Network Security Analyst
Cyber security analyst job in White Plains, NY
We invite you to review our current business services professionals openings to learn about the opportunities available across the firm.
About Us
Skadden, Arps, Slate, Meagher & Flom LLP has forged a reputation as one of the most prestigious law firms in the world. Relying on innovation, intellect, teamwork and tenacity, our lawyers deliver the highest quality advice and novel solutions to our clients' legal issues. We are known for handling the most complex transactions, litigation/controversy issues, and regulatory matters, as well as for the strong partnerships we build with clients and each other. Our attorneys, who reflect a broad range of experiences and perspectives, work together seamlessly across 50-plus practices and 21 offices in the world's major financial centers.
The Opportunity
We are seeking two Network Security Analysts to join our Firm. These positions will be based in our White Plains office (hybrid), and please note the roles have different shift times, listed below. The Network Security Analysts are responsible for implementing and supporting network security solutions for the Firm and, implementing and enforcing practical solutions to secure the Firm's internal and external network infrastructure.
Available Shift Times (EST- Hybrid)
1.) Saturday - Sunday: 7:00 a.m. - 8:00 p.m. EST & Monday 7:00 a.m. - 7:00 p.m.
2.) Monday - Friday: 2:00 p.m. - 10:00 p.m.
Note: The scheduled hours listed may be flexible and will be discussed during the interview process.
Responsibilities
Performs daily review of automated security reports and escalate as necessary.
Responds to system generated security alerts and coordinate responses.
Assists with internal audits, vulnerability scans and risk assessments.
Assists with annual penetration testing, review of findings and tracking issue resolution.
Participates in evaluating new technologies or new versions of existing products.
Works with project teams to implement secure network connectivity solutions.
Writes and maintains technical documentation including procedures and troubleshooting guides.
Demonstrates effective interpersonal, written and verbal communication skills to facilitate effective work relationships with others.
Manages Firm resources responsibly.
Complies with and understands Firm operation, policies and procedures.
Performs other related duties as assigned.
Qualifications
Knowledge of relevant firm computer software programs (e.g., Outlook, Excel, PowerPoint), with the ability to learn new software and operating systems
Proficient with Access, Project and Visio
Thorough knowledge of network management and security technologies and approaches
Thorough knowledge of security techniques, latest protocols and defenses
Proficient with Microsoft Active Directory and Operating Systems
Basic ability to program scripts and batch files
Demonstrates effective interpersonal and communication skills, both verbally and in writing
Demonstrates close attention to detail
Excellent analytical, troubleshooting, organizational, and planning skills
Ability to handle multiple projects and shifting priorities
Ability to handle sensitive matters and maintain confidentiality
Ability to organize and prioritize work
Ability to work well in a demanding and fast-paced environment
Ability to work well independently as well as effectively within a team
Ability to use discretion and exercise independent and sound judgment
Flexibility to adjust hours and work the hours necessary to meet operating and business needs
Education/Experience
Bachelor's degree or equivalent
Minimum of two years' experience in multi-national enterprise IT
Culture & Life at Skadden
What makes Skadden special is our people and the culture, community and spirit of collaboration we have created. We believe in teamwork and inspiring each other to be our best in an atmosphere that promotes professionalism and excellence in all that we do. We know that inclusion and drawing on the strength of a wide spectrum of talent only make us better and is vital to the firm's success. Our goal is for everyone at the firm to enjoy a challenging career with opportunities for development and growth and to support the well-being of our attorneys and business services professionals.
Benefits
The overall well-being of our team is important to us. We offer generous benefits to help you achieve wellness in all areas of your life.
Competitive salaries and year-end discretionary bonuses.
Comprehensive health care (medical, dental, vision), savings plan/401(k) and voluntary benefits.
Generous paid time off.
Paid leave options, including parental.
In-classroom, remote, and on-demand learning and professional development opportunities.
Robust well-being classes and programs.
Opportunities to give back and make an impact in local communities.
For further details, please visit: *******************************************************
Skadden is an Equal Opportunity Employer (Disability/Vet/other protected categories). For more information, please visit Skadden.com/careers.
The starting base salary for this position is expected to be within the range listed under Salary Details. Actual salary will be determined based on skills, experience (to the extent relevant) and other-job related factors, consistent with applicable law.
Salary Details
$125,000 -$140,000
EEO Statement
Skadden is an Equal Opportunity Employer. It does not discriminate against applicants or employees based on any legally impermissible factor including, but not limited to, race, color, religion, creed, sex, national origin, ancestry, age, alienage or citizenship status, marital or familial status, domestic partnership status, caregiver status, sexual orientation, gender, gender identity or expression, change of sex or transgender status, genetic information, medical condition, pregnancy, childbirth or related medical conditions, sexual and reproductive health decisions, disability, any protected military or veteran status, or status as a victim of domestic or dating violence, sexual assault or offense, or stalking.
Applicants who require an accommodation during the application process should contact Lara Bell at **************.
Skadden Equal Employment Opportunity Policy
Skadden Equal Employment Opportunity Policy
Applicants Have Rights Under Federal Employment Law
Applicants Have Rights Under Federal Employment Law
In accordance with the Transparency in Coverage Rule,
click here to review machine-readable files made available by UnitedHealthcare:
Transparency in Coverage
Auto-ApplyLead Cyber Security Analyst
Cyber security analyst job in Clifton, NJ
The Lead Cyber Security Analyst will be a key member of Cyber Defense Operations and Engineering (CDOE) team. Lead efforts in the detection of security events while assisting with the response to key events. Acting as an escalation point for major security incidents, liaising with the cybersecurity incident response, and other stakeholders from incident inception to remediation. Interface with other teams across the Company. Ensure compliance with internal and regulatory policies, while applying industry best practices and standards.
Please note this is a hybrid opportunity (3 days in the office/ 2 days WFH)
Pay Range: $130 - $160 / year
Salary offers are based on a wide range of factors including relevant skills, training, experience, education, and, where applicable, certifications obtained. Market and organizational factors are also considered. Successful candidates may be eligible to receive annual performance bonus compensation.
Benefits Information:
We are proud to offer best-in-class benefits and programs to support employees and their families in living healthy, happy lives. Our pay and benefit plans have been designed to promote employee health in all respects - physical, financial, and developmental. Depending on whether it is a part-time or full-time position, some of the benefits offered may include:
* Day 1 Medical, supplemental health, dental & vision for FT employees who work 30+ hours
* Best-in-class well-being programs
* Annual, no-cost health assessment program Blueprint for Wellness
* healthy MINDS mental health program
* Vacation and Health/Flex Time
* 6 Holidays plus 1 "MyDay" off
* FinFit financial coaching and services
* 401(k) pre-tax and/or Roth IRA with company match up to 5% after 12 months of service
* Employee stock purchase plan
* Life and disability insurance, plus buy-up option
* Flexible Spending Accounts
* Annual incentive plans
* Matching gifts program
* Education assistance through MyQuest for Education
* Career advancement opportunities
* and so much more!
Responsibilities:
* Provide subject matter expertise (SME) for security solutions.
* Develop and document solution processes, procedures, and information workflows around security event management and cyber security operations.
* Monitoring and responding to security events that could impact the confidentiality, availability, and integrity of critical information security systems.
* Contributor to the IT Security Incident Response efforts across the organization.
* Provide training, mentoring, and coaching to the IT Security Team by understanding the core businesses and environment as well as the technology solutions supporting them.
* Implementation of security standards and security baseline.
* Analyze and recommend action on security related incidents
* Track and maintain operational security metrics
* Review and approve access requests
* Participate in investigating possible security violations
* Interface effectively in key relationships, including IT peers (e.g. IT Operations, Enterprise Architecture, etc.) internal business partners (e.g. Compliance/Privacy, Legal, Corporate Communications, etc.), key external clients (e.g. service providers, external partners, etc.) and other leaders and partners within IT and the broader enterprise.
* Apply a methodology to help identify key security events.
* Develop and publish key metrics for the team to illustrate value and accountability
* Coordinate and present SOC briefings on a regular basis.
* Correlate threat intelligence with active attacks and vulnerabilities within the enterprise.
* Analyze security events collected by our LogRhythm Security Incident and Event Monitoring (SIEM), Splunk as well as other tools, and identify trends, attacks, and potential threats.
* Maintain a current knowledge of information security vulnerabilities, threats, and exploits.
* Provide Governance over Firewalls, Proxies, and Endpoint Security Solutions
* Supervise Security Specialists in our Global Information Center (GIC)
* Other duties, as assigned.
Qualifications:
Education Required:Bachelor's degree or equivalent work experience required.
Skills/Experience:
* Certified Information Systems Security Professional (CISSP) or equivalent GIAC Certificates are a plus.
* 5+ years of Information Security or related technology experience
* 3+ years of SIEM Experience
* 3+ years with advanced knowledge of network protocols, routing and switching in complex environments
* 3+ years' experience with Firewalls, IDS/IPS, and Proxies.
* Next Generation endpoint protection technology is a plus (CrowdStrike and Cylance)
* Host Intrusion Detection Service (HIDS)
* Application Whitelisting/Blacklisting
* Endpoint File System Encryption
* Detection/monitoring/response (e.g. Threat Detection, Realtime vulnerability visibility)
* An in-depth understanding of iOS, Android, Windows, MacOS and Unix internals
* OS Security Hardening for iOS, Android, Windows, MacOS and Unix
* Experience with using the command line interface (Unix, Linux, and Windows)
* Experience working in a Security Operations Center (SOC) environment
* Demonstrate proficiency in applying HIPAA/PCI security rules and National Institute of Standards and Technology (NIST) standards
* Requires understanding of Public Key Infrastructure (PKI), encryption, network security controls tools and functionalities
* Excellent written and verbal communications, including presentation skills, are important to be successful in this role.
* Proven ability to effectively communicate with all levels of the organization, as well as with external parties.
* Demonstrated ability to influence a larger team to perform towards the same goal.
* Excellent organizational and time management skills.
* Highly analytical and methodical, with strong problem-solving ability on complex subjects.
* Highly productive and resourceful, carries "Can do" attitude in approaching challenges, and a true self-starter.
* Demonstrated understanding of, and experience with, current Incident Response best practices and standards.
* Critical thinking and contextual analysis abilities.
* Inherent passion for information security and service excellence.
* Ability to communicate professionally and efficiently both verbally and in writing.
* Deep knowledge of security issues, techniques, and implications across multiple technology platforms.
* Ability to demonstrate a clear understanding, at an enterprise level, of application, network, infrastructure, and data security architecture.
* Excellent analytical skills, able to manage multiple projects under strict timelines, work well in a demanding dynamic environment, and meet overall objectives.
* Ability to work under pressure, and manage competing priorities.
* Ability to establish effective working relationships with associates, counterparts and external customers.
#LI-RM1
40675
Quest Diagnostics honors our service members and encourages veterans to apply.
While we appreciate and value our staffing partners, we do not accept unsolicited resumes from agencies. Quest will not be responsible for paying agency fees for any individual as to whom an agency has sent an unsolicited resume.
Equal Opportunity Employer: Race/Color/Sex/Sexual Orientation/Gender Identity/Religion/National Origin/Disability/Vets or any other legally protected status.
Manager, Cyber Security Innovation Engineer
Cyber security analyst job in Montvale, NJ
Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering real results for our clients. It's also enabled by our culture, which encourages individual development, embraces an inclusive environment, rewards innovative excellence and supports our communities. With qualities like those, it's no wonder we're consistently ranked among the best companies to work for by Fortune Magazine, Consulting Magazine, Seramount, Fair360 and others. If you're as passionate about your future as we are, join our team.
KPMG is currently seeking a Manager, Cyber Security Innovation Engineer to join our Global Technology & Knowledge Group which is part of KPMG International.
Responsibilities:
* Ensure continuous improvement to Global Security Operations Center (GSOC) processes and technology through automation
* Support the Innovation Lead and liaise with KPMG teams, business stakeholders, and vendors to design and set up activities at different stages of a technical project
* Conduct installation, management, maintenance, and support of GSOC technologies hosted on multiple environments including physical Data Centers, Azure public cloud and O365
* Monitor systems, identify/resolve issues, prepare status reviews and reports; compile and maintain the necessary documentation of all system designs, builds, and modifications
* Accountable for coordination and delivery of user training and training material
* Manage support cases to ensure issues are recorded, tracked, resolved, and follow-ups are done in a timely manner
* Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment
Qualifications:
* Minimum three years of recent experience automating security workflows using scripting languages such as Python, PowerShell, or Bash; minimum three years of recent experience with Query Languages preferably KQL, and working as a Security Engineer or in a Security Operations Center (SOC) environment
* Bachelor's degree, Master's, or PhD in computing, information security, or related field (or relevant work experience)
* Certifications such as CISSP, CISM, AWS Certified Security - Specialty, Azure Security Engineer are a plus
* Familiarity with threat intelligence platforms and SIEM tools; strong hands-on experience with automation and Azure Security technologies (including Azure Sentinel, Logic Apps, and more); expert in scripting or development languages for example, Python, and a query language for example, KQL
* Deep understanding of security technologies, principles, and best practices related to incident response and threat detection
* Proven expertise in DevOps tools and practices (for example: Git, Jenkins, Terraform, Docker, Kubernetes)
* Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work.
Follow this link to obtain salary ranges by city outside of CA:
**********************************************************************
KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.
KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.
Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Cyber Security Identity & Access Management Engineer
Cyber security analyst job in Elmwood Park, NJ
Job Title : Cyber Security Identity & Access Management Engineer Experience Required - 7+ Years Must Have Technical/Functional Skills * Deep understanding of Access Management - Authentication & Single Sign-On, authentication protocols like OAuth2.0, OpenID Connect and SAML2.0
* Experience with development of Transmit Security Journeys, WebSDK & scripting (AuthScript)
* Hands on experience in implementation of user authentication and authorization using Transmit Security
* Hands on with development and deployment of custom developed applications using Java/J2EE technologies.
* Hand on with development of REST API using Java Spring Framework
* Full understanding of HTTP Request/Response tracing, Session Handling
* Good understanding of Secure HTTP communication - client to server and server to server secure communication
* Good understanding of Java Spring Boot application development, deployment
* Good understanding of NoSQL databases like MongoDB, Casandra, etc.
* Good understanding of DevOps tools like Git, Eclipse/IntelliJ, Jenkins, Docker, Puppet, Kubernetes, Ansible, etc.
Non-Technical:
* Scheduling & Planning - should be able to plan and execute the deliverables as per the proposed design.
* Communication - Ability to communicate Up, Down, and Across All Levels of the Organization and Technical Backgrounds
* Detail Oriented - Good Understanding of IAM concepts
* Analytical, Self-motivated - Critical thinker who can analyze issues and is able to troubleshoot, along with the developers, to find root cause of the problem.
* Interpersonal skills and Professional demeanor - Respond to customer inquiries in a timely manner, guiding and advising customers on security best practices in a friendly customer facing manner.
* Team Player - Ability to work in a team & collaborate with other application team and infrastructure teams
* Problem-Solver - Processes tactical mitigations based on results of analysis and determination of issues found in the incident and issues found in inherited legacy systems.
Provide recommendation for improvements on the existing set up
Roles & Responsibilities
* Incident Triaging - Performing incident resolution through analysis and technology support
* Daily Health checks and Monitoring
* Operation status reports and metrics: Incident management, Service request management
* SLA Management for respond, restore and resolve, Troubleshooting and resolution of issues, Configuration Management, Enhancements, Product Vendor Connect, Platform Support
* Knowledge management - SOP creation and updates. Knowledge transition. Provide complete knowledge of system flow and interdependence between various internal and external systems.
* Auditing & Reporting - Support Health Equity in audits and provide Out-of-the-box reports
Project Management
Salary Range - $100,000 to $160,000 per year
TCS Employee Benefits Summary:
Discretionary Annual Incentive.
Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
Family Support: Maternal & Parental Leaves.
Insurance Options: Auto & Home Insurance, Identity Theft Protection.
Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
Time Off: Vacation, Time Off, Sick Leave & Holidays.
Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.
#LI-JS2
Cyber Security Engineer
Cyber security analyst job in Danbury, CT
at Nuvance Health
The Cyber Security Engineer will have responsibility for incident response along with a desire to relentlessly champion best practices. This role will perform all functions required to support day-to-day data security operations, supporting and maintaining a broad suite of cyber security operations infrastructure, serving as a tier 2 escalation point during incident response and investigations and monitoring compliance with IT security policy. Participate in the planning, design, installation, maintenance and tuning of security operations systems in support of security policies and best practice. Work with Information Technology staff and business units to assess risk and address security issues.
Responsibilities:
• Manage security responsibilities, including firewalls, proxy systems, SIEM, EDR and other security devices. 15%
• Strong skills implementing and tuning security components. 15%
• Server as an escalation point during incident response and investigations. 15%
• Maintain cyber security operations tool to insure detection, response and remediation of latest security threats 15%
• Create and review reports on event and incidents. 10%
• Stay up to date with latest security threats and assist with developing defense strategy's to combat them. 10 %
• Investigate and respond to security violations 10%
• Ability to maintain in depth knowledge of security and networking infrastructure utilized by the company including the management and reporting of each. 10%
Education Skills Experience
• Bachelor's degree in computer science field required
• 2 or more years Security Operations with a minimum of 4 years IT experience.
• Demonstrated experience in Incident response investigations.
• Working knowledge of EDR technologies.
• Working knowledge of SIEM technologies.
• Working knowledge of common vulnerability management tools.
• Working knowledge of enterprise firewall technologies preferred.
• Working knowledge of web filtering and proxies preferred. • Working knowledge of MDM solution preferred. • Experience with DLP and IPS/IDS systems preferred. • Working knowledge of email filtering product preferred. • Working knowledge of litigation hold processing and forensic investigations preferred. • Experience participating in Red/Blue/Purple team exercises. • Experience working with information security practices, networks, software, and hardware.
Other Information:
• CISSP, CEH, or other equivalent certification is a plus.
• Disaster recovery and business continuity experience is a plus.
• Working knowledge with HIPAA regulations as they pertain to the healthcare industry.
Working Conditions:
Manual: Some manual skills/motor coord & finger dexterity
Occupational: Little or no potential for occupational risk
Physical Effort: Sedentary/light effort. May exert up to 10 lbs. force
Physical Environment: Generally pleasant working conditions
Company: Nuvance Health
Org Unit: 1795
Department: Information Security
Exempt: Yes
Salary Range: $40.43 - $75.10 Hourly
Auto-ApplyInformation Security Analyst
Cyber security analyst job in Franklin Lakes, NJ
Information Security Analyst
Duration : 12 Months
Total Hours/week : 40.00
Client: Medical Device Company
Job Category: Operations/Technical
Level Of Experience: Senior Level
Employment Type: Contract on W2 (Need US Citizens Or GC Holders Only)
Job Description:
Information Security Analyst, Threat and Vulnerability Management
This role will focus on Tactical Intelligence and Vulnerability Management.
Threat and Vulnerability Management This person has experience in risk prioritization, navigating sources for identification and assessment of threats, and conducting cross-functional awareness for addressing risk.
They will have experience assisting with vulnerability scanning and analysis, threat intelligence tools and working across a matrixed environment to assess indicators and triage risk.
You will leverage a broad array of threat information. Additionally, you will proactively drive hunting and analysis and conduct technical research and analysis on emerging threats.
You are comfortable providing fact-based reports to various levels of the organization within a fast-paced environment.
You have previous tactical intelligence or vulnerability management experience, understand the fundamentals of reducing attack surfaces, and possess effective analytical skills.
You will be accountable for setting your own work direction and completing tasks.
Key Responsibilities (Top Tasks & Outcomes for Which This Position Will be Accountable)
Experience recognizing threats and conducting analysis on emerging threats and how they relate specifically to client
Provide written analysis of findings to communicate potential risks and impact
Experience in network security analysis and log-centric analysis (SIEM)
Understanding and reporting of attacker Indicators of Compromise
Monitoring intrusion detection systems and identifying host and network-based intrusions via intrusion detection technologies
Provide attack surface management training and development
Manage risk reporting and escalation to cross-functional teams in a cooperative manner
Other responsibilities as necessary
Perform risk identification and triage with incident management
Assist with additional projects as needed
Skills and Knowledge Required
Strong communication and project management skills
Requires a highly motivated, dynamic and customer-centric associate who thrives in a challenging and changing environment
Working knowledge of crisis management communication, incident response and handling methodologies, NIST cybersecurity standards and FDA cybersecurity guidance
Effective meeting management and group facilitation skills
Experience:
2-3 years' experience in a security operations full-time role
Educational
A minimum of a bachelor's degree required. Ideal candidate will have a degree in computer science, communication, or other technical discipline.
Knowledge, Skills & Abilities
In-depth knowledge of computer operating systems, including Windows, IoS and Linux a plus
Experience with intelligence tools and applications
Knowledge of Healthcare rubrics for vulnerability scoring and threat modelling
Preferred Certifications: CERT-Certified Computer Security Incident Handler Certification, CISSP, HCISSP
Detail-oriented with the ability to promptly assess documents for accuracy as well as consistency
Strong interpersonal skills with the ability to influence others in a positive and effective manner
Ability to work in a team environment
Excellent communication skills; both oral and written
Lead, Information Security Systems Engineer (Secret Security Clearance)
Cyber security analyst job in Clifton, NJ
L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.
L3Harris Technologies is the Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security.
Job Title: Anti-Tamper System Security Engineer (Secret Security Clearance)
Job Code: 29345
Job Location: Clifton, NJ
Job Schedule: 9/80
Relocation: Relocation assistance available to qualified applicants
Essential Functions:
+ Lead the development and implementation of Anti-Tamper (AT) measures throughout the System Development Lifecycle.
+ Serve as a Subject Matter Expert (SME) in the area of AT.
+ Assess systems for Critical Program Information (CPI).
+ Conduct trade studies and develop AT requirements.
+ Assess threats via attack/countermeasure analysis.
+ Conduct Verification and Validation activities.
+ Use DoD 5200.39 for the identification and protection of CPI.
+ Engineer trustworthy and secure systems in accordance with NIST 800-160.
+ Develop and implement comprehensive Program Protection Plans (PPP) to safeguard critical program information (CPI) and technologies.
+ Draft Program Protection Plans (PPPs), Cybersecurity Strategies, Security Classification Guides (SCGs), and AT Plans.
+ Interact with customers to define AT requirements, solutions, trades, costs, implementation, system impacts, and effectiveness.
+ Collaborate with customers, internal program teams, and leadership to address program needs.
+ Mentor and develop junior engineers.
+ Provide DoD software selection and approval processes for COTS, GOTS, and FOSS.
+ Support security engineering activities, including basis of estimate development, requirements development, design, testing, configuration management, and maintenance of information systems and data.
+ Assist program security in the development of policies and procedures for emerging security technologies.
+ Support the evaluation, qualification, testing, and delivery of security architecture improvements, obsolescence replacements, and vulnerability response projects.
+ Provide Security Testing and Verification.
+ Interact with customer, internal program team, and leadership the needs.
+ Assess security and privacy controls in embedded systems using NIST 800-53.
+ Utilize Risk Management Framework (RMF) accreditation and authorization (A&A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard body of evidence (BoE) package development.
+ A&A package processing.
+ RMF accreditation of Platform IT (PIT) systems.
+ Provide DoD software selection and approval processes for COTS, GOTS and FOSS.
+ Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data.
+ Assist program security in the development of policies and procedures for emerging security technologies.
+ Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects.
+ Provide Security Testing and Verification.
+ Work is to be accomplished 100% onsite, in a lab environment.
Qualifications:
+ Bachelor's Degree and a minimum of 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related experience. In lieu of a degree, minimum of 13 years of prior related experience.
+ Minimum of Collateral Secret security clearance required.
+ Must be able to obtain and maintain a DOD 8140 certification (or NIST 800-181), appropriate for the position within 6-months of start.
+ Prior or current experience with the development and implementation of Anti-Tamper (AT) for the protection of CPI throughout the System Development Lifecycle.
Preferred Additional Skills:
+ Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC.
+ NSA Type 1 Certification of cryptographic high assurance devices.
+ Experience with NSA High Assurance products and IASRD and SERD requirements.
+ Professional experience with RMF (Risk Management Framework) in embedded systems.
+ Active TS/SCI Clearance is highly desired
In compliance with pay transparency requirements, the salary range for this role in California, Massachusetts, New Jersey, Washington, and the Greater D.C, Denver, or NYC areas is $125,000.00 - $232,000.00. The salary range for this role in Colorado state, Hawaii, Illinois, Maryland, Minnesota, New York state, and Vermont is $108,500.00 - $201,500.00. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements.
L3Harris Technologies is proud to be an Equal Opportunity Employer. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. All applicants will be considered for employment without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender (including pregnancy, childbirth, breastfeeding or other related medical conditions), gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, characteristic or membership in any other group protected by federal, state or local laws. L3Harris maintains a drug-free workplace and performs pre-employment substance abuse testing and background checks, where permitted by law.
Please be aware many of our positions require the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information.
By submitting your resume for this position, you understand and agree that L3Harris Technologies may share your resume, as well as any other related personal information or documentation you provide, with its subsidiaries and affiliated companies for the purpose of considering you for other available positions.
L3Harris Technologies is an E-Verify Employer. Please click here for the E-Verify Poster in English (******************************************************************************************** or Spanish (******************************************************************************************** . For information regarding your Right To Work, please click here for English (****************************************************************************************** or Spanish (******************************************************************************************** .
Emergency Response Team (ERT) Security Analyst
Cyber security analyst job in Mahwah, NJ
What you need:
· At least 1 year experience in application security or Master's degree in Cyber Security
· Good understanding of network design (e.g. LAN/WAN, switches/routers, routing protocols such as BGP and OSPF) and protocols (e.g., IPv4, TCP/IP, VPN, IPSec, HTTP, DNS)
· Good understanding of and experience with security
· Wireshark, Kali Linux
· Customer and service oriented
· Good troubleshooting and diagnosis capabilities
· Willing to be on alert during off-work hours
· Excellent communication skills and team work
· Excellent time management, multi-tasking, and prioritization skills
· Perceptive, fast learner, and able to perform well under pressure
How can you stand out:
· Experience in similar positions/companies
· BSc/BA in Computer Science or equivalent
· Knowledge in scripting language
· Graduated Networking or Security courses
Why you should join us:
Employees from more than 40 countries have chosen Radware as a place where they can belong.
Radware has been recognized by Glassdoor and BDI as one of the World's Best Places to Work, ranking among the top 100 companies across the globe in the IT category.
Radware has also been named a Gold Winner for Application Security in the 2023 Globee Cybersecurity Awards, by Forrester a Leader in DDoS Protection, and has been named a Leader in WAF Market by Quadrant Knowledge Solutions.
We are equally committed to our people. We strive to create a dynamic work environment that celebrates diversity, promotes equality, and thrives on the unique contributions of each individual.
If you are ready to be part of a global-minded company that is inspired to create a better, safer future; and if and want to fight for the good guys and be at the forefront of helping companies protect their most critical assets from today's cyber adversaries, then you've found the right fit at Radware.
Salary Range\: $93k-$118k
#LI-TM1
Radware is a global leader of cyber security and application delivery solutions for physical, cloud, and software defined data centers.
At Radware, we live and breathe cybersecurity. It is our passion. Each day, our international team works to earn the trust of more than 12,500 organizations around the globe. Keeping them safe is our mission. To that end, we go head-to-head with politically motivated hacktivists, dangerous nation-state threat actors and other notorious cyber attackers - these are not your average adversaries. Backed by nearly 30 years of experience, Radware is best known for its technical excellence and innovative network and application security solutions. That is why it is so important that we build our team with bold and bright talent.
About the Team\: The Security Analyst will join the Emergency Response Team in Radware's Managed Services business unit. The ERT Team provides immediate and direct security support for customers under attack, ensuring the continued functioning of protected services and, ultimately, customer satisfaction.
What is the job\: The Emergency Response Team (ERT) Security Analyst fuels the success of customers by serving as the primary contact when timely assistance is needed the most. If you are an energetic, upstart engineer who enjoys working in a fast-paced environment and interacting with people under pressure, this could be the position for you.
Auto-ApplyWorkday Application Security Analyst
Cyber security analyst job in White Plains, NY
**Duration: 12 months contract (with possible extension)** ***Note: Open to candidates who are willing to relocate at their own expense.** + The Workday Application Security Analyst is responsible for ensuring the confidentiality, integrity, and availability of data within the Workday system.
+ They design, implement, and maintain security configurations, including roles, permissions, and access controls, to protect organizational data and comply with company policies, industry standards, and regulatory requirements.
**Job Functions & Responsibilities**
+ Develop and implement security roles, domain security policies, data and business process security within Workday
+ Ensure secure integration with other on‐premise and cloud applications like GRC tools
+ Configure and manage access permissions to ensure users have the appropriate level of access to data and functionality
+ Ensure compliance with company policies, industry standards (like SOC 2), and regulatory requirements (like GDPR)
+ Conduct regular security audits and assessments to identify vulnerabilities and areas for improvement
+ Assist in investigating and responding to security incidents, identifying root causes, and implementing preventive measures
+ Collaborate with IT, HR, and other stakeholders to align security efforts with business needs and ensure effective communication of security policies and procedures
+ Create and maintain documentation for security policies, procedures, and configurations, and provide training to users on security best practices
+ Stay abreast of Workday updates, industry trends, and emerging security threats to continuously improve security configurations and processes
+ Familiarity with other ERPs like SAP is preferred
+ Familiarity with GRC and Workday SoD (Segregation of Duties) management is desired
**Skills**
+ SAP ERP (S/4 HANA is a plus)
+ Workday
+ Active Directory group management
+ GRC AC 10.1 and above
+ Microsoft Clienture
+ SuccessFactors
+ Applicable functional knowledge for SAP security areas like Finance, MM, ISU billing, etc.
+ SAP audit & compliance
**Education & Certifications**
+ Bachelor's degree in engineering, IT, or related field
+ 7-10 years of hands‐on industry experience in Workday Security implementation and administration
+ Strong ITGC compliance knowledge for Workday
+ Familiarity with Workday risk management and GRC integration
+ Ability to identify, analyze, and resolve complex security and compliance issues
+ Strong interpersonal and communication skills, with the ability to effectively collaborate with diverse teams
** About US Tech Solutions:**
US Tech Solutions is a global staff augmentation firm providing a wide range of talent on-demand and total workforce solutions. To know more about US Tech Solutions, please visit *********************** (*********************************** .
US Tech Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
System Security Engineer - Clifton, NJ - Active Secret Clearance Required
Cyber security analyst job in Clifton, NJ
System Security Engineer needed for a contract to direct-hire opportunity with SOC's client to work on-site in Clifton, NJ. * Active Secret clearance is required prior to starting* Qualifications: * Bachelor's Degree and a minimum of 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related experience. In lieu of a degree, minimum of 13 years of prior related experience.
* Minimum of Collateral Secret security clearance required.
* Must be able to obtain and maintain a DOD 8140 certification (or NIST 800-181), appropriate for the position within 6-months of start.
* Prior or current experience with the development and implementation of Anti-Tamper (AT) for the protection of CPI throughout the System Development Lifecycle.
Preferred Additional Skills:
* Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC.
* NSA Type 1 Certification of cryptographic high assurance devices.
* Experience with NSA High Assurance products and IASRD and SERD requirements.
* Professional experience with RMF (Risk Management Framework) in embedded systems.
* Active TS/SCI Clearance is highly desired.
Employment Prerequisites
The following requirements must be met to be eligible for this position: successful completion of a background investigation and drug urinalysis.
SOC, a Day & Zimmermann company, is an Equal Opportunity Employer, EOE AA M/F/Vet/Disability.
Note: Any pay ranges displayed are estimations, which may have been provided by job boards. Actual pay is determined by an applicant's experience, technical expertise, and other qualifications as listed in the job description. All qualified applicants are welcome to apply.
Estimated Min Rate: $68.29
Estimated Max Rate: $97.56
Information Security Engineer Cmdb
Cyber security analyst job in Yonkers, NY
Montefiore is ranked among the top hospitals nationally and regionally by U.S. News & World Report. For more than 100 years we have been innovating new treatments, procedures, and approaches to patient care, producing stellar outcomes and raising the bar for academic medical centers in the region and around the world. Our work to improve health outcomes in underserved communities is unparalleled in the United States. Our workforce is among the most diverse in the US: Montefiore associates speak 60+ languages. This is a hybrid position requiring being on-site as needed.
________________________________________
We are seeking a skilled and detail-oriented CMDB Engineer to join our IT team.
This role will be responsible for developing, managing, and optimizing our ServiceNow Configuration Management Database (CMDB), supporting Discovery, service graph connectors, third-party data integrations, and IRE configuration. This role is critical to ensuring visibility, accuracy, and reliability of Configuration Items (CIs) throughout their lifecycle using the ServiceNow platform.
________________________________________
Responsibilities include:
• Manage and enhance the ServiceNow CMDB, ensuring accuracy, completeness, and alignment with ITIL standards.
• Configure and extend ServiceNow Patterns to improve data ingestion and normalization.
• Deep knowledge of how to troubleshoot ServiceNow Discovery-related issues.
• Maintain and enhance the ServiceNow CMDB following the Common Service Data Model (CSDM) framework.
• Collaborate with infrastructure, network, and application teams to ensure proper CI identification and relationships.
• Manage integration with other technologies (e.g., SCCM, vCenter, SolarWinds, etc.) feeding the CMDB.
• Create and maintain CMDB documentation, architecture diagrams, and training materials.
• Manage and maintain the Identification and Reconciliation Engine (IRE) rules.
• Monitor and improve the CMDB Health Dashboard, ensuring ongoing health and governance of the “3 C's” - Completeness, Correctness, and Compliance.
• Audit and validate CI data regularly to ensure appropriate CI class assignments, relationships, and attributes.
• Oversee and optimize MID server health and ensure discovery schedules are accurate and up to date by liaising with the Network team.
• Support audits, compliance, and risk initiatives by ensuring the integrity and traceability of CMDB data.
Requirements include:
• 7+ years of experience in an enterprise IT organization
• Minimum of 3-5 years of hands-on experience with ServiceNow CMDB and Discovery
• ServiceNow Certified System Administrator (CSA) certification is required to be eligible for this role.
• Strong knowledge and practical experience with ServiceNow CSDM framework and the IRE configuration.
• Experience with CI data normalization, reconciliation, and health reporting
• Experience with third-party integrations like AWS, SCCM and JAMF
• Proficiency in CMDB data modeling, CI class categorization, and relationship mapping.
• Strong analytical and troubleshooting skills to manage data quality and Discovery issues.
• Experience configuring and maintaining MID Servers and Discovery Schedules.
• Bachelor's degree or equivalent experience.
Preferred:
• Other ServiceNow certifications such as Certified Implementation Specialist - CMDB, Discovery Fundamentals, is a plus.
Department: Montefiore Information Technology Bargaining Unit: Non Union Campus: YONKERS Employment Status: Regular Full-Time Address: 3 Odell Plaza, Yonkers
Shift: Day Scheduled Hours: 8:30 AM-5 PM Req ID: 224883 Salary Range/Pay Rate: $112,500.00 - $150,000.00
For positions that have only a rate listed, the displayed rate is the hiring rate but could be subject to change based on shift differential, experience, education or other relevant factors.
To learn more about the “Montefiore Difference” - who we are at Montefiore and all that we have to offer our associates, please click here.
Montefiore is an equal employment opportunity employer. Montefiore will recruit, hire, train, transfer, promote, layoff and discharge associates in all job classifications without regard to their race, color, religion, creed, national origin, alienage or citizenship status, age, gender, actual or presumed disability, history of disability, sexual orientation, gender identity, gender expression, genetic predisposition or carrier status, pregnancy, military status, marital status, or partnership status, or any other characteristic protected by law.
SF-DICE-MIT; LI-SC1-REDIRECT
Security Engineer III
Cyber security analyst job in Middletown, NY
General Responsibilities:
The Security Engineer III will be responsible for planning, designing, implementing and supporting various security technologies that are used to protect the network from external and internal threats. The Security Engineer III is a technical, hands-on expert that is responsible for protecting the confidentiality, integrity, and availability of networks, systems, and data based on the security policies, standards, compliance regulations, and industry best practices.
Key Responsibilities:
Work closely with various internal and external business units to communicate security concepts, define security requirements, controls, vulnerabilities, etc., and maintain a strong working relationship
Assist with short-term and long-term security strategies that are aligned with business objectives while working with other team members on tactical projects.
Evolve and maintain overall security architecture
Participate and contribute to different industry-related security forums
Specific Responsibilities:
Administer/lead network and application security efforts for a large enterprise and service provider network
Audit, optimize, and maintain network security infrastructure including firewalls, VPN, intrusion detection/prevention, Network, and Endpoint Detection and Response platforms (NDR/EDR), netflow based tools, URL filtering, NAC, etc.
Assist in evaluating and developing solutions for complex network security and protection technologies for enterprise and service provider environment including but not limited to Advanced Breach Detection/Mitigation, DDoS attack detection/mitigation, etc.
Manage and administer Security Incident and Event Management (SIEM) tools, network and system forensics tools
Analyze network traffic flow between multiple hosts spanning firewalls in different geographical locations to protect appropriately
Assist with periodic threat and vulnerability assessment, penetration testing, and web application assessments to identify security risks across the company
Work with an internal and external audit to ensure compliance to appropriate regulations and data protection directives (PCI, CPNI, CCPA/CPRA and CALEA, etc.)
Initiate and manage special projects related to information security that may be needed to appropriately respond to ad-hoc or unexpected information security events
Assist in developing security policies, standards, guidelines, procedures
Assist in developing a security awareness program
Perform other duties as requested by supervisor
Preferred Experience / Skills:
Bachelor's degree in Computer Science, Telecommunications or Information Technology is required
5+ years technical hands-on security experience
Extensive experience with firewall technologies, IPS/IDS, VPN, SIEM, netflow, NAC, vulnerability scanning tools, URL filtering, DLP, EDR, AppSec DAST/SAST platforms and other security tools
Working knowledge and experience with Cybersecurity and Risk Management frameworks such as COBIT, NIST CSF, and ISO 27001 is a plus
Strong analytical and problem-solving skills, with an ability to assimilate, analyze and correlate large amounts of forensic data from the various networks, operating systems, application, and security devices, logs, and alerts
Experience in security incident handling, operations, and forensics
Experience in security assessments, penetration testing, and web application assessments preferred
Experience in handling security for a large enterprise network or service provider network preferred
Strong interpersonal and communication skills
Ability to work well under pressure, meeting multiple deadlines
Ability to present and communicate clearly with technical and non-technical staff as well as senior management
Ability and willingness to take on additional tasks as assigned
Security certifications such as CISSP, CISA, CISM, CRISC, OSCP ,and SANS GIAC is a plus
Email Security Engineer
Cyber security analyst job in Armonk, NY
Introduction The CISO Cybersecurity Operations Platform (CSOP) team is looking to add an engineer to the Analytics and Data Exploitation team. The Platform provides the technology, services and expertise required by IBM's Cyber Threat Detection and Response teams. We support the
Advanced Threat Detection (threat hunting, intelligence, incident response), Vulnerability
Detection and Response, Innovation and Remediation, Security Operations Centers and
Command Centers teams to deliver enterprise-wide security to one of the world's most
established technology companies. We process tens of billions of events per day, meaning
effective analysis and data exploitation practices are critical to our success. This is a technical
position within the Analytics and Data Exploitation team who employ commercial, open source
and in-house developed tools to deliver critical cybersecurity services such as event processing,
automation, complex analytics and support to digital investigations. This role operates across our
development, test, pre-production and production networks to create, maintain and improve our
services -an important component of which is fault-finding and the ability to work within
complex, dynamic environments.
The right candidate thrives in high-pressure situations and has practical experience working with
Big Data technologies -such as Spark, Hadoop and Elasticsearch. The role requires a proven,
practical knowledge of container orchestration technologies -specifically Kubernetes and RedHat
OpenShift. The work will include the design and optimization of container-deployed systems, as
well as the day-to-day engineering and administration of the orchestration environment. This
includes cluster management, Pod assignment / configuration, application virtual routing,
security, container image registry management and optimization of the runtime engines. Wider
knowledge of data ingestion, extraction, transformation and loading technologies is important -
including Streamsets and Flink. The role is rounded-out by some software development tasks -
all related to cyber security. These will involve Java, SQL, Python and automation scripting so experience with DevSecOps methods is highly advantageous. The Platform team employs hybrid cloud hosting and this includes provisioning, administration and management of services within environments spanning IBM Cloud, Amazon Web Services and Microsoft Azure.
About the Team
The CISO Cybersecurity Operations Platform (CSOP) team is looking to add an Email Security Engineer to the team. The CSOP provides the technology, services and expertise required by IBM's Cyber Threat Detection and Response teams. We support the Advanced Threat Detection (threat hunting, intelligence, incident response), Vulnerability Detection and Response, Remediation, Security Operations Center and Command Center teams to deliver enterprise-wide security to one of the world's most established technology companies.
Your role and responsibilities
Job Duties:
* Contribute to the day-to-day work that supports our critical cybersecurity analysis and
data processing workflows
* Protect organization against phishing, spoofing, malware, and advanced threats while maintaining user experience and compliance
* Familiarity with Exchange, ProofPoint Email Solutions, Powershell, Azure, and M365 suite
* Design, implement and maintain secure email solutions within the Microsoft 365 tenant and related servces
* Moniotr and respond to email-related security incidents, phishing attempts, and compromise events
* Support the team leadership to improve overall exploitation of technologies that best
serve our requirements
* Partner with CIO and CISO teams to develop email security policies, rules, and playbooks
* Work as part of a deeply technical, passionate team of engineers to tackle significant IT
challenges
Required education
Bachelor's Degree
Preferred education
Bachelor's Degree
Required technical and professional expertise
* 3 or more years' experience in an email security engineer or similar role
* Experience with Microsoft 365 Exchange or Proofpoint email solutions
* Hands on experience with SPF, DKIM, and DMARC configuration and rollout at an enterprise level
* Experience with (or a proven aptitude for) working within a fast-paced environment
where the success criteria are defined by external factors. This includes having to
change course quickly, based on the evolving needs of a complex and dynamic
environment
* Strong experience with incident response processes for phishing and email-based threats
* Experience with IBM Cloud, AWS, Azure or similar cloud environments
* Strong understanding of email protocols ISMPT, IMAP, POP3) and security controls
* Familiarity with SIEM tools for monitoring and automation on email threats
* Excellent problem-solving, communication, and documentation skills
Preferred technical and professional experience
* Experience with secure email gateways (Proofpoint, M365, etc)
* Microsoft certification
* Knowledge of zero trust frameworks and modern authentication methods (MFA, conditional access)
* Familiarity with cloud-native security tools (Sentinel, Defender, XDR)
* Understanding of email encryption solutions (TLS, S/MIME, PGP)
* Experience in large enterprise environments with hybrid Microsoft Exchange deployments
* Ansible experience is a strong advantage
ABOUT BUSINESS UNIT
IBM Systems helps IT leaders think differently about their infrastructure. IBM servers and storage are no longer inanimate - they can understand, reason, and learn so our clients can innovate while avoiding IT issues. Our systems power the world's most important industries and our clients are the architects of the future. Join us to help build our leading-edge technology portfolio designed for cognitive business and optimized for cloud computing.
YOUR LIFE @ IBM
In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.
Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.
Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.
Are you ready to be an IBMer?
ABOUT IBM
IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.
Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.
At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.
IBM is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
OTHER RELEVANT JOB DETAILS
IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:
* Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
* Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
* Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
* Training and educational resources on our personalized, AI-driven learning platform where IBMers can grow skills and obtain industry-recognized certifications to achieve their career goals
* Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences
We consider qualified applicants with criminal histories, consistent with applicable law.
This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.
IBM will not be providing visa sponsorship for this position now or in the future. Therefore, in order to be considered for this position, you must have the ability to work without a need for current or future visa sponsorship.
The compensation range and benefits for this position are based on a full-time schedule for a full calendar year. The salary will vary depending on your job-related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro-rated for those who start working during the calendar year.
McAfee Endpoint Security Engineer
Cyber security analyst job in Franklin Lakes, NJ
One of the fastest growing technology companies in the world - even during the depths of the economic downturn. A micro-vertical strategy, built on strong domain expertise, ensures that no matter how complex a company's business problem, we can offer a solution that is sustainable and innovation-driven.
Job Description
Managing and implementing McAfee Anti-Virus and other security systems
Qualifications
• Must have 7+ years' experience with McAfee anti-Virus Management and implementation
• Good hands on exposure on McAfee end point DLP and HIPS
• Experience in Symantec End point Encryption -PGP
• Must have team management and customer interaction skills
• Must have exposure in defining SLAs
• Must have expertise in defining Standard Operating Procedures
• Must have expertise in Remote Infrastructure management for network and information security
• Basic Understanding of network and security concepts
• Should have good understanding on Incident Management & Change Management and ticketing tools Primary Skill Set: Symantec/Mcafee antivirus, Symantec HIPS and Mcafee end point DLP, End Point Encryption • Should have good communication skills (verbal and written).
• Should be comfortable working in 24*7 environments.
• Should have team management skills
Additional Information
Andy Bundad
Technical Recruiter
--------------------------------------------------------------------
Hi-Tech Solutions, Inc. | Information Technology Consulting
Two Mid America Plaza, Suite 630 | Oakbrook Terrace, IL 60181
Direct Phone: ************
*********************
Information Security Analyst
Cyber security analyst job in Rockleigh, NJ
The Information Security Analyst plays a key role in advancing the company's Governance, Risk & Compliance (GRC) program by protecting enterprise information assets and ensuring compliance with regulatory, contractual, and ethical standards. This position offers hands-on experience across multiple security domains including policy governance, risk management, AI governance, and data security, making it an excellent opportunity for early career professionals or recent graduates passionate about cybersecurity and emerging technology risks. In this role, you will collaborate with teams across Information Security, IT, and Legal to drive initiatives that safeguard sensitive data, maintain compliance obligations, and promote responsible use of artificial intelligence and other advanced technologies.
Responsibilities
Governance & Policy Management
Assist in developing, maintaining, and aligning information security policies with frameworks such as NIST CSF, ISO 27001, SOC 2, CIS, and the NIST AI RMF.
Contribute to documentation and control mapping for new or updated regulations related to AI, privacy, and data protection (e.g., GDPR, CCPA, NIST 800-53 Rev 5).
Support internal policy review cycles, ensuring consistent version control and executive approval.
Risk Management
Participate in enterprise risk assessments, including third-party, application, and AI model risk reviews.
Help identify, document, and track remediation of security and privacy risks within the GRC platform (e.g., Drata, ServiceNow GRC, OneTrust, Vanta, etc.).
Support the development of risk metrics and dashboards for leadership reporting.
Learn to evaluate AI-related risks such as model bias, data leakage, data lineage, model transparency, and unintended data exposure.
Data Governance & Data Security
Assist with data classification, retention, and handling standards, ensuring sensitive data is appropriately protected.
Support data inventory and mapping efforts to improve visibility where critical data resides.
Help review access controls, encryption standards, and secure data transfer processes in coordination with IT teams.
Collaborate with the IT team to ensure alignment between data quality, privacy, and security controls.
Compliance & Audit Support
Gather and organize evidence for internal and external audits (ISO 27001, PCI, HIPAA, etc.).
Maintain control documentation and track audit remediation activities.
Support continuous monitoring of compliance requirements and updates to regulatory obligations, including emerging AI governance and data-related laws.
AI Governance Support
Contribute to inventories of AI tools and use cases across the enterprise.
Assist in risk assessments for AI systems, ensuring they align with responsible AI principles such as fairness, accountability, and transparency.
Collaborate with IT and legal teams to ensure that AI use complies with company policies.
Security Awareness & Communication
Help design and distribute training materials related to cybersecurity, data protection, and responsible AI practices.
Support internal campaigns promoting secure data handling and ethical technology usage.
Prepare metrics, dashboards, and presentations for leadership briefings.
Continuous Improvement
Participate in projects that automate or streamline GRC processes, such as policy lifecycle management or risk scoring.
Stay informed about new threats, regulatory trends, and AI governance frameworks.
Engage in ongoing professional development and certification opportunities.
Qualifications
Bachelor's degree in Cybersecurity, Computer Science, Information Systems, Data Science, or a related field is preferred
0-2 years of experience in cybersecurity, risk management, compliance, or data governance (internship or coursework acceptable).
Understanding of cybersecurity principles, risk management, and data privacy fundamentals.
Basic familiarity with AI systems, data governance concepts, or information security practices.
Strong analytical, communication, and documentation skills.
Ability to manage multiple priorities in a fast-paced environment.
Proficient in Microsoft Excel, PowerPoint, and data analysis or GRC tools.
Exposure to frameworks such as NIST CSF, ISO 27001, SOC 2, NIST AI RMF, or COBIT.
Must be able to work in the U.S. without sponsorship
Per applicable state requirements, the annual pay range for this position ($60,500 - $84,000) which consists of base salary (subject to performance), reflects the hiring range for candidates. Also note, an individual's offer may vary from this range as it may be impacted by additional factors, including but not limited to the candidate's hiring location, qualifications, experience, and market factors.
Forefront Identity Management Security (FIMS) Analyst
Cyber security analyst job in Franklin Lakes, NJ
Energy. It defines LanceSoft. Consider our unique ‘keep apace' operational culture, the spirited lot of hand-picked professionals, our ‘up-to-the-minute' knowledge base, together they form a dynamic mix of value-generating characteristics that help us delve into the heart of a problem to deliver precise services and solutions - repeatedly.
In business since 2000, LanceSoft is a reputed and credible Contingent Workforce Management Services firm that has established itself as a pioneer in providing highly scalable workforce solutions and exceptionally competent global IT services to a diverse set of customers across various industries around the globe. LanceSoft is headquartered out of the Washington DC Metropolitan (Herndon, VA) and operates out of various locations in the US, Canada and India
Job Description
The associate would join a project team responsible for critical Identity and Access Management projects utilizing Forefront Identity Manager to facilitate process automation. - The team member would be responsible for: o Quickly learning BD's onboarding and termination automated procedures. o Providing End User Training and Support for Forefront Identity Manager processes. o Documenting and training IT staff on Forefront Identity Manager processes. o Facilitate and execute testing of new ForeFront Identity Manager functionality (additional source systems, workflows, roles and permissions). o Facilitate global Active Directory data integrity remediation of User and Group objects.
Qualifications
Strong Identity and Access Management foundation in Active Directory and Forefront Identity Manager. SAP GRC and ABAP security design is a nice to have. - Excellent Powershell, LDAP or equivalent scripting and reporting skills including heavy Microsoft Excel and CSV based Extract, Transform and Load operations. - Excellent verbal and written communication skills. - Must have hands on experience implementing large FIM projects - Must have strong technical writing capabilities related to FIM
Additional Information
Looking for a candidate who has strong Active Directory Reporting. BD is doing a massive clean up in Active Directory .
Also this candidate must be able to do training for new customers and have good communication skills.
Firewall Security Engineer
Cyber security analyst job in Stamford, CT
Duration: 6+ Months Experienced Firewall administrator for operational implementation, maintenance and configuration of firewalls. Key Responsibilities: Performs maintenance and changes in firewalls as required. Implementation of new firewalls as required
Assists with troubleshooting network connectivity as it relates to firewalls
Utilizes change management, request, and ticketing systems, documents status updates and problem resolutions
Complete All assignments in a timely manner with an acceptable level of quality
Maintains documentation related to work area
Completes network change requests
Follows documented processes, procedures and policies
Performs customer service duties and responds to customer and project requests as defined by management
Other related duties assigned as needed.
Qualifications/Requirements:
Bachelor's degree and with 3 to 4 years of operational experience administering Firewalls
4 or more years networking/firewall background
Must have networking TCP/IP routing protocol experience
Desired Characteristics:
In-depth experience in security aspects of multiple platforms, operating systems, software, communications and network protocols is desired
Competency in verbal, written, and presentation communications and interpersonal understanding
Ability to understand customer's business needs.
Leadership of work teams/groups
Ability to work with all levels of employees
Highly motivated and able to work effectively under minimal supervision in a fast-paced environment
Team-oriented, placing priority on quality and the successful completion of team goals
Organization and planning skills that include: time management, project coordination and management, and the ability to handle multiple deadlines and associated pressures.
Competency in developing effective solutions to business problems
Ability to analyze problems and to make decisions
REQUIRED SKILLS
YEARS OF EXPERIENCE
WHEN THE SKILL WAS LAST USED
Expert knowledge of Cisco Security products, ASA and Firepower
Expert knowledge of NSX
Expert knowledge of Palo Alto systems
Security Certifications a Plus
Must have networking TCP/IP routing protocol experience
Networking/firewall background
Operational experience administering Firewalls
Additional Information
All your information will be kept confidential according to EEO guidelines.
Data Security Engineer
Cyber security analyst job in Stamford, CT
What you'll do • Design and implement comprehensive data security architectures, with particular focus on database platforms (primarily SQL Server) • Develop and maintain enterprise-wide encryption strategies for securing structured and unstructured data both in transit and at rest, both and both on-premise and in the cloud
• Enhance logging, monitoring and SecOps capabilities of enterprise databases and other data stores
• Configure and optimize Identity and Access Management (IAM) solutions across data platforms and repositories to align to least privilege principles
• Implement Data Loss Prevention (DLP) strategies and controls
• Implement and maintain Information Rights Management (IRM) and Digital Rights Management (DRM) solutions
• Design and implement data tokenization strategies where appropriate
• Secure data processing pipelines and ensure appropriate controls for data workflows
• Create and maintain data security documentation, including policies, procedures, and standards
• Collaborate with development teams to ensure security best practices in data handling
• Conduct vulnerability assessments of the firm's database architecture and associated data storage and processing systems
• Assist in monitoring and managing security patching and upgrade processes for database platforms
What's required
• Bachelor's degree in computer science, cybersecurity, or related technical field
• 6+ years of experience in data/database security engineering and governance
• Deep expertise in database security, particularly SQL Server
• Comprehensive understanding of data warehouse/data lake architectures and tools, particularly Databricks (required)
• Subject matter expertise in Object Storage (eg: S3, Azure Blob, etc) and related security
• Understanding of Active Directory Delegation (constrained vs. unconstrained) and associated best practices
• Experience with 3rd-party SQL Server security governance and monitoring products (eg: Idera, Solarwinds)
• Extensive knowledge of encryption technologies for both structured and unstructured data
• Broad knowledge of secure data/file sharing solutions and ETL workflows
• Experience designing and implementing data tokenization solutions
• Experience with data classification and DLP technologies
• Scripting/automation capabilities (eg: SQL, PowerShell, Python)
• Commitment to the highest ethical standards
Qualifications
Ivy league
colleges education preferred or huge plus.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Emergency Response Team (ERT) Security Analyst
Cyber security analyst job in Mahwah, NJ
Emergency Response Team (ERT) Security Analyst - (250000AB) Radware is a global leader of cyber security and application delivery solutions for physical, cloud, and software defined data centers. At Radware, we live and breathe cybersecurity. It is our passion. Each day, our international team works to earn the trust of more than 12,500 organizations around the globe. Keeping them safe is our mission. To that end, we go head-to-head with politically motivated hacktivists, dangerous nation-state threat actors and other notorious cyber attackers - these are not your average adversaries. Backed by nearly 30 years of experience, Radware is best known for its technical excellence and innovative network and application security solutions. That is why it is so important that we build our team with bold and bright talent.
About the Team: The Security Analyst will join the Emergency Response Team in Radware's Managed Services business unit. The ERT Team provides immediate and direct security support for customers under attack, ensuring the continued functioning of protected services and, ultimately, customer satisfaction.
What is the job: The Emergency Response Team (ERT) Security Analyst fuels the success of customers by serving as the primary contact when timely assistance is needed the most. If you are an energetic, upstart engineer who enjoys working in a fast-paced environment and interacting with people under pressure, this could be the position for you. What you need: · At least 1 year experience in application security or Master's degree in Cyber Security· Good understanding of network design (e.g. LAN/WAN, switches/routers, routing protocols such as BGP and OSPF) and protocols (e.g., IPv4, TCP/IP, VPN, IPSec, HTTP, DNS)· Good understanding of and experience with security · Wireshark, Kali Linux· Customer and service oriented· Good troubleshooting and diagnosis capabilities· Willing to be on alert during off-work hours· Excellent communication skills and team work· Excellent time management, multi-tasking, and prioritization skills· Perceptive, fast learner, and able to perform well under pressure How can you stand out:· Experience in similar positions/companies· BSc/BA in Computer Science or equivalent· Knowledge in scripting language· Graduated Networking or Security courses Why you should join us:Employees from more than 40 countries have chosen Radware as a place where they can belong.Radware has been recognized by Glassdoor and BDI as one of the World's Best Places to Work, ranking among the top 100 companies across the globe in the IT category.Radware has also been named a Gold Winner for Application Security in the 2023 Globee Cybersecurity Awards, by Forrester a Leader in DDoS Protection, and has been named a Leader in WAF Market by Quadrant Knowledge Solutions.We are equally committed to our people. We strive to create a dynamic work environment that celebrates diversity, promotes equality, and thrives on the unique contributions of each individual.If you are ready to be part of a global-minded company that is inspired to create a better, safer future; and if and want to fight for the good guys and be at the forefront of helping companies protect their most critical assets from today's cyber adversaries, then you've found the right fit at Radware.Salary Range: $93k-$118k#LI-TM1Primary Location: US-NJ-MahwahWork Locations: Radware US, New Jersey Mahwah 575 Corporate Drive Lobby 1 Mahwah 07430Job: Cloud and ManagementRefer a friend for this job Tell us about a friend who might be interested in this job. All privacy rights will be protected.Refer a friend
Auto-ApplyForefront Identity Management Security (FIMS) Analyst
Cyber security analyst job in Franklin Lakes, NJ
Energy. It defines LanceSoft. Consider our unique ‘keep apace' operational culture, the spirited lot of hand-picked professionals, our ‘up-to-the-minute' knowledge base, together they form a dynamic mix of value-generating characteristics that help us delve into the heart of a problem to deliver precise services and solutions - repeatedly.
In business since 2000, LanceSoft is a reputed and credible Contingent Workforce Management Services firm that has established itself as a pioneer in providing highly scalable workforce solutions and exceptionally competent global IT services to a diverse set of customers across various industries around the globe. LanceSoft is headquartered out of the Washington DC Metropolitan (Herndon, VA) and operates out of various locations in the US, Canada and India
Job Description
The associate would join a project team responsible for critical Identity and Access Management projects utilizing Forefront Identity Manager to facilitate process automation. - The team member would be responsible for: o Quickly learning BD's onboarding and termination automated procedures. o Providing End User Training and Support for Forefront Identity Manager processes. o Documenting and training IT staff on Forefront Identity Manager processes. o Facilitate and execute testing of new ForeFront Identity Manager functionality (additional source systems, workflows, roles and permissions). o Facilitate global Active Directory data integrity remediation of User and Group objects.
Qualifications
Strong Identity and Access Management foundation in Active Directory and Forefront Identity Manager. SAP GRC and ABAP security design is a nice to have. - Excellent Powershell, LDAP or equivalent scripting and reporting skills including heavy Microsoft Excel and CSV based Extract, Transform and Load operations. - Excellent verbal and written communication skills. - Must have hands on experience implementing large FIM projects - Must have strong technical writing capabilities related to FIM
Additional Information
Looking for a candidate who has strong Active Directory Reporting. BD is doing a massive clean up in Active Directory .
Also this candidate must be able to do training for new customers and have good communication skills.