Post job

Database Security Expert remote jobs - 372 jobs

  • Senior Manager, Customer Trust & Field Security Specialist - Capital One Software (Remote)

    Capital One 4.7company rating

    Remote job

    Senior Manager, Customer Trust & Field Security Specialist - Capital One Software (Remote) About the Role: We are seeking an experienced and detail-oriented Senior Manager with horizontal cybersecurity expertise to join our dynamic Customer Trust & Field Security team. This critical role acts as the security expert for our sales and business development efforts, bridging our technical security posture with the questions of prospective customers. You will be responsible for reviewing, interpreting, and responding to customer security-related inquiries, ensuring our responses are accurate, complete, and aligned with our security certifications and documentation. This position is pivotal in establishing and strengthening customer confidence in our cybersecurity, privacy, and compliance programs, influencing product direction and sales strategy to solve real-world security challenges. You will drive transparency, thought leadership, and strategic engagement, ensuring our security posture aligns with industry best practices while enabling business growth. This is an opportunity to be a crucial part of our growth. If you're a cybersecurity professional who enjoys the challenge of communicating technical concepts in a business context, we'd love to hear from you. Key Responsibilities: Customer Trust & Transparency: Scale and build upon existing programs like the Customer Trust Center, providing customers with self-service access to relevant security, privacy, and compliance information. Customer Engagement: Act as a trusted technical and security advisor, engaging customer security teams and IT leaders to align on their cybersecurity & business needs. Serve as the internal subject matter expert on security for the GTM team, supporting sales and account managers in client-facing discussions and presentations. Industry Thought Leadership: Represent the company externally in security and technology conversations, shaping best practices and positioning our solutions as industry-leading. Go-to-Market & Sales Acceleration: Bridge the gap between technical value and business outcomes, aligning security messaging with sales and marketing strategies to drive adoption of our products. Cross-functional Influence & Collaboration: Work closely with the engineering, legal, risk, cyber, and compliance teams to ensure our security responses are accurate and reflect our latest technical and regulatory standing. RFI/RFP Response: Analyze and respond to cybersecurity sections of RFIs (Requests for Information) and RFPs (Requests for Proposal), providing detailed and precise information about our security controls, policies, and procedures. Security Documentation: Maintain and update a knowledge base of our security posture, including security policies, certifications (e.g., SOC 2, ISO 27001), and compliance documentation. Continuous Improvement: Identify trends in customer security inquiries to help improve our documentation and proactive communication strategies. Third-Party Risk & Due Diligence: Support third-party risk and due diligence processes, helping customers efficiently evaluate our security posture. Product Roadmap Contribution: Provide insights on emerging cybersecurity trends and customer expectations to contribute to the product roadmap. Security Sales Playbook Development: Develop and standardize security sales playbooks, equipping sales teams with messaging, objection handling, and case studies, as applicable. Why Join Us: Impactful Role: Play a critical role in shaping our customer trust strategy, directly influencing business growth and sales success by building trust and demonstrating our commitment to security for our customers. Collaborative Culture: Partner with diverse teams across the organization, from engineering to sales, in a fast-paced work environment. Thought Leadership: Represent the company externally and contribute to industry best practices. Customer-Centric Focus: Be part of a team dedicated to empowering organizations to confidently adopt our solutions. Basic Qualifications: At least 7 years of progressive experience in a cybersecurity or information security role, with a strong understanding of security frameworks and best practices, and a focus on horizontal expertise across various domains. At least 4 years in customer - facing roles , acting as a trusted advisor to senior security and IT leaders. Deep technical understanding of cybersecurity principles, data protection, privacy, and compliance frameworks. Familiarity with common cybersecurity concepts, including access control, encryption, network security, and incident response. Excellent written and verbal communication skills with the ability to translate complex technical information into clear, concise, and professional responses for both technical and non-technical audiences. Meticulous and organized, with a proven ability to manage multiple projects and deadlines simultaneously and great attention to detail . Ability to influence and collaborate effectively with cross-functional teams. Preferred Qualifications: Experience in developing and implementing scalable Customer Trust programs. 3+ years experience with Third Party Risk Management programs. Strong business acumen and the ability to translate complex technical concepts into business value. Professional certifications such as CISSP, CISM, CIPP/E, or CompTIA Security+ Experience with cloud services and cloud technologies (e.g., AWS, Microsoft Azure, GCP), cybersecurity technologies, data cloud platforms (e.g., Snowflake, Databricks). At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Remote (Regardless of Location): $204,900 - $233,800 for Sr. Manager, Solutions Architecture McLean, VA: $225,400 - $257,200 for Sr. Manager, Solutions Architecture Richmond, VA: $204,900 - $233,800 for Sr. Manager, Solutions Architecture Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
    $91k-114k yearly est. 28m ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Radar: Real-Time Identity Security Engineer (Remote | Equity)

    Workos

    Remote job

    A technology company is seeking a skilled software engineer to join their Radar team, focusing on building systems for real-time identity event processing. The ideal candidate will have over 5 years of experience in software development, a background in large-scale systems, and strong collaboration skills. This position offers flexible remote work and comprehensive benefits, including healthcare coverage, equity grants, and generous paid time off. Join a growing team committed to delivering a seamless identity security platform. #J-18808-Ljbffr
    $114k-163k yearly est. 4d ago
  • Security Architect (IASAE II) / Cybersecurity Architect

    Nationwide It Services

    Remote job

    Clearance: Active Secret Clearance Required Employment Type: Full-time Performance-Based Position Description Nationwide IT Services (NIS) is seeking a seasoned Cybersecurity Architect for a potential opportunity supporting our DOD customer. In this role, you will be instrumental in securing complex systems, conducting risk assessments, designing secure system architectures, and ensuring compliance with DoD cybersecurity policies and frameworks. This is a remote opportunity requiring a proactive, independent leader with deep experience in systems security engineering and architecture.Key Performance Responsibilities Security Architecture & Engineering Design and implement secure enterprise architectures aligned with DoD RMF (Risk Management Framework) and NIST standards. Develop architecture artifacts (e.g., DoDAF, diagrams, threat models) to support system development life cycles (SDLC). Cybersecurity Compliance & Risk Management Lead the development and assessment of cybersecurity strategies and technical solutions in alignment with DSCA's security objectives. Ensure system compliance with IASAE Level II frameworks and DoD regulations. Conduct security assessments, gap analyses, and vulnerability mitigation planning. Technical Leadership & Collaboration Serve as the cybersecurity SME, providing guidance to system administrators, engineers, and program leadership. Work collaboratively with stakeholders to integrate security requirements across project lifecycles. Present findings, risks, and recommendations to senior leadership and decision-makers. Documentation & Reporting Author and maintain key security documentation (SSPs, POA&Ms, risk assessments). Provide weekly and monthly security status reports, ensuring traceability and audit readiness. Required Qualifications Experience 10+ years of information technology experience 8+ years in technical engineering (requirement analysis, systems/network administration, cybersecurity, systems engineering) Education Bachelor's degree in information technology or a related field from an accredited institution Certifications IASAE Level II Certification (e.g., CASP+ CE, CISSP, CSSLP) Clearance Active Secret Clearance is required for consideration About Nationwide IT Services NIS is a CVE-verified Service-Disabled Veteran-Owned Small Business specializing in IT and Management Consulting. We focus on delivering mission-critical services to federal clients, leveraging cutting-edge technology and industry best practices.Why Join NIS? Competitive compensation Remote flexibility Medical, Dental, and Vision Insurance 401(k) with Employer Match Generous PTO, Holidays, and Sick Leave Education Reimbursement & Professional Development Pet Insurance & Employee Assistance Program Equal Employment Opportunity Nationwide IT Services, Inc. provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, national origin, sexual orientation, gender identity, disability, or protected veteran status.
    $103k-152k yearly est. 2d ago
  • AI Security Engineer

    Verizon 4.2company rating

    Remote job

    When you join Verizon You want more out of a career. A place to share your ideas freely - even if they're daring or different. Where the true you can learn, grow, and thrive. At Verizon, we power and empower how people live, work and play by connecting them to what brings them joy. We do what we love - driving innovation, creativity, and impact in the world. Our V Team is a community of people who anticipate, lead, and believe that listening is where learning begins. In crisis and in celebration, we come together - lifting our communities and building trust in how we show up, everywhere & always. Want in? Join the #VTeamLife. What you'll be doing... We are looking for an AI Security Engineer to develop a reusable automation framework that integrates AI security tools into developer workflows and enterprise AI platforms across Verizon's multiple business units. You'll be finding the right technology to help ensure our customers keep their systems secure and spot risks before they become real threats. This role will drive the adoption of AI security capabilities throughout Verizon, ensuring that AI systems are designed, deployed, and operated securely at scale. Designing and building a reusable, modular automation solution to integrate AI security tools into CI/CD pipelines, MLOps workflows, and AI/ML platforms. Enabling seamless integration of AI security controls across diverse AI environments and development ecosystems used by different business units. Delivering centralized AI Security Automation Framework that integrates tools and policies across the enterprise. Automating and standardizing the deployment and configuration of AI Security Tools (ThreatModeler, SplxAI, Galileo) within enterprise workflows. Embedding AI-specific security checks-such as model scanning, data validation, prompt injection defense, and model provenance verification-into development pipelines. Delivering reusable integration patterns and templates for secure AI model development and deployment. Partnering with MLOps, Data Science, and Platform Engineering teams across business units to drive adoption and standardization of AI security tooling and practices. Implementing automated governance, compliance, and monitoring aligned with NIST AI RMF, OWASP Top 10 for LLM/ML, and enterprise security policies. Delivering a governance and observability layer that provides visibility into AI risks across the organization. Serving as a subject matter expert, evangelizing secure AI development practices and conducting enablement sessions for development teams and data science teams. Accelerating the adoption of AI Security tools through automation, enablement, and partnership. What we're looking for... You're driven to pinpoint a problem and tenacious about finding a solution. You're organized and pay attention to details. You are the person that others rely on. You are accountable and follow through with a sense of urgency. You'll need to have: Bachelor's degree or four or more years of work experience. Four or more years of relevant work experience required, demonstrated through work experience and/or military experience. Four years of experience in cybersecurity engineering, DevSecOps, or MLOps. Experience in automation using Python, Bash, Terraform, or similar tools. Hands-on experience with CI/CD systems (Jenkins). Experience with cloud-native technologies (GCP, AWS, Vertex AI, Azure ML, SageMaker, Kubernetes, Docker, Helm, APIs, etc.) Even better if you have one or more of the following: Familiarity with Zero Trust principles, model security, and data protection. Experience building enterprise automation frameworks or reusable security pipelines. Knowledge of model observability, data lineage, and model risk management. Exposure to enterprise IAM and API Gateway integrations (e.g., Kong, Apigee, OPA, ForgeRock). Hands-on work with AI Security tools like ThreatModeler, SplxAI, and Galileo. Hands-on experience with AI Agents and the MCP server solution development If Verizon and this role sound like a fit for you, we encourage you to apply even if you don't meet every "even better" qualification listed above. Where you'll be working In this hybrid role, you'll have a defined work location that includes working from home and a minimum of three days per week in the office, which will be set by your manager. Employees are responsible for maintaining compliance with hybrid work policies.Scheduled Weekly Hours40Equal Employment Opportunity Verizon is an equal opportunity employer. We evaluate qualified applicants without regard to veteran status, disability or other legally protected characteristics. Benefits and Compensation Our benefits are designed to help you move forward in your career, and in areas of your life outside of Verizon. From health and wellness benefit options including: medical, dental, vision, short and long term disability, basic life insurance, supplemental life insurance, AD&D insurance, identity theft protection, pet insurance and group home & auto insurance. We also offer a matched 401(k) savings plan, up to 8 company paid holidays per year and up to 6 personal days per year, paid parental leave, adoption assistance and tuition assistance, plus other incentives, we've got you covered with our award-winning total rewards package. Depending on the role, employees have the opportunity to receive compensation in the form of premium pay such as overtime, shift differential, holiday pay, allowances, etc. Newly hired employees receive up to 15 days of vacation per year, which grows with additional service. For part-timers, your coverage will vary as you may be eligible for some of these benefits depending on your individual circumstances. The salary will vary depending on your location and confirmed job-related skills and experience. This is an incentive based position with the potential to earn more. For part-time roles, your compensation will be adjusted to reflect your hours.The annual salary range for the location(s) listed on this job requisition based on a full-time schedule is: $101,000.00 - $194,000.00.
    $62k-95k yearly est. 2d ago
  • Blockchain Security Expert - Anti Defect Track

    Certik 3.8company rating

    Remote job

    About the CompanyFounded in 2018 by professors of Yale University and Columbia University, CertiK is a pioneer in blockchain security, utilizing best-in-class AI technology to secure and monitor blockchain protocols and smart contracts. CertiK's mission is to secure the cyber world. Starting with blockchain, CertiK applies cutting-edge innovations from academia into enterprise, enabling mission-critical applications to be built with security and correctness. CertiK is one of the fastest growing and most trusted companies in blockchain security and has become a true market leader. Our clients include leading projects such as Aave, Polygon, Binance Smart Chain, Yearn, and Chiliz. Our investors include top VCs like Tiger Global, Coatue Management, Shunwei Capital and Hillhouse Capital as well as industry leaders like Coinbase Ventures and Binance. About the PositionThe primary responsibility of this role is contributing to CertiK's security-related services at the intersection of cybersecurity and blockchain. CertiK's offerings include security consulting, security reviews, and security auditing of smart contracts and blockchains, alongside penetration testing and various verification processes. As a Security Engineer at CertiK, , You'll discover and analyze security vulnerabilities in blockchain smart contracts, summarize attacked vulnerabilities, and design feature code analysis tools. You'll also stay up-to-date with analysis tools and new technology trends to further strengthen CertiK's security offerings and expand our services. Responsibilities Participate in blockchain smart contract audits, identifying, analyzing, and addressing security vulnerabilities. Help evaluate and define attack models for blockchain security. Summarize and extract key characteristics from exploited code to build and maintain tools for feature code analysis. Research and work with different analysis tools, continually learning and adapting to emerging technologies in the space. Requirements A bachelor's degree (or higher) in full-time education, preferably in a science or engineering field, plus 3+ years of work experience. Familiarity with fundamental information security concepts. Proficiency in at least one of the following languages: Solidity, Go, Rust, C++, Python, or Node.js, along with a solid grasp of common algorithms. A demonstrated ability to function in an English working environment with strong English reading and writing skills. A passion for blockchain technology and a drive to learn and adapt to new technologies. Bonus Points Experience working with production pipelines-maintaining or developing them. Familiarity with static code analysis (e.g., Syntax Analysis, Semantic Analysis, Taint analysis). Exposure to popular blockchain-related platforms and technologies (e.g., Ethereum, Hyperledger, Cosmos). Prior knowledge of blockchain smart contracts, security audits, and associated best practices. Hands-on blockchain experience such as evaluating risks for blockchain projects or analyzing on-chain security events. Target annual salary for this role performed is $90,000 - $150,000 if based in the US. The exact compensation at which this job is filled will be determined by the skills and experience of qualified candidates. CertiK accepts applications for this position on an ongoing basis. CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law. CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.**************************************************************************************************** All CertiK employees are expected to actively support diversity on their teams, and in the Company.
    $90k-150k yearly Auto-Apply 60d+ ago
  • Database Expert (DoD Secret | Remote)

    Rackner

    Remote job

    Clearance: Active DoD Secret Clearance (or higher) Make an Impact on Military Healthcare and Readiness We are seeking experienced Database Developers and Database Administrators (DBAs) to design, build, and maintain the data storage and integration components of a mission-critical federal program. Ensure enterprise databases are well-designed, high-performing, and reliable to support the Defense Health Agency's (DHA) data integration objectives. Design and implement database schemas and features, including complex SQL queries, stored procedures, and database code that aligns with integration requirements. Monitor and optimize database performance through query tuning, indexing, and resource management. Perform database optimization, performance tuning, and configure high-availability solutions (e.g., clustering, replication) to support large data volumes and fast query execution. Oversee routine maintenance tasks such as backups, recovery procedures, and patching. Implement and maintain robust disaster recovery strategies and backup policies. Enforce database security controls, including access management, encryption, and hardening procedures to protect sensitive healthcare data. Collaborate closely with data engineers and integration developers to ensure database structures support ETL/ELT processes. Validate that database schemas align with incoming data feeds and ensure smooth operation of interfaces (APIs, queries) used for data integration. Who You Are You are an experienced Database Expert with a strong background in enterprise-level database design and administration. You have extensive hands-on experience with SQL databases as the primary data store. You possess in-depth knowledge of SQL Server features, including Performance Monitor, Query Analyzer, and related tools. You have experience working with clustering and replication technologies, such as SQL Server Always On Availability Groups or similar solutions. You are proficient in database replication, load-balancing, and high-availability architectures. You have experience implementing backup strategies, using native SQL backups or automated solutions, and conducting recovery testing. You are familiar with disaster recovery planning and RMF-aligned security controls. You have hands-on experience with data integration and ETL tools. About Rackner Rackner is a cloud-native software consultancy delivering solutions for startups, enterprises, and public sector customers. We drive digital transformation with expertise in DevSecOps, AI/ML, and cloud-first innovation. Our teams solve complex, high-impact challenges that advance federal missions and strengthen national readiness. Join us to help shape the future of secure, scalable data systems supporting mission-critical outcomes. Why You'll Love Working Here Weekly pay and full remote flexibility. Professional growth through paid training and certifications. Comprehensive benefits, including: 401(k) with 100% match up to 6% PTO Medical, dental, and vision insurance Life and disability coverage Home office equipment allowance and a supportive, inclusive culture with meaningful mission impact. Hashtags for Visibility #DataEngineering #DoDCleared #Database #Databasesystems #DataIntegration #ETL
    $94k-131k yearly est. Auto-Apply 12d ago
  • Security Expert ( Equipment and Weapons)

    Safe Sec Group

    Remote job

    Job Announcement Position: Part-Time Security Expert (Report Writing - Equipment and Weapons) Company Name: SafeSec Group Company Website: ********************* SafeSec Group, a global leader in security and defense strategy solutions, is seeking a part-time Security Expert specializing in writing comprehensive reports on security equipment and weapons systems. This role requires a solid understanding of security technologies, exceptional analytical skills, and the ability to produce high-quality technical reports that will inform strategic decisions for our clients. Key Responsibilities: Write detailed market analysis reports and technical assessments related to security equipment and weapons systems. Conduct thorough research and provide actionable insights on the latest advancements in security technologies, weaponry, and tactical applications. Analyze global defense trends and propose recommendations based on deep technical evaluations. Regularly produce high-quality documents that outline the operational benefits, strategic value, and technological innovations of security solutions. Stay informed on emerging technologies, industry standards, and regulatory changes, ensuring all reports reflect the latest developments. Collaborate with internal teams and external experts to enhance the quality and accuracy of published materials. Qualifications: Strong academic background or professional experience in security studies, military technologies, or related fields. In-depth knowledge of security equipment, weapons systems, and their applications in defense and law enforcement. Proven experience in technical writing, particularly on complex, specialized subjects (military, security, defense). Exceptional writing, editing, and communication skills in English; proficiency in additional languages is a plus. Strong analytical skills with the ability to convey complex technical concepts in an accessible and persuasive manner. Ability to work independently, manage time efficiently, and meet deadlines. Preferred Qualifications: Experience with government agencies, defense contractors, or security firms. Expertise in weapons technologies, including firearms, non-lethal weapons, surveillance systems, and cybersecurity defense mechanisms. Familiarity with military procurement processes and global defense market trends. Fluency in additional languages (e.g., Chinese, Russian, French) is a plus. Work Style: Part-time, flexible hours with remote work options. Ability to collaborate with international teams and adhere to strict deadlines. Compensation will be based on experience and work volume. Compensation: Competitive pay based on experience and qualifications.
    $83k-120k yearly est. 60d+ ago
  • Senior Cloud Security Specialist

    GDIT

    Remote job

    Type of Requisition: Regular Clearance Level Must Currently Possess: None Clearance Level Must Be Able to Obtain: None Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications: Skills: Security Information, Security Monitoring, Security Requirements, Security System Design, System Security Certifications: None Experience: 7 + years of related experience US Citizenship Required: No Job Description: Seize your opportunity to make a personal impact as an Senior Cloud Security Specialist supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The Senior Cloud Security Specialist will work as part of the CMM Enterprise Data Warehouse (EDW) team to deploy a secured cloud-native EDW platform and support the statutory and operational reporting, data cataloging, and other analytical objectives. RESPONSIBILITIES: Provide subject matter expertise for implementing secure by design concept into development to include security design principles, data protection, threat and vulnerability management, compliance and governance, threat and vulnerability management, and performance risk assessments. Provide an advanced level of information security expertise needed to solve difficult challenges pertaining to the design and implementation of information security solutions, which may include, but is not limited, to networking, operating system, application and database security relative to both techniques and technologies. Identify, document, and automate the integration of security controls into the enterprise architecture and system development life cycle process enabling ongoing (continuous) security monitoring, automated security authorization, and transparent risk reporting. Gain organizational approval for the design and architecture of security requirements for cloud environment including the DWaaS component. Implement and maintain upon approval. Design, implement and maintain layered system security architectures encompassing software, hardware, and communications to support the requirements and provide for present and future cross-functional needs and interfaces. Provide subject matter expertise and hands-on guidance to teams for embedding secure-by-design principles throughout the product lifecycle, including threat modeling and secure coding practices. Design and implement cloud workloads, services, databases, etc. with security as a primary consideration, including network segmentation, granular access control, data protection, and encryption and zero trust principles. Integrate automated security testing in the CI/CD pipelines enabling real-time feedback and rapid remediation of vulnerabilities during development and deployment. Collaborate with the AO Information System Security Office (ISSO) to schedule periodic penetration testing and conduct vulnerability assessments. Provide monthly and ad hoc reports on identified vulnerabilities, remediation actions, and security breaches covering all access layers (database, application, infrastructure). Include trend analysis and recommendations for continuous improvement. Maintain a risk register and track mitigation process. Propose, implement, and validate security risk mitigation activities for all non-production and production environments with documented evidence of effectiveness. Validate successful implementation of risk mitigation activities for all non-production and production environments. Develop and maintain all Cloud Security Documentation: System Security Plan, Business Continuity Analysis, Disaster Recovery Plan, other documents required for Authority to Operate (ATO). Create and maintain a Cloud Security Roadmap, provide updates quarterly and obtain organizational approval for all security architecture and design artifacts. Implement and document technical and administrative controls to protect sensitive data from unauthorized internal access, including logging, monitoring, and access reviews. Provide operational support for identity and access management (IAM) with granular role-based access controls, integration with on-premises identity management solutions in accordance with Judiciary enterprise security standards and cloud identity solutions and enable product teams to maintain a private image catalog for team specific isolation. Support secure design and operation of multi-segment networks, multiple subnets, and virtual network routing, with regular security assessments and documentation. Provide product teams with and enforce approved standards for logging and data retention, ensuring logs are protected, searchable, and compliant with regulatory requirements. Document and maintain Standard Operating Procedures (SOPs) for cyber security. Automate repetitive security tasks (e.g., patching, compliance checks, incident response) to improve efficiency and reduce human error. Implement regular reviews and updates of security controls, policies, and procedures to address emerging threats and technological changes. Implement regular reporting on security KPIs (e.g., mean time to detect/respond, vulnerability remediation time, compliance status) to demonstrate effectiveness and inform decision-making. Establish a process for ongoing assessment and improvement of governance controls. Provide guidance and recommendations to stakeholders for containment, validation, and eradication, and support remediation and recovery of incidents (including coordination, documentation, timeline tracking, and resource identification/utilization). REQUIRED EXPERIENCE & QUALIFICATIONS: 12+ years of experience project leadership in monitoring computer networks and security issues, investigating and resolving security and cybersecurity incidents. Bachelor's degree with 12+ years of general experience in information systems (10+ years of experience with MA/MS degree) and 8+ years of specialized experience. Preferred: Certified Information Systems Security Professional (CISSP). Preferred: Architect certification from at least one of the cloud service providers (CSPs). Experience in documenting security incidents and performing security vulnerability assessments. Experience working with Agile teams and SAFe to perform testing and uncovering system and network vulnerabilities. Strong working experience in AWS Cloud Security (Certification is preferred) (3+ years' experience). Required past ATO experience in AWS environment for large agency. (4+ years' experience). Required solid understanding of NIST Standards. Experience with the ATO process, FedRAMP, CIS, ISO 27001. (4+ years). Solid understanding on ICAM, SIEM, Vulnerability management tools. Experience with CSAM or similar tools. The likely salary range for this position is $127,500 - $172,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: None Telecommuting Options: Remote Work Location: Any Location / Remote Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc. Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
    $127.5k-172.5k yearly Auto-Apply 11d ago
  • C++ / C# Developer with DBA Skills

    Conduent 4.0company rating

    Remote job

    C++ / C# Developer with DBA Skills Why Conduent: You'll have an opportunity to work on innovative technology while being surrounded by a culture that recognizes each person's contributions. Each day you'll feel challenged and know you are making a difference. About the Role: Will handle database design and performance optimization to support backend systems for multiple transit agencies. Responsibilities: Design, develop, and maintain backend applications and services using C++ and C# for multiple transit agencies. Collaborate with system architects and analysts to design robust database schemas and backend logic supporting transaction processing, card management, and reporting systems. Perform database administration tasks including database design, optimization, tuning, maintenance, backup, and recovery for relational database systems (e.g., SQL Server, Oracle). Optimize SQL queries, stored procedures, and indexing strategies to ensure high system performance and scalability. Implement data integrity, security, and privacy controls in accordance with transit agencies operational and regulatory requirements. Troubleshoot application, database, and integration issues, ensuring high availability and reliability of backend systems. Work closely with QA teams to develop test plans and support integration, system, and performance testing. Document system designs, database schemas, configuration settings, and operational procedures. Qualifications: Bachelor's Degree in Computer Science, Software Engineering, Information Systems, or related field. 3-5 years of professional experience in C++ and C# application development, preferably in transaction processing or card-based systems. Solid experience with relational database management systems (RDBMS), particularly SQL Server. Strong understanding of database design principles, normalization, indexing, partitioning, and query optimization. Proficient in writing complex SQL queries, stored procedures, triggers, and database functions. Experience with database performance tuning and troubleshooting tools (e.g., SQL Profiler). Familiarity with database security concepts including encryption, auditing, access control, and compliance standards. Flexible Working At Conduent, we want you to be yourself. We recognize that everyone is different and that how people want to work and deliver at their best is different for everyone too. In this role, you can expect the following working conditions: Tethered work: Enjoy the convenience of working from home while living within an easy travel distance to the Conduent location where the work is being performed (distance varies based on location and job). Working For You Perks and rewards designed for you: Health and Welfare Benefits: Our health and welfare benefits can be tailored to fit you and your family's needs and start on the first day of employment. Retirement Savings: We will support you as you save for your future. Employee Discounts: We offer you access to a vast selection of global, national, and local discounts on merchandise, services, travel, and more. Career Growth Opportunities: We help you thrive, so together, we can grow. We provide opportunities to advance your career with a vast portfolio of businesses and a global footprint. Paid time off: We provide attractive paid time off packages designed for you to enjoy your life away from work. Great Work Environment: We are proud of our award-winning culture and the recognition we've received for our diversity efforts. Join Us At Conduent, we are one team, one mission. We understand that our success is directly related to the success of our associates. We strive to create a culture where you can: Bring your authentic self to work. Grow and thrive, both personally and professionally. Make a difference with our clients, in our communities, and with the millions of people we support. When you join Conduent, you are engaged in creating the future - both our company's and your own. With more than 60,000 associates across 24 countries, we will provide you the opportunity to grow with a team of people who will challenge and inspire you to be the best! Pay Transparency Laws in some locations require disclosure of compensation and/or benefits-related information. For this position, actual salaries will vary and may be above or below the range based on various factors including but not limited to location, experience, and performance. In addition to base pay, this position, based on business need, may be eligible for a bonus or incentive. In addition, Conduent provides a variety of benefits to employees including health insurance coverage, voluntary dental and vision programs, life and disability insurance, a retirement savings plan, paid holidays, and paid time off (PTO) or vacation and/or sick time. The estimated salary range for this role is $101,063 - $131,250.
    $101.1k-131.3k yearly Auto-Apply 32d ago
  • Senior Security Operations Analyst

    Extend A Care for Kids 3.5company rating

    Remote job

    About Extend: Extend is revolutionizing the post-purchase experience for retailers and their customers by providing merchants with AI-driven solutions that enhance customer satisfaction and drive revenue growth. Our comprehensive platform offers automated customer service handling, seamless returns/exchange management, end-to-end automated fulfillment, and product protection and shipping protection alongside Extend's best-in-class fraud detection. By integrating leading-edge technology with exceptional customer service, Extend empowers businesses to build trust and loyalty among consumers while reducing costs and increasing profits. Today, Extend works with more than 1,000 leading merchant partners across industries, including fashion/apparel, cosmetics, furniture, jewelry, consumer electronics, auto parts, sports and fitness, and much more. Extend is backed by some of the most prominent technology investors in the industry, and our headquarters is in downtown San Francisco. What You'll Do: Serve as a core member of Security Operations, monitoring and triaging alerts from platforms such as SentinelOne and Wiz. Perform end-to-end investigations to identify, contain, and remediate threats and incidents, driving timely, appropriate response. Proactively identify and assess vulnerabilities in infrastructure and code, working with development and other cross functional teams to address issues. Contribute to the end-to-end detection lifecycle: model attacker behaviors (MITRE ATT&CK), write and test detections as code across security programs and tooling (SentinelOne, Wiz, Okta, AWS CloudTrail), and continuously enrich to reduce false positives and improve MTTD. Support data quality and telemetry onboarding, maintain response playbooks, and provide threat validation assistance across the business. Assist teams with the application of secure configuration baselines and best practices in accordance with CIS Benchmarks, NIST, vendor hardening guides, and applicable compliance standards across all company computing assets. Correlate endpoint and infrastructure telemetry to identify emerging threats. Curate and operationalize intelligence (IOCs, TTPs) into detections and response playbooks, and maintain vetted intelligence feeds. Assist GRC initiatives by mapping controls to internal policies and frameworks (e.g., SOC 2, NIST CSF, NYC DFS 500), identifying gaps, supporting audits and evidence collection, tracking remediation, and maintaining policies and control documentation. Work with engineering and business teams to champion security best practices, communicate risks to accountable owners, and assist with mitigation planning and execution. What We Are Looking For: 3+ years experience in a Security Analyst / Security Operations role 3+ years experience with AWS CloudFormation, or other infrastructure-as-code systems (like Terraform) 3+ years experience or certification in AWS serverless technologies (API Gateway, Lambda, S3, DynamoDB) Certifications (one or more preferred): CISSP, CCSP, GIAC (GCIH/GCIA/GMON/GCED/GCFA/GREM), cloud security (AWS or cloud agnostic security specialty) or equivalent experience. Proficiency with hands on management and use of SIEM, CNAPP, EDR, Vulnerability Management tooling, and Detection Engineering strategies. Proficiency with AI technologies and the corresponding threat landscape and strategies for mitigation. Understands agentic workflows such as AWS Bedrock, MCP based workflows (or similar technologies) Working Knowledge of best practices around security roles and responsibilities for AWS IAM Experience working with observability services and tooling (including Coralogix, CloudWatch, OpenTelemetry) Ability to perform in a high energy environment with dynamic job responsibilities and priorities Nice to Haves: Experience with AWS Cloud Development Kit(CDK) Experience with Mastra AI Expected Pay Range: $157,000 - $182,000 per year salaried* * The target base salary range for this position is listed above. Individual salaries are determined based on a number of factors including, but not limited to, job-related knowledge, skills and experience. Life at Extend: Working with a great team from diverse backgrounds in a collaborative and supportive environment. Competitive salary based on experience, with full medical and dental & vision benefits. Stock in an early-stage startup growing quickly. Generous, flexible paid time off policy. 401(k) with Financial Guidance from Morgan Stanley. Extend CCPA HR Notice
    $157k-182k yearly Auto-Apply 60d+ ago
  • Senior Security Analyst III

    Oppfi

    Remote job

    OppFi is a leading tech-enabled digital finance platform that works with banks to provide financial products and services for everyday Americans. Through a transparent and responsible platform, which includes financial inclusion and excellent customer experience, the Company supports consumers who are turned away by mainstream options to build better financial health. We are a team of caring, innovative, and inclusive individuals who thrive in being immersed in diverse talents, expertise, perspectives, and backgrounds. Our employees approach every new challenge with an unparalleled ability to see what could be rather than settle for what is. Our business principles guide us and create an open and collaborative culture where we improve 1% every day, and the best ideas always win! We welcome individuals who want to make an impact in the financial system by facilitating credit access, expanding financial inclusion, promoting financial health, and delivering exceptional customer service. A few other fun facts about us. OppFi is one of the top consumer-rated financial platforms online, maintaining a 4.5/5.0-star rating on Trustpilot. We are a 2025 Crain's Fast 50â„¢ company and were named on Built In's 2025 Best Places to Work in Chicago. Senior Security Analyst III As Senior Information Security Analyst III, you will be a key contributor to our day-to-day security operations, assisting with threat monitoring, incident triage, vulnerability remediation, and GRC activities. This role is an excellent opportunity for someone with security experience who is eager to grow their skills in risk management, cloud environments and security best practices. You will work closely with senior team members and various OppFi internal teams to ensure our environment maintains security, visibility, and compliance standards. What you get to do: Information Security Risk Management: Own the security review and assessment process evaluating the risk associated with introducing new applications/tools into the environment. Assist with security risk management activities, including the analysis, quantification, and tracking of information security risks, plus the review and documentation of risk exception requests. Policy and Compliance Analysis: Identify emerging compliance requirements and assess their impact on our policies. Develop and refresh our policies, procedures, standards, and guidelines to stay compliant and aligned with industry best practices. Governance Visibility: Design and maintain dynamic dashboards or scorecards that offer clear insights into Information Security Governance activities, demonstrating our commitment to security and compliance. Security Operations & Incident Support Monitor security alerts from various tools (SIEM, EDR, cloud logs) and support the triage of potential security incidents by gathering initial data and escalating to senior engineers as needed. Assist in the execution of security incident response playbooks, focusing on initial steps like investigation, basic containment, and documentation. Contribute to the documentation and tracking of security incidents to support audit and compliance requirements. Support the monitoring and logging strategy by assisting with the configuration and tuning of SIEM (Security Information and Event Management) alerts and reports. Perform regular log review and analysis for suspicious activities under the guidance of senior staff. Improvement & Collaboration Contribute to the development and maintenance of operational playbooks and documentation for security processes. Learn to deploy and manage new security tools and assist in the development of basic threat detection logic. Develop basic security performance metrics and assist with reporting to measure the effectiveness of security controls. Performs other related duties as assigned. What you will bring to the team: 3-5 years of professional experience in Information Security or IT Risk Management, with a background supporting IT compliance programs to meet regulatory requirements and demonstrated expertise in at least one of the following areas: Security Operations, Incident Response, or Vulnerability Management. Experience with Security and control frameworks, such as FFIEC, NIST, COBIT, ITIL, and ISO control framework EDR platforms (e.g., CrowdStrike, Defender for Endpoint, SentinelOne) SIEM/SOAR tools (e.g., Sumo Logic, Splunk, Chronicle, or Azure Sentinel) CSPM tools (e.g., Wiz, Prisma, Orca) Vulnerability management platforms (e.g., Qualys, Tenable, Rapid7) Experience identifying potential IT controls risks and opportunities through and offering sustainable recommendations that address cause rather than symptoms Experience with information security standards, best practices for securing computer systems within applicable laws and regulations Experience with Governance Risk & Compliance (GRC) tools and procedure development Solid understanding of common attack techniques (MITRE ATT&CK), incident triage, and remediation workflows. Foundational knowledge of AWS (Amazon Web Services) or other cloud environments. Basic understanding of networking, operating systems (Linux/Windows), and common security principles (e.g., least privilege, defense-in-depth). Familiarity with automation frameworks or API integrations for security tools. Strong written communication skills necessary for developing clear, concise procedures and playbooks, coupled with effective verbal skills for communicating technical findings. Experience building dashboards and metrics for leadership visibility. Strong analytical and problem-solving skills with a keen attention to detail and a desire to learn quickly. Bachelor's degree in Cybersecurity, Computer Science, or equivalent experience. Certifications such as CompTIA CySA+, GCIH, GCIA, GMON, GCDA, GSOC, or CISSP associate are preferred. Experience working in a regulated industry (financial services or health care) Reports to: Manager, Security Operations Total Rewards and Benefits: At OppFi, we are committed to fostering a fair and equitable workplace. The compensation range for this role reflects our good faith compensation estimate for this position. Final offers are determined based on a myriad of factors including, but not limited to experience, skills, qualifications, and other relevant business considerations. Candidates are encouraged to discuss compensation expectations during the hiring process. In addition to base pay, the total compensation package includes eligibility and potential for performance-based bonuses and equity grants dependent upon the role and job level. OppFi offers a flexible, remote environment, 401(k) matching program, and generous paid time off. Other benefits include medical, dental, and vision coverage, and tuition reimbursement. Additional benefits include DoorDash DashPass, Figo pet insurance, Rocket Lawyer, and access to LinkedIn Learning. OppFi also offers Fringe, a lifestyle benefits platform that allows employees to decide how to spend rewards from dozens of vendors like Uber, DoorDash, and UrbanSitter. #LI-Remote Compensation Range:$102,400-$153,600 USD EEO Statement: OppFi is an equal opportunity employer and does not discriminate based on any actual or perceived legally recognized protected bases under local, state, federal law, or regulations. Our goal as a company is to build an equitable workplace that actively works to dismantle systems of oppression in our processes, procedures, and interactions. We aim to help our employees thrive where they work and beyond. Check out our Culture page here. As part of OppFi's commitment to providing equal opportunity to qualified individuals, OppFi will ensure that persons with disabilities are provided reasonable accommodation as defined by applicable laws and organizational policies. If reasonable accommodation is needed to participate in the job application or interview processes or job requirements, please contact our People Team at ********************. Pursuant to the requirements of the California Consumer Privacy Act, OppFi is providing the "OppFi California Employee Privacy Policy", which details the categories of personal information collected and your rights under the policy. If you are a California resident, please review the policy here: ******************************* The information in this document is for general informational purposes only. It is not intended to be an all-inclusive list or description of the organization and its requirements for positions and employees. OppFi reserves the right to modify or change the information on this document at its discretion.
    $102.4k-153.6k yearly Auto-Apply 60d+ ago
  • Senior Backend Engineer - Identity Security & Agentic Systems

    Veza Technologies, Inc.

    Remote job

    At Veza, we're building the next generation of Access Identity Security - and we're bringing GenAI into the core of that mission. We're seeking a Senior Backend Engineer who is excited to work on multi-agent systems, LLM-based automation, and Model Context Protocols (MCP) to transform how access control intelligence is built and delivered. This is a rare opportunity to operate at the frontier of LLM research and backend systems engineering, contributing to both the design of scalable architectures and the implementation of intelligent agents that reason, decide, and act. You will: Building APIs and backend services, test and evaluation frameworks in Python/Golang to support agentic workflows. Prototyping and productizing LLM-based capabilities into the identity access pipeline. Developing agent orchestration layers and working with frameworks like LangGraph or AutoGen. Designing systems around context-awareness, memory, and autonomous decision-making. You Have: Education: Bachelor's or Master's degree in Computer Science, Engineering, or a related field. Experience: 5+ years of backend development experience. Strong proficiency in one or more programming languages, such as Python, Golang, or Java. Experience designing and implementing RESTful APIs and Microservices Architectures. Experience with cloud platforms, such as AWS, Azure, or Google Cloud Platform, and familiarity with IAM services and features. Curiosity and/or experience with GenAI technologies, multi-agent systems, or prompt orchestration. Strong communication and interpersonal skills, with the ability to effectively communicate technical concepts to both technical and non-technical stakeholders. Strong sense of Product feature Ownership - from Ideation to Deployment The compensation for this role depends on several factors such as the candidate's skills, qualifications, experience, and work location. For candidates offered a position at the posted job level, the provided range is the expected base salary. This does not include any additional variable compensation, such as commission. Compensation Disclosure $154,000-$210,000 USD Our Culture We're driven to build a strong company culture and are looking for individuals with solid alignment with the following: Ownership Mindset Act with Integrity Guardians of our Customers Opinionated Humility Build Trust, Earn Trust At Veza, your base pay is one part of your total compensation package. For this position, the reasonably expected pay range can be discussed with your recruiter for the level at which this job has been scoped. Your base pay will depend on several factors, including your experience, qualifications, education, location, and skills. In the event that you are considered for a different level, a higher or lower pay range would apply. This position is also eligible for equity and a competitive benefits package. Veza is proud to be an equal opportunity employer. We are committed to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, or other applicable legally protected characteristics. We also consider qualified applicants according to applicable federal, state, and local laws. If a candidate with a disability requires an accommodation during the recruitment process, please email ******************* About Veza Veza is the identity security company. Identity and security teams use Veza to secure identity access across SaaS apps, on-prem apps, data systems, and cloud infrastructure. Veza solves the blind spots of traditional identity tools with its unique ability to ingest and organize permissions metadata in the Veza Authorization Graph. Global enterprises like Blackstone, Wynn Resorts, and Expedia trust Veza to visualize access permissions, monitor permissions activity, automate access reviews, and remediate privilege violations. Founded in 2020, Veza is headquartered in Redwood City, California, and is funded by Accel, Bain Capital, Ballistic Ventures, GV, Norwest Venture Partners, and True Ventures. Visit us at veza.com and follow us on LinkedIn, Twitter, and YouTube.
    $154k-210k yearly Auto-Apply 60d+ ago
  • Senior Systems Engineer, SAP Security

    Moderna Theraputics

    Remote job

    The Role: As the Senior Systems Engineer you will own and drive Moderna's SAP Security and GRC roadmap-driving access-management procedures, periodic access reviews, and audit readiness across our global SAP landscape. You will architect secure, compliant solutions for S/4HANA and adjacent platforms (Ariba, MDG, BTP etc.), support Upgrades, Implementation and Enhancement initiatives for the Security and GRC scope. Here's What You'll Do: Security Governance & Compliance * Define and maintain SAP security guidelines, operating procedures, and SoD framework * Own SOX, GxP, and ITGC controls; coordinate testing and remediation * Drive periodic user-access reviews and license optimization initiatives Access Management & GRC * Experience with full-cycle implementation and support of SAP GRC 12.x modules (ARM, ARA, BRM, EAM, access certifications) * Design, build, and transport security roles across SAP landscapes; leverage CHARM workflows * Translate business requirements into technical role designs and custom GRC rules Architecture & Project Support * Set security and GRC architecture standards for ongoing SAP projects and upgrades * Evaluate risk and control impacts of role changes; provide guidance to project teams * Coordinate SIT/UAT for security objects and drive cut-over activities Audit, Monitoring & Reporting * Serve as primary contact for internal/external audit inquiries; deliver evidence and action plans * Track KPIs and SLAs, prepare regular metrics for management reporting * Lead Continuous Improvement of monitoring and alerting capabilities Innovation & AI Enablement * Research and recommend AI/ML solutions for predictive access analytics, risk scoring, and anomaly detection * Pilot and operationalize AI features that enhance security intelligence and compliance automation Here's what you'll bring to the table: * Education: Bachelor's degree or Equivalent * Overall Experience: 7-8 years of SAP Security & GRC (v10.0 +) experience, including S/4HANA and Fiori-role design. Deep knowledge of access-management principles, SOD analysis, SOX/GxP compliance, and ITGCs. Hands-on expertise with SAP GRC 12.0 modules (ARM, EAM, ARA) and CHARM processes in Solution Manager * Implementation Experience: Experience implementing GRC, supporting security design for Greenfield implementations, upgrades and similar projects * Applications/Solution experience: Security and GRC implementation experience for SAP Ariba, MDG, GTS, BTP, ATTP * Strong troubleshooting skills, attention to detail, and commitment to service-level excellence * Outstanding communication skills and aptitude for collaborating with technical and business stakeholders Preferred Qualifications * SAP certifications in Security and/or GRC Access Control * Global implementation or multi-landscape experience * Exposure to AI/ML tools for security analytics and compliance monitoring * Familiarity with SAP licensing models and optimization tactics Pay & Benefits At Moderna, we believe that when you feel your best, you can do your best work. That's why our US benefits and global well-being resources are designed to support you-at work, at home, and everywhere in between. * Best-in-class healthcare coverage, plus voluntary benefit programs to support your unique needs * A holistic approach to well-being, with access to fitness, mindfulness, and mental health support * Family planning benefits, including fertility, adoption, and surrogacy support * Generous paid time off, including vacation, volunteer days, sabbatical, global recharge days, and a discretionary year-end shutdown * Savings and investment opportunities to help you plan for the future * Location-specific perks and extras The salary range for this role is $130,800.00 - $209,400.00. This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. An individual's position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, performance, and business or organizational needs. The successful candidate may be eligible for an annual discretionary bonus, other incentive compensation, or equity award, subject to company plan eligibility criteria and individual performance. About Moderna Since our founding in 2010, we have aspired to build the leading mRNA technology platform, the infrastructure to reimagine how medicines are created and delivered, and a world-class team. We believe in giving our people a platform to change medicine and an opportunity to change the world. By living our mission, values, and mindsets every day, our people are the driving force behind our scientific progress and our culture. Together, we are creating a culture of belonging and building an organization that cares deeply for our patients, our employees, the environment, and our communities. We are proud to have been recognized as a Science Magazine Top Biopharma Employer, a Fast Company Best Workplace for Innovators, and a Great Place to Work in the U.S. If you want to make a difference and join a team that is changing the future of medicine, we invite you to visit modernatx.com/careers to learn more about our current opportunities. Our Working Model As we build our company, we have always believed an in-person culture is critical to our success. Moderna champions the significant benefits of in-office collaboration by embracing a 70/30 work model. This 70% in-office structure helps to foster a culture rich in innovation, teamwork, and direct mentorship. Join us in shaping a world where every interaction is an opportunity to learn, contribute, and make a meaningful impact. Moderna is a smoke-free, alcohol-free, and drug-free work environment. Equal Opportunities Moderna is committed to equal employment opportunity and non-discrimination for all employees and qualified applicants without regard to a person's race, color, sex, gender identity or expression, age, religion, national origin, ancestry or citizenship, ethnicity, disability, military or protected veteran status, genetic information, sexual orientation, marital or familial status, or any other personal characteristic protected under applicable law. Moderna is a place where everyone can grow. If you meet the Basic Qualifications for the role and you would be excited to contribute to our mission every day, please apply! Moderna is an E-Verify Employer in the United States. We consider qualified applicants regardless of criminal histories, consistent with legal requirements. Accommodations We're focused on attracting, retaining, developing, and advancing our employees. By cultivating a workplace that values diverse experiences, backgrounds, and ideas, we create an environment where every employee can contribute their best. Moderna is committed to offering reasonable accommodations to qualified job applicants with disabilities. Any applicant requiring an accommodation in connection with the hiring process and/or to perform the essential functions of the position for which the applicant has applied should contact the Accommodations team at leavesandaccommodations@modernatx.com. Export Control Notice This position may involve access to technology or data that is subject to U.S. export control laws, including the Export Administration Regulations (EAR). As such, employment is contingent upon the applicant's ability to access export-controlled information in accordance with U.S. law. Due to the nature of the work and regulatory requirements, only individuals who qualify as U.S. persons (citizens, permanent residents, asylees, or refugees) are eligible for this position. For this role Moderna is unable to sponsor non-U.S. persons to apply for an export control license. #LI-CK1 *
    $130.8k-209.4k yearly Auto-Apply 60d+ ago
  • Senior Security Analyst

    Blackcloak 3.5company rating

    Remote job

    BlackCloak's mission is to protect corporate executives and high-profile individuals in their personal lives, mitigating risks to their families, companies, reputation, and finances. We defend our clients' digital lives from hackers, privacy leaks, and identity theft. If you are passionate about helping to protect others, then keep reading - this may be your next great opportunity. Ready to be on the front lines of cybersecurity? BlackCloak is looking for a sharp and proactive Security Analyst to join our team. In this role, you'll be the first responder, monitoring and triaging security alerts from a variety of sources and leading the charge on security incidents. You'll play a critical part in our continuous compliance program, help develop our threat detection capabilities, and analyze emerging threats. If you're passionate about protecting against cyber threats and thrive in a fast-paced environment, we want to hear from you.What You Will Do Monitor and triage security alerts from a variety of sources including SIEM (SecOps, Sentinel), EDR (SentinelOne, CrowdStrike) and cloud security platforms like Wiz, Orca. Serve as a primary responder for security incidents, executing the incident response lifecycle from initial detection and containment to eradication and recovery. Support development of threat detection library, including incorporating threat intelligence, tuning within security tools, and SOAR response actions. Maintain and draft SOP's and supporting documents for the Incident Response Plan and strategy Analyze phishing attempts, malware, and other cyber threats; partner with Security Engineering to devise additional security controls, administer email security, EDR, ZTNA, and other security tooling configurations to block emerging threats. Participate in a 24/7 on-call rotation to respond to critical security incidents. Support triage and response for compliance alerts and requests, enabling the continuous compliance program at BlackCloak using tools such as Vanta, Drata. Prepare and present detailed incident reports and security metrics to technical and leadership audiences. What You Need To Be Successful 4-6 years of direct experience in a Security Operations Center, incident response, threat intelligence, or similar cybersecurity role. Ability to navigate complex problems, stay cool under pressure, and be highly inquisitive. Hands-on experience with SIEM, SOAR, and other security platforms for log analysis, correlation, automated response, and maturation of detections/runbooks. Deep understanding and practical experience with Endpoint Detection and Response (EDR) tools and their investigative capabilities. Good knowledge of cloud security principles and services in AWS, Azure, or GCP, including experience with security tools like Wiz or Prisma Cloud. Solid understanding of network protocols, operating systems (Windows, Linux, mac OS), and common attack vectors (OWASP, MITRE) Familiarity with identity and access management concepts, including SAML, OAuth, and role-based access control (RBAC) Relevant industry certifications are highly desirable, such as GIAC (GCIH, GCFA), CISSP, or CompTIA Security+. Excellent problem-solving skills and the ability to communicate complex technical concepts to both technical and non-technical audiences. $100,000 - $130,000 a year About BlackCloakBlackCloak is an extremely fast-growing company in an entirely new product category. We have amazing product fit validated by industry awards and an impressive client base of Fortune 500 companies across all industries. BlackCloak offers a competitive salary, exceptional benefits, and a dynamic work environment. Below is a quick summary of BlackCloak's generous benefits package for full-time employees includes: - 100% Remote Company, within the USA - Comprehensive Medical, Dental, and Vision plans with a 100% employer-paid monthly premium option for employees & 50% employer-paid monthly premiums for dependents. - Health Savings Account with company contribution for eligible medical plans. - Flexible Vacation Plan - 10 Paid Company Holidays - 100% employer-paid Life, AD&D and Short- and Long-Term Disability Insurance - 401k with Traditional and Roth options, including employer match. - Company Equity - Paid Parental and Pregnancy Recovery Leave - Company and team off-sites and virtual events throughout the year - Home office stipend We are an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, marital status, age, disability, national or ethnic origin, military service status, citizenship, or other protected characteristic. Learn More about UsWebsite: ********************* LinkedIn: /blackcloak Twitter: @BlackCloakCyberWhite Paper: ******************************************************************************************************* #liremote
    $100k-130k yearly Auto-Apply 60d+ ago
  • Database Administrator III / Developer

    ASM Research 4.2company rating

    Remote job

    Provides database support by verifying databases associated with network tools and solutions function as required. Responsible for managing the routine operations and maintenance of databases and ensuring their reliable and efficient performance. Focuses on establishing the architecture, design, and security of various databases. Administer, develop, test, and support database systems. Evaluate user requirements, assist in designing and developing database structures, test and coordinate system changes. Collaborate with developers and end users to determine data access needs, transaction volumes, performance expectations, and other information necessary to build and maintain integrated databases. Perform a wide range of database-related functions across one or more teams or clients, including designing, implementing, and maintaining new databases, as well as supporting backup/recovery operations and configuration management. Install and configure database management systems (DBMS) and contribute to the enhancement of procedures, documentation, and development practices used for troubleshooting and daily operations. Provide database development support, such as creating tables, writing basic queries or stored procedures, and assisting with data modeling, to ensure database solutions meet organizational requirements. Minimum Qualifications Bachelor's Degree in a related field of study. Dependent upon contract requirement 5-10 years of related work experience. Other Job Specific Skills Excellent attention to detail and analytical skills. Advanced written and verbal communication skills. Ability to multitask and work well under pressure. Advanced knowledge of database backup and recovery strategies. Experience with DBA productivity and performance tools. Experience with DoD and Federal Government is strongly desired. Advanced knowledge of security network and infrastructure tools, including access control and/or encryption. In depth knowledge of troubleshooting skills and out of the box thinking to overcome data obstacles. Ability to delegate/split tasks among a team.
    $59k-81k yearly est. 2d ago
  • Senior Security GRC Analyst

    Lambda 4.2company rating

    Remote job

    Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers. Lambda's mission is to make compute as ubiquitous as electricity and give everyone the power of superintelligence. One person, one GPU. If you'd like to build the world's best AI cloud, join us. *Note: This position requires presence in our San Francisco or San Jose office location 4 days per week; Lambda's designated work from home day is currently Tuesday. What You'll Do Validate and verify the organization's security controls and practices meet the requirements of ISO 27001, 27701, PCI, SOC 2 and other relevant regulatory requirements to ensure alignment to business objectives Manage IT Risk Register including risk identification, tracking, and prioritization. Assist with and drive remediation of control deficiencies and gaps Provide guidance to Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.) Communicate with technical and non-technical stakeholders and leaders on cybersecurity risk and controls management topics and program-specific reporting Assist with the Customer Trust program which may include managing customer assessments, and security questionnaires Assist control owners with root cause analysis and track risk management action plan progress. Create risk metrics for management regarding information security control maturity, compliance status, risks, performance and findings Assist with the third-party risk management assessment process, ensuring consistent enforcement of information security requirements You Have a minimum of 8 years of experience supporting cybersecurity risk or controls management programs with in-depth knowledge and experience of cybersecurity frameworks including ISO 27001 and 27701, PCI-DSS, SOC, NIST CSF and other regulatory requirements Have experience managing and running audits, certification programs and control assessments. This includes but is not limited to scope planning, defining control procedures based on requirements, policies and standards, control testing, and mapping issues to risks Have experience collaborating closely with engineers, business teams, and security partners, including incident response, red teams, and architects to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations Possess a strong ability to define, drive and execute a program vision, strategy, approach and milestones in alignment with organization priorities and initiatives Nice to Have Experience in the machine learning or computer hardware industry Experience with Security by Design and/or Privacy by Design principles Experience with standard cyber controls frameworks, including CIS Top18, NIST Cyber Security Framework (CSF), NIST 800.53, NIST 800.171, CMMC, Cybersecurity Maturity Model Certification (CMMC), ISO 27001 and 27701, and SOX ITGC control frameworks. Broad knowledge of IT infrastructure and architecture of computer systems as well as exposure to a variety of platforms such as operating systems, networks, databases, and ERP systems Familiarity with using third-party tools such as Audit Board, Whistic, RSA Archer, ServiceNow for third-party risk management Certified Information Systems Auditor (CISA) Certified Information Security Manager (CISM) Certified Information Systems Security Professional (CISSP) Certified in Risk and Information Systems Control (CRISC) Experience in the AI infrastructure, machine learning and/or computer hardware industry Salary Range Information The annual salary range for this position has been set based on market data and other factors. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description. About Lambda Founded in 2012, with 500+ employees, and growing fast Our investors notably include TWG Global, US Innovative Technology Fund (USIT), Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, Gradient Ventures, Mercato Partners, SVB, 1517, and Crescent Cove We have research papers accepted at top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG Our values are publicly available: ************************* We offer generous cash & equity compensation Health, dental, and vision coverage for you and your dependents Wellness and commuter stipends for select roles 401k Plan with 2% company match (USA employees) Flexible paid time off plan that we all actually use A Final Note: You do not need to match all of the listed expectations to apply for this position. We are committed to building a team with a variety of backgrounds, experiences, and skills. Equal Opportunity Employer Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.
    $93k-129k yearly est. Auto-Apply 60d+ ago
  • Senior Security GRC Analyst

    Lambda Labs

    Remote job

    Lambda, The Superintelligence Cloud, is a leader in AI cloud infrastructure serving tens of thousands of customers. Our customers range from AI researchers to enterprises and hyperscalers. Lambda's mission is to make compute as ubiquitous as electricity and give everyone the power of superintelligence. One person, one GPU. If you'd like to build the world's best AI cloud, join us. * Note: This position requires presence in our San Francisco or San Jose office location 4 days per week; Lambda's designated work from home day is currently Tuesday. What You'll Do * Validate and verify the organization's security controls and practices meet the requirements of ISO 27001, 27701, PCI, SOC 2 and other relevant regulatory requirements to ensure alignment to business objectives * Manage IT Risk Register including risk identification, tracking, and prioritization. * Assist with and drive remediation of control deficiencies and gaps * Provide guidance to Control Owners in the planning, design, implementation, operation, maintenance & remediation of control activities and other supporting requirements (e.g. policies, standards, processes, system configurations, etc.) * Communicate with technical and non-technical stakeholders and leaders on cybersecurity risk and controls management topics and program-specific reporting * Assist with the Customer Trust program which may include managing customer assessments, and security questionnaires * Assist control owners with root cause analysis and track risk management action plan progress. * Create risk metrics for management regarding information security control maturity, compliance status, risks, performance and findings Assist with the third-party risk management assessment process, ensuring consistent enforcement of information security requirements You * Have a minimum of 8 years of experience supporting cybersecurity risk or controls management programs with in-depth knowledge and experience of cybersecurity frameworks including ISO 27001 and 27701, PCI-DSS, SOC, NIST CSF and other regulatory requirements * Have experience managing and running audits, certification programs and control assessments. This includes but is not limited to scope planning, defining control procedures based on requirements, policies and standards, control testing, and mapping issues to risks * Have experience collaborating closely with engineers, business teams, and security partners, including incident response, red teams, and architects to seamlessly incorporate cybersecurity controls and risk management processes into their day-to-day operations * Possess a strong ability to define, drive and execute a program vision, strategy, approach and milestones in alignment with organization priorities and initiatives Nice to Have * Experience in the machine learning or computer hardware industry * Experience with Security by Design and/or Privacy by Design principles * Experience with standard cyber controls frameworks, including CIS Top18, NIST Cyber Security Framework (CSF), NIST 800.53, NIST 800.171, CMMC, Cybersecurity Maturity Model Certification (CMMC), ISO 27001 and 27701, and SOX ITGC control frameworks. * Broad knowledge of IT infrastructure and architecture of computer systems as well as exposure to a variety of platforms such as operating systems, networks, databases, and ERP systems * Familiarity with using third-party tools such as Audit Board, Whistic, RSA Archer, ServiceNow for third-party risk management * Certified Information Systems Auditor (CISA) * Certified Information Security Manager (CISM) * Certified Information Systems Security Professional (CISSP) * Certified in Risk and Information Systems Control (CRISC) * Experience in the AI infrastructure, machine learning and/or computer hardware industry Salary Range Information The annual salary range for this position has been set based on market data and other factors. However, a salary higher or lower than this range may be appropriate for a candidate whose qualifications differ meaningfully from those listed in the job description. About Lambda * Founded in 2012, with 500+ employees, and growing fast * Our investors notably include TWG Global, US Innovative Technology Fund (USIT), Andra Capital, SGW, Andrej Karpathy, ARK Invest, Fincadia Advisors, G Squared, In-Q-Tel (IQT), KHK & Partners, NVIDIA, Pegatron, Supermicro, Wistron, Wiwynn, Gradient Ventures, Mercato Partners, SVB, 1517, and Crescent Cove * We have research papers accepted at top machine learning and graphics conferences, including NeurIPS, ICCV, SIGGRAPH, and TOG * Our values are publicly available: ************************* * We offer generous cash & equity compensation * Health, dental, and vision coverage for you and your dependents * Wellness and commuter stipends for select roles * 401k Plan with 2% company match (USA employees) * Flexible paid time off plan that we all actually use A Final Note: You do not need to match all of the listed expectations to apply for this position. We are committed to building a team with a variety of backgrounds, experiences, and skills. Equal Opportunity Employer Lambda is an Equal Opportunity employer. Applicants are considered without regard to race, color, religion, creed, national origin, age, sex, gender, marital status, sexual orientation and identity, genetic information, veteran status, citizenship, or any other factors prohibited by local, state, or federal law.
    $89k-119k yearly est. 60d+ ago
  • Sr. Security Ops Analyst- Incident Response

    Taxact Inc.

    Remote job

    Taxwell helps everyday Americans get every tax advantage they deserve by finding credits and deductions they never even knew existed. Our tax preparation software offers easy guidance and ensures your maximum tax refund. We strive to build a team of like-minded experts in both tax and technology who align with our brand purpose, are advocates for our customers and have a fresh, non-traditional approach to the tax industry. The Sr. Security Ops Analyst/Incident Response role is a part of the Taxwell IRM team. IRM SecOps provides cyber security monitoring, reporting, and response along with detection capabilities and threat hunting. Duties include, but are not limited to: Receive incident escalations from monitoring team and assist with real-time advanced analysis, response, and reporting. Mentor and assist in training analysts to aid in their skills development and analytical capabilities. Proactively hunt for threats and enacting identification, containment, and eradication measures while supporting recovery efforts. Point person for coordination with appropriate parties during a security incident - client, management, legal, security, operations, etc. Create thorough reports and documentation of all incidents and procedures, presenting findings to team and leadership on a routine basis Supports detection capabilities and refines process through alert validation. Performs threat hunting and proactive incident response. Completes follow-through to ensure quality forensic materials are captured, preserved and documented along with details and timelines of events and recommendations to avoid future occurrences. Assist in the general maintenance and improvement of processes and/or playbooks. Conduct research regarding the latest methods, tools, and trends in digital forensics analysis. Conduct analysis using logs, previous alerts, etc. to identify trends to identify and prevent potential incidents. Ingest data from multiple sources and aggregate client metrics. Basic Qualifications Bachelor's degree or equivalent combination of CISSP certification and prior experience Five or more years of experience in information systems security. Good communication skills to interact with clients, team members, management, and support personnel. Good analytical and problem-solving skills. Ability to work independently and as part of a team, be highly self-motivated. Experience with cloud environments, such as Microsoft Azure and Amazon. Web Services; Container services and Kubernetes; Azure Monitor and/or Sentinel; Experience with AD and Entra ID; Mimecast and Microsoft Purview; Microsoft OpenAI Services; AWS technologies such as EC2, ECS, Lambdas, LightSail, and VMware Cloud. Ability to script in PowerShell, Python. Preferred Qualifications Previous expertise in consulting or finance, tax background desirable Preferred experience with EDR solutions such as Defender XDR and CrowdStrike Falcon. Experience in Data Visualization (example: PowerBI). Preferred experience with Splunk and osquery. GIAC GCFA and/or GCFR certification. Work Environment Requires being on-call during off hours. May require occasional weekend work. Location is Remote. #LI-DNI At Taxwell, we believe our work benefits from the diverse perspectives of our employees. As such, Taxwell welcomes and celebrates diversity and inclusion and is committed to equal opportunity employment. At Taxwell, you can expect a supportive, open, and inclusive atmosphere and a team that values your contributions. Taxwell is committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants without regard to race, color, religion, sex, national origin, age, d isability, marital status, sexual orientation, gender identity, veteran status, and any other status protected under applicable law. Taxwell considers information gathered in the hiring process, including information on this application, confidential, and only shares it on a need-to-know basis or as required by law. If you need assistance or accommodation due to a disability, you may contact us at ************** or by calling ************ extension 6049 to speak with a member of the HR Talent Acquisition team.
    $89k-119k yearly est. Auto-Apply 60d+ ago
  • Senior Security Compliance Analyst

    Onestudyteam

    Remote job

    At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes. Our cloud-based platform, StudyTeam, brings research site workflows online and enables sites, sponsors, and other key stakeholders to work together more effectively. StudyTeam is trusted by the largest global biopharmaceutical companies, used in over 6,000 research sites, and is available in over 100 countries. Join us in our mission to advance clinical research and improve patient care. One mission. One team. That's OneStudyTeam. We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and Compliance (GRC) to support and enhance our security and compliance programs within the healthcare industry. This role is critical in ensuring adherence to industry regulations, responding to customer audits, and maintaining compliance with ISO 27001, HIPAA, and other security frameworks. The ideal candidate will be a detail-oriented compliance expert who can navigate complex regulatory environments, assist with internal/external audits, and drive continuous improvement in security governance. The ideal candidate must be able to operate independently while delivering on the following duties. What You'll Be Working On: Lead and support customer security audits, responding to security questionnaires and demonstrating compliance with security frameworks. Prepare, coordinate, and manage ISO 27001 audits, including evidence collection, control implementation, and auditor engagement. Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements applicable to healthcare data security. Develop and maintain policies, procedures, and security documentation to meet regulatory and contractual obligations. Perform gap analyses and risk assessments to identify and remediate compliance risks. Manage and improve security governance frameworks, ensuring alignment with industry best practices and business objectives. Conduct third-party vendor risk assessments, ensuring compliance with security policies and contractual obligations. Monitor security controls, ensuring effectiveness and continuous improvement in alignment with security frameworks. Support security awareness training initiatives, ensuring employees understand compliance responsibilities. Stay current on ISO 27001, HIPAA, NIST 800-53, and other relevant standards, translating them into actionable security controls. Assist in defining security metrics and reporting on compliance status and risk posture to leadership. Work closely with legal, security, IT, and business teams to align compliance requirements with security operations. What You'll Bring to OneStudyTeam: Bachelor's degree in Information Security, Computer Science, Risk Management, or related field (or equivalent experience). 8+ years of progressive experience in GRC, compliance, or security audit roles. Experience in healthcare or regulated industries strongly preferred. Certifications strongly preferred: ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, CRISC. Experience leading ISO 27001, SOC2, or HITRUST audits, including ISMS implementation and external audit coordination. Strong understanding of NIST CSF, SOC 2, GDPR, and other security frameworks. Hands-on experience with customer security audits, including responding to security questionnaires and managing security assessments. Ability to perform risk assessments, policy reviews, and compliance gap analyses. Strong written and verbal communication skills, with the ability to explain technical concepts to non-technical stakeholders. Detail-oriented with excellent organizational and project management skills. Ability to work independently and collaboratively in a remote environment. Familiarity with GRC tools (e.g., OneTrust, LogicGate, Archer, Vanta, Drata) is a plus. We value diversity and believe the unique contributions each of us brings drives our success. We do not discriminate on the basis of race, sex, religion, color, national origin, gender identity, age, marital status, veteran status, or disability status. Note: OneStudyTeam is unable to sponsor work visas at this time. If you are a non-U.S. resident applicant, please note that OneStudyTeam works with a Professional Employer Organization. As a condition of employment, you will abide by all organizational security and privacy policies. This organization participates in E-Verify (E-Verify's Right to Work guidance can be found here).
    $89k-119k yearly est. Auto-Apply 5d ago
  • Senior Systems Engineer SAP Security & GRC

    Cloudscouts Software Solutions LLC

    Remote job

    Job DescriptionSenior Systems Engineer SAP Security & GRC, immediate start. I am working with a Pharmaceutical client with an urgent requirement for a Senior Systems Engineer to own and drive their SAP Security & GRC roadmap across S/4HANA and adjacent platforms (Ariba, MDG, BTP). What you'll do: Define and maintain SAP security guidelines, SoD frameworks, and compliance controls (SOX, GxP, ITGC) Lead SAP GRC 12.x (ARM, ARA, BRM, EAM, access certifications) implementations, role design, and CHARM workflows Support upgrades, Greenfield implementations, and security enhancements Serve as primary contact for audits, KPI reporting, and continuous improvement initiatives Explore AI/ML solutions for predictive access analytics and compliance automation The ideal consultant will have: 78 years of SAP Security & GRC experience, including S/4HANA and Fiori-role design Hands-on experience with SAP GRC 12.x modules and CHARM processes Deep knowledge of access-management principles, SoD analysis, SOX/GxP compliance, and ITGCs Experience across SAP applications: Ariba, MDG, GTS, BTP, ATTP Excellent troubleshooting, communication, and stakeholder collaboration skills Work remote temporarily due to COVID-19.
    $81k-114k yearly est. 5d ago

Learn more about database security expert jobs

Browse computer and mathematical jobs