Sit back and relax while we apply to 100s of jobs for you - $25
Senior Cyber Security Risk & Controls Analyst
First Citizens 4.8
Remote cyber security analyst job
This remote position supports cybersecurity governance by performing risk and control self-assessments (RCSAs), evaluating cybersecurity controls, and supporting key risk management processes. The role helps identify risk and control gaps, assess cyber risks, and recommends improvements to strengthen the organizations cyber posture. The position provides risk analysis, documentation, and control development support across cybersecurity teams, acting as a resource for process owners and contributing to continuous improvement initiatives.
Responsibilities
Execute cybersecurity process level RCSAs in partnership with business function owners and stakeholders
Document risk and controls assessment results, risk ratings, and supporting evidence in accordance with Enterprise Risk Standards
Draft, update, and refine control risk and control statements to ensure clarity, effectiveness, and alignment with cybersecurity processes
Review existing risks and controls for design effectiveness, identifying gaps, inconsistencies, or opportunities for improvements
Partner with business function owners to periodically update inherent and residual risk ratings for process level risks
Assist cybersecurity teams with updating control effectiveness and control environment ratings on a regular cadence
Evaluate cybersecurity risks and controls against Enterprise Policies and Standards, regulatory requirements, and industry standards
Support remediation planning by documenting gaps, improvement recommendations, and target-state control enhancements
Participate in projects, assessments, or escalated tasks requiring risk and control expertise
Qualifications
Bachelor's Degree and 8 years of experience in Information security, cybersecurity, risk management, or a related field OR High School Diploma or GED and 12 years of experience in Information security, cybersecurity, risk management, or a related field
Experience performing risk assessments, RCSAs, or controls testing
Working knowledge of cybersecurity processes, controls and risk concepts
Familiarity with frameworks such as NIST CSF, NIST SP 800-53
Ability to write clear, actionable control statements and assessment findings
Strong analytical, documentation, and communications skills
Ability to work collaboratively with technical and non-technical stakeholders
Preferred
4-7 years of experience in Information or cybersecurity risk or control assessment
Experience supporting cybersecurity programs within a financial institution or regulated environment
Certifications such as Security+, SSCP, CISA, CISM, CISSP, CRISC
Understanding of threat landscapes, IT processes, and common control frameworks
Experience supporting process improvements, control rationalization, or evidence evaluation
The base pay for this position is generally between $120,000 and $180,000. Actual starting base pay will be determined based on skills, experience, location, and other non-discriminatory factors permitted by law. For some roles, total compensation may also include variable incentives, bonuses, benefits, and/or other awards as outlined in the offer of employment.
This job posting is expected to remain active for 45 days from the initial posting date listed above. If it is necessary to extend this deadline, the posting will remain active as appropriate. Job postings may come down early due to business need or a high volume of applicants
Benefits are an integral part of total rewards and First Citizens Bank is committed to providing a competitive, thoughtfully designed and quality benefits program to meet the needs of our associates. More information can be found at ****************************************
#J-18808-Ljbffr
$120k-180k yearly 2d ago
Looking for a job?
Let Zippia find it for you.
Information Security Engineer - Black Lotus Labs Threat Researcher (Crimeware)
Lumen Technologies 4.1
Remote cyber security analyst job
Lumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People power progress.
We're looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
The Role
Black Lotus Labs is seeking a Security Engineer on the Research & Analysis team to specialize in Threat Research with an emphasis on the Crimeware and Ransomware ecosystem, proactively identifying and disrupting adversary infrastructure. This team leverages Lumen's global visibility of one of the world's largest and most interconnected IP backbones and a petabyte-scale compute cluster to perform cutting edge threat research, hunting and tracking advanced persistent threat actors (APTs) and emerging criminal activity as the threat actors traverse the internet. They empower customers to stay ahead of the evolving threat landscape.
Location
This is a remote position open to candidates based anywhere in the U.S.
The Main Responsibilities
Conduct threat research across technical data sets, fusing Black Lotus Labs telemetry with third party data sets, to automate detection of the latest threat attacker tools, techniques and procedures (TTPs) with a goal of automating detection.
Use industry-leading technical knowledge of adversary capabilities and infrastructure and define, develop, and implement techniques to lead the team in tracking sophisticated adversaries, delivering actionable threat intelligence data to Lumen customers.
Serve as Threat Research Subject Matter Expert, offering guidance and support to the Black Lotus Labs team on threat hunting activities, such as identifying knowledge gaps, troubleshooting technical challenges, developing solutions, and mentoring team members in overcoming obstacles. Set priorities for what threats to analyze to maximize team's impact.
Lead and enhance threat hunting operations by actively engaging with other research teams, building strong partnerships to achieve shared goals, exploring new data sources, and mentoring team members in executing workflows and solving complex challenges.
Provide expert analysis and strategic insights on emerging threats and vulnerabilities, translating complex technical information into actionable intelligence for executive leadership and external stakeholders.
Spearhead thought leadership initiatives by leading Black Lotus Lab's voice at security conferences and internal executive briefings.
What We Look For in a Candidate
Fluency in the ransomware attack chain, adversary TTPs, and detection techniques with an emphasis on detections of adversary infrastructure using network telemetry.
Proven experience in threat hunting and in-depth technical security research, demonstrating a strong track record of successfully identifying, tracking, and disrupting cybercriminal threat actors.
Deep understanding of advanced threat hunting methodologies, attacker tactics, techniques, and procedures (TTPs), and the ability to derive actionable threat hunts from complex data sets.
Demonstrated experience building prototype threat hunting solutions and large data analysis tools with Python (or other equivalent languages) on distributed computing frameworks.
Proven experience initiating and coordinating technical projects focused on telemetry collection, TTP based threat hunting, or developing threat hunt tools that have cross-organization impact on threat visibility, including leading private-public partnerships and multi-company collaborations.
Exceptional communication and presentation skills, including the ability to clearly and concisely convey complex technical information to both technical and non-technical audiences, ranging from executives and board members to conference attendees and internal stakeholders.
Experience developing threat research thought leadership such as blogs and presenting at industry conferences and in the media.
Highly organized with the ability to manage multiple tasks, prioritize effectively, and triage competing demands in a fast-paced environment.
Proven ability to lead and manage complex technical projects, effectively driving them to successful completion.
Well-experienced candidates may also have the following skills:
Proficiency in malware reverse engineering and incident response.
5+ years of experience leading teams of technical threat discovery professionals.
Software development experience in Docker and big data technologies like Hadoop, Spark, and Tensor Flow.
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges:
$129,639 - $172,852 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY.
$136,121 - $181,494 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI.
$142,603 - $190,137 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA
#GSS
#LI-MG1
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
Disclaimer
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
Job Segment: Information Security, Data Analyst, Engineer, Technology, Data, Security, Engineering
#J-18808-Ljbffr
$142.6k-190.1k yearly 3d ago
Staff Security Engineer
Parafin Inc.
Remote cyber security analyst job
About Us:
At Parafin, we're on a mission to grow small businesses.
Small businesses are the backbone of our economy, but traditional banks often don't have their backs. We build tech that makes it simple for small businesses to access the financial tools they need through the platforms they already sell on.
We partner with companies like DoorDash, Amazon, Worldpay, and Mindbody to offer fast and flexible funding, spend management, and savings tools to their small business users via a simple integration. Parafin takes on all the complexity of capital markets, underwriting, servicing, compliance, and customer service for our partners.
We're a tight-knit team of innovators hailing from Stripe, Square, Plaid, Coinbase, Robinhood, CERN, and more - all united by a passion for building tools that help small businesses succeed. Parafin is backed by prominent venture capitalists including GIC, Notable Capital, Redpoint Ventures, Ribbit Capital, and Thrive Capital. Parafin is a Series C company, and we have raised more than $194M in equity and $340M in debt facilities.
Join us in creating a future where every small business has the financial tools they need.
About the Position
We're looking for an experienced security-focused engineer to help shape and scale Parafin's security posture across our cloud and platform environments. Our Security and Infrastructure team owns the foundational systems that power all of Parafin - from compute and networking to identity and compliance - and you'll play a central role in ensuring those systems are secure, reliable, and compliant.
In this role, you'll design and operate controls, tooling, and processes that keep our infrastructure resilient and compliant while enabling developers to move quickly and safely. You'll partner closely with teams across engineering and compliance to strengthen how we manage access, secure applications, monitor threats, and respond to incidents.
What You'll Be Doing
Lead efforts to improve Parafin's overall security posture across infrastructure, applications, and data systems.
Develop and maintain frameworks for identity, access management, and least-privilege enforcement.
Establish and operate best-in-class security monitoring, alerting, and incident response processes.
Partner with product and infrastructure engineers to embed secure-by-default patterns in our systems and applications.
Define and enforce standards for vulnerability management, secrets handling, and dependency integrity.
Collaborate with compliance and risk teams to build and maintain controls aligned with frameworks such as SOC 2, PCI DSS, and other fintech regulations.
Support audits and security assessments by ensuring controls are properly implemented and evidenced.
Contribute to security awareness and training efforts across engineering teams.
Influence long-term strategy on secure architecture, detection, and response automation.
What We're Searching For
8+ years of experience in security operations or application security, preferably in a cloud-native and regulated environment.
Strong understanding of AWS security, including IAM, VPC, and network segmentation best practices.
Experience with threat detection and response, vulnerability management, and incident response workflows.
Familiarity with Kubernetes and container security principles, including RBAC, admission controls, and runtime monitoring.
Knowledge of compliance frameworks (SOC 2, PCI DSS, ISO 27001) and how to operationalize them in engineering environments.
Strong communication and collaboration skills - comfortable working across engineering, product, and compliance teams.
We Prefer If You Have
Experience building or maturing a security operations or application security program at scale.
Background in security automation, threat modeling, or secure architecture reviews.
Familiarity with developer-focused security enablement - e.g., SAST/DAST integration, dependency scanning, or security education.
Experience in regulated or fintech environments where security and speed must coexist.
What We Offer
Salary Range: $235k - $280k
Equity grant
Medical, dental & vision insurance
Unlimited PTO
Work From Home flexibility
Commuter benefits
Free lunches
Paid parental leave
401(k)
Employee assistance program
If you require reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please contact us.
#J-18808-Ljbffr
$235k-280k yearly 4d ago
Corporate Security Engineer
Workos
Remote cyber security analyst job
WorkOS builds tools and services for developers to help them implement authentication, identity, authorization, and overall enterprise readiness. We're a fully distributed team with employees across North American time zones. We're well‑funded, having raised $100m in funding from top investors including Greenoaks Capital, Lachy Groom, and Lightspeed Ventures. Our fast‑growing customer base includes rapidly growing SaaS companies like OpenAI, Cursor, Perplexity, Vercel, Plaid, and hundreds of others.
About the Security Team
The Security team at WorkOS is responsible for keeping our company and customer data safe. As a CorpSec Engineer, you'll focus on the internal side of security-ensuring our people, devices, and systems are secure by default. We support a remote‑first, fast‑moving engineering organization and need strong, pragmatic security systems that scale with us.
You'll work to improve access controls, endpoint security, and tooling across the company. This role is a mix of hands‑on execution and strategic thinking-perfect for someone who wants to shape how security works inside a modern startup.
Who we're looking for
Have experience with corporate security and endpoint management in a cloud‑native, remote‑friendly environment
Enjoy taking ownership of systems like Okta, MDM, and EDR and making them more reliable, secure, and easy to use
Can balance security best practices with the realities of usability and speed
Like designing scalable controls for access, identity, and device management
Are comfortable working independently and cross‑functionally with IT, Infra, and GRC
Are curious, proactive, and enjoy simplifying complexity
What you'll be doing
Own and improve our identity and access management systems (Okta, Google Workspace, etc.)
Administer and secure our MDM and endpoint protection tools (e.g. Kandji, EDRs)
Partner with Infra to implement controls for least privilege, audit logging, and change management
Develop automations and tooling for onboarding/offboarding, access reviews, and audit prep
Proactively identify security risks and lead the rollout of mitigations
Help shape security policies and practices that work well for engineers, not against them
Work with vendors and evaluate new tools as needed
Document systems and decisions clearly to support scale and clarity
Requirements
Experience with identity, access, and endpoint security tools (e.g. Okta, MDM, EDR)
Familiarity with cloud‑native IT/security operations and SaaS environments
Comfort working in a fast‑paced, high‑autonomy environment
A practical mindset and a bias for simplicity and security‑by‑default
Nice to have
Experience working at a startup or on a small security team
Familiarity with SOC 2, ISO 27001, or other compliance frameworks
Scripting or automation experience (e.g. Python, Bash, Terraform)
The annual US base salary falls within the range of $175,000 to $250,000. This range does not encompass the full spectrum of benefits such as equity, health insurance, vacation time, and paid parental leave. This salary range covers multiple levels of engineering roles and final compensation will be determined considering various factors, including experience, skills, and qualifications.
For candidates outside the US, including Canada, compensation is adjusted based on local market benchmarks.
Benefits (US Only)
At WorkOS, we offer resources that emphasize personal and familial well‑being. We offer healthcare coverage for you and your family, including medical, dental, and vision. We offer parental leave, paid‑time off and fully remote working arrangements.
Benefits include:
Competitive pay
Substantial equity grants
Healthcare insurance (Medical, Dental and Vision) for you and your family
401k matching
Wellness and fitness monthly allowances
PTO + paid holidays + unlimited sick leave
Autonomy and flexibility with remote work
Please inquire directly with our recruiting team for benefits available to those working outside the US.
Equal Opportunity Employer
WorkOS is an equal opportunity employer, committed to diversity and inclusiveness. We will consider all qualified applicants without regard to race, color, nationality, gender, gender identity or expression, sexual orientation, religion, disability or age.
#J-18808-Ljbffr
A leading data collaboration platform in San Francisco seeks a Senior Security Engineer to enhance threat detection and automation strategies. The role involves implementing detection logic, automating workflows, and developing scalable cloud solutions. Candidates should have a Bachelor's degree in a relevant field and strong skills in security automation and detection engineering. This position offers competitive compensation with a base range of $131,500 to $203,000.
#J-18808-Ljbffr
$131.5k-203k yearly 3d ago
Remote Information Security Engineer: SIEM, EDR & Cloud
Isaca 4.5
Remote cyber security analyst job
A well-respected law firm in Washington, DC is seeking an experienced Information Security Engineer to enhance its security operations. This role offers the flexibility to work entirely remote or on-site. The ideal candidate will have a strong background in information security, excellent communication skills, and the ability to collaborate remotely. Competitive salary range is $122,000 to $160,000 annually, with additional benefits available.
#J-18808-Ljbffr
$122k-160k yearly 2d ago
Remote Senior AppSec Engineer: Build Secure SDLC
Blockchain Works 4.1
Remote cyber security analyst job
ZetaChain is looking for a Sr. Application Security or DevSecOps Engineer to enhance its security program. This role is crucial for safeguarding applications in the blockchain domain. You will actively shape security strategies while gaining experience across diverse crypto risks in a vibrant and innovative environment. If you possess a strong foundation in application security and are passionate about blockchain technology, you will thrive here.
#J-18808-Ljbffr
A financial technology company is seeking a Security Engineer to design and implement security controls for their payment infrastructure. This role involves leading application security, enhancing compliance features, and implementing DevSecOps tooling. Candidates should have over 7 years of experience in DevOps, a strong background in application security, and familiarity with technologies like AWS and Docker. The position supports candidates in various locations including San Francisco or remote.
#J-18808-Ljbffr
Senior Security Engineer - Corporate Security
Rippling gives businesses one place to run HR, IT, and Finance. It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and computers. For the first time ever, you can manage and automate every part of the employee lifecycle in a single system.
Take onboarding, for example. With Rippling, you can hire a new employee anywhere in the world and set up their payroll, corporate card, computer, benefits, and even third-party apps like Slack and Microsoft 365-all within 90 seconds.
Based in San Francisco, CA, Rippling has raised $1.4B+ from the world's top investors-including Kleiner Perkins, Founders Fund, Sequoia, Greenoaks, and Bedrock-and was named one of America's best startup employers by Forbes.
We prioritize candidate safety. Please be aware that all official communication will only be sent from @ Rippling.com addresses.
About the role
Rippling is looking for a Senior Security Engineer to join our Corporate Security team. Our mission is to reduce organizational risk by securing the tools and platforms Rippling employees use every day-SaaS apps, internal tools, endpoints, and email. We help the business make safer decisions by building secure defaults, automating away risky behavior, and working directly with stakeholders to understand and mitigate threats.
As a Senior Engineer on CorpSec, you'll drive projects that span technical execution, stakeholder engagement, and strategic planning. You'll work closely with the Detection and Response, IT products, Infrastructure, Legal, and Compliance teams to improve how we manage access, detect abuse, and remediate risk-often through automation and thoughtful process design.
What You'll Do
Lead end-to-end security projects that secure core enterprise systems like Google Workspace, Atlassian, Salesforce, and Slack.
Design and implement scalable access controls, including least privilege policies, automated approvals, and audit workflows.
Deploy and tune security tooling (e.g. email security platforms, CASB/SWG, SaaS DLP tools) to reduce risk across our corp environment.
Automate security workflows that reduce manual effort, close the loop on findings, and improve team efficiency.
Write one-pagers and RFCs that clarify risk, propose solutions, and drive alignment with cross-functional stakeholders.
Partner with Detection & Response to improve phishing protection and support incident investigations involving corp tools or user accounts.
Mentor teammates and contribute to the team's technical direction through design reviews and hands‑on collaboration.
Sample Projects You Might Work On
Rolling out a new email security solution and defining phishing detections in partnership with Detection & Response.
Building an approval system for Chrome extensions and auto‑whitelisting trusted ones using Google's API.
Automating Slack‑based remediation for publicly shared sensitive Google Docs.
Restricting 3rd‑party app access in Google Workspace and driving stakeholder alignment on exceptions.
Threat modeling Salesforce and improving visibility into high‑risk integrations and data access patterns.
What We're Looking For
5+ years of experience in security or software engineering, ideally with exposure to SaaS, corp IT, or access management.
Strong programming skills (e.g. Python, Go) and a track record of building automation that solves real problems.
Experience with one or more of: identity and access management, SaaS security tooling, DLP, insider threat detection, or phishing protection.
Clear, empathetic communication skills-especially when working with stakeholders outside of engineering.
Ability to turn ambiguous problems into scoped projects, define success metrics, and drive them to completion.
Comfortable owning projects end‑to‑end and proactively reducing blockers for others.
What Success Looks Like
You lead multi‑stakeholder projects that reduce security risk and are measurable, repeatable, and automated.
You deliver projects that enable safe default behaviours, reduce operational toil, or improve visibility into corp risk.
You can clearly communicate security trade‑offs to engineering and business teams, and drive alignment across orgs.
You build systems that last-flexible, reusable, and easy for others to extend or maintain.
Additional Information
Rippling is an equal opportunity employer. We are committed to building a diverse and inclusive workforce and do not discriminate based on race, religion, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex, gender, gender identity, gender expression, age, sexual orientation, veteran or military status, or any other legally protected characteristics. Rippling is committed to providing reasonable accommodations for candidates with disabilities who need assistance during the hiring process. To request a reasonable accommodation, please email accommodations@rippling.com.
Rippling highly values having employees working in‑office to foster a collaborative work environment and company culture. For office‑based employees (employees who live within a defined radius of a Rippling office), Rippling considers working in the office, at least three days a week under current policy, to be an essential function of the employee's role.
This role will receive a competitive salary + benefits + equity. The salary for US‑based employees will be aligned with one of the ranges below based on location; see which tier applies to your location here.
A variety of factors are considered when determining someone's compensation-including a candidate's professional background, experience, and location. Final offer amounts may vary from the amounts listed below.
The pay range for this role is:
159,000 - 278,250 USD per year (US Tier 1)
143,100 - 250,425 USD per year (US Tier 2)
135,150 - 236,513 USD per year (US Tier 3)
#J-18808-Ljbffr
A leading security training provider is seeking a Senior Security Engineer for their content engineering team. This role supports security professionals, builds hands-on content, and integrates security into DevOps. Ideal candidates have over 5 years of experience in application security and are passionate about improving security practices. The position is remote-first with competitive compensation and benefits.
#J-18808-Ljbffr
$132k-184k yearly est. 1d ago
Senior AI Platform Engineer for Autonomous Security
Hackerone Inc. 4.2
Remote cyber security analyst job
A leading cybersecurity firm is seeking a Senior Software Applied AI Engineer to develop cutting-edge AI solutions aimed at enhancing cybersecurity. You will build and enhance the AI security agent 'Hai', creating tools that allow organizations to develop more secure software while combating emerging threats. The role embraces flexible remote work within the Seattle area, and offers competitive compensation with substantial benefits.
#J-18808-Ljbffr
$122k-165k yearly est. 4d ago
Remote Security Observability Engineer - Data Pipelines
Openai 4.2
Remote cyber security analyst job
A leading company, OpenAI, is seeking a Software Engineer, Security Observability to enhance their security infrastructure in a collaborative environment. The role focuses on designing scalable systems, improving data visibility, and requires strong software engineering skills, particularly in Python and Golang. Expansion into cloud platforms like Azure is also essential in this high-impact position.
#J-18808-Ljbffr
$125k-175k yearly est. 2d ago
Information Security Engineer
Unilin 4.6
Remote cyber security analyst job
Within our Unilin Infrastructure team, we are looking for an Information Security Engineer with strong technical expertise, entrepreneurship and a passion for applying innovative technology to strengthen our Unilin Group's cybersecurity posture.
You will be part of the Unilin Information Security team, part of the global Mohawk cybersecurity organization, giving you exposure to international operations and standards. You will be working with leading security platforms andwill have a wide variety of responsibilities including incident management, vulnerability management, security assessments, awareness initiatives and several security projects.
As Information security engineer, you will:
Enhance and maintain cybersecurity operations processes, identifying gaps, analyzing trends, and recommending improvements to strengthen detection, response, and prevention capabilities.
Support incident management activities by assisting with investigations, coordinating mitigation efforts with the MDR partner, and ensuring that procedures are followed correctly to minimize business impact.
Maintain strong technical expertise in key platforms used across the environment, such as Palo Alto Cortex XDR, SIEM, and Tanium.
Contribute to the vulnerability management programme, including scanning, prioritization, and coordination of remediation efforts with IT and OT teams.
Support cybersecurity assessments, assisting with internal vulnerability assessments, penetration testing, and cyber exercises.
Contribute to cybersecurity awareness and training initiatives through the KnowBe4 platform, helping to strengthen the organization's overall security culture.
Lead or support cybersecurity projects that enhance the overall security posture of the Unilin Group
Who are you?
Bachelor's or Master's degree in IT, Computer Science, Engineering, or equivalent practical experience.
At least 5 years of experience in cybersecurity operations, system administration, or incident response.
Proven expertise in network and endpoint security and threat analysis.
Experience with tools such as Cortex XDR, Tanium, or Prisma is an advantage.
Strong analytical skills with a solution-oriented, hands-on mindset.
Independent and self-motivated, able to manage tasks and projects autonomously.
Proficient in English and Dutch; knowledge of French is a plus.
What can you expect?
A competitive remuneration package.
An extensive leave system and a flexible work schedule with the option of home working.
Luncheon vouchers, hospitalisation and group insurance.
Possibility of bike leasing.
We invest in your development and we believe in lifelong learning. In our state-of-the-art training centre The Dive you are bound to find training courses that will help you grow.
Countless possibilities to build your career.
An employer with a transparent sustainability strategy (for our planet, customers and employees).
In different locations we have a company restaurant with a varied menu.
Benefit from attractive discounts on our products.
Child care is an option during a number of school holidays.
Make the most of discounts at a number of partners through our Benefits at Work platform.
You will often find us at sporting events. You and your family can participate for free.
In short, you'll be working for a Top Employer!
Who are we?
Unilin is a global reference in interior design and construction with a strong focus on sustainability and innovation. Our floors, panels, insulation materials, and technologies can be found in the homes and workplaces of millions of people and public spaces around the world. Our brands Quick-Step, Pergo, and Moduleo probably ring a bell. Worldwide, around 7,900 employees work every day to push boundaries and innovate. Want to know more about our story? Be sure to check out our website.
#J-18808-Ljbffr
$100k-145k yearly est. 4d ago
Senior Backend Engineer - Remote API & Security (Java/Spring)
Knowledge Management, Inc. 3.9
Remote cyber security analyst job
A technology solutions provider seeks a Senior Backend/Middleware Engineer to develop secure, high-performance API and middleware solutions. This remote role requires expertise in Java and Spring Boot, with responsibilities including designing RESTful APIs and implementing security protocols. Ideal candidates will have experience with OAuth 2.0, OpenID Connect, and authorization principles. Benefits include health insurance, 401(k), and paid time off.
#J-18808-Ljbffr
A leading consulting firm in Washington is seeking an experienced IDS and IPS CyberSecurity Engineer to join their cybersecurity team. The role requires expertise in Linux and YAML configuration management for network intrusion systems. Responsibilities include designing and maintaining IDS/IPS across multiple networks, optimizing YAML configurations, and troubleshooting system issues in a Red Hat environment. The compensation range is competitive, offering a long-term career with strong professional development opportunities.
#J-18808-Ljbffr
$91k-121k yearly est. 1d ago
Lead Security Engineer - Cyber Security
Relativity 4.7
Cyber security analyst job in Columbus, OH
Posting Type
Remote
As a Lead CyberSecurity Engineer, you will ensure the security of Relativity's network and infrastructure. In this role, the main responsibilities will be to investigate and analyze emerging threats against our assets, identities, and clients. You will also provide actionable remediation guidance to end users and collaborate with highly skilled cyber experts to anticipate and mitigate evolving threats using world-class toolsets and next generation capabilities.
Job Description and Requirements
Responsibilities:
Review, validation, and triage of alerts and technical analysis of log data from a diverse inventory of sensors, correlated signature logic, and threat intelligence sources.
Assess the impact of security events by leveraging host, cloud and network-based indicators and evidence to deliver actionable incident escalations.
Develop and deploy detection and prevention signatures with response actions as part of a layered defensive strategy leveraging multiple technologies and data types.
Build automation to search through collected telemetry to detect and isolate advanced threats that evade existing security solutions.
Create Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards.
Automate incident handling processes.
Engage in the continuous research of emerging threats and apply appropriate countermeasures within the context of a rapidly changing environment.
Serve as a subject matter expert in the mechanism and analysis of observed malicious activity.
Clearly document and communicate investigation findings to both technical and executive stakeholders.
Identify and automate away technical burden.
Build automation to deploy, operate and connect multiple cybersecurity tools and applications.
Preferred Qualifications:
7+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team for Cloud applications and corporate networks
Exposure to threat detection development and tuning
Experience in software design and development
DevSecOps experience
Ability to perform threat hunting, threat emulation, and/or purple teaming exercises
Familiarity with industry standard security devices and their configuration
Experience in reverse engineering malicious code to explore infection and propagation mechanisms
Experience with threat intelligence tools and processes
Certifications: One or more of the following certifications are preferred (GCFA, GCIA, GCIH, GNFA, GREM, OSCP, OSEP, OSED, OSWE, OSDA, OSCE3, CompTIA Security+, CCNA CyberOps, or CEH)
5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team
Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)
Ability to read, write and analyze PowerShell, C#, and Python
Capability to independently manage the prioritization of complex security events
Advanced understanding of common SOC/CIRT operational processes and documentation
Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks
Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture
Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls
Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data
Strong analytical and problem-solving skills
Minimum Qualifications:
5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team
Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)
Ability to read, write and analyze PowerShell, C#, and Python
Capability to independently manage the prioritization of complex security events
Advanced understanding of common SOC/CIRT operational processes and documentation
Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks
Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture
Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls
Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data
Strong analytical and problem-solving skills
Ability to leverage programming and scripting languages to build automations and develop SOAR playbooks
Relativity is committed to competitive, fair, and equitable compensation practices.
This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.
The expected salary range for this role is between following values:
$150,000 and $226,000
The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position.
Suggested Skills:
Cybersecurity, Infrastructure Security, Network Security, Penetration Testing, Security Architecture Design, Security Audit, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management
$69k-89k yearly est. 3d ago
Offensive Security Engineer
Teksystems 4.4
Remote cyber security analyst job
The ideal candidate will have deep experience in adversary simulation, red teaming, and offensive security operations across hybrid environments (on-prem, cloud, and physical). This role requires strong technical acumen, creativity, and the ability to communicate complex findings to both technical and executive audiences.
Key Responsibilities
* Lead and execute adversary emulation engagements using intelligence-driven threat scenarios aligned with frameworks such as MITRE ATT&CK.
* Design and conduct full-scope red team operations, including initial access, lateral movement, privilege escalation, and data exfiltration simulation.
* Conduct physical, external/internal, and wireless network assessments, as well as web and mobile application testing.
* Perform security assessments across cloud platforms (Google Cloud, Microsoft Azure, AWS) and embedded systems.
* Develop and test threat actor emulation tools, tactics, and procedures for the Red Team to employ on-demand in assessments of application, system, and network security controls.
Preferred Certifications
* Offensive Security Certified Professional (OSCP)
* Offensive Security Certified Expert (OSCE)
* Offensive Security Experienced Penetration Tester (OSEP)
* Certified Red Team Professional (CRTP)
* GIAC Penetration Tester (GPEN)
* GIAC Web Application Penetration Tester (GWAPT)
* CREST Registered Penetration Tester / CBEST Qualifications
*Skills*
Security, Cybersecurity, Cloud, automated pen testing, tenable, servicenow, cobalt strike, metasploit, metahound
*Top Skills Details*
Security,Cybersecurity,Cloud
*Additional Skills & Qualifications*
-Looking for 6+ years of experience in Red Teaming for the mid-level role
-any experience with automated pen testing is a plus
*Job Type & Location*
This is a Permanent position based out of Cleveland, OH.
*Pay and Benefits*The pay range for this position is $115000.00 - $130000.00/yr.
More details in file.
Medical, Dental, Vision offered through United Health Group.
4 weeks of PTO
Holidays: 8 observed and 3 floating
*Workplace Type*This is a fully remote position.
*Application Deadline*This position is anticipated to close on Jan 16, 2026.
h4>About TEKsystems:
We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.
The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
About TEKsystems and TEKsystems Global Services
We're a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We're a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We're strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We're building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com.
The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
$115k-130k yearly 5d ago
Senior Network & Security Consultant - Remote
Thales Group 4.5
Remote cyber security analyst job
A leading global security company in California is seeking a Consultant for Network & Security. Key responsibilities include acting as a technical advisor, defining architecture for solutions, and supporting operational teams. Ideal candidates should have expertise in firewalls, encryption, and IT security practices. The role offers hybrid working conditions and emphasizes continuous learning and coaching.
#J-18808-Ljbffr
$104k-138k yearly est. 2d ago
Chief Compliance & Information Security Officer (Fintech)
Lendswift
Remote cyber security analyst job
A modern consumer lending company is seeking a Chief Compliance Officer/CISO to lead compliance and information security programs. The ideal candidate has over 8 years in the industry with a strong background in bank partnerships and regulatory compliance. Key responsibilities include maintaining compliance management systems and overseeing data security. This role offers a highly flexible remote work environment, unlimited PTO, and competitive compensation.
#J-18808-Ljbffr
$89k-136k yearly est. 19h ago
Global Cyber Wordings Analyst
Liberty Mutual 4.5
Remote cyber security analyst job
Join our global Cyber team as a Wordings Analyst supporting the Global Cyber Wordings Manager in the strategic development and governance of our Cyber and Tech policy suite, including Liberty Cyber Resolution and Liberty Tech Resolution. This role is a hands-on business enabler: you will help translate complex legal and regulatory requirements into clear, market-ready wordings, maintain our global clause library, support manuscript negotiations, and produce practical tools that empower underwriters and strengthen broker confidence. It's an excellent opportunity for an early-career insurance wordings or legal professional to build expertise in a fast-moving, global specialty line and make a visible impact on growth, innovation, and client experience.
Key responsibilities:
Wording library and drafting support
Maintain and expand the global wording library centered on Liberty Cyber Resolution and Liberty Tech Resolution, including endorsements, exclusions, and guidance notes.
Redline and prepare first drafts of standard clauses and endorsements; ensure consistency with definitions, coverage intent, and plain-language standards.
Track version control, change logs, approvals, and archiving;
Assist with localization for different jurisdictions, coordinating translations and filing documentation with Legal/Compliance.
Commercial enablement
Build practical tools (playbooks, FAQs, objection-handling guides, coverage summaries) to help regional teams position our products and close deals efficiently.
Prepare broker/client comparison decks and battlecards; support pitches, RFP/RFI responses, and manuscript negotiations with clause comparisons and recommended alternatives.
Triage wording queries from regions; track SLAs and referral approvals per the global governance framework.
Partner closely with Underwriting, Product, Global Cyber Engagement, Claims, Legal/Compliance, and regional leaders to deliver accurate, timely support and uphold governance standards.
Regulatory and legal stewardship
Monitor and synthesize global regulatory and market developments (e.g., Lloyd's cyber war/systemic guidance, GDPR, DORA, NIS2, sanctions) into succinct briefs and recommended wording actions.
Maintain audit-ready documentation; assist with regulatory filings or attestations where required.
Claims partnership and feedback loop
Collaborate with Claims to capture lessons from disputes and litigation trends; draft guidance notes and propose clarifications to improve coverage certainty.
Support coverage position letters and documentation packs with research, citations, and clause histories.
Innovation and product development support
Help draft prototype wordings for new propositions
Check alignment between underlying policy wordings and reinsurance treaty/facultative clauses.
Administer wording management tools, ensuring robust version control, approval workflows, and usage analytics.
Build dashboards and trackers for adoption of standard forms, deviation rates, SLA performance, disputes, and audit findings; provide monthly reporting to stakeholders.
Qualifications
Bachelor's degree in business, economics, or other quantitative field. Minimum 3 years, typically 4 years or more of relevant work experience.
2 - 5 years of experience in insurance wordings, legal/paralegal support, underwriting support, or product documentation; cyber specialty experience preferred.
Strong drafting, redlining, and proofreading skills with a plain-language mindset and exceptional attention to detail.
Working knowledge of insurance policy structures, endorsements, exclusions, and coverage interpretation; familiarity with cyber war/systemic language, sanctions, and privacy regulations is advantageous.
Research and synthesis skills to translate complex regulatory/legal topics into practical guidance and actionable updates.
Proficiency with MS Word (advanced track changes/redlining), Excel (trackers and dashboards), PowerPoint (training/pitch materials), and document/enablement tools.
Collaborative, service-oriented approach; comfortable operating in a global matrix and meeting defined SLAs.
Curiosity about cybersecurity risks and the incident response ecosystem; willingness to learn common threat scenarios to inform practical drafting.
About Us
Pay Philosophy: The typical starting salary range for this role is determined by a number of factors including skills, experience, education, certifications and location. The full salary range for this role reflects the competitive labor market value for all employees in these positions across the national market and provides an opportunity to progress as employees grow and develop within the role. Some roles at Liberty Mutual have a corresponding compensation plan which may include commission and/or bonus earnings at rates that vary based on multiple factors set forth in the compensation plan for the role.
At Liberty Mutual, our goal is to create a workplace where everyone feels valued, supported, and can thrive. We build an environment that welcomes a wide range of perspectives and experiences, with inclusion embedded in every aspect of our culture and reflected in everyday interactions. This comes to life through comprehensive benefits, workplace flexibility, professional development opportunities, and a host of opportunities provided through our Employee Resource Groups. Each employee plays a role in creating our inclusive culture, which supports every individual to do their best work. Together, we cultivate a community where everyone can make a meaningful impact for our business, our customers, and the communities we serve.
We value your hard work, integrity and commitment to make things better, and we put people first by offering you benefits that support your life and well-being. To learn more about our benefit offerings please visit: ***********************
Liberty Mutual is an equal opportunity employer. We will not tolerate discrimination on the basis of race, color, national origin, sex, sexual orientation, gender identity, religion, age, disability, veteran's status, pregnancy, genetic information or on any basis prohibited by federal, state or local law.
Fair Chance Notices
California
Los Angeles Incorporated
Los Angeles Unincorporated
Philadelphia
San Francisco
We can recommend jobs specifically for you! Click here to get started.