Lead Security Engineer, Bridge
Cyber Security Analyst job 28 miles from Vallejo
2 days ago Be among the first 25 applicants
About Bridge Bridge is Stripe's fintech innovation hub focused on building a modern, stablecoin-powered cross-border payments network. We operate like a startup within Stripe: fast-paced, entrepreneurial, and product-obsessed, but with the backing of one of the most trusted names in fintech.
Who we are
About Bridge
Bridge is Stripe's fintech innovation hub focused on building a modern, stablecoin-powered cross-border payments network. We operate like a startup within Stripe: fast-paced, entrepreneurial, and product-obsessed, but with the backing of one of the most trusted names in fintech.
About The Team
We're hiring our Lead Security Engineer to build and scale Bridge's security foundation. This is a rare opportunity to design a security program from the ground up, while also leveraging the infrastructure, best practices, and tooling of one of the most mature security organizations in the industry.
What you'll do
Design, own, and implement Bridge's security roadmap from first principles to production.
Identify and tackle Bridge's most important security risks quickly and pragmatically.
Integrate with Stripe's infrastructure where it makes sense, and find custom solutions where it doesn't.
Lead threat modeling and hardening efforts for Bridge's money movement systems in collaboration with crypto and infra teams.
Build key security capabilities (monitoring, secrets management, incident response, access controls, CI/CD hardening, etc).
Reinforce engineering best practices around secure development and infrastructure.
Ensure Bridge meets compliance and audit expectations as we scale to more regulated markets.
Collaborate cross-functionally with engineering, product, and Stripe's security org to move fast without compromising safety.
Minimum Requirements
Have 8+ years of experience in Security engineering, ideally with time spent in fast-paced startup environments where you've built security practices from the ground up.
Have a startup mindset: you're scrappy, pragmatic, and move quickly to solve the most critical problems.
Are comfortable writing and debugging backend application code (Ruby is a plus, but not required).
Thrive in ambiguity and know how to ruthlessly prioritize.
Can balance security rigor with speed, especially in fast-moving environments.
Communicate clearly across technical and non-technical partners.
Have experience building or scaling security programs, either at a startup or in an embedded role.
Are excited about the potential of crypto and stablecoins to power global financial infrastructure (you don't need deep prior knowledge-just curiosity and openness to learn).
Hybrid work at Stripe
Office-assigned Stripes spend at least 50% of the time in a given month in their local office or with users. This hits a balance between bringing people together for in-person collaboration and learning from each other, while supporting flexibility about how to do this in a way that makes sense for individuals and their teams.
Pay and benefits
The annual US base salary range for this role is $224,000 - $336,000. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. This salary range may be inclusive of several career levels at Stripe and will be narrowed during the interview process based on a number of factors, including the candidate's experience, qualifications, and location. Applicants interested in this role and who are not located in the US may request the annual salary range for their location during the interview process.
Additional benefits for this role may include: equity, company bonus or sales commissions/bonuses; 401(k) plan; medical, dental, and vision benefits; and wellness stipends.Seniority level
Seniority level Director
Employment type
Employment type Full-time
Job function
Job function Information Technology
IndustriesSoftware Development, Financial Services, and Technology, Information and Internet
Referrals increase your chances of interviewing at Stripe by 2x
Get notified about new Lead Security Engineer jobs in San Francisco, CA.
We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr
Lead Security Engineer, Bridge
Cyber Security Analyst job 28 miles from Vallejo
Who we are About Bridge
Bridge is Stripe's fintech innovation hub focused on building a modern, stablecoin-powered cross-border payments network. We operate like a startup within Stripe: fast-paced, entrepreneurial, and product-obsessed, but with the backing of one of the most trusted names in fintech.
About the team
We're hiring our Lead Security Engineer to build and scale Bridge's security foundation. This is a rare opportunity to design a security program from the ground up, while also leveraging the infrastructure, best practices, and tooling of one of the most mature security organizations in the industry.
What you'll do
Design, own, and implement Bridge's security roadmap from first principles to production.
Identify and tackle Bridge's most important security risks quickly and pragmatically.
Integrate with Stripe's infrastructure where it makes sense, and find custom solutions where it doesn't.
Lead threat modeling and hardening efforts for Bridge's money movement systems in collaboration with crypto and infra teams.
Build key security capabilities (monitoring, secrets management, incident response, access controls, CI/CD hardening, etc).
Reinforce engineering best practices around secure development and infrastructure.
Ensure Bridge meets compliance and audit expectations as we scale to more regulated markets.
Collaborate cross-functionally with engineering, product, and Stripe's security org to move fast without compromising safety.
Minimum requirements
Have 8+ years of experience in Security engineering, ideally with time spent in fast-paced startup environments where you've built security practices from the ground up.
Have a startup mindset: you're scrappy, pragmatic, and move quickly to solve the most critical problems.
Are comfortable writing and debugging backend application code (Ruby is a plus, but not required).
Thrive in ambiguity and know how to ruthlessly prioritize.
Can balance security rigor with speed, especially in fast-moving environments.
Communicate clearly across technical and non-technical partners.
Have experience building or scaling security programs, either at a startup or in an embedded role.
Are excited about the potential of crypto and stablecoins to power global financial infrastructure (you don't need deep prior knowledge-just curiosity and openness to learn).
Office-assigned Stripes spend at least 50% of the time in a given month in their local office or with users. This hits a balance between bringing people together for in-person collaboration and learning from each other, while supporting flexibility about how to do this in a way that makes sense for individuals and their teams.
The annual US base salary range for this role is $224,000 - $336,000. For sales roles, the range provided is the role's On Target Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses target and annual base salary for the role. This salary range may be inclusive of several career levels at Stripe and will be narrowed during the interview process based on a number of factors, including the candidate's experience, qualifications, and location. Applicants interested in this role and who are not located in the US may request the annual salary range for their location during the interview process.
Additional benefits for this role may include: equity, company bonus or sales commissions/bonuses; 401(k) plan; medical, dental, and vision benefits; and wellness stipends.
Office locations
San Francisco Bridge HQ
Team
Money Movement and Storage
Job type
Full time
Apply for this role #J-18808-Ljbffr
Security Engineer, Lead
Cyber Security Analyst job 28 miles from Vallejo
About Chai Discovery
Chai Discovery is re-architecting drug discovery by building frontier AI foundation models to design molecules.
The founding Chai team has brought together the leading researchers in this space, with seminal research accomplishments at top AI labs. The team has led AI-for-biology programs at premier labs, co-invented protein language modelling, built state-of-the-art folding algorithms, and sold AI adopted by top-10 pharma companies. The company is backed by top-tier investors, including OpenAI, Thrive Capital, Dimension, Conviction, Lachy Groom, Amplify, and many more.
We're looking to add a few members to our team of scientists and engineers, who obsess over creating the most powerful AI models for antibody discovery, and turning them into products that can transform how medicines are made.
About the role
As a Security Engineer, you will serve as the technical and strategic driver for the company's security posture. In this landscape, security is a top priority and your mission is to build the security backbone that protects the data and models driving tomorrow's life-saving therapies - every control you design helps turn breakthrough science into medicines for millions. You will lead a small but growing team of security engineers, partnering with product and infrastructure groups to design, implement, and continuously improve secure‑by‑design solutions that scale. You design, deploy, and operate detection & response capabilities and serve as incident commander for high‑severity security incidents, coordinating investigation, containment, and remediation.
At Chai, we're entering a pivotal stage. After years of foundational R&D, our models are moving beyond protein structure prediction and into real-world therapeutic engineering. We're now tasking our AI models on a broad spectrum of drug development challenges, at an exciting scale of wet-lab validation.
This is not a typical role - it's a chance to push the boundaries of drug discovery by building some of the most advanced AI drug design models ever built.
About you
We're looking for a builder-mindset security leader who wants to set the gold standard for protecting AI-driven drug discovery. You should have:
Significant security experience:
8+ years of progressive experience in information security, with at least 2 years leading or managing engineering teams
Demonstrated expertise in cloud security (AWS, GCP, or Azure) and container security (Docker/Kubernetes)
Hands‑on experience building and operating detection & response pipelines and handling incidents end‑to‑end
Deep understanding of network protocols, authentication, encryption, and modern zero‑trust architectures
Familiarity with compliance and risk frameworks (SOC 2, ISO 27001, PCI‑DSS) and ability to translate requirements into technical controls
Technical leadership:
Can architect and enforce zero‑trust network segmentation, IAM policies, and least‑privilege access
Proven ability to define a security-engineering roadmap that balances R&D velocity, compliance, and business risk
Track record producing clear security metrics, KPIs, and risk-posture updates for executives and boards
Collaboration and mindset:
Exceptional verbal and written communication skills
Comfortable partnering with DevOps, ML infrastructure, compliance, and legal to embed security in every layer of the stack
Ability to lead and mentor a team of security engineers, setting clear objectives and reviewing performance
Thrives in fast-moving, high-ambiguity environments where first-principles thinking matters more than checklists
What we offer
Frontier technology: we're developing the next frontier of AI-driven drug discovery that will fundamentally change how new therapeutics are created.
World-class team: opportunity to work with world-renowned leaders in the AI x biology and technology ecosystem who have created some of the most impactful advancements.
Highly competitive compensation: we offer highly competitive salary, equity package, and healthcare and wellness benefits.
Velocity and ownership: we move incredibly fast, which means continuous learning and career growth opportunities are a guarantee. Every team member owns a significant slice of the roadmap.
Strong team culture: Collaborative and supportive startup culture in a small and high-energy team who are guided by our mission to increase the efficiency of creating new medicines and positively impact millions of lives.
#J-18808-Ljbffr
Cyber Security
Cyber Security Analyst job 28 miles from Vallejo
Job Description
Forhyre is seeking a talented individual that will be able to provide security architecture support and interface across the program as needed. This support includes, but is not limited to, cybersecurity solutions, providing technical strategy for solutions, guidance, policy, and implementations. The successful candidate for this position is a highly motivated individual, with a strong IT security background who excels integrating, operating, and deploying security technology and solutions and interacts well with both internal teams and clients.
Note: U.S. citizens and those authorized to work in the U.S. are encouraged to apply. We are unable to sponsor at this time.
Responsibilities:
Engineer, implement and monitor security measures for the protection of computer systems, networks and information
Develop and implement security policies and controls to support the Cyber Security framework
Manage the existing cyber security training program across global, multilingual business
Assists in ensuring global Information security program meets all industry regulations, standards, and compliance requirements
Drive adoption of infrastructure security best practices and work with Information Technology teams to ensure security standards are maintained
Implement technology to proactively scan Information Technology environment for security breaches and suspicious activity
Continuous improvement in the areas of Information Security technologies, techniques and processes
Develops and maintains an effective system for the distribution of regular key performance indicator reports and dashboard
Ability to interpret penetration test results and describe issues and fixes to non-security expert
Responsible for leading an accurate & comprehensive status reporting to the executive steering committee
Create and implement SOP/ process improvement initiatives to achieve outcomes that align or exceed the expectations of strategic roadmap
Skills & Experience
Bachelor’s degree and 12+ years of experience; additional years of directly applicable experience may be accepted in lieu of a degree.
Certified Information Systems Security Professional (CISSP)
8+ years hands-on experience designing or implementing security solutions, including all related documentation and artifacts
Analytical ability, problem-solving skills, and ability to break down complex problems into actionable steps
Extensive experience in design and development of enterprise security architectures. Experience must include a wide range of work in creating diagrams and documentation with all components that comprise IT systems including network topology.
Strong knowledge and experience in secure enterprise architecture design, especially with regard to IAM, NDR, EDR, SIEM, AI/ML, and other cybersecurity tools and resultant applications
Experience selecting effective methods, techniques, and evaluation criteria to achieve desired outcomes
Previous experience developing architectures, strategies, strategic plans, roadmaps, and technical standards for the federal IT enterprise environment.
Vulnerability Assessment testing and/or Penetration Testing (preferred)
Robotic Process Automation/Intelligent Automation (preferred)
Business case development supporting security technology solutions (preferred)
Additional certifications demonstrating cybersecurity/technical mastery (preferred)
Cyber Security Analyst
Cyber Security Analyst job 28 miles from Vallejo
Our client seeking a Cyber Security Operations Analyst to support an operations team that supports a large government customer. The candidate will be relied upon to assist teammates and perform troubleshooting as needed. The candidate should excel in a fast-paced work environment and be willing to face new challenges.
Qualifications
• Proficiency with vulnerability scanning, remediation and reporting
• Knowledge in web application scanning using various tools
• Demonstrated proficiency with Windows, UNIX, & LINUX operating systems
• Experience working in a customer service information technology environment
• Network security and system security experience
• Ability to discuss real world troubleshooting; problems and solutions encountered
• Knowledge of IT security best practices, US federal government standards, regulations and policy (FedRamp, TIC, NIST 800-37rev1 & 800-53rev3)
• Must be motivated and able to work independently
• Proven project leadership (PowerPoint presenting, MS Project Planning)
• Experience working with change implementation in a controlled environment
• Excellent verbal, written communication and technical writing skills
Bachelors Degree in Computer Science or a related technical discipline, or the equivalent combination of education, professional training or work experience.
2-5 years of related experience in data security administration.
Experience using some of the following tools:
o Nessus
o Tenable Security Center
o Netsparker
o WebInspect
o BurpSite
Additional Information
Work with blue Stone recruiting to find your next Cyber Security role. You can find us at ******************************* We look forward to speaking with you.
Information Security Analyst, Government Engagement
Cyber Security Analyst job 28 miles from Vallejo
Imagine what you could do here. At Apple, new ideas have a way of becoming great products, services, and customer experiences very quickly. Bring passion and dedication to your job and there's no telling what you can accomplish. Security is woven into the fabric of everything we do. Apple Information Security (AIS) develops services, systems, and tools to mitigate security risks. We empower teams across the company, ensuring they innovate and create with security and privacy as a priority.
We are seeking an exceptional individual with a deep passion for information security at the intersection of the public and private sectors. The ideal candidate will possess a strong background in both information security and public policy, along with a proven track record in producing security analysis for diverse audiences. This is a hands-on role that emphasizes engagement, relationships, and expanding the avenues through which AIS safeguards Apple and our customers. Navigating the evolving global geopolitical cybersecurity landscape is not merely a compliance obligation but a strategic imperative.Apple is seeking a security professional to join its newly established Information Security government engagement function. As cybersecurity policy has become an integral component of national and international politics, this individual will be responsible for engaging with internal business units and collaborating with partners to develop new mechanisms that enhance Apple's resilience against threat actors and cybersecurity risks. Trusted partnerships provide the means for engaging in cybersecurity-related public policy, where our objective is to create a more stable and secure ecosystem for Apple's business and customers. This role will work closely with various Apple teams, including government affairs.
This work will directly impact our current security operations and future security service endeavors. Through thorough research, we will identify and communicate relevant cybersecurity narratives, context, and security implications to key stakeholders. You will provide context to complex security information, enabling AIS decision makers to be better informed as they shape the security services that empower businesses to succeed, securely. At Apple, people matter, and you will develop a network that facilitates interactions between the information security community, policymakers, and other important entities in the public sector. You will have the opportunity to work on security innovation and processes with global reach.Bachelor's degree in Government, International Affairs, or Information Security, or equivalent practical experience
Ability to foster an environment that emphasizes collaboration, relationships, and accountability
Experienced working with compliance regulations and standards (NIS2, PCI, CIS)
Proficient in developing information security-focused communications
Expertise in the communication process and the impact of different inputs and messaging on various audiences
Strong project management experience, with the ability to manage multiple priorities simultaneously within deadlines and budgets
Persuasive approach and a proven track record of effective collaboration with cross-functional partners
Ability to model collaboration across the organization and facilitate open dialogue with a diverse range of contributors and stakeholders
Proficiency in influencing without direct authority Array
Principal Data Security Analyst - Data Classification & Governance
Cyber Security Analyst job 28 miles from Vallejo
Get to know Okta Okta is The World's Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we're looking for lifelong learners and people who can make us better with their unique experiences.
Join our team! We're building a world where Identity belongs to you.
Role Summary: We seek an experienced and detail-oriented Principal Data Security Analyst to contribute to our strategic Data Classification and Governance Program. In this role, you will be instrumental in the operational execution of our data governance strategy. You will work hands-on with data discovery and classification tools, apply data protection policies, and collaborate extensively with cross-functional teams, including Business Technology (BT), Legal, Data & Insights (D&I), and other Security teams. Your focus will be on implementing and maintaining the data classification framework, supporting the rollout of technical controls, and ensuring that our data handling practices align with our security and compliance objectives.
Key Responsibilities:
Data Classification & Labeling:
Actively participate in data discovery initiatives to identify and inventory sensitive data (PII, SPI, financial, IP, AI training data) across key enterprise systems (e.g., Google Workspace, Salesforce, Workday, NetSuite, Snowflake).
Assist in executing pilot programs for data classification on high-priority systems and contribute to refining classification processes.
Policy Operationalization & Control Support:
Assist data Stewards and system owners in implementing the data classification policy and data handling standards to support their operationalization.
Collaborate with BT and Security engineering teams to test and validate the implementation of technical controls (e.g., DLP rules, CASB configurations) based on data classification.
Help define and test controls related to sensitive data input into enabled AI tools.
Tooling & Process Support:
Become proficient in using selected data discovery, classification, and governance tools (potential tools include Varonis, native Google/Snowflake capabilities).
Assist with the configuration, including helping to set up scans and reviewing results.
Contribute to developing and maintaining documentation for classification procedures and tool usage.
Collaboration & Stakeholder Engagement:
Work closely with Data Stewards (from D&I and business units) to understand data context, validate classification results, and ensure alignment with business needs.
Partner with BT application owners to facilitate classification efforts and implement necessary data handling changes.
Support Security GRC by providing data and insights for risk assessments and compliance reporting related to data classification.
Monitoring, Reporting & Continuous Improvement:
Assist in establishing and tracking key metrics for data classification coverage, accuracy, and the effectiveness of associated controls.
Contribute to developing dashboards and reports for program stakeholders and the Data Governance Council.
Required Qualifications & Skills:
Bachelor's degree in Information Security, Computer Science, Information Systems, or a related field, or equivalent practical experience.
10+ years of experience in data security, governance, IT risk management, or a similar analytical role focusing on data protection.
Strong, demonstrable understanding of data classification principles, methodologies, data lifecycle management, and data handling best practices.
Hands-on experience with data discovery and/or data classification tools and technologies.
Solid understanding of data protection concepts and technologies (e.g., DLP, data masking, tokenization, encryption, IAM).
Knowledge of key data privacy regulations (e.g., CCPA, GDPR) and their impact on data handling.
Excellent analytical, problem-solving, and critical-thinking skills with meticulous attention to detail.
Proven ability to work effectively in a cross-functional team environment and manage multiple tasks.
Strong written and verbal communication skills, with the ability to articulate technical concepts to varied audiences.
Preferred Qualifications:
Experience with specific data governance or classification platforms (e.g., Varonis, OneTrust, Google Cloud DLP, Snowflake Data Classification).
Experience implementing or operating data security controls in SaaS environments (e.g., Salesforce, Workday, Google Workspace, M365) and cloud platforms (AWS, Azure, GCP).
Familiarity with security considerations for AI/ML systems and data inputs, including knowledge of AI-native solutions for data labeling and classification.
Hands-on experience with AI governance principles and frameworks, including implementing controls for responsible AI use.
Experience in developing and delivering training or awareness materials.
Relevant industry certifications (e.g., CISM, CISSP, CIPP, CDMP, or tool-specific certifications).
#LI-BF1
#LI-Hybrid
The annual base salary range for this position for candidates located in the San Francisco Bay area is between: $170,000—$254,000 USD
Below is the annual base salary range for candidates located in California, Colorado, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit: ****************************
The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, New York, and Washington is between:$151,000—$227,000 USD
What you can look forward to as a Full-Time Okta employee!
Amazing Benefits
Making Social Impact
Developing Talent and Fostering Connection + Community at Okta
Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! **************************************
Some roles may require travel to one of our office locations for in-person onboarding.
Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Privacy Policy at *************************************
IAM Cyber Security Engineer
Cyber Security Analyst job 20 miles from Vallejo
Why Work For Us?
Great Pay - opportunity to participate in AAA discretionary annual incentive plan or other incentive plans depending upon position
401k Matching - $1 for $1 company match up to 6% of eligible earnings per pay period
Benefits - Medical, Dental, Vision, wellness program and more!
Paid Holidays
Paid Time Off - Team Members accrue paid time off monthly. Depending on position, an additional 24 hours per year are earmarked for volunteer activities.
Collaborative Environment - AAA will value your contribution to providing exceptional service to our members
Free AAA Classic Membership
AAA Product Discounts
Tuition Reimbursement Program
.
At AAA, our Team Members strive to deliver amazing service and help our Members outsmart life's roadblocks. We believe everything you do outside of work adds to who you are at work. We're working to transform AAA for the next century with a mission to create Members for life by unleashing the innovative spirit of our Team Members.
NOTE: This role is hybrid and requires 3 days in our Walnut Creek office.
JOB SUMMARY
The IAM Cyber Security Engineer role is responsible for leading projects to design, implement, and enhance cyber security controls to protect the large, complex IT environment at Mountain West Group. The Cyber Security Engineer is proficient in all aspects of information security, provides ongoing support and mentoring to more junior team members, and fulfills routine cybersecurity tasks. Reporting to the Director, Cyber Security and Network Engineering, this role includes testing the effectiveness of security controls and advising business partners on general cybersecurity topics.
RESPONSIBILITIES / JOB DUTIES
Respond to cybersecurity related requests and take appropriate action, including approving, fulfilling, or rejecting requests and working with business partners to meet their needs.
Manage and maintain cybersecurity tools including patches and onboarding/offboarding.
Manage projects, initiatives, and changes, including planning, scheduling, implementation, and reporting of status.
Audit controls such as firewall rules, cloud and SaaS security configurations, and API controls, and recommend improvements.
Work with application, cloud, and infrastructure teams to detect and remediate vulnerabilities in configurations and in-house developed software.
Conduct periodic testing of security controls to evaluate effectiveness and recommend improvements, and establish and collect risk-based metrics.
Assist with development of security requirements and assessment procedures for business use of technologies.
Other duties as assigned by the Director, Cyber Security and Network Engineering.
KNOWLEDGE, SKILLS, AND ABILITIES
Ability to lead individual projects
Strong oral and written communication skills
Act as a team player
Act with a sense of urgency to resolve requests
Ability to weigh whether a request is reasonable before filling it
EDUCATION, COMPETENCIES, CERTIFICATIONS/LICENSES
Minimum Qualifications
Bachelor's Degree in information technology or related field, or equivalent work experience and education.
5+ years of experience in information technology field
4-7 years of cybersecurity experience.
At least one year of experience in one or two application of core security concepts: Security Operations and Administrations, Access Controls, Risk identification, Monitoring, and Analysis, Incident Response and Recovery, Cryptography, Network and Communications Security, Systems and Application Security.
Information or Cyber Security Certification.
Preferred Qualifications
2 years project management experience.
Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP).
#LI-VB1
#VIC_RX
We target between minimum and midpoint of the range, and all offers are subject to a fair pay analysis - Compensation Range: Min: $129,223.00 - Mid: $161,528.00- Max: $193,834.00
-
Virtual Cyber Security SDR, BDR, Contract to Hire
Cyber Security Analyst job 28 miles from Vallejo
Company Overview: Our Client is a leading provider of cutting-edge cybersecurity solutions to protect businesses from evolving digital threats. They pride themselves on our innovative approach to safeguarding sensitive data, networks, and systems. Their team of experts provides comprehensive cybersecurity solutions that empower organizations to navigate the complex digital landscape with confidence.
Position Summary: As a Virtual SDR, BDR at our Client, you will play a pivotal role in driving the success of our cybersecurity solutions across the United States. As one of the first 20 employees, you will play a vital role in shaping the direction of our company and driving growth. Their recent seed round raised an unbelievable $11M at a $36M valuation, and the founders' last venture resulted in a big exit with the sale of the company to Microsoft.
They operate in the IT Security space and are 100% virtual. In this dynamic and customer-facing role, you will leverage your technical expertise and sales acumen to provide strategic guidance and support to our clients throughout the sales process.
This position offers a unique blend of technical knowledge, sales skills, and the opportunity for nationwide travel.
We Are Looking For:
As a mid-level Business Development Rep. (BDR SDR) you'll be at the tip of the spear, responsible for researching and qualifying top of funnel leads while being the first to connect with our potential customers. You'll research and build contact lists, make outbound cold calls/emails to those who fit our Ideal Customer Profile (ICP) and will then partner with AEs to get customers onboarded. This position will spend roughly 80% of the time on the phone or email prospecting for new clients. This position is a great way for individuals to gain in-depth sales experience with a rapidly growing SaaS security company looking to win the category!
What You'll Do:
Generate high volume quality MQLs through various direct sales efforts such as calls, emails, events, webinars, and other channels generated by Marketing.
Make daily outbound calls/emails to prospects who have demonstrated interest.
Follow up on all calls and emails until meetings are booked or you've been able to move the prospect through the funnel.
Record all activities and properly manage lead stage/flow in our Salesforce CRM.
Achieve or exceed monthly quotas of meetings, demos, and qualified leads worked with AEs.
Schedule product demos on AE's calendar.
Discern buyer intent and partner with AEs to get the right customers onboarded.
Work closely with Marketing, Product, and CS/CX to clearly communicate critical top-of-funnel feedback and suggestions that help optimize segmentation, content, & features.
What You'll Need:
Must have BDR/SDR experience in the SaaS or similar software space
Great speaking self-awareness and ability to read prospect signals and adjust accordingly to move the prospect down the funnel.
Must have a clear, easy-to-understand phone voice and a professional Zoom presence with the ability to engage and empathize over the phone.
Hands-on experience with multiple sales prospecting techniques like cold calling, cold emailing, video conference selling, and social outreach is a must.
Knowledge of sales & marketing constructs, the evergreen funnel, and playbooks are important.
Must be a great listener with an ability to address objections graciously and frame the next steps clearly.
Good writers and creative thinkers needed - Must be able to craft well-written (great grammar and spelling), compelling emails, and responses that lead prospects down the funnel.
Verifiable track record of success and goal attainment in a frontline sales-oriented role
Deep knowledge of software and social networks (especially LinkedIn, Facebook, and Twitter) is important.
Track record of (over)achieving sales quotas.
Must have a strong, self-motivated drive, passion, and desire to deliver results.
Experience in a fast-growing startup environment is a big plus.
What We Offer:
Contract to Hire, Strong Salary plus comm after 90 days
Full Benes
PreIPO equity
Be part of an exciting high-growth SaaS organization
An impactful role with lots of growth potential
A lot of freedom to apply your creative and strategic skills
A work-hard, play-hard environment
100% virtual
Virtual Cyber Security SDR, BDR, Contract to Hire
Cyber Security Engineer
Cyber Security Analyst job 42 miles from Vallejo
Job Details
Protect enterprise systems and information by promptly responding to security threats and incidents, acting individually and as part of a team.
Proactively hunt for cyber threats and enact identification, containment and eradication measures while supporting recovery efforts.
Perform analysis on LLNL intrusion detection systems.
Provide security monitoring and incident response support including troubleshooting and resolution of issues.
Create and manage processes, systems, and tools exercising a high degree of responsibility.
Serve as an incident response technical point of contact and interact with internal and external personnel.
Perform technical assessments, document actions, findings, and make remediation recommendations.
Promote and support plans to promote diversity, equity and inclusion within the program.
Perform other duties as assigned.
Additional job responsibilities, at the SES.3 level
Manage multiple complex parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member skills.
Develop advanced methods, tools, and procedures to improve incident response capabilities and automate various complex tasks.
Mentor and provide technical guidance to team members in incident response best practices and procedures.
Qualifications
Ability to secure and maintain a U.S. DOE Q-level security clearance which requires U.S. citizenship.
Bachelor's degree in Computer Science, Computer Engineering or related field, or the equivalent combination of education and related experience.
Broad experience with SIEM, log aggregation, packet analysis, or other cybersecurity tools.
Experience conducting host forensics, network forensics, log analysis, or malware analysis in support of incident response investigations.
Proficient written and verbal communication, strong interpersonal skills, ability to collaborate in a multi-disciplinary team environment and to interact with all levels of management and staff.
Ability to effectively manage concurrent technical tasks with conflicting priorities, to approach difficult problems with enthusiasm and creativity and to change focus when necessary, with experience working independently.
Ability to work off-hours and on-call to respond to incidents (intermittently, either as-needed or as part of a rotation).
Additional qualifications at the SES.3 level
Significant knowledge of SIEM solutions, threat hunting, incident response, or incident management.
Significant experience with log analysis, event correlation, or incident management procedures.
Advanced ability to provide innovative approaches and apply new technologies to tasks and projects that may not be well defined.
Qualifications We Desire
Master's degree in Computer Science, Computer Engineering, or a related field, or equivalent level of knowledge.
Significant incident response experience, including experience with cloud services such as AWS/Azure, and experience leading teams.
Experience with programming or scripting languages such as C, C#, Python, Java, PowerShell and PHP.
Current industry specific certifications including but not limited to Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Global Information Assurance Certification (GIAC).
Senior Security Analyst
Cyber Security Analyst job 28 miles from Vallejo
We are looking for a highly experienced and motivated Senior Security Analyst who is passionate about advanced security monitoring, detection engineering, and threat hunting. As a Senior Security Analyst at DigitalOcean, you will lead and own critical aspects of our security monitoring program, shaping how we detect, respond to, and prevent threats. You will leverage deep expertise to engineer sophisticated detection capabilities, develop comprehensive metrics to measure program effectiveness, and drive continuous improvement across alerting and response functions. You will be a trusted member of Infrastructure Security and will collaborate closely with other cross-functional teams to close detection gaps and elevate the organization's overall security posture.
What You'll Be Doing:
Lead real-time monitoring, triage, and analysis of complex security events, providing verifiable assessments of threats and incident severity.
Engineer advanced detection use cases, leveraging deep knowledge of adversary TTPs to design and implement scalable alerting solutions.
Develop, track, and report on key metrics for security monitoring effectiveness and incident response performance, using data to drive improvements.
Own and evolve the security monitoring program strategy, ensuring alignment with evolving threat landscapes and business priorities.
Perform proactive threat hunting and hypothesis-driven investigations to uncover hidden or emerging threats within DigitalOcean's environments.
Mentor and guide lower level analysts, reviewing escalated incidents and providing technical leadership during incident response.
Coordinate threat analysis using historical data and architecture diagrams to identify attack vectors.
Collaborate with Security and engineering teams to close monitoring gaps and improve overall security.
Optimize security tools and processes to reduce false positives, improve detection fidelity, and automate response workflows where appropriate.
Lead the creation and maintenance of detailed playbooks, runbooks, and documentation to standardize detection and response efforts.
What We'll Expect From You:
5+ years of hands-on experience with SIEM platforms and endpoint detection tools, with proven impact on security monitoring programs.
Demonstrated expertise in engineering and tuning complex detection rules and alerting logic across diverse environments.
Deep understanding of network and endpoint security, attack methodologies, threat actor tactics, and mitigation strategies.
Experience in proactive threat hunting, vulnerability management, and coordinating with red teams or penetration testers.
Proven leadership in driving security program initiatives, setting metrics, and influencing cross-team security strategy.
Excellent communication skills for technical documentation, incident reporting, and mentoring less experienced analysts.
Proven experience with scripting and query languages (Python, Bash, SQL) to automate detection and response workflows.
Demonstrated proficiency with operating systems like Linux, Windows, and mac OS.
Why You'll Like Working for DigitalOcean:
We innovate with purpose. You'll be a part of a cutting-edge technology company with an upward trajectory, who are proud to simplify cloud and AI so builders can spend more time creating software that changes the world. As a member of the team, you will be a Shark who thinks big, bold, and scrappy, like an owner with a bias for action and a powerful sense of responsibility for customers, products, employees, and decisions.
We prioritize career development. At DO, you'll do the best work of your career. You will work with some of the smartest and most interesting people in the industry. We are a high-performance organization that will always challenge you to think big. Our organizational development team will provide you with resources to ensure you keep growing. We provide employees with reimbursement for relevant conferences, training, and education. All employees have access to LinkedIn Learning's 10,000+ courses to support their continued growth and development.
We care about your well-being. Regardless of your location, we will provide you with a competitive array of benefits to support you from our Employee Assistance Program to Local Employee Meetups to flexible time off policy, to name a few. While the philosophy around our benefits is the same worldwide, specific benefits may vary based on local regulations and preferences.
We reward our employees. The salary range for this position is $108,000 - $150,000 based on market data, relevant years of experience, and skills. You may qualify for a bonus in addition to base salary; bonus amounts are determined based on company and individual performance. We also provide equity compensation to eligible employees, including equity grants upon hire and the option to participate in our Employee Stock Purchase Program.
We value diversity and inclusion. We are an equal-opportunity employer, and recognize that diversity of thought and background builds stronger teams and products to serve our customers. We approach diversity and inclusion seriously and thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.
*This is a remote role.
#LI-Remote
#LI-SK1
Lead Information Security Engineer
Cyber Security Analyst job 28 miles from Vallejo
About Omni
Omni gives businesses one place to easily analyze all their data. Built by the teams behind Looker and Stitch, Omni combines data models, a point-and-click UI, spreadsheet formulas, and powerful visualizations so every team can answer questions fast and accurately. Omni is trusted by companies across industries and regions because it's the only analytics solution that unifies every team across your business in a single platform.
Headquartered in San Francisco, CA, Omni has $97 million in funding from top investors - including ICONIQ Growth, First Round, Redpoint, and Google Ventures.
About you and the role
You will be the first full-time security and IT hire, partnering with the CTO to maintain the security of our internal and customer-facing systems while we continue to build and grow quickly.
What you will do:
Build and implement our policies - ensure the confidentiality, integrity, and availability of our information systems and compliance with standards like GDPR, CCPA, HIPAA, and SOC 2
Build trust with our customers - maintain security documentation for our customers and prospects and answer their questions about our security posture
Lead incident response - monitor security systems to detect and respond to security incidents, implement incident response plan with periodic testing
Own day-to-day IT operations and security for our SaaS stack - automate onboarding/off-boarding, role-based access, secure configuration, and license management using Rippling and Google Workspace as identity sources
Serve as first-line IT support for a Mac fleet - manage MDM policies, EDR, hardware procurement, and a lightweight help-desk queue
Drive vendor governance for all applications - evaluate new software, track usage vs. seat count, and ensure every vendor meets Omni's security standards before purchase
Qualifications:
Minimum of 5 years of experience in information security engineering and/or IT operations
Hands-on admin experience with productivity platforms like Google Workspace or Office365 and identity platforms like Okta, Active Directory, Google Workspace, or Rippling.
Knowledge of security and compliance frameworks such as NIST, ISO 27001, and GDPR.
Strong knowledge of security principles, technologies, and best practices, particularly for modern cloud and SaaS infrastructures.
A builder mindset, comfortable in 0→1 environments and passionate about automation and data
Security System Engineer
Cyber Security Analyst job 28 miles from Vallejo
Seeking a candidate with the ability to demonstrate expertise in both the practical implementation and the administration of noted tools. The basis of the work will be to backfill daily operations management as well as assess the current state implementation for completeness and currency. The candidate will also be responsible for the identification and execution of implementation improvement efforts that will allow for the transition of such tools to a managed service provider including the documentation of run books, incident response and remediation support, and developing continuity plans. Has demonstrated expertise in one or more of the following tools:
Qualys Vulnerability Scanner
LogRhythm
Tripwire
Essential Functions:
Manage and maintain key Information Security tools to help mature and improve the overall effectiveness of solutions across the organization to safeguard information systems, intellectual property assets and customer data.
Design, implement and support integration of information security solutions including security architectures, firewall analysis, and developing and coordinating security implementation plans to improve monitoring and compliance functions and drive automation and efficiencies.
Manage remediation of security issues with technology and business teams to ensure remediation is completed timely and effectively.
Analyze existing processes to identify improvement opportunities, recommend solutions and lead implementation.
Establish and implement a repeatable process for tracking, reporting and driving remediation of security issues.
Assist with the PCI DSS security compliance program including scoping, testing, and remediation activities.
Help train associates, contractors, alliance or other third parties on information security policies and -procedures.
Provide skill-set knowledge transfer that ensures necessary cross-training of other IT Security team members.
Monitors compliance with information security policies and procedures and monitors access control systems to assure appropriate access levels are maintained.
Develop, support and manage Security metrics & reporting.
Develop, maintain and enforce standardized, repeatable administrative and operational policies, processes and procedures.
Serves as enterprise information security consultant, conduct information security risk assessments.
Lead computer forensic analysis, cyber-crime investigation, incident emergency response and investigations.
Perform other responsibilities and duties as assigned.
Additional expertise in the following tools is a plus;
Imperva DB Monitoring
Ingrian HSM
LogRhythm
McAfee IDS/IPS
McAfee Solid Core
NETIQ
PGP Desktop, WDE, Netshare
PGP Universal Server & KMS
Qwest Password Manager
RedSeal
RSA Authentication Manager
RSA Envision
Symantec DLP
Varonis Data Privilege & DWebsense
websense
Information Security
Cyber Security Analyst job 39 miles from Vallejo
This job requires relocation to the United States, Silicon Valley, through the use of a TN visa. If selected for this job, the process of coming to the United States will be handled by Tech-Mex.
The Information Security Engineer maintains 24x7 support, responds to vendor security questionnaires, performs monitoring and maintenance of the security infrastructure and components, participates in project planning and deployment of new technologies and will be responsible for remediation of identified compliance and risk gaps. He/she works independently, operating under the defined guidelines established by the Director of Information Technology and Security.
ESSENTIAL Job Duties & Responsibilities
Monitor and advise on information security issues related to the systems and workflow to ensure the internal and external security controls for the company are appropriate and operating as intended
Documenting gaps between vendor requirements and National MIs infrastructure
Coordinate and execute IT security projects
Coordinate response to information security incidents
Conduct company-wide audits and manage remediation plans
Collaborate with other areas of IT to manage security vulnerabilities
Conduct research to keep abreast of latest security issues
Ensures that system documentation is accurate and updated as needed
Participates in disaster recovery (DR) exercises as directed
Logfile review and analysis
Install and maintain new systems
Prioritize remediation of gaps based on internal and external audits
Prepares compliance reports by collecting, analyzing, and summarizing data
Evaluates information to determine compliance with laws, regulations, or standards
MINIMUM QUALIFICATIONS
3-5 plus years related work experience
Vendor audit and compliance experience, preferably with the SIG framework
Strong technical skills in anti-virus, DLP, and PKI
Strong experience with the McAfee suite of products
Solid understanding of networking concepts and system administration
Experience with Nessus, RSA envision, RedHat Linux and database security
Knowledge of data compliance and privacy standards and regulations as they apply to insurance and banking industries
Knowledge of Information Security Standards (ISO27001, NIST, etc)
Self-motivated, self-directed and shows attention to detail while working
Ability to effectively prioritize and execute reporting tasks in a fast-paced, results-driven environment
Extensive experience working in a team-oriented, collaborative environment with a diverse team of business and IT staff
Bachelor's degree in Computer Science or Information Systems preferred; Professional certifications are an advantage
Essential Worker Competencies
The ability to function independently with minimal supervision.
Works ethically and with integrity supporting organizational goals and values
Displays commitment to excellence
Completes work in a timely manner and meets deadlines
Good verbal and written communication skills
Meets productivity standards and achieves key outcomes
Is dependable and keeps commitments
Contributes to building a positive team spirit and treats others with respect
Candidate will be relocated to the United States
IT Security & Infrastructure Engineer
Cyber Security Analyst job 22 miles from Vallejo
Atomic Machines is ushering in a new era in micromanufacturing with its Matter Compiler (MC) technology. The MC enables new classes of micromachines to be designed and built by offering manufacturing processes and a materials library that is inaccessible to semiconductor manufacturing methods. The MC promises to unlock MEMS manufacturing both for the many device classes that never could be made by semiconductor methods but also to open up entirely new classes. Furthermore, the MC is fully digital in the way 3D printing is digital, but where 3D printing produces parts of a single material using a single process, the MC is a multi-process, multi-material technology: bits and raw materials go in and complete, functional micromachines come out. The Atomic Machines team has also created an exciting first device - one that was only made possible by the existence of the Matter Compiler - that we will be unveiling to the world soon.
Our offices are in Emeryville and Santa Clara, California.
About the Role:We are seeking an experienced Infrastructure Security Engineer to secure and support our enterprise infrastructure across physical sites, cloud platforms, and end-user environments. This is a hands-on, deeply technical role that blends network and endpoint security, IAM, vulnerability management, and operational IT support. You'll be responsible for ensuring high trust across systems, while also being a go-to partner for senior leaders requiring onsite support.
This role reports directly to the Head of Security and requires regular onsite presence in Emeryville with periodic travel to Santa Clara.What You'll Do:
Security Architecture & Network Defense:
Design and enforce perimeter defense using Palo Alto NGFWs, NAT rules, VPN tunnels, and threat profiles
Segment and secure internal networks using Meraki switches, VLANs, and SSID policy controls
Harden AWS environments (VPC, IAM roles, GuardDuty, SCP, S3 controls) and implement secure connectivity
Endpoint Security & MDM:
Lead the deployment and policy management of Workspace ONE MDM across laptops and mobile devices (+++)
Manage and support endpoint protection tools including CrowdStrike, DLP configurations, and USB controls
Enforce patching across devices with tools like Automox, and manage full asset lifecycle
Identity & Access Management:
Administer and optimize Okta for SSO, MFA, group-based access, and SCIM provisioning
Define and maintain least privilege access policies across apps, cloud services, and infrastructure
Threat & Vulnerability Management:
Own TVM tooling (e.g., Rapid7 InsightVM) and drive risk-based remediation workflows
Collaborate with IT, DevOps, and Engineering to track remediation SLAs and patch compliance
IT Support & Help Desk Escalation:
Provide onsite support for senior management and teams across hardware, software, and connectivity issues
Perform basic diagnosis and resolution for Windows, Linux, and mac OS systems
Coordinate with outsourced help desk services and act as Tier 2/3 escalation for time-sensitive issues
Maintain working knowledge of AV systems used for conferencing, board meetings, and team collaboration
Enablement & Collaboration:
Deliver periodic security and onboarding training for users in partnership with the IT and People teams
Contribute to SOPs, runbooks, and IT-security integration plans for new labs, offices, and infrastructure
Partner with Facilities and Operations for secure device provisioning, inventory, and access enforcement
What you'll Need:
A first-principles mindset - you question assumptions, reframe problems from the ground up, and approach challenges with a foundational understanding rather than relying solely on precedent.
6-10 years of experience in infrastructure or IT security roles
Deep experience in perimeter and endpoint security (Palo Alto, CrowdStrike, Meraki, etc.)
Proven deployment and management experience with Workspace ONE or equivalent MDM (+++)
Proficiency with Okta, AWS IAM policies, and secure network segmentation
Experience with vulnerability scanners and patching tools (e.g., Rapid7, Automox)
Comfortable supporting Mac, Linux, and Windows in an IT-secured environment
Hands-on with hardware/software troubleshooting, especially for senior staff and R&D users
Willingness to be onsite full time in Santa Clara with travel to Berkeley as needed
Bonus Points For:
Certifications: PCNSA, AWS Security Specialty, Okta Certified Admin, CISSP, etc.
Familiarity with SOC 2, ISO 27001, or NIST 800-53 controls
Experience supporting OT or R&D environments, including AV and lab equipment
Scripting or automation knowledge (e.g., Bash, Python, Ansible, Terraform)
Strong documentation skills using Jira, Confluence, or similar tools
$155,000 - $175,000 a year
The compensation for this position also includes equity and benefits.
Sr Safeguards & Security Spec
Cyber Security Analyst job 42 miles from Vallejo
Mission Support and Test Services, LLC (MSTS) manages and operates the Nevada National Security Site (NNSS) for the U.S. National Nuclear Security Administration (NNSA). Our MISSION is to help ensure the security of the United States and its allies by providing high-hazard experimentation and incident response capabilities through operations, engineering, education, field, and integration services and by acting as environmental stewards to the Site's Cold War legacy. Our VISION is to be the user site of choice for large-scale, high-hazard, national security experimentation, with premier facilities and capabilities below ground, on the ground, and in the air. (See NNSS.gov for our unique capabilities.) Our 2,750+ professional, craft, and support employees are called upon to innovate, collaborate, and deliver on some of the more difficult nuclear security challenges facing the world today.
+ MSTS offers our full-time employees highly competitive salaries and benefits packages including medical, dental, and vision; both a pension and a 401k; paid time off and 96 hours of paid holidays; relocation (if located more than 75 miles from work location); tuition assistance and reimbursement; and more.
+ MSTS is a limited liability company consisting of Honeywell International Inc. (Honeywell), Jacobs Engineering Group Inc. (Jacobs), and HII Nuclear Inc.
**Responsiblities**
The qualified candidate will report to the Facility Manager and will perform the duties of the Facility Security Officer (FSO) for the Livermore Operations (LO) Facility located in Livermore, CA. Security areas of responsibility include (but are not limited to): physical security of facilities, protection of government property, lock and key control, controlled and prohibited articles, defining and maintaining facility security areas, access authorizations and security clearances, incoming and outgoing visitor control, security badges, creating, handling, storing, processing, and transporting classified matter, secure communications, security training, awareness and employee briefings, OPSEC, communications security (COMSEC), incidents of security concern, and assisting with the local implementation of the Insider Threat and Counterintelligence (CI) programs.
**Key Responsibilities**
+ Ensure that the security program at LO conforms and complies with the requirements and regulations in the applicable Department of Energy (DOE) Orders, Mission Support & Test Services (MSTS) Company Directives, and other relevant Nevada National Security Sites (NNSS) procedures.
+ Security areas of responsibility include but also are not limited to physical security of facilities, protection of government property, lock and key control, controlled and prohibited articles, defining and maintaining facility security areas, access authorizations and security clearances, incoming and outgoing visitor control, security badges, creating, handling, storing, processing and transporting classified matter, secure communications, security training, awareness and employee briefings, OPSEC, investigating incidents of security concern and assisting with the local implementation of the Insider Threat and Counterintelligence (CI) programs.
+ Setting up subcontracts and providing oversight of subcontractors providing security services in the areas of alarms, cameras, card readers, locks, and other needed security services.
+ Implements and follows company policies, procedures and directives.
+ Create an environment where employees feel safe to raise issues, empowered to address issues, and supported to resolve issues.
+ Demonstrate environment, safety, health, and quality leadership and consistently enforce environment, safety, health, and quality policies and procedures. Implement applicable environment, safety, health, and quality requirements; emphasize the safety of each employee, and the protection of equipment and property in area of responsibility.
+ Take immediate action to correct reported or observed unacceptable environment, safety, health and quality conditions and/or behaviors.
+ Assure that appropriate procedures, training, equipment, warnings, and tools are provided to employees to permit work to be performed safely.
+ Promote and actively participate in the MSTS safety concept. Support and encourage employee participation in MSTS environment, safety, health, and quality initiatives.
**Qualifications**
**Due to the nature of our work, US Citizenship is required for all positions.**
+ Bachelor's degree in field related to the position or equivalent training and experience plus a minimum of 5 years of progressive related experience.
+ Bachelor's degree in security, business management or field related to the position is preferred.
+ Knowledge of security policies, procedures, and technical terminology associated with security functions.
+ Demonstrates leadership qualities with emphasis on continuous improvement and team building.
+ Skill to develop and analyze information for studies and reports.
+ Able to work independently on safeguards and security program objectives and strategies and formulate strategies for improving operations/processes.
+ Must possess interpersonal communication skills of an influencing and motivating nature to interface effectively with all levels of management, DOE security personnel, and outside agencies.
+ Able to develop and maintain relationships with all levels of employees throughout the company, customers, outside agencies, and various levels of personnel within parent organizations, DOE/HQ,DOE/NNSA, and other contractors including LANL, LLNL, and Sandia as needed to facilitate meeting safeguards and security program objectives while screening and maintaining confidentiality.
+ Able to prioritize and schedule multiple activities in the most efficient manner and meet required deadlines.
+ Able to use software applications needed in the position, including word processing software, spreadsheet software, presentation software, and database software.
+ Working knowledge of LENEL and Milestone applications preferred (not required).
+ Attention to detail and accuracy are required to ensure that policy decisions, procedures, and operations are compliant with MSTS and DOE regulations, procedures, and federal and state laws.
+ Must possess planning/organizing skills and initiative; employ independent judgment; and apply knowledge and experience to ensure that requirements are completed efficiently and on time.
+ Current Q or TS clearance is preferred.
+ The primary work location will be at the Livermore Operations Facility located in Livermore, CA.
+ Flexible work schedule can be negotiated with the manager; employees can work 5/8, 9/80 or 4/10 workweeks.
+ Pre-placement physical examination, which includes a drug screen, is required. MSTS maintains a substance abuse policy that includes random drug testing.
+ Must possess a valid driver's license.
MSTS is required by DOE directive to conduct a pre-employment drug test and background review that includes checks of personal references, credit, law enforcement records, and employment/education verifications. Applicants offered employment with MSTS are also subject to a federal background investigation to meet the requirements for access to classified information or matter if the duties of the position require a DOE security clearance. Substance abuse or illegal drug use, falsification of information, criminal activity, serious misconduct or other indicators of untrustworthiness can cause a clearance to be denied or terminated by DOE, resulting in the inability to perform the duties assigned and subsequent termination of employment. In addition, Applicants for employment must be able to obtain and maintain a DOE Q-level security clearance, which requires U.S. citizenship, at least 18 years of age. Reference DOE Order 472.2 (**************************************************************************************** , "Personnel Security". If you hold more than one citizenship (i.e., of the U.S. and another country), your ability to obtain a security clearance may be impacted.
**Department of Energy Q Clearance** (position will be cleared to this level). Reviews and tests for the absence of any illegal drug as defined in 10 CFR Part 707.4 (*************************************************************************************************************** , "Workplace Substance Abuse Programs at DOE Sites," will be conducted. Applicant selected will be subject to a Federal background investigation, required to participate in subsequent reinvestigations, and must meet the eligibility requirements for access to classified matter. Successful completion of a counterintelligence evaluation, which may include a counterintelligence-scope polygraph examination, may also be required. Reference 10 CFR Part 709 (************************************************************************************ , "Counterintelligence Evaluation Program."
MSTS is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability, veteran status or other characteristics protected by law. MSTS is a background screening, drug-free workplace.
Annual salary range for this position is: **$78,832.00 - $118,248.00.**
Starting salary is determined based on the position market value, the individual candidate education and experience and internal equity.
Information Security Analyst (Governance, Risk, & Compliance)
Cyber Security Analyst job 11 miles from Vallejo
The Doctors Company is currently seeking an Information Security Analyst. This is a hybrid opportunity based in East Lansing, MI or Napa, CA.
Mission
The Information Security Analyst works closely with management and senior security team, analyst will assist team to complete tasks designed to ensure the confidentiality, integrity, and availability of the organization's systems and informational assets. Support incident response and forensics efforts for all security related investigations, including collecting logs, documenting response steps, and collecting critical evidence. Assist in security risk management processes, including security assessments for both internal and 3rd party systems and software. Assist in compliance auditing internal systems against baseline configuration requirements and adherence to TDC Security Policy. Works with project teams to assist with security related deliverables of limited complexity in a supporting role. Assists management team with developing and maintaining information security policies and procedures and tracking compliance throughout the organization. Role requires analyst to maintain security certifications to demonstrate command of knowledge in the security industry and to maintain up to date knowledge of security threats, vulnerabilities, exploits, and trends in the security environment and their impact to the IT systems. Work is closely managed.
Qualifications
Associate degree (2 years college) or equivalent educational experience; and an expressed interest in Cybersecurity, Secure Systems Engineering and/or IT Governance Can substitute degree with additional certification from list below.
One or more of the following certifications are required (2 w/o Associated Degree):
CEH: Certified Ethical Hacker
CompTIA Security+
CompTIA Network+
CompTIA Linux+
(ISC)2 Associate (or higher)
GSEC: SANS GIAC Security Essentials.
CRISC: Certified in Risk and Information Systems Control
CIPP/US: Certified Information Privacy Professional/US
CISM: Certified Information Security Manager
CISA: Certified Information System Auditor
CISSP: Certified Information Systems Security Professional
CCNA: Cisco Certified Network Associate Security
CCNP: Cisco Certified Network Professional Security
C|HFI: Computer Hacking Forensics Investigator
Similar entry level certifications which cover cyber security may be leveraged.
Demonstrated desire to complete future certifications in cybersecurity or other IT fields is required.
Knowledge of enterprise identity management systems such as Active Directory, Azure Active Directory.
Knowledge of Identity Management Lifecycle.
Knowledge of managing and securing Microsoft Windows or Linux Operating Systems.
Knowledge of NTFS file system permissions management and model.
Knowledge of networking, routing, switching and firewalls.
Knowledge of security, vulnerability, exploits, forensics, incident response.
Knowledge of virtualization technologies, including VMware, desirable.
Relevant background in programming in either PowerShell, Batch or Bash Shell
Knowledge of relevant IT industry concepts, practices, standards and procedures.
Ability to prioritize multiple projects and meet deadlines.
Excellent oral and written communication skills.
Ability to work with diverse personalities.
Ability to read, analyze and interpret general business periodicals, professional journals, technical procedures, or governmental regulations.
Ability to write comprehensive reports, business correspondence, and technical procedure manuals.
Ability to effectively present information and respond to questions from groups of managers, clients, customers, and the general public.
Ability to calculate figures and amounts such as discounts, interest, commissions, proportions, percentages.
Ability to define problems, collect data, establish facts, and draw valid conclusions. Ability to interpret an extensive variety of technical instructions in mathematical or diagram form and deal with several abstract and set variables.
(2 - 5+) years' experience supporting technical environments required. Experience may include servers, networking, telephonic, and/or storage systems.
(2 - 5+) years' experience building, administrating, and monitoring systems in a multi-site network environment with more than 500 users preferred.
Ability to be on-call to support security incident response scenarios that may occur outside of standard business hours.
Willingness to occasionally work outside of business hours to support project teams and perform assigned system maintenance tasks in order to minimize business interruptions.
Responsibilities
Security Risk Management
Participate in risk management process, including cyber security assessments of both internal platforms, software, and 3rd party cloud systems.
Work with team to present security findings to business partners and provide security requirements and recommendations for secure implementations
Compliance and Audit Management
Review organizations adherence to TDC cybersecurity policies and defined standards.
Prepare audit reports describing any deficiencies or configuration issues identified during an audit.
Identity and Access Management
Leverage and maintains identity and access management systems, workflows, and policies designed to provision and decommission user and system accounts.
Following the principle of least privilege, grant individual users and departments access to applications, data, or networks.
Monitoring and Operations of Security Systems
Responsibilities also include proactively monitoring the health of security systems, analyzing and troubleshooting system issues as they occur, documenting system designs, data flows, standard operating procedures, and system health validation documents.
Monitoring and responds to real-time security system alerts and service tickets to protects against unauthorized access, modification, or destruction of corporate data and systems..
Vulnerability and Patch Management
Assist in vulnerability identification and remediation on systems and configurations within all internal and external systems.
Assist in the installation of security patching on operating systems and applications, including application health and security posture validations.
Assist in developing secure configuration designs leveraging vendor best practice recommendations for all internal and external systems.
Project Management & Execution
Work with project teams on advanced, technical projects or business issues, requiring ability to learn state-of-the-art security infrastructure and best practices.
Perform basic project management tasks such as task decomposition, basic time and cost estimating, scheduling, and basic reporting skills.
Other Duties As Assigned
Available for all duties, accepts delegated tasks readily and completes assigned duties as directed.
Salary Range: $87,171 - $101,700
Compensation varies based on skills, knowledge, and education. We consider factors such as specialized skills, depth of knowledge in the field, and educational background to ensure fair and competitive pay.
Benefits
We offer competitive compensation, incentive bonus plans, outstanding career opportunities, an exceptional work environment, and an impressive benefits package, which starts with medical, family and bereavement leave; same-sex domestic partner benefits; short- and long-term disability programs; and an employee assistance program. There's more:
Health, dental, and vision insurance
Health care tax-free spending accounts with a company match
401(k) and Roth IRA with company match, as well as catch-up plans for both
Vacation days, sick days, and paid personal days each calendar year (with vacation increases based on length of service)
Paid holidays each calendar year
Life and travel insurance
Tax-free commuter benefits
In-person and online learning opportunities
Cross-function career opportunities
Business casual work environment
Time off to volunteer
Matching donations to qualifying nonprofit organizations
Company-sponsored participation at non-profit events
About The Doctors Company
The Doctors Company is the nation's largest physician-owned medical malpractice insurer. Founded and led by physicians, we are committed to advancing, protecting, and rewarding the practice of good medicine.
The Doctors Company is proud to be Certified™ by Great Place to Work .
Security Systems Engineer ll
Cyber Security Analyst job 28 miles from Vallejo
As a Systems Engineer, you will perform discovery and analysis of business and contractual requirements to define systems and sub-systems architecture and technical design packages. This position works in conjunction with Systems Designers/Engineers and the Project Management team to determine technical requirements for project work and to ensure fit and suitability of our product offering within the client environment.
Responsibilities:
* Prepare high level system designs in a thorough and professional manner during the pre-sales cycle. Design work may include conducting site surveys and device mark-ups, network architecture design, server loading, writing technical narratives and proposals, and preparing bills of materials
* Produce detailed design drawings and technical descriptions of physical security, other building technologies and the supporting networking, server and storage architectures in collaboration with owners and their representatives.
* Develop design documents that will guide the technical installation and configuration of systems
* Develop financial and logistics estimates, both independently and in collaboration with Paladin Technologies sales, marketing, and project management professionals
* Multi-task and manage time effectively to prioritize projects, tasks, and meetings as necessary
* Identify, establish, and document processes to support design efficiency and scalability
* Develop productive relationships with clients and key stakeholders which will build respect and confidence in the organization's capabilities.
* Understand and maintain an awareness of the productivity and profitability of work carried out by the organization
* Pursue and maintain education and professional development of technology systems related to the technical disciplines you will lead.
* Lead design projects with junior team members
Required Qualifications:
* A minimum of 3 years of design experience in the Security, networking or instrumentation and controls.
* A strong understanding of the physical security, including an awareness of complimentary products, technologies, trends, and the general application of physical security technology
* Experience with the following technologies is required:
* Bluebeam Revu, IP networks, low voltage electronics, power and communications, Windows desktop operating system, Microsoft Office
* An understanding of and experience with fundamental concepts pertaining to IP networks, low voltage electronics, power, and communications
* A strong command of the English language supported by excellent written and verbal communication skills
* The ability to simultaneously handle multiple tasks and projects and be responsive to changing priorities in a fast-paced environment
Preferred Qualification:
* Post-secondary education from an accredited college, university, or technical institution in Business, Construction Management, Electronics, Engineering, Information Technology, or a related field
* P.Eng, EIT, CET, or equivalent professional technical designation is preferred
* Highly developed analytical and problem solving skills
* Motivated self-starter with ambition to independently research new technologies as well as engineering and business methodologies/concept
* Field experience in a construction environment is an asset
Physical Demands:
In general, the following physical demands are representative of those that must be met by an employee to successfully perform the essential functions of the job.
* Must be able to effectively communicate, (i.e., see, hear, speak, and write clearly) in order to communicate with colleagues and/or customers; manual dexterity required for occasional reaching, lifting of light office objects, and operating office equipment
* Position is a desk job requiring the use of computer, keyboard, and phone
Working Conditions:
In general, the following conditions of the work environment are representative of those that an employee encounters while performing the essential functions of this job.
* The office is clean, orderly, properly lighted, and ventilated. Noise levels are considered low to moderate
* This is an office-based position
COMPENSATION : $95,000 - $118,000k (DOE)
System and Security Engineer
Cyber Security Analyst job 46 miles from Vallejo
Fremont, CA Created in 2000, Ivalua is a leading global provider of cloud-based procurement solutions. At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration.
We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities.
Learn more at *************** Follow us on LinkedIn and Twitter.
THE OPPORTUNITY
CONTEXT:
Our IT team is dedicated to manage the IT Infrastructure, Cloud computing needs and the Cloud infrastructure at Ivalua. With over 50 global team members, the IT team needs to keep growing to satisfy demanding customers.
ROLE:
This position will work to improve cross-functional collaboration between Infra & ClientOps, by appointing designated pacific time zone support and off hours maintenance & firefighting. This role will also act as AMER SOC backup analyst.
WHAT YOU WILL DO WITH US
* Part of of the AMER infra operations team and working closely with the ClientOps team which is West Coast based.
* Part time activity with the US only SOC scope (mainly as backup of the primary US based SOC analyst)
* Assist with system builds and application support, and firefighter rotation servicing as first responder. Monitor system performance, identifying and resolving issues, applying updates and patches.
* Enforce security protocols, and ensuring system and network integrity.
* Develop automation workflows for repetitive and manual tasks.
* Analyze, log, track, and resolve issues pertaining to inconsistent server configuration.
YOUR PROFILE
If you have the below experience and strengths this role could be for you:
Mastery:
Administration of Windows & Linux servers, Active directory administration, OS & software patching
Proficient:
Virtualization, Public Cloud computing (Azure), and Web Server (IIS), Networking (DNS, DHCP, TCP/IP, Routing, Firewall, WAN, etc.), NT File System, Group Policy, RDS,SSL/TLS protocols. SOC tools: SIEM & EDR. Endpoint security solutions.
Basic knowledge:
Database (SQL), Scripting (Powershell), DDOS, WAF, backup solution
Other skills and experience:
Required experience:
Preferred University degree in Computer Science or IT or similar degree or equivalent experience with proven skills in IT.
Minimum 5+ years of proven experience in comparative industry
"Nice to have" experience:
Knowledge of cloud concepts and platforms, especially Azure. Experience in an international company & team.
Soft skills:
Stress handling, leadership, team player, good communication, problem solving aptitude, strong reporting skills. Good documentation writing skill.
WHAT HAPPENS NEXT
If your application fits this specific position's needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals - apply today!
Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you!
Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role.
Interviews will be conducted virtually via video or on-site with face-to-face meetings.
LIFE AT IVALUA
* Hybrid working model (3 days in the office per week),
* We're a team dedicated to pushing the boundaries of product innovation and technology,
* Sustainable Growth, Privately Held,
* A stable and cash-flow positive Company since 10 years,
* Snacks and weekly lunches in the office,
* Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity,
* Unlock and unleash your full professional potential with our exceptional training and career development program,
* Join a dynamic and international team of top-notch professionals who are experts in their respective fields. Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work. Experience a truly diverse and inclusive work environment where your unique contributions are highly valued,
* Regular social events, competitive outings, team running events, and musical activities,
* Comparably recognized Ivalua for the following (******************************************** :
Powered by People - Powered by You!
United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans. **********************************************
Experience life at Ivalua - check out our captivating video! Gain insight into our unique company culture and get a glimpse of what it's like to work with us.
One of Ivalua's core values is to Care & Grow People. We take matters like pay equity very seriously and strive to reward our employees appropriately and fairly for their talents. The salary range for this position is based upon careful and continual market compensation research. In addition to location, salary may also vary based upon job-related knowledge, skills, and experience.
Title: System and Security Engineer
Base range minimum: $105,000
Base range maximum: $175,000
* Additional compensation / rewards: In addition to the base salary information above, Ivalua offers an uncapped commission plan as part of the competitive compensation package. Other compensation factors may also be considered. Ivalua also offers exceptional benefits including medical, dental, vision, retirement (with company match), and much more.
#LI-SG1
#LI-HYBRID
Cloud Security Analyst-AWS or Azure, Devops
Cyber Security Analyst job 32 miles from Vallejo
Hands-on cloud security engineer who has a deep understanding of emerging technologies including Openstack, PaaS - Pivotal cloud foundry, Mesos, Docker container, Security, Software defined networks, Cloud integration technologies. Hands-on deployment of AWS\Azure IaaS components necessary to support the Cyber Security deployment needs, as well as approved Cyber Security specific solutions in the AWS\Azure environment to support these efforts.
Qualifications
Bachelor's Degree in STEM and/or a minimum of 4 years of equivalent experience
Minimum of 6 years of experience of application design and architecture
Minimum of 6 years of experience with deployment of cloud controls for infrastructure, platform, and applications (IaaS/SaaS/PaaS)
AWS and Azure experience a must
Additional Information
All your information will be kept confidential according to EEO guidelines.