position Details: Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension) Location - Eagan , MN - 55123
Qualifications
Primary Objective Perform in the delivery and development of processes and services which support best practices in information security and risk management for Client enterprise. Knowledge, Skills & Behaviors • 2+ years related information security risk management experience • 3+ years related information technology experience • Preferred industry-related certifications: GSEC, CISSP, CISA, CISM, ITIL • Preferred exposure in SOC2, ISO 27000, risk assessment methodologies, Shared Assessments, ITIL practices, and GRC • Demonstrate results in planning and delivering complex projects on time • Maintain focus and manage multiple efforts concurrently • Perform independently to expectations while being collaborative and maintaining alignment with the team • Work effectively with all levels of the organization including subject matter experts, stakeholders, and leadership • Strong written and verbal communication skills to include executive audiences • Apply tactical and strategic methods appropriately • Effective negotiation and influence • Focused on supporting the customer, the team, and the business • Strong collaboration and problem-solving skills Major Areas of Accountability • Operate as a key contributor to the Vendor Risk Management processes. • Interface with subject matter experts, peers and stakeholders; and business or technology leaders across the Client enterprise. • Demonstrate subject matter expertise on information security best practices and Client security posture focused on performing due diligence for vendor assurance inquiries and attestations. • Assist in initiatives to evaluate and provide input on the effectiveness of processes and solutions, and to determine or support a course of action. Track and report on mitigation progress. • Contribute to the strategic and tactical development of information security, risk management and compliance initiatives, to include policy and standards development, solution development, security awareness and training, and other information security initiatives as assigned. • Track, verify and collect data points for reporting and metrics on identified services to identify gaps and inform leadership. • Serve as a subject matter expert in information technology operations, information security and risk management practices, global legal and regulatory requirements, and other applicable security and privacy trends and practices. • Participate as a member of a team for Vendor Risk Management • Contribute to and achieve business and departmental goals and objectives • Deliver processes and services consistently and accurately • Accept feedback and flex to address tactical needs • Report on status of initiatives to all levels in the organization • Work across the organization to contribute to departmental initiatives and programs Education • Prefer 4 year (Bachelor's) Degree in a technology related field
Additional Information
To know more about this opportunity or to schedule an interview, Please Contact:
Neha Kalia
***************************
************
Easy ApplyCyber Resilience Specialist
Cyber security analyst job in Washington, MN
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies. We are currently looking for a Senior Consultant or Principal level Security strategist with deep technical and functional expertise in Business Continuity and Disaster Recovery.
What You'll Do
* Lead and facilitate Business Impact Assessments (BIAs) across business units
* Develop and update Business Continuity Plans (BCPs) and Disaster Recovery Plans (DRPs) aligned to critical business functions and systems
* Assess organizational risk and capability gaps related to crisis management, workforce continuity, and infrastructure resilience
* Design tiered recovery strategies based on RTOs, RPOs, and MVC (Minimum Viable Company) principles
* Coordinate and conduct tabletop exercises, test execution, and post-mortem reviews
* Align BC/DR practices with enterprise risk management frameworks, compliance requirements (e.g., HIPAA, ISO 22301), and audit expectations
* Support program governance, metrics, training, and awareness efforts
What You'll Bring
* 6+ years of experience in Business Continuity, Disaster Recovery, or operational resilience consulting
* Strong working knowledge of BIAs, BCP/DRP development, and crisis management planning
* Understanding of IT infrastructure concepts and DR technologies (e.g., backup systems, cloud platforms)
* Experience supporting risk assessments and regulatory audits
* Excellent facilitation and stakeholder management skills
* Strong writing skills to produce clear, client-ready plans and reports
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this role, we are hiring at the following levels and targeted base pay salary ranges: The targeted base salary pay range for Senior Consultant in New Jersey, New York City, and Washington DC is $153,000 to $186,000. The targeted base salary range for Senior Consultant in Atlanta, Chicago, Detroit, Kansas City, Minneapolis, Nashville, Philadelphia, Phoenix, St. Louis is $140,000 to $171,000. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************.
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
#LI-MS12
Easy ApplyEngineer, Information Security and Risk
Cyber security analyst job in Saint Paul, MN
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Information Security Analyst
Cyber security analyst job in Saint Paul, MN
The Information Security Analyst Identifies security risks and exposures, determine the causes of security violations, and configuring systems to optimize notification of future incidents. The Security Analyst Integrates appropriate systems and logs into the enterprise security incident and event management system to effectively monitor and detect various people and enterprise asset activity. The Information Security Analyst works under the direction of the Information Security Director on the IT Security Operations Team.
This is a hybrid job, must be located in Saint Paul MN
Responsibilities
* Investigates and analyzes security events to evaluate risk, prioritizing findings based on internal and external information. • Configures and maintains SIEM platform, including areas such as source feeds, alerts, alarms, and API integrations.• Configures and maintains EDR/antivirus.• Configures and maintains vulnerability management platform, including areas such as vulnerability scanning, remediation, and mitigation as well as impact and risk analysis.• Communicates security concerns to the business stakeholders to collectively develop and execute an appropriate remediation/mitigation plan.• Interacts with security risk and compliance group, adjacent IT departments, and business units as needed to ensure compliance with IT Security goals and policies.• When needed, assists in administration of other security tools (Data Loss Prevention, Email Security/Spam Filter, End User Training, Mobile Device Management).• Maintains up-to-date knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and evolving attacks and threat vectors.
General Job Responsibilities:• Ability to work in a team environment and independently as required • Contributes to project planning and scheduling.• Normally receives minimal instructions on routine work and detailed instructions on new assignments. • Participate in Architecture design reviews and other technical governance forums across the organization representing the security team across multiple projects.• Be on call and available after business hours, would require working Holidays and weekends if major security incident occurs.• Establish and maintain pertinent policies, standards, and procedures • Perform duties in compliance with applicable regulations and standards such as Sarbanes Oxley Act, FDA Quality System, and ISO (International Organization for Standardization) Works on routine assignments per written procedures, where ability to recognize deviation from accepted practice is required. • Contributes to the overall operations and to the achievement of departmental goals • Perform job specific tasks in compliance with applicable Regulations, International Standards, and WuXi AppTec Policies and Standard Operating Procedures. • Understanding of Good Laboratory Practices and Good Manufacturing Practices • Other duties as assigned
Qualifications
* Degree in Cyber Security, Management Information Systems, Information Security or equivalent work experienceo Minimum 2 years prior experience in a Cyber Security• In depth knowledge of LogRhythm SIEM platform or other SIEM platforms, which includes configuring and maintaining API integrations and source feeds, alerts and alarms• In depth knowledge in Qualys Vulnerability Management System, which includes configuring and maintaining• In depth knowledge in Cisco AMP Anti-Virus software, which includes configuring and maintaining• Knowledge of ISO/IEC 27001 standards.• Strong technical acumen with a solid understanding of security technologies and network architecture• Strong verbal and written communication skills• Independent driver of self-development and continuous learning• Knowledge of information security technology, design, research techniques, administration, operating standards, and quality control methods.• Basic understanding of LAN/WAN technologies and protocols, FTP, Active Directory, VPN technologies (MPLS, IPSEC, etc.), IIS and other network services.• Experience in a large, formal vulnerability program.• General knowledge of cloud, wireless network and mobile security.• Team-oriented and skilled in working within a collaborative environment.
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability
This job description does not state or imply that the above are the only duties and responsibilities assigned to this position. Employees holding this position will be required to perform any other job-related duties as requested by Management.
Auto-Apply