FGL Holdings-the F&G family of insurance companies-is committed to helping Americans prepare for and live comfortably in their retirement. Through its subsidiaries, F&G is a leading provider of annuity and life insurance products. For nearly 60 years, we have offered annuity and life insurance products to those who are seeking safety, protection and income solutions to meet their needs.
At F&G, we believe our culture is what makes our company great. In 2019, we received a Top Workplace award, which we credit to our employees' shared cultural values: Collaborative, Authentic, Dynamic and Empowered. We believe that by embracing these values, we will continue to build and strengthen the company, while being a great place to work. We recruit talented and committed individuals to join our team, and we provide opportunities for personal and professional growth.
This is for a position as an Application SecurityAnalyst on the IT Security and Risk team.
Organization
The Application SecurityAnalyst helps improve and maintain the application security program by providing guidance pertaining to secure web development design and testing. The resource will partner with Business Systems, Solutions Delivery, Engineering, and Operations teams to educate, evangelize, and validate secure development practices.
Duties and Responsibilities
Primarily responsible for application security assessments and code review as part of the software development lifecycle (SDLC)
Develop, educate, promote, and monitor the use of secure software development practices
Work with developers to implement and refine security checkpoints in the SDLC
Obtain and review all required artifacts as part of go, no go analyses at security checkpoint phases in the development cycle
Continue to drive security evaluation earlier in the cycles through iterative security testing
Develop secure coding standards that are based on industry-accepted best practices such as OWASP Guide, SANS CWE Top 25, or CERT Secure Coding to address common coding vulnerabilities
Provide regular status reports on the security of the software within the organization
Manage the application security scanning process, including analysis, communication and remediation verification
Implement and Govern automated secure coding tools and processes (SAST, DAST) to review code as it is written, promoted through the development lifecycle, and into production
Provide advisory services in secure coding practices to application development teams
Perform security activities, including security design reviews, threat modeling, code auditing on internally& externally developed software
Operate as incident responder for triage pertaining to web-based vulnerabilities
Work with information securityanalysts to refine web application penetration testing methods and breadth of security services
Assist with periodic security risk assessments, IT security audits, and management reporting
Help Build, maintain, and enforce application security development policies, procedures & standards
Experience and Education Requirements
· Bachelor's degree in Computer Science, Information Systems, Engineering, Mathematics, Business, or 5 years IT experience
· Minimum of 3 years of experience with commonly used programming tools, workflows, and concepts
· Security training or education a plus (Ex: SANS/GIAC, ISC2, ISACA, EC-Council, Offensive Security, etc.)
Preferred Skills and Abilities
· Ability to read and understand code as well as ability to script
· A strong understanding of Unix, Windows and network security skills
· Possess excellent verbal and written communication skills and are able to navigate in an environment with both highly technical and highly nontechnical individuals
· Have passion for technology, security and innovation
· Familiarity with commonly used programming tools, workflows, and concepts
· Ability to work independently and in a team-oriented, collaborative environment
· Ability to conform to shifting priorities, demands, and timelines through analytical and problem-solving capabilities
· Ability to remain flexible during times of change and react to project adjustments and alterations promptly, efficiently and positively
· Must be able to learn, understand and apply new technologies
· Ability to effectively prioritize and execute tasks
Physical Demands and Work Environment
Typical office environment
#INDHP
#LI-JS1
$78k-103k yearly est. Auto-Apply 60d+ ago
Looking for a job?
Let Zippia find it for you.
Sr. Security Analyst
Maximus 4.3
Cyber security analyst job in Sioux City, IA
Description & Requirements Maximus is seeking a qualified Sr. Technical/SecurityAnalyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client.*
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$84k-112k yearly est. Easy Apply 5d ago
Information Security Compliance Analyst
Ita Group Inc. 4.5
Cyber security analyst job in West Des Moines, IA
The Information Security Compliance Analyst plays a pivotal role in safeguarding the organization's information assets by leading compliance initiatives, managing vendor and client security assessments, and supporting incident response efforts. This position ensures alignment with industry standards such as ISO27001, SOC 2, PCI DSS, and GDPR, while maintaining robust governance frameworks and security policies. The analyst collaborates cross-functionally to enhance security operations, drive continuous improvement, and uphold regulatory compliance across ITA Group's systems and third-party relationships.
ACCOUNTABILITIES & PERFORMANCE EXPECTATIONS
Security Operations & Compliance
Lead client and vendor security assessments, including third-party reviews, risk assessments, and questionnaire responses.
Build and manage workflows for vendor assessments and due diligence.
Oversee compliance audits (SOC2, PCI, ISO27001, TruSight), including evidence collection and process optimization.
Support the Information Systems Incident Response Team (ISIRT) during security events.
Assist in developing requirements for security tools and operational procedures.
Evaluate and recommend emerging security technologies and products.
Provide off-hours support on a rotating and as-needed basis.
Coordinate with external suppliers to resolve security incidents.
Systems & Tools Management
Administer and monitor various security tools to ensure optimal performance and coverage.
Audit & Incident Management
Conduct quarterly audits of systems in scope for compliance.
Maintain incident logs and ensure readiness for ISO27001 certification.
Investigate and remediate Microsoft Security alerts.
Compliance Certifications
Collaborate with Legal to support privacy regulations and ensure compliance with GDPR and other frameworks.
Governance Management
Develop and implement Data Loss Prevention (DLP) rules for sensitive document handling.
Enhance Insider Threat Protection capabilities.
Maintain and update InfoSec policies and procedures.
Provide organization-wide coaching and mentorship on security policies.
Ensure regulatory and compliance requirements are consistently met.
Establish and maintain a security framework and auditing process.
Manage security questionnaires and third-party data security risk assessments.
Analyze and investigate security anomalies using platform reports, logs, and alerts.
POSITION REQUIREMENTS
Bachelor's degree in computer science, information technology, or equivalent experience.
Eight or more years' experience in information technology support with at least five years of experience in system administration and system design.
Security certification such as CISSP, CISA, or CISM are required. Technical certifications in Cisco and Microsoft products is preferred.
Excellent communication and documentation skills.
Strong experience with ISO27001, SOC 2, PCI DSS 4.x, GDPR, and other regulatory frameworks and privacy regulations.
Ability to demonstrate ownership of systems and drive the technology forward to the goals of the company. Direct involvement in the annual planning and budgeting process for Information Technology.
Strong communication skills and the ability to interact with other systems personnel in a team environment.
Ability to maintain confidentiality pertaining to nonpublic business, financial, personnel, salary, and technological information, plans or data.
Ability to think analytically to solve technical problems individually and in a team environment.
Ability to effectively plan, schedule and coordinate projects and meet deadlines, managing multiple project concurrently.
Ability to analyze and communicate technology performance results. Specific experience working with our current primary technology and software preferred.
Ability to listen, understand and respond to external and internal customers' needs in a timely manner; customer service experience in a service-related industry preferred.
Ability to work the time necessary to complete projects and/or meet deadlines.
$76k-111k yearly est. Auto-Apply 55d ago
Information Security Engineer / Analyst
Mindlance 4.6
Cyber security analyst job in Johnston, IA
Mindlance is a national recruiting company which partners with many of the leading employers in IT, financial services, engineering, semiconductor, clinical and pharmaceutical domains. You can learn more about us at *****************
.
Job Description
·
3-7 years of experience in Information Security focusing on security solution design, engineering, implementation and assurance.
·
3-5 years of experience defining and managing the implementation of controls to address access security and IT control requirements.
·
3-5 years of experience working with Information Security and IT general controls, including experience defining and documenting controls using COBIT 4.1 or 5.0, the NIST Cybersecurity Framework, the ISO 27k framework, the SANS 20 critical controls or similar experience.
·
Deep understanding of Information Security technologies including firewalls, IDS/IPS, Password Vaults, CASBs, SIEM, IT GRC, DLP, etc.
·
Understanding of the regulatory environment and experience with regulators.
·
Comfort delivering tasks and assignments in an evolving and a maturing environment.
·
Application security experience and corresponding technologies (e.g. Jenkins).
·
Experience with the FFIEC CyberSecurity Assessment Tool.
·
Applicable certifications (e.g. CISSP, CISA, CISM, CGEIT, CRISC).
Additional Information
All your information will be kept confidential according to EEO guidelines.
$64k-81k yearly est. 1d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Cyber security analyst job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 59d ago
Security Analyst - IT
Baker Group 3.9
Cyber security analyst job in Ankeny, IA
PURPOSE
The SecurityAnalyst - IT is responsible for designing, implementing and maintaining the security systems that safeguard the organization's data. This role plays a critical role in protecting the company from cyber threats by monitoring security environments, identifying vulnerabilities, responding to incidents and ensuring compliance with established security standards and best practices. Performs related work as required.
ESSENTIAL FUNCTIONS AND RESPONSIBILITIES
The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned.
Defend Baker Group systems against unauthorized access, modification and/or destruction
Perform vulnerability/networking scanning assessments and monitor network traffic for unusual activity
Configure/support security tools (firewalls, anti-malware software, patch management systems, etc.)
Implement and maintain network security policies, application security, access control and corporate data safeguards
Analyze, establish and maintain security requirements for Baker Group networks
Train team members on security awareness and procedures
Conduct both internal and external security audits and make policy recommendations
Provide technical security advice
Analyzing security breaches to identify the root cause
Continuously update Baker Group's incident response and disaster recovery plans
Verify third-party vendor security and collaborate with them to meet security requirements
Assist with tier 2 and 3 level support tickets as needed
MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS
Bachelor's degree in computer science or related field, or equivalent relevant experience required
Minimum of two years' experience in information security or related field
Experience with computer network penetration testing and techniques
Strong knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts
CERTIFICATES, LICENSES, REGISTRATIONS
CompTIA Security+, preferred
CISSP-Certified Information Systems Security Professional, preferred
MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS
Demonstrated ability to identify and mitigate network vulnerabilities, along with the capacity to clearly explain prevention strategies
Skilled in timely patch deployment with a clear understanding of associated business impacts
Excellent verbal and written communication skills
Ability to multi-task while remaining thorough and detail-oriented
Strong problem-solving skills
Passion for technology and strong desire to work with new technologies
ENVIRONMENTAL ADAPTABILITY
Prolonged periods of sitting at a desk and working on a computer
Must be able to lift 10 pounds occasionally
May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs
EQUIPMENT/TOOLS
Laptop computer
Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
$72k-106k yearly est. Auto-Apply 5d ago
Security Analyst
Arete Technologies 4.5
Cyber security analyst job in Des Moines, IA
Arete Technologies, Inc. offers set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with focus on providing paramount and unsurpassed services combined with cost saving solutions to the clients
We understand the business requirements in the present day corporate scenario and aspire to provide world-class services enabling the organization to burgeon and flourish while keeping the work-life balance intact. The Global delivery mechanism followed at Arete Technologies, Inc. saddles proficient schemas and unconventional channels to provide one-stop solutions for all your workforce needs.
our Team is an exquisite amalgamation of vast experiences of over 30 years in IT Consulting and Staffing industry. Connoisseurs in the field of staff augmentation for IT, we operate on 24 by 7 model with an aim of providing affordable and adept professionals with an assurance of satisfaction for both Consultants and Clients.
We are pre-eminent service providers in the field of staff augmentation, IT Consultancy, Software development, Web Development providing unexcelled services and focusing on both the employers and employees.
Job Description
Description:
Knowledge and understanding of information risk concepts and principles, as a means of relating business, needs to security controls.
Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans.
Proficiency in performing risk, business impact, control and vulnerability assessments.
Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts.
Technical knowledge of Microsoft Windows and a wide range of security technologies, such as network security appliances, identity and access mgt tools
Desired skills:
Good Qualities:
SafeNet Luna HSM administration
COOP/COG coordinator
Windows PKI administration
Network Forensics
Log parsing
Incident Response
Continuous Monitoring
Powershell Scripting
HID Credential Management System administration
Varonis DatAdvantage, DatAlert, and DataPrivilege administration
Vormetric DSM administration - file level encryption product
OSINT - Open Source Intelligence gathering and analysis
End User security training program administration
Maldoc analysis
Qualifications
***Local Candidate Strongly preferred***
Additional Information
Best Regards,
Amrit Lal
$59k-85k yearly est. 1d ago
Info Security Engineer
UFG Career
Cyber security analyst job in Cedar Rapids, IA
UFG is currently hiring for an Information Security Engineer who will play a critical role in designing, implementing, and maintaining technical security controls that protect UFG's systems, data, and infrastructure. This position is responsible for hands-on configuration, monitoring, and support of security technologies, working across cloud and on-prem environments to enforce security standards and ensure regulatory compliance.
Operating as a subject matter expert within the Information Security team, the engineer collaborates with architecture, infrastructure, and application teams to embed security into systems and processes. The role supports initiatives ranging from vulnerability management and endpoint protection to identity governance and incident response-helping to ensure the confidentiality, integrity, and availability of enterprise systems.
Essential Duties and Responsibilities:
Security Monitoring, and Incident Response
Serves as team subject matter expert in the regular review and analysis of security logs, system alerts, and network traffic to detect, investigate, and mitigate security threats and anomalies.
Develop, implement, and refine incident response plans for rapid, effective cybersecurity event management.
Create and implement high value detections unique to our enterprise environment.
Leads and supports Information Technology team members with risk analysis of identified issues or events and perform investigations to uncover additional facts surrounding the event with limited direction.
Review, analyze, triage, and respond to phishing submissions and alerts.
Lead risk assessments, vulnerability scans, and remediation efforts across infrastructure and applications.
Participate in disaster recovery and business continuity planning and testing
Operates as a senior member of a 24/7 on call team, responding to incidents and leading the team as necessary.
Security Administration
Serve as subject matter expert in the administration of critical security and operational tools to ensure system operation and availability including firewalls, vulnerability management, deception technology, SIEM, EDR, SSO, PAM, CASB\SSE, and others as necessary.
Provide Level 3 technical support and serve as subject matter expert in troubleshooting security team products.
Design, develop, and implement new security solutions and system enhancements to address emerging threats and improve operational efficiency.
Monitor, test, and continually improve security practices in place for network, system, applications, and operations management, providing guidance for junior team members in this role.
Coordinate and lead vendor relationships regarding security system updates, and technical support.
Identify opportunities to improve work processes and automate improvements to make them more effective and strengthen security measures.
Collaborates with IT and business partners to ensure security is factored into the evaluation, selection, installation, and configuration of hardware, software, and infrastructure.
Threat Intelligence, Threat Analysis, and Risk Mitigation
Lead in-depth analysis of cyber threats-including malware, phishing campaigns, and other attack vectors-to identify patterns, indicators of compromise (IOCs), and adversary tactics, techniques, and procedures (TTPs).
Aggregate and evaluate threat intelligence from diverse sources such as open-source intelligence tools (OSINT) and commercial feeds to identify relevant and actionable insights for the organization.
Collaborate closely with business and IT personnel in a complex information technology environment to support proactive threat identification, risk mitigation, and incident response efforts.
Stay current with and remain knowledgeable about new threats. Analyze attacker tactics, techniques and procedures (TTPs) from security events across our network of security devices and end-user systems
Monitor emerging security threats and identify vulnerabilities in current or proposed systems and processes.
Policy Development, Metric Management, and Compliance
Participate in the development and enforcement of IT security policies, standards, procedures, and compliance requirements.
Conduct security audits and risk assessments to identify gaps, create unique solutions, and implement essential controls.
Create, conduct, and maintain security audits to facilitate SOX compliance in coordination with both internal and external auditors
Create and administrate automation or manually input data as necessary to track, communicate, monitor, or improve Information Security team metrics and reports.
Identity and Access Management
Guide the development of Identity Access Management standard operating procedures, playbooks and runbooks.
Lead the strategy, standards, processes and technologies for the Identity Access Management Program.
Instruct junior team members in the design, implementation, and administration of solutions within the existing architecture including single sign on (SSO) and System for Cross-Domain Identity Management (SCIM) configurations for on-prem and SaaS applications, utilizing scripting and automation to create unique solutions when necessary.
Collaborate with business and IT teams to identify gaps in and expand coverage of identity access management controls and capabilities.
Design and guide application administrators to implement access controls.
Lead the design, development and implementation of solutions to successfully integrate new identity management systems with existing architecture.
Continuing education
Monitor information technology industry tools and trends for new technologies and make recommendations on their impact to the organization
Attend regular training events and keep skills sharp in the security industry and with specific UFG products.
Maintain awareness of new attack methods and how they intersect with our security stack.
Work with the entire team to stay abreast of the current state of information security practices.
Job Specifications:
Education:
Bachelor's degree in information technology, Computer Science, Management Information Systems, or equivalent combination of education and relevant enterprise-level experience.
Certifications/Designations:
Industry related certifications (Such as MCSE, CCNA, CISSP, or any GIAC) preferred
Experience:
Minimum of five years of combined experience in IT administration with at least three years of direct security experience in conjunction with an IAT Level III certification.
Minimum of seven years of combined experience in IT Administration with at least four years of direct security experience in conjunction with an IAT Level II certification.
Minimum of eight years of experience in IT with at least five years of direct Security experience.
Minimum of two years' experience securing SaaS based solutions
Working knowledge of PowerShell, Python, or C#
Working Conditions:
General Office Environment
This position may handle off-hour and emergency escalations.
Pay Transparency Statement:
UFG Insurance is committed to fair and equitable compensation practices. The base salary range for this position is $103,221 - $136,105 annually, which represents the typical range for new hires in this role. Individual pay within this range will be determined based on a variety of factors, including relevant experience, education, certifications, skills, internal equity, geography and market data.
In addition to base salary, UFG Insurance offers a comprehensive total rewards package that includes:
Annual incentive compensation
Medical, dental, vision & life insurance
Accident, critical Illness & short-term disability insurance
Retirement plans with employer contributions
Generous time-off program
Programs designed to support the employee well-being and financial security.
This pay range disclosure is provided in accordance with applicable state and local pay transparency laws.
$103.2k-136.1k yearly 26d ago
Information System Security Officer (ISSO- Onsite)
RTX
Cyber security analyst job in Cedar Rapids, IA
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
This position will support classified computing environments 100% onsite at our facilities in Cedar Rapids, Iowa and will be supporting Mission Systems . The ISSO is responsible for implementing and enforcing the cybersecurity compliance directives with hands-on execution and oversight. The position will create, sustain, and enforce standard operating procedures developed from government compliance documents/regulations (NISPOM, DFARS, DAAPM, JSIG, etc.), while still being able to interpret and troubleshoot requests and tasks of volatile complexity. This position utilizes a wide variety of cybersecurity technologies and tools and requires knowledge and experience with a comprehensive selection of Information Technology skill sets.
**This position is onsite in Cedar Rapids, IA, and a relocation package is available if needed.**
What YOU will do:
You will be responsible for designated information system compliance at system level; including but not limited to technical configuration analysis, change control facilitation, hardware/software management, audit and inspections, incident response and troubleshooting, etc.
You will be responsible for the System Security Plan maintenance and change control per procedure.
You will ensure all users have the requisite security clearances, authorization, need-to-know, and provide security training and guidance.
You will collect, review, document, and archive security event logs, reports and files in accordance with the System Security Plan (SSP), reporting any anomalies. Monitor and analyze all available resources that track user activity, provide warnings of system vulnerabilities, and provide system performance information in accordance with cybersecurity plans and policies.
You will manage the tracking, accounting, safeguarding, and disposition of material assets associated with the secure systems.
You will possess and maintain technical competence and a working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
You will understand implications of work and makes recommendations for solutions.
Qualifications you must have:
Typically requires a University Degree and minimum 2 years of prior relevant experience or an Advanced Degree.
U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
Active DOD Secret security clearance prior to day one.
DoD 8570-compliant industry certification at IAM Level I (Security+) or ability to obtain certification within 6 months.
Qualifications We Prefer:
Desired certifications: Security+, A+, Network+, CAP, CASP+,CISM, Cisco (CCNA), CISSP.
Knowledge and/or experience with NIST SP 800-series RMF framework and guidelines.
Knowledge and/or experience with STIGs, SCAP, Splunk or other system hardening and compliance, vulnerability assessment, and/or SIEM tools.
Willingness to learn new technologies & take on new projects to grow experience.
Ability to work in a high energy, fast paced environment, able to adapt to changing business needs.
Highly self-directed and able to learn quickly with a strong ability to drive and deliver results.
Comfort working with minimal daily supervision and to balance numerous priorities.
Ability to remain calm and composed under pressure, in a fast-paced environment of rapidly changing demands.
What We Offer:
Some of our competitive benefits package includes:
Medical, dental, and vision insurance.
Three weeks of vacation for newly hired employees.
Generous 401(k) plan that includes employer matching funds and separate. employer retirement contribution, including a Lifetime Income Strategy option.
Tuition reimbursement program.
Student Loan Repayment Program.
Life insurance and disability coverage.
Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection.
Birth, adoption, parental leave benefits.
Ovia Health, fertility, and family planning.
Adoption Assistance.
Autism Benefit.
Employee Assistance Plan, including up to 10 free counseling sessions.
Healthy You Incentives, wellness rewards program.
Doctor on Demand, virtual doctor visits.
Bright Horizons, child, and elder care services.
Teladoc Medical Experts, second opinion program.
And more!
Learn More & Apply Now!
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond. At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
* Please consider the following role type definitions as you apply for this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
Regardless of your role type, collaboration and innovation are critical to our business and all employees will have access to digital tools so they can work with colleagues around the world - and access to Collins sites when their work requires in-person meetings.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day. #hotjobs
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 68,900 USD - 131,100 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
$65k-88k yearly est. Auto-Apply 3d ago
Information System Security Officer (ISSO- Onsite)
RTX Corporation
Cyber security analyst job in Cedar Rapids, IA
**Country:** United States of America , Cedar Rapids, IA, 52498-0505 USA ** Onsite **U.S. Citizen, U.S. Person, or Immigration Status Requirements:** Active and transferable U.S. government issued security clearance is required prior to start date.
U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
**Security Clearance:**
DoD Clearance: Secret
This position will support classified computing environments 100% onsite at our facilities in Cedar Rapids, Iowa and will be supporting Mission Systems . The ISSO is responsible for implementing and enforcing the cybersecurity compliance directives with hands-on execution and oversight. The position will create, sustain, and enforce standard operating procedures developed from government compliance documents/regulations (NISPOM, DFARS, DAAPM, JSIG, etc.), while still being able to interpret and troubleshoot requests and tasks of volatile complexity. This position utilizes a wide variety of cybersecurity technologies and tools and requires knowledge and experience with a comprehensive selection of Information Technology skill sets.
**_**This position is onsite in Cedar Rapids, IA, and a relocation package is available if needed.**_**
**What YOU will do:**
+ You will be responsible for designated information system compliance at system level; including but not limited to technical configuration analysis, change control facilitation, hardware/software management, audit and inspections, incident response and troubleshooting, etc.
+ You will be responsible for the System Security Plan maintenance and change control per procedure.
+ You will ensure all users have the requisite security clearances, authorization, need-to-know, and provide security training and guidance.
+ You will collect, review, document, and archive security event logs, reports and files in accordance with the System Security Plan (SSP), reporting any anomalies. Monitor and analyze all available resources that track user activity, provide warnings of system vulnerabilities, and provide system performance information in accordance with cybersecurity plans and policies.
+ You will manage the tracking, accounting, safeguarding, and disposition of material assets associated with the secure systems.
+ You will possess and maintain technical competence and a working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
+ You will understand implications of work and makes recommendations for solutions.
**Qualifications you must have:**
+ Typically requires a University Degree and minimum 2 years of prior relevant experience or an Advanced Degree.
+ U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
+ Active DOD Secret security clearance prior to day one.
+ DoD 8570-compliant industry certification at IAM Level I (Security+) or ability to obtain certification within 6 months.
**Qualifications We Prefer:**
+ Desired certifications: Security+, A+, Network+, CAP, CASP+,CISM, Cisco (CCNA), CISSP.
+ Knowledge and/or experience with NIST SP 800-series RMF framework and guidelines.
+ Knowledge and/or experience with STIGs, SCAP, Splunk or other system hardening and compliance, vulnerability assessment, and/or SIEM tools.
+ Willingness to learn new technologies & take on new projects to grow experience.
+ Ability to work in a high energy, fast paced environment, able to adapt to changing business needs.
+ Highly self-directed and able to learn quickly with a strong ability to drive and deliver results.
+ Comfort working with minimal daily supervision and to balance numerous priorities.
+ Ability to remain calm and composed under pressure, in a fast-paced environment of rapidly changing demands.
**What We Offer:**
Some of our competitive benefits package includes:
+ Medical, dental, and vision insurance.
+ Three weeks of vacation for newly hired employees.
+ Generous 401(k) plan that includes employer matching funds and separate. employer retirement contribution, including a Lifetime Income Strategy option.
+ Tuition reimbursement program.
+ Student Loan Repayment Program.
+ Life insurance and disability coverage.
+ Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection.
+ Birth, adoption, parental leave benefits.
+ Ovia Health, fertility, and family planning.
+ Adoption Assistance.
+ Autism Benefit.
+ Employee Assistance Plan, including up to 10 free counseling sessions.
+ Healthy You Incentives, wellness rewards program.
+ Doctor on Demand, virtual doctor visits.
+ Bright Horizons, child, and elder care services.
+ Teladoc Medical Experts, second opinion program.
+ And more!
**Learn More & Apply Now!**
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond. At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
* Please consider the following role type definitions as you apply for this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
_Regardless of your role type, collaboration and innovation are critical to our business and all employees will have access to digital tools so they can work with colleagues around the world - and access to Collins sites when their work requires in-person meetings._
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day. #hotjobs
**_As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote._**
The salary range for this role is 68,900 USD - 131,100 USD. The salary range provided is a good faith estimate representative of all experience levels.
RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
_RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act._
**Privacy Policy and Terms:**
Click on this link (******************************************************** to read the Policy and Terms
Raytheon Technologies is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
$65k-88k yearly est. 11d ago
IT Security Cloud Data Protection Engineer - FT
Veridian Credit Union 4.0
Cyber security analyst job in Cedar Falls, IA
This is a hybrid position that requires individual to work 2 days a week from our location in Cedar Falls, IA.
WANT TO BE A PART OF AN AWARD WINNING TEAM, APPLY TODAY!!
Take a look at all our great benefits here!
Application deadline: Wednesday January 21st, 2026
Location: Cedar Falls, IA
Hybrid eligible
Exempt
Summary
The IT Security Cloud Data Protection Engineer is focused on securing Microsoft 365 and Azure environments, with a strong emphasis in using Microsoft Purview Information Protection (MPIP) to enforce and align the security posture with data governance and compliance standards.
Essential Functions
Serve as the subject matter expert for Microsoft Purview Information Protection (MPIP) suite of tools.
Design, implement, and maintain MPIP for M365, Azure, and on-premise.
Develop, document, and enforce MPIP security policies, standards, and best practices for cloud-based resources across the Microsoft tenant (Exchange, SharePoint, OneDrive, Teams, Azure).
Deploy and configure data classification in Microsoft 365 and Azure to ensure alignment with Veridian's Data Governance solution Lightbeam.ai.
Design and deploy MPIP data loss prevention (DLP) that aligns with Veridian's current standards and on-premise solutions.
Work collaboratively with the IT SecurityAnalyst and Specialists to monitor, investigate, and respond to policy violations and security alerts related to data handling using Microsoft Purview dashboards and alerts.
Stay current on emerging threats, vulnerabilities, and security requirements affecting Veridian's cloud environment.
Work with cross departmental teams to support business initiatives leveraging M365 and Azure, ensuring security requirements are established and adhered to.
Evaluate and recommend new security solutions based on emerging threats.
Collaborate with stakeholders to understand data governance needs and ensure proper information lifecycle management.
Provide guidance and training to stakeholders on cloud security best practices and data governance requirements.
Stay up to date with evolving Microsoft security features, compliance regulations, and industry trends.
On call availability required for system support as needed (including nights and weekends).
Monitor and provide solutions to IT Security support tickets.
Key Attributes
Oral and written communication skills.
Member service focus.
Attention to detail and accuracy.
Positive attitude that supports a team environment.
Dependable and punctual; flexible during peak times.
High level of confidentiality.
Organizational skills.
Self-motivated; ability to work without close supervision.
Problem solving; analysis.
Physical Demands
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job:
Occasionally lift and/or move items over 50 pounds.
Remain sedentary (seated) for extended periods of time.
Working Conditions
This job operates in a professional office environment and routinely uses standard office equipment.
Travel
Limited travel expected.
Required Education and Experience
Bachelor's degree in computer science, Information Systems, or related field or equivalent combination of education, training, and experience of 8+ years.
2+ years of experience developing and designing cloud security with a focus on M365 and Azure.
Knowledge of cybersecurity frameworks (NIST, CSF 2.0, CIS, ISO 27001-2022).
Familiarity working with financial regulatory and compliance requirements including NCUA, FFIEC, HIPAA, GLBA, and PCI DSS requirements.
Preferred Education and Experience
8+ years of experience working with information security.
4+ years of experience configuring and managing Microsoft Purview specifically with data classification, data loss prevention, and insider risk management.
Prior experience with incident response and case management in cloud environments.
Certifications: Microsoft 365 Security Administrator or Azure Security Engineer.
Other Duties
Veridian Credit Union is a PCI compliant financial institution to ensure the security of member information. As such, all employees are expected to ensure security measures are in place and adhered to regarding PCI and other highly secure data compliance requirements.
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.
$72k-86k yearly est. Auto-Apply 10d ago
Sr. Security Analyst
Maximus 4.3
Cyber security analyst job in Des Moines, IA
Description & Requirements Maximus is seeking a qualified Sr. Technical/SecurityAnalyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client.*
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$84k-113k yearly est. Easy Apply 5d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Cyber security analyst job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 59d ago
Security Analyst - IT
Baker Group 3.9
Cyber security analyst job in Ankeny, IA
Job Description
PURPOSE
The SecurityAnalyst - IT is responsible for designing, implementing and maintaining the security systems that safeguard the organization's data. This role plays a critical role in protecting the company from cyber threats by monitoring security environments, identifying vulnerabilities, responding to incidents and ensuring compliance with established security standards and best practices. Performs related work as required.
ESSENTIAL FUNCTIONS AND RESPONSIBILITIES
The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned.
Defend Baker Group systems against unauthorized access, modification and/or destruction
Perform vulnerability/networking scanning assessments and monitor network traffic for unusual activity
Configure/support security tools (firewalls, anti-malware software, patch management systems, etc.)
Implement and maintain network security policies, application security, access control and corporate data safeguards
Analyze, establish and maintain security requirements for Baker Group networks
Train team members on security awareness and procedures
Conduct both internal and external security audits and make policy recommendations
Provide technical security advice
Analyzing security breaches to identify the root cause
Continuously update Baker Group's incident response and disaster recovery plans
Verify third-party vendor security and collaborate with them to meet security requirements
Assist with tier 2 and 3 level support tickets as needed
MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS
Bachelor's degree in computer science or related field, or equivalent relevant experience required
Minimum of two years' experience in information security or related field
Experience with computer network penetration testing and techniques
Strong knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts
CERTIFICATES, LICENSES, REGISTRATIONS
CompTIA Security+, preferred
CISSP-Certified Information Systems Security Professional, preferred
MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS
Demonstrated ability to identify and mitigate network vulnerabilities, along with the capacity to clearly explain prevention strategies
Skilled in timely patch deployment with a clear understanding of associated business impacts
Excellent verbal and written communication skills
Ability to multi-task while remaining thorough and detail-oriented
Strong problem-solving skills
Passion for technology and strong desire to work with new technologies
ENVIRONMENTAL ADAPTABILITY
Prolonged periods of sitting at a desk and working on a computer
Must be able to lift 10 pounds occasionally
May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs
EQUIPMENT/TOOLS
Laptop computer
Baker Group
is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
$72k-106k yearly est. 16d ago
Security Analyst
Arete Technologies 4.5
Cyber security analyst job in Des Moines, IA
Arete Technologies, Inc. offers set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with focus on providing paramount and unsurpassed services combined with cost saving solutions to the clients
We understand the business requirements in the present day corporate scenario and aspire to provide world-class services enabling the organization to burgeon and flourish while keeping the work-life balance intact. The Global delivery mechanism followed at Arete Technologies, Inc. saddles proficient schemas and unconventional channels to provide one-stop solutions for all your workforce needs.
our Team is an exquisite amalgamation of vast experiences of over 30 years in IT Consulting and Staffing industry. Connoisseurs in the field of staff augmentation for IT, we operate on 24 by 7 model with an aim of providing affordable and adept professionals with an assurance of satisfaction for both Consultants and Clients.
We are pre-eminent service providers in the field of staff augmentation, IT Consultancy, Software development, Web Development providing unexcelled services and focusing on both the employers and employees.
Job Description
·
The securityanalyst is responsible for advising IPERS in all policies regarding security.
Knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls.
Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans.
Proficiency in performing risk, business impact, control and vulnerability assessments.
Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts.
Technical knowledge of Microsoft Windows and a wide range of security technologies, such as network security appliances, identity and access mgt tools
Qualifications
SafeNet Luna HSM administration
COOP/COG coordinator
Windows PKI administration
Network Forensics
Log parsing
Incident Response
Continuous Monitoring
Power shell Scripting
HID Credential Management System administration
Varonis DatAdvantage, DatAlert, and DataPrivilege administration
Vormetric DSM administration - file level encryption product
OSINT - Open Source Intelligence gathering and analysis
End User security training program administration
Maldoc analysis
Additional Information
All your information will be kept confidential according to EEO guidelines.
$59k-85k yearly est. 1d ago
Systems Engineer II - Secure Systems
RTX Corporation
Cyber security analyst job in Cedar Rapids, IA
**Country:** United States of America , Cedar Rapids, IA, 52498-0505 USA ** Onsite **U.S. Citizen, U.S. Person, or Immigration Status Requirements:** The ability to obtain and maintain a U.S. government issued security clearance is required.
U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
**Security Clearance:**
DoD Clearance: Secret
Our nation's security depends on the sacrifice of the men and women who defend our country. For them to do this effectively, they need technology that keeps them a step ahead of their adversaries. This means providing secure yet technologically advanced equipment to our service personnel, fielded as quickly as possible. Our commitment is to do exactly that.
This position is for a **Systems Engineer II** professional who will work onsite in our Cedar Rapids facility. Join the Mission Systems Secure Systems Department and help shape, define, and design communication solutions that connect militaries around the world! As a Systems Engineer, you will design and develop military products ensuring safe and protected communication. You will interface with multi-discipline engineering teams to create total system solutions, addressing both domestic and international customer needs.
We are looking for talented individuals that love to problem solve and have a desire to grow and gain exposure to new skills. Our customers come from all different backgrounds, and so do our employees. If you're passionate about what you could accomplish here, we'd love to hear from you.
**What You Will Do**
+ Perform analysis, architecture and design at all levels of the total system product including concept, design, fabrication, modeling, test, installation, operation, maintenance and disposal.
+ Perform functional analysis, trade studies, requirements allocation and interface definition studies to translate customer requirements into hardware and software specifications.
+ Provide analysis for the decomposition of customer specifications and system level requirements into sub-system and piece part requirements, and develop verification criteria and plans for the requirements
+ Perform technical planning, system integration, verification and validation, and supportability and effectiveness analyses for total system solutions.
+ Perform daily tasks in a classified and controlled lab environment
+ Travel up to 10%
**What You Will Learn**
+ You will gain Systems Engineering Requirements, Integration, Validation and Verification skills.
+ You will be provided with mentorship opportunities to gain experience as a Systems Engineer
+ You will obtain invaluable experience working with our radio subject matter experts in addition to security and crypto certification specialists, our customer base, and cross-functional integrated product team.
+ You can take flight to becoming knowledgeable in security hardened products with exposure to the variety of business and products in an ever-evolving field. We are growing, so can you!
**Qualifications You Must Have**
+ Typically requires a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 2 years prior relevant experience or an Advanced Degree in a related field.
+ The ability to obtain and maintain a U.S. government issued secret security clearance is required.
**Qualifications We Prefer**
+ Familiarity with the Scaled Agile framework
+ Exceptionally strong communication skills, experience presenting technical data to program management and executive leadership
+ Experienced with Cryptographic Hardware architecture/design, Network Encryption specifications and test methodologies
+ Experience with tools such as DOORS, CAMEO or similar, Software Languages such as Rust and Python
+ Experience with Model Based Systems Engineering
**What We Offer**
Benefits
Some of our competitive benefits package includes:
+ Medical, dental, and vision insurance
+ Three weeks of vacation for newly hired employees
+ Generous 401(k) plan that includes employer matching funds and separate employer retirement contribution, including a Lifetime Income Strategy option
+ Tuition reimbursement program
+ Student Loan Repayment Program
+ Life insurance and disability coverage
+ Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
+ Birth, adoption, parental leave benefits
+ Ovia Health, fertility, and family planning
+ Adoption Assistance
+ Autism Benefit
+ Employee Assistance Plan, including up to 10 free counseling sessions
+ Healthy You Incentives, wellness rewards program
+ Doctor on Demand, virtual doctor visits
+ Bright Horizons, child and elder care services
+ Teladoc Medical Experts, second opinion program
+ Eligible for relocation assistance
+ And more!
**Eligible for relocation.**
**Learn More & Apply Now!**
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond? At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
**Role Type**
*Please ensure the role type (defined below) is appropriate for your needs before applying to this role.
**Onsite** : Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day.
**_As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote._**
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels.
RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
_RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act._
**Privacy Policy and Terms:**
Click on this link (******************************************************** to read the Policy and Terms
Raytheon Technologies is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
$75k-103k yearly est. 60d+ ago
Systems Engineer II - Secure Systems
RTX
Cyber security analyst job in Cedar Rapids, IA
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
The ability to obtain and maintain a U.S. government issued security clearance is required. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
Our nation's security depends on the sacrifice of the men and women who defend our country. For them to do this effectively, they need technology that keeps them a step ahead of their adversaries. This means providing secure yet technologically advanced equipment to our service personnel, fielded as quickly as possible. Our commitment is to do exactly that.
This position is for a Systems Engineer II professional who will work onsite in our Cedar Rapids facility. Join the Mission Systems Secure Systems Department and help shape, define, and design communication solutions that connect militaries around the world! As a Systems Engineer, you will design and develop military products ensuring safe and protected communication. You will interface with multi-discipline engineering teams to create total system solutions, addressing both domestic and international customer needs.
We are looking for talented individuals that love to problem solve and have a desire to grow and gain exposure to new skills. Our customers come from all different backgrounds, and so do our employees. If you're passionate about what you could accomplish here, we'd love to hear from you.
What You Will Do
Perform analysis, architecture and design at all levels of the total system product including concept, design, fabrication, modeling, test, installation, operation, maintenance and disposal.
Perform functional analysis, trade studies, requirements allocation and interface definition studies to translate customer requirements into hardware and software specifications.
Provide analysis for the decomposition of customer specifications and system level requirements into sub-system and piece part requirements, and develop verification criteria and plans for the requirements
Perform technical planning, system integration, verification and validation, and supportability and effectiveness analyses for total system solutions.
Perform daily tasks in a classified and controlled lab environment
Travel up to 10%
What You Will Learn
You will gain Systems Engineering Requirements, Integration, Validation and Verification skills.
You will be provided with mentorship opportunities to gain experience as a Systems Engineer
You will obtain invaluable experience working with our radio subject matter experts in addition to security and crypto certification specialists, our customer base, and cross-functional integrated product team.
You can take flight to becoming knowledgeable in security hardened products with exposure to the variety of business and products in an ever-evolving field. We are growing, so can you!
Qualifications You Must Have
Typically requires a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 2 years prior relevant experience or an Advanced Degree in a related field.
The ability to obtain and maintain a U.S. government issued secret security clearance is required.
Qualifications We Prefer
Familiarity with the Scaled Agile framework
Exceptionally strong communication skills, experience presenting technical data to program management and executive leadership
Experienced with Cryptographic Hardware architecture/design, Network Encryption specifications and test methodologies
Experience with tools such as DOORS, CAMEO or similar, Software Languages such as Rust and Python
Experience with Model Based Systems Engineering
What We Offer
Benefits
Some of our competitive benefits package includes:
Medical, dental, and vision insurance
Three weeks of vacation for newly hired employees
Generous 401(k) plan that includes employer matching funds and separate employer retirement contribution, including a Lifetime Income Strategy option
Tuition reimbursement program
Student Loan Repayment Program
Life insurance and disability coverage
Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
Birth, adoption, parental leave benefits
Ovia Health, fertility, and family planning
Adoption Assistance
Autism Benefit
Employee Assistance Plan, including up to 10 free counseling sessions
Healthy You Incentives, wellness rewards program
Doctor on Demand, virtual doctor visits
Bright Horizons, child and elder care services
Teladoc Medical Experts, second opinion program
Eligible for relocation assistance
And more!
Eligible for relocation.
Learn More & Apply Now!
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond? At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
Role Type
*Please ensure the role type (defined below) is appropriate for your needs before applying to this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day.
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
$75k-103k yearly est. Auto-Apply 39d ago
IT Security Cloud Data Protection Engineer - FT
Veridian Credit Union 4.0
Cyber security analyst job in Cedar Falls, IA
This is a hybrid position that requires individual to work 2 days a week from our location in Cedar Falls, IA.
WANT TO BE A PART OF AN AWARD WINNING TEAM, APPLY TODAY!!
Take a look at all our great benefits here!
Application deadline: Wednesday January 21st, 2026
Location: Cedar Falls, IA
Hybrid eligible
Exempt
Summary
The IT Security Cloud Data Protection Engineer is focused on securing Microsoft 365 and Azure environments, with a strong emphasis in using Microsoft Purview Information Protection (MPIP) to enforce and align the security posture with data governance and compliance standards.
Essential Functions
Serve as the subject matter expert for Microsoft Purview Information Protection (MPIP) suite of tools.
Design, implement, and maintain MPIP for M365, Azure, and on-premise.
Develop, document, and enforce MPIP security policies, standards, and best practices for cloud-based resources across the Microsoft tenant (Exchange, SharePoint, OneDrive, Teams, Azure).
Deploy and configure data classification in Microsoft 365 and Azure to ensure alignment with Veridian's Data Governance solution Lightbeam.ai.
Design and deploy MPIP data loss prevention (DLP) that aligns with Veridian's current standards and on-premise solutions.
Work collaboratively with the IT SecurityAnalyst and Specialists to monitor, investigate, and respond to policy violations and security alerts related to data handling using Microsoft Purview dashboards and alerts.
Stay current on emerging threats, vulnerabilities, and security requirements affecting Veridian's cloud environment.
Work with cross departmental teams to support business initiatives leveraging M365 and Azure, ensuring security requirements are established and adhered to.
Evaluate and recommend new security solutions based on emerging threats.
Collaborate with stakeholders to understand data governance needs and ensure proper information lifecycle management.
Provide guidance and training to stakeholders on cloud security best practices and data governance requirements.
Stay up to date with evolving Microsoft security features, compliance regulations, and industry trends.
On call availability required for system support as needed (including nights and weekends).
Monitor and provide solutions to IT Security support tickets.
Key Attributes
Oral and written communication skills.
Member service focus.
Attention to detail and accuracy.
Positive attitude that supports a team environment.
Dependable and punctual; flexible during peak times.
High level of confidentiality.
Organizational skills.
Self-motivated; ability to work without close supervision.
Problem solving; analysis.
Physical Demands
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job:
Occasionally lift and/or move items over 50 pounds.
Remain sedentary (seated) for extended periods of time.
Working Conditions
This job operates in a professional office environment and routinely uses standard office equipment.
Travel
Limited travel expected.
Required Education and Experience
Bachelor's degree in computer science, Information Systems, or related field or equivalent combination of education, training, and experience of 8+ years.
2+ years of experience developing and designing cloud security with a focus on M365 and Azure.
Knowledge of cybersecurity frameworks (NIST, CSF 2.0, CIS, ISO 27001-2022).
Familiarity working with financial regulatory and compliance requirements including NCUA, FFIEC, HIPAA, GLBA, and PCI DSS requirements.
Preferred Education and Experience
8+ years of experience working with information security.
4+ years of experience configuring and managing Microsoft Purview specifically with data classification, data loss prevention, and insider risk management.
Prior experience with incident response and case management in cloud environments.
Certifications: Microsoft 365 Security Administrator or Azure Security Engineer.
Other Duties
Veridian Credit Union is a PCI compliant financial institution to ensure the security of member information. As such, all employees are expected to ensure security measures are in place and adhered to regarding PCI and other highly secure data compliance requirements.
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.
$72k-86k yearly est. 10d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Cyber security analyst job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 59d ago
Sr. Security Analyst
Maximus 4.3
Cyber security analyst job in Davenport, IA
Description & Requirements Maximus is seeking a qualified Sr. Technical/SecurityAnalyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client.*
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00