Post job

Information security analyst jobs in Des Moines, IA

- 55 jobs
All
Information Security Analyst
Securities Analyst
Information Technology Analyst
Information Security Engineer
Information Security Director
Senior Information Security Engineer
Security Engineer
  • Information Security Compliance Analyst

    ITA Group, Inc. 4.5company rating

    Information security analyst job in West Des Moines, IA

    The Information Security Compliance Analyst plays a pivotal role in safeguarding the organization's information assets by leading compliance initiatives, managing vendor and client security assessments, and supporting incident response efforts. This position ensures alignment with industry standards such as ISO27001, SOC 2, PCI DSS, and GDPR, while maintaining robust governance frameworks and security policies. The analyst collaborates cross-functionally to enhance security operations, drive continuous improvement, and uphold regulatory compliance across ITA Group's systems and third-party relationships. ACCOUNTABILITIES & PERFORMANCE EXPECTATIONS Security Operations & Compliance Lead client and vendor security assessments, including third-party reviews, risk assessments, and questionnaire responses. Build and manage workflows for vendor assessments and due diligence. Oversee compliance audits (SOC2, PCI, ISO27001, TruSight), including evidence collection and process optimization. Support the Information Systems Incident Response Team (ISIRT) during security events. Assist in developing requirements for security tools and operational procedures. Evaluate and recommend emerging security technologies and products. Provide off-hours support on a rotating and as-needed basis. Coordinate with external suppliers to resolve security incidents. Systems & Tools Management Administer and monitor various security tools to ensure optimal performance and coverage. Audit & Incident Management Conduct quarterly audits of systems in scope for compliance. Maintain incident logs and ensure readiness for ISO27001 certification. Investigate and remediate Microsoft Security alerts. Compliance Certifications Collaborate with Legal to support privacy regulations and ensure compliance with GDPR and other frameworks. Governance Management Develop and implement Data Loss Prevention (DLP) rules for sensitive document handling. Enhance Insider Threat Protection capabilities. Maintain and update InfoSec policies and procedures. Provide organization-wide coaching and mentorship on security policies. Ensure regulatory and compliance requirements are consistently met. Establish and maintain a security framework and auditing process. Manage security questionnaires and third-party data security risk assessments. Analyze and investigate security anomalies using platform reports, logs, and alerts. POSITION REQUIREMENTS Bachelor's degree in computer science, information technology, or equivalent experience. Five-to-eight years experience in information technology support with at least five years of experience in system administration and system design. Security certification such as CISSP, CISA, or CISM are required. Technical certifications in Cisco and Microsoft products is preferred. Excellent communication and documentation skills. Strong experience with ISO27001, SOC 2, PCI DSS 4.x, GDPR, and other regulatory frameworks and privacy regulations. Ability to demonstrate ownership of systems and drive the technology forward to the goals of the company. Direct involvement in the annual planning and budgeting process for Information Technology. Strong communication skills and the ability to interact with other systems personnel in a team environment. Ability to maintain confidentiality pertaining to nonpublic business, financial, personnel, salary, and technological information, plans or data. Ability to think analytically to solve technical problems individually and in a team environment. Ability to effectively plan, schedule and coordinate projects and meet deadlines, managing multiple project concurrently. Ability to analyze and communicate technology performance results. Specific experience working with our current primary technology and software preferred. Ability to listen, understand and respond to external and internal customers' needs in a timely manner; customer service experience in a service-related industry preferred. Ability to work the time necessary to complete projects and/or meet deadlines. ABOUT ITA GROUP ITA Group is an employee-owned engagement and loyalty company that provides data-driven solutions designed to uniquely motivate and inspire our clients' employees, channel partners and customers. Creating engaging employee experiences is at the heart of what we do and who we are, and we continuously evaluate our team member benefits to ensure our team members are cared for. We offer an array of competitive benefits, including healthy retirement contributions, health, dental and vision insurance, paid parental leave, flexible work arrangements, Volunteer Time Off, paid sabbaticals, anniversary awards and more! Come join our team, recently recognized by several top organizations as a Great Place to Work.
    $76k-111k yearly est. 4d ago
  • Security Analyst - IT

    Baker Group 3.9company rating

    Information security analyst job in Ankeny, IA

    PURPOSE The Security Analyst - IT is responsible for designing, implementing and maintaining the security systems that safeguard the organization's data. This role plays a critical role in protecting the company from cyber threats by monitoring security environments, identifying vulnerabilities, responding to incidents and ensuring compliance with established security standards and best practices. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. Defend Baker Group systems against unauthorized access, modification and/or destruction Perform vulnerability/networking scanning assessments and monitor network traffic for unusual activity Configure/support security tools (firewalls, anti-malware software, patch management systems, etc.) Implement and maintain network security policies, application security, access control and corporate data safeguards Analyze, establish and maintain security requirements for Baker Group networks Train team members on security awareness and procedures Conduct both internal and external security audits and make policy recommendations Provide technical security advice Analyzing security breaches to identify the root cause Continuously update Baker Group's incident response and disaster recovery plans Verify third-party vendor security and collaborate with them to meet security requirements Assist with tier 2 and 3 level support tickets as needed MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Bachelor's degree in computer science or related field, or equivalent relevant experience required Minimum of two years' experience in information security or related field Experience with computer network penetration testing and techniques Strong knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts CERTIFICATES, LICENSES, REGISTRATIONS CompTIA Security+, preferred CISSP-Certified Information Systems Security Professional, preferred MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Demonstrated ability to identify and mitigate network vulnerabilities, along with the capacity to clearly explain prevention strategies Skilled in timely patch deployment with a clear understanding of associated business impacts Excellent verbal and written communication skills Ability to multi-task while remaining thorough and detail-oriented Strong problem-solving skills Passion for technology and strong desire to work with new technologies ENVIRONMENTAL ADAPTABILITY Prolonged periods of sitting at a desk and working on a computer Must be able to lift 10 pounds occasionally May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs EQUIPMENT/TOOLS Laptop computer Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
    $72k-106k yearly est. Auto-Apply 16d ago
  • Security Engineer

    Meta 4.8company rating

    Information security analyst job in Des Moines, IA

    Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. To apply, click "Apply to Job" online on this web page. **Required Skills:** Security Engineer Responsibilities: 1. Build tools that enable connectivity to our infrastructure only from Meta owned and managed devices. 2. Build machine attestation and secure certificate storage solutions to enable strong client trust. 3. Deploy systems that help mitigate security risks by understanding and controlling what software is allowed to execute on our client devices. 4. Develop, validate, and enforce our client security policies. 5. Build and deploy tools and automation that proactively detect and respond to security risks and threats to internal corporate services. 6. Advise and collaborate with other teams. 7. Telecommuting from anywhere in the U.S. allowed. **Minimum Qualifications:** Minimum Qualifications: 8. Requires Bachelor's Degree (or foreign equivalent) in Computer Science, Engineering or a related field and 1 year of experience in the job offered or a computer-related occupation 9. Requires 12 months of experience involving the following: 10. PHP, Golang, Python, C/C++, Rush, or Ruby 11. Designing and deploying security infrastructure such as PKI, key management, and certificate management 12. Endpoint Security & Management 13. Certificate Lifecycle 14. Devices & OS hardening and security policies 15. Identity & Access Management (Authentication & Authorization, SSO) 16. Network Security and 17. Programming and Code Review **Public Compensation:** $178,041/year to $200,200/year + bonus + equity + benefits **Industry:** Internet **Equal Opportunity:** Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment. Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
    $178k-200.2k yearly 35d ago
  • Associate Information Security Director

    Direct Staffing

    Information security analyst job in Johnston, IA

    Johnston Exp 2-5 years Degree Bachelors Relo Bonus Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement. As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations. What You'll Do Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will: • Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company. • Act as the single point to accountability and delivery for President, General Counsel and IT Director. • Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets. • Develop and implement information security strategy, assuring alignment with the GSEC security strategy. • Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services. • Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders. • Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed. • Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls. • Participate in the strategic planning and budgeting processes. • Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance. • Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services. • Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures. • Partner with Supply Management and Legal organizations to review vendor contracts and suppliers. • Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees. • Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures. • Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc. Qualifications We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require: • 8+ years of direct information security experience within the finance and banking industry. • Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function. • Certified Information Systems Security Professional (CISSP) certification. • Project management skills; financial / budget management, scheduling and resource management. • Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences. • High degree of initiative and dependability. • High level of personal integrity, and the ability to professionally handle confidential matters. • Good understanding of risk management methodologies and implementation in an IT organization. • Proven ability to manage to financial goals, both in own area, and in support of a larger entity. • Proven ability to build strong teams; recruit top talent and develop colleagues at all levels. • Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done. • Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat. • Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications. • Collaborative mindset, with ability to achieve creative, win-win solutions. A strong candidate will also have: • Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans. • Strong interest in and proven track record with challenging assignments. • Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc. • Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc. • Additional certifications such as CISA, CISM, CRISC, CPP, CFE. What You'll Get At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package. Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile? The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability. Additional Information All your information will be kept confidential according to EEO guidelines. Direct Staffing Inc
    $101k-152k yearly est. 11h ago
  • Security Analyst

    Arete Technologies 4.5company rating

    Information security analyst job in Des Moines, IA

    Arete Technologies, Inc. offers set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with focus on providing paramount and unsurpassed services combined with cost saving solutions to the clients We understand the business requirements in the present day corporate scenario and aspire to provide world-class services enabling the organization to burgeon and flourish while keeping the work-life balance intact. The Global delivery mechanism followed at Arete Technologies, Inc. saddles proficient schemas and unconventional channels to provide one-stop solutions for all your workforce needs. our Team is an exquisite amalgamation of vast experiences of over 30 years in IT Consulting and Staffing industry. Connoisseurs in the field of staff augmentation for IT, we operate on 24 by 7 model with an aim of providing affordable and adept professionals with an assurance of satisfaction for both Consultants and Clients. We are pre-eminent service providers in the field of staff augmentation, IT Consultancy, Software development, Web Development providing unexcelled services and focusing on both the employers and employees. Job Description Description: Knowledge and understanding of information risk concepts and principles, as a means of relating business, needs to security controls. Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans. Proficiency in performing risk, business impact, control and vulnerability assessments. Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts. Technical knowledge of Microsoft Windows and a wide range of security technologies, such as network security appliances, identity and access mgt tools Desired skills: Good Qualities: SafeNet Luna HSM administration COOP/COG coordinator Windows PKI administration Network Forensics Log parsing Incident Response Continuous Monitoring Powershell Scripting HID Credential Management System administration Varonis DatAdvantage, DatAlert, and DataPrivilege administration Vormetric DSM administration - file level encryption product OSINT - Open Source Intelligence gathering and analysis End User security training program administration Maldoc analysis Qualifications ***Local Candidate Strongly preferred*** Additional Information Best Regards, Amrit Lal
    $59k-85k yearly est. 11h ago
  • Application Security Analyst

    Fidelity & Guaranty Life 4.5company rating

    Information security analyst job in Des Moines, IA

    FGL Holdings-the F&G family of insurance companies-is committed to helping Americans prepare for and live comfortably in their retirement. Through its subsidiaries, F&G is a leading provider of annuity and life insurance products. For nearly 60 years, we have offered annuity and life insurance products to those who are seeking safety, protection and income solutions to meet their needs. At F&G, we believe our culture is what makes our company great. In 2019, we received a Top Workplace award, which we credit to our employees' shared cultural values: Collaborative, Authentic, Dynamic and Empowered. We believe that by embracing these values, we will continue to build and strengthen the company, while being a great place to work. We recruit talented and committed individuals to join our team, and we provide opportunities for personal and professional growth. This is for a position as an Application Security Analyst on the IT Security and Risk team. Organization The Application Security Analyst helps improve and maintain the application security program by providing guidance pertaining to secure web development design and testing. The resource will partner with Business Systems, Solutions Delivery, Engineering, and Operations teams to educate, evangelize, and validate secure development practices. Duties and Responsibilities Primarily responsible for application security assessments and code review as part of the software development lifecycle (SDLC) Develop, educate, promote, and monitor the use of secure software development practices Work with developers to implement and refine security checkpoints in the SDLC Obtain and review all required artifacts as part of go, no go analyses at security checkpoint phases in the development cycle Continue to drive security evaluation earlier in the cycles through iterative security testing Develop secure coding standards that are based on industry-accepted best practices such as OWASP Guide, SANS CWE Top 25, or CERT Secure Coding to address common coding vulnerabilities Provide regular status reports on the security of the software within the organization Manage the application security scanning process, including analysis, communication and remediation verification Implement and Govern automated secure coding tools and processes (SAST, DAST) to review code as it is written, promoted through the development lifecycle, and into production Provide advisory services in secure coding practices to application development teams Perform security activities, including security design reviews, threat modeling, code auditing on internally& externally developed software Operate as incident responder for triage pertaining to web-based vulnerabilities Work with information security analysts to refine web application penetration testing methods and breadth of security services Assist with periodic security risk assessments, IT security audits, and management reporting Help Build, maintain, and enforce application security development policies, procedures & standards Experience and Education Requirements · Bachelor's degree in Computer Science, Information Systems, Engineering, Mathematics, Business, or 5 years IT experience · Minimum of 3 years of experience with commonly used programming tools, workflows, and concepts · Security training or education a plus (Ex: SANS/GIAC, ISC2, ISACA, EC-Council, Offensive Security, etc.) Preferred Skills and Abilities · Ability to read and understand code as well as ability to script · A strong understanding of Unix, Windows and network security skills · Possess excellent verbal and written communication skills and are able to navigate in an environment with both highly technical and highly nontechnical individuals · Have passion for technology, security and innovation · Familiarity with commonly used programming tools, workflows, and concepts · Ability to work independently and in a team-oriented, collaborative environment · Ability to conform to shifting priorities, demands, and timelines through analytical and problem-solving capabilities · Ability to remain flexible during times of change and react to project adjustments and alterations promptly, efficiently and positively · Must be able to learn, understand and apply new technologies · Ability to effectively prioritize and execute tasks Physical Demands and Work Environment Typical office environment #INDHP #LI-JS1
    $78k-103k yearly est. Auto-Apply 60d+ ago
  • Senior Information Security Engineer

    Heartland Business Systems 4.1company rating

    Information security analyst job in West Des Moines, IA

    This role will provide security Incident Response (IR) services for our customers. IR activities would include all aspects of analysis, containment, eradication, and recovery, and would entail actions such as log reviews, malware analysis, evidence collection, and other forensic activities that are part of a cybersecurity incident investigation. This role will also advise on and deploy security technical solutions as well as perform internal and external oriented security assessments. These assessments range from deep technical security assessments, social engineering, broad-based risk, and security posture assessments. These assessments and services may be performed as individual projects or in a virtual Security Engineer (vSE) role. Additionally, this role will work with the Practice Manager - Digital Forensics & Incident Response to identify and develop new technical cybersecurity offerings. Roles and Responsibilities/ Essential Functions: Work as a member of the HBS Cybersecurity team that provides consultative and proactive security related support to Heartland's account base. Lead Incident Response cases from beginning to end, providing consulting and remediation efforts. Perform forensic analysis to identify systems artifacts which can be used as evidence of the “who, what, when, where, and how” during cybersecurity incident response activities or digital investigations. Serve as a Virtual Security Engineer (vSE) for customers. Obtain knowledge on other technologies, as directed by customer demand. Effectively present and explain security solutions to customers. Provide sales consultants and fellow Engineers with design assistance, review, validation, and optimization of security technologies and solutions. Contribute to product selection and research, configuration standards and best practices and educate our sales teams on these products and services so that they can sell them. Ability to work in a team atmosphere as both a leader and contributor, as assigned. Always maintaining a professional and respectful demeanor. Cross-training/Mentoring of other HBS employees. Participate in on-call to support the 24x7 IR services. Minimum of 1,350 hours billed per fiscal year prorated based on start date. These charge hour requirements will be balanced against professional development and on the job training. Requirements Competencies Accountability - Ability to accept responsibility and account for his/her actions. Active Listening - Ability to actively attend to, convey, and understand the questions of others. Adaptability - Ability to adapt to change in the workplace. Communication - Oral and Written - Ability to communicate effectively with others. Customer Oriented - Ability to take care of the customers' needs while following company policy. Decision Making - Ability to make critical decisions while following company procedures. Problem Solving - Ability to find a solution for or to deal proactively with work-related problems. Working Under Pressure - Ability to complete assigned tasks during stressful situations. Independence - Ability to work on your own to drive the desired results on assigned work. Required Experience: 8+ years of related IT experience 3+ years of AD and Azure experience Preferred Experience: 2+ years of experience handling and leading IR Experience with Digital Forensic handling and analysis Experience with Threat Hunting and analysis Experience with Active Directory specifically domain recovery Experience with Configuration on various firewall vendors and VPN Experience with Office 365 and Exchange Experience with Virtualization concepts and technologies (VMWare, Hyper-V) Experience with Data Center Operations (Networking, SAN/NAS, Servers) Required Skills, Education and/ or Certifications: Bachelor's degree or equivalent experience Preferred Skills, Education and/ or Certifications: CEH and/or CHFI or current industry standard certifications in areas of security expertise Equal Opportunity Employer - Including Disabled and Veterans #HBS
    $96k-124k yearly est. 30d ago
  • IT Analyst IV / Software Engineer

    Collabera 4.5company rating

    Information security analyst job in Johnston, IA

    At Collabera, we recognize that our client satisfaction depends in large part on our resource satisfaction, so we make meeting your career needs a top priority. We provide a high-touch, supportive environment that enables you to grow and challenge yourself while maintaining work-life balance. Choose from a wide range of exciting opportunities from our diverse Fortune 500 client base. Job Description Description Provides application development and support to partner in the planning, delivery and/or support of business processes utilizing information technology and business practices for strategic business units Work is of medium to high complexity and moderate to high in risk Has expanded contact with responsibility to varied and multiple departments and functional operations, and actively participates in strategic business relationships Serves as a key team member which may include being on multiple teams and/or team lead Participates in the review and formation of processes May plan work and schedules for others for project related works Impact of decision-making is medium to high risk and impact Serves as a consultant or expert and actively shares knowledge across workgroups Applies information analyses to optimize the integration of major strategic business processes Designs and implements complex changes impacting several processes with minimal direction Primarily performs as an individual contributor, but may supervise a small work team (6 or fewer members) Qualifications Requirements: Experience in the design, development, testing and integration of applications of high complexity within a Java development environment Experience with developing and designing applications interacting with relational databases of high complexity Strong analytical skills Demonstrated work experience in a team environment Experience in Agile work environment Experience developing unit tests and other test automation Proven experience with the following: SOAP, JavaScript, Spring, DB2 and/or Oracle, Hibernate, Ajax, Maven, jUnit, Restful Web-Services Additional Information All your information will be kept confidential according to EEO guidelines.
    $69k-94k yearly est. 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in Des Moines, IA

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills. **Responsibilities:** + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Experience with scripting languages (e.g., PowerShell, Python) for automation and integration. + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Understanding of DevOps practices. + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. + Adaptability to stay ahead of evolving IAM technologies and security threats. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 29d ago
  • Information Security Engineer / Analyst

    Mindlance 4.6company rating

    Information security analyst job in Johnston, IA

    Mindlance is a national recruiting company which partners with many of the leading employers in IT, financial services, engineering, semiconductor, clinical and pharmaceutical domains. You can learn more about us at ***************** . Job Description · 3-7 years of experience in Information Security focusing on security solution design, engineering, implementation and assurance. · 3-5 years of experience defining and managing the implementation of controls to address access security and IT control requirements. · 3-5 years of experience working with Information Security and IT general controls, including experience defining and documenting controls using COBIT 4.1 or 5.0, the NIST Cybersecurity Framework, the ISO 27k framework, the SANS 20 critical controls or similar experience. · Deep understanding of Information Security technologies including firewalls, IDS/IPS, Password Vaults, CASBs, SIEM, IT GRC, DLP, etc. · Understanding of the regulatory environment and experience with regulators. · Comfort delivering tasks and assignments in an evolving and a maturing environment. · Application security experience and corresponding technologies (e.g. Jenkins). · Experience with the FFIEC Cyber Security Assessment Tool. · Applicable certifications (e.g. CISSP, CISA, CISM, CGEIT, CRISC). Additional Information All your information will be kept confidential according to EEO guidelines.
    $64k-81k yearly est. 11h ago
  • Manufacturing IT Analyst

    Emerson 4.5company rating

    Information security analyst job in Marshalltown, IA

    If you are a passionate IT Analyst looking for an opportunity to grow, Emerson has an exciting opportunity for you! Manufacturer of large custom-designed control valves, you will work in a dynamic and high-tech production facility performing a variety of technical, and analytical duties in the operation of enterprise, client/server and desktop computer systems, networks, and mobile devices. This includes analysis in the areas of user and system requirements, application implementation and maintenance, computer system and server support, mobile device support, basic network design and maintenance, and database administration. **In This Role, Your Responsibilities Will Be:** + Analysis technical areas of user and system requirements. This involves the implementation of solutions to areas that could use improvement, which may include working with other teams to do so. + Application implementation and maintenance, including various 3rd party applications as well as unique applications developed in-house, often involving the connections between different manufacturing machines and computers. + Desktop and laptop support at both the hardware and software level, including custom purpose-built desktop workstations. This also includes the support of tablets and barcode scanners. + Server support including performance analysis and application maintenance for both physical and virtual environments. Also includes oversight of access security to servers and network folders. + Oversees active directory administration including processing requests to create or modify user and computer accounts, as well as management of security groups relevant to the local area. + Handles procurement of computer systems, accessories, and electronics such as TVs and audio equipment through conventional means and also through the Oracle iProcurement interface. Also works with vendors for procurement and licensing of various software used throughout the production environment. + Mobile device support including contract negotiations with various vendors, procurement and setup of mobile devices and accessories, and technical support for local mobile device users. + Network maintenance including assisting with the implementation of network changes and the maintenance and overseeing of various subnets. + Production of effective project and technical documentation. + Supports Safety culture **Who You Are:** You quickly and decisively take actions in fact-changing, unpredictable situations. You convert ideas into actions and produce results with new initiatives. You provide timely and helpful information to individuals across the organization. You scan the environment for new technical skills, knowledge, or capabilities that can benefit business or personal performance. **For This Role, You Will Need:** + 2-year Associate's Degree and 3 years professional experience is required OR in the absence of a degree 5 years of experience is required. + Ability to analyze and resolve hardware, software, and application problems. + Procurement, implementation and maintenance of enterprise, distributed, client/server, and desktop computer systems. + Understanding of the principles and practices for producing effective project and technical documentation. + High-level knowledge and experience in the Microsoft Office software suite and online functionality. + Install/Configure Apple and Android mobile operating systems. **Preferred Qualifications that Set You Apart** + Bachelor's Degree in an IT related field. + Experience working in a manufacturing environment + Basic understanding of Oracle, SQL, VBA, Active Directory, Java, and general software licensing practices. + Excellent written and verbal communication skills, phone skills, planning and prioritizing skills. + Organizational and time management skills to accommodate changing workload and multiple priorities. + Must be a self-motivator and have the initiative to work independently. + Must have great interpersonal skills to maintain a good working relationship with all personnel. + Must be able and willing to be available most nights and weekends in case of an emergency. **Our Culture & Commitment to You:** At Emerson, we prioritize a workplace where every employee is valued, respected, and empowered to grow. We foster an environment that encourages innovation, collaboration, and diverse perspectives-because we know that great ideas come from great teams. Our commitment to ongoing career development and growing an inclusive culture ensures you have the support to thrive. Whether through mentorship, training, or leadership opportunities, we invest in your success so you can make a lasting impact. We believe diverse teams, working together are key to driving growth and delivering business results. We recognize the importance of employee wellbeing. We prioritize providing flexible, competitive benefits plans to meet you and your family's physical, mental, financial, and social needs. We provide a variety of medical insurance plans, with dental and vision coverage, Employee Assistance Program, 401(k), tuition reimbursement, employee resource groups, recognition, and much more. Our culture offers flexible time off plans, including paid parental leave (maternal and paternal), vacation and holiday leave. **WHY EMERSON** **Our Commitment to Our People** At Emerson, we are motivated by a spirit of collaboration that helps our diverse, multicultural teams across the world drive innovation that makes the world healthier, safer, smarter, and more sustainable. And we want you to join us in our bold aspiration. We have built an engaged community of inquisitive, dedicated people who thrive knowing they are welcomed, trusted, celebrated, and empowered to solve the world's most complex problems - for our customers, our communities, and the planet. You'll contribute to this vital work while further developing your skills through our award-winning employee development programs. We are a proud corporate citizen in every city where we operate and are committed to our people, our communities, and the world at large. We take this responsibility seriously and strive to make a positive impact through every endeavor. At Emerson, you'll see firsthand that our people are at the center of everything we do. So, let's go. Let's think differently. Learn, collaborate, and grow. Seek opportunity. Push boundaries. Be empowered to make things better. Speed up to break through. Let's go, together. **Work Authorization** Emerson will only employ those who are legally authorized to work in the United States. This is not a position for which sponsorship will be provided. Individuals with temporary visas such as E, F-1(including those with OPT or CPT) , H-1, H-2, L-1, B, J or TN, or who need sponsorship for work authorization now or in the future, are not eligible for hire. **Equal Opportunity Employer** Emerson is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, age, marital status, political affiliation, sexual orientation, gender identity, genetic information, disability or protected veteran status. We are committed to providing a workplace free of any discrimination or harassment. **Accessibility Assistance or Accommodation** If you have a disability and are having difficulty accessing or using this website to apply for a position, please contact: idisability.administrator@emerson.com . **ABOUT EMERSON** Emerson is a global leader in automation technology and software. Through our deep domain expertise and legacy of flawless execution, Emerson helps customers in critical industries like life sciences, energy, power and renewables, chemical and advanced factory automation operate more sustainably while improving productivity, energy security and reliability. With global operations and a comprehensive portfolio of software and technology, we are helping companies implement digital transformation to measurably improve their operations, conserve valuable resources and enhance their safety. We offer equitable opportunities, celebrate diversity, and embrace challenges with confidence that, together, we can make an impact across a broad spectrum of countries and industries. Whether you're an established professional looking for a career change, an undergraduate student exploring possibilities, or a recent graduate with an advanced degree, you'll find your chance to make a difference with Emerson. Join our team - let's go! **No calls or agencies please.** **Requisition ID** : 25029070 Emerson is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, age, marital status, political affiliation, sexual orientation, gender identity, genetic information, disability or protected veteran status. We are committed to providing a workplace free of any discrimination or harassment.
    $62k-80k yearly est. 18d ago
  • Security Analyst - IT

    Baker Group 3.9company rating

    Information security analyst job in Ankeny, IA

    Job Description PURPOSE The Security Analyst - IT is responsible for designing, implementing and maintaining the security systems that safeguard the organization's data. This role plays a critical role in protecting the company from cyber threats by monitoring security environments, identifying vulnerabilities, responding to incidents and ensuring compliance with established security standards and best practices. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. Defend Baker Group systems against unauthorized access, modification and/or destruction Perform vulnerability/networking scanning assessments and monitor network traffic for unusual activity Configure/support security tools (firewalls, anti-malware software, patch management systems, etc.) Implement and maintain network security policies, application security, access control and corporate data safeguards Analyze, establish and maintain security requirements for Baker Group networks Train team members on security awareness and procedures Conduct both internal and external security audits and make policy recommendations Provide technical security advice Analyzing security breaches to identify the root cause Continuously update Baker Group's incident response and disaster recovery plans Verify third-party vendor security and collaborate with them to meet security requirements Assist with tier 2 and 3 level support tickets as needed MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Bachelor's degree in computer science or related field, or equivalent relevant experience required Minimum of two years' experience in information security or related field Experience with computer network penetration testing and techniques Strong knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts CERTIFICATES, LICENSES, REGISTRATIONS CompTIA Security+, preferred CISSP-Certified Information Systems Security Professional, preferred MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Demonstrated ability to identify and mitigate network vulnerabilities, along with the capacity to clearly explain prevention strategies Skilled in timely patch deployment with a clear understanding of associated business impacts Excellent verbal and written communication skills Ability to multi-task while remaining thorough and detail-oriented Strong problem-solving skills Passion for technology and strong desire to work with new technologies ENVIRONMENTAL ADAPTABILITY Prolonged periods of sitting at a desk and working on a computer Must be able to lift 10 pounds occasionally May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs EQUIPMENT/TOOLS Laptop computer Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
    $72k-106k yearly est. 16d ago
  • Information Security Compliance Analyst

    ITA Group Inc. 4.5company rating

    Information security analyst job in West Des Moines, IA

    Job Description The Information Security Compliance Analyst plays a pivotal role in safeguarding the organization's information assets by leading compliance initiatives, managing vendor and client security assessments, and supporting incident response efforts. This position ensures alignment with industry standards such as ISO27001, SOC 2, PCI DSS, and GDPR, while maintaining robust governance frameworks and security policies. The analyst collaborates cross-functionally to enhance security operations, drive continuous improvement, and uphold regulatory compliance across ITA Group's systems and third-party relationships. ACCOUNTABILITIES & PERFORMANCE EXPECTATIONS Security Operations & Compliance Lead client and vendor security assessments, including third-party reviews, risk assessments, and questionnaire responses. Build and manage workflows for vendor assessments and due diligence. Oversee compliance audits (SOC2, PCI, ISO27001, TruSight), including evidence collection and process optimization. Support the Information Systems Incident Response Team (ISIRT) during security events. Assist in developing requirements for security tools and operational procedures. Evaluate and recommend emerging security technologies and products. Provide off-hours support on a rotating and as-needed basis. Coordinate with external suppliers to resolve security incidents. Systems & Tools Management Administer and monitor various security tools to ensure optimal performance and coverage. Audit & Incident Management Conduct quarterly audits of systems in scope for compliance. Maintain incident logs and ensure readiness for ISO27001 certification. Investigate and remediate Microsoft Security alerts. Compliance Certifications Collaborate with Legal to support privacy regulations and ensure compliance with GDPR and other frameworks. Governance Management Develop and implement Data Loss Prevention (DLP) rules for sensitive document handling. Enhance Insider Threat Protection capabilities. Maintain and update InfoSec policies and procedures. Provide organization-wide coaching and mentorship on security policies. Ensure regulatory and compliance requirements are consistently met. Establish and maintain a security framework and auditing process. Manage security questionnaires and third-party data security risk assessments. Analyze and investigate security anomalies using platform reports, logs, and alerts. POSITION REQUIREMENTS Bachelor's degree in computer science, information technology, or equivalent experience. Eight or more years' experience in information technology support with at least five years of experience in system administration and system design. Security certification such as CISSP, CISA, or CISM are required. Technical certifications in Cisco and Microsoft products is preferred. Excellent communication and documentation skills. Strong experience with ISO27001, SOC 2, PCI DSS 4.x, GDPR, and other regulatory frameworks and privacy regulations. Ability to demonstrate ownership of systems and drive the technology forward to the goals of the company. Direct involvement in the annual planning and budgeting process for Information Technology. Strong communication skills and the ability to interact with other systems personnel in a team environment. Ability to maintain confidentiality pertaining to nonpublic business, financial, personnel, salary, and technological information, plans or data. Ability to think analytically to solve technical problems individually and in a team environment. Ability to effectively plan, schedule and coordinate projects and meet deadlines, managing multiple project concurrently. Ability to analyze and communicate technology performance results. Specific experience working with our current primary technology and software preferred. Ability to listen, understand and respond to external and internal customers' needs in a timely manner; customer service experience in a service-related industry preferred. Ability to work the time necessary to complete projects and/or meet deadlines.
    $76k-111k yearly est. 25d ago
  • Associate Information Security Director

    Direct Staffing

    Information security analyst job in Johnston, IA

    Johnston Exp 2-5 years Degree Bachelors Relo Bonus Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement. As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations. What You'll Do Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will: • Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company. • Act as the single point to accountability and delivery for President, General Counsel and IT Director. • Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets. • Develop and implement information security strategy, assuring alignment with the GSEC security strategy. • Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services. • Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders. • Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed. • Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls. • Participate in the strategic planning and budgeting processes. • Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance. • Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services. • Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures. • Partner with Supply Management and Legal organizations to review vendor contracts and suppliers. • Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees. • Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures. • Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc. Qualifications We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require: • 8+ years of direct information security experience within the finance and banking industry. • Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function. • Certified Information Systems Security Professional (CISSP) certification. • Project management skills; financial / budget management, scheduling and resource management. • Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences. • High degree of initiative and dependability. • High level of personal integrity, and the ability to professionally handle confidential matters. • Good understanding of risk management methodologies and implementation in an IT organization. • Proven ability to manage to financial goals, both in own area, and in support of a larger entity. • Proven ability to build strong teams; recruit top talent and develop colleagues at all levels. • Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done. • Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat. • Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications. • Collaborative mindset, with ability to achieve creative, win-win solutions. A strong candidate will also have: • Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans. • Strong interest in and proven track record with challenging assignments. • Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc. • Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc. • Additional certifications such as CISA, CISM, CRISC, CPP, CFE. What You'll Get At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package. Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile? The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability. Additional Information All your information will be kept confidential according to EEO guidelines. Direct Staffing Inc
    $101k-152k yearly est. 60d+ ago
  • Security Analyst

    Arete Technologies 4.5company rating

    Information security analyst job in Des Moines, IA

    Arete Technologies, Inc. offers set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with focus on providing paramount and unsurpassed services combined with cost saving solutions to the clients We understand the business requirements in the present day corporate scenario and aspire to provide world-class services enabling the organization to burgeon and flourish while keeping the work-life balance intact. The Global delivery mechanism followed at Arete Technologies, Inc. saddles proficient schemas and unconventional channels to provide one-stop solutions for all your workforce needs. our Team is an exquisite amalgamation of vast experiences of over 30 years in IT Consulting and Staffing industry. Connoisseurs in the field of staff augmentation for IT, we operate on 24 by 7 model with an aim of providing affordable and adept professionals with an assurance of satisfaction for both Consultants and Clients. We are pre-eminent service providers in the field of staff augmentation, IT Consultancy, Software development, Web Development providing unexcelled services and focusing on both the employers and employees. Job Description Description: The security analyst is responsible for advising IPERS in all policies regarding security. -Knowledge and understanding of information risk concepts and principles, as a means of relating business, needs to security controls. -Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans. -Proficiency in performing risk, business impact, control and vulnerability assessments. -Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts. -Technical knowledge of Microsoft Windows and a wide range of security technologies, such as network security appliances, identity, and access mgt tools Desired skills: -Good Qualities: -SafeNet Luna HSM administration -COOP/COG coordinator -Windows PKI administration -Network Forensics -Log parsing -Incident Response -Continuous Monitoring - Powershel l Scripting -HID Credential Management System administration -Varonis DatAdvantage, DatAlert, and DataPrivilege administration -Vormetric DSM administration - file level encryption product -OSINT - Open Source Intelligence gathering and analysis -End User security training program administration -Maldoc analysis Skill Required / Desired Amount Years of Experience -Manage vulnerability scans and assist administrators in verification and remediation with Tripwire IP360 -Proxy administration, configuration, and troubleshooting; Forcepoint Triton AP Web -SIEM configuration, management, and analysis; SolarWinds Log and Event Manager -Application Whitelisting administration; Carbon Black Enterprise Protection (formerly bit 9) -Windows Forensics and Investigations -Internal Policies compliance -Risk Management -Familiarity with implementing CIS Critical Security Controls and/or Australian Signals Directorate Essential Eight Qualifications Need local candidates Additional Information Best Regards, Paramjot Singh
    $59k-85k yearly est. 11h ago
  • IT Security Analyst

    Collabera 4.5company rating

    Information security analyst job in Johnston, IA

    Established in 1991, Collabera has been a leader in IT staffing for over 22 years and is one of the largest diversity IT staffing firms in the industry. As a half a billion dollar IT company, with more than 9,000 professionals across 30+ offices, Collabera offers comprehensive, cost-effective IT staffing & IT Services. We provide services to Fortune 500 and mid-size companies to meet their talent needs with high quality IT resources through Staff Augmentation, Global Talent Management, Value Added Services through CLASS (Competency Leveraged Advanced Staffing & Solutions) Permanent Placement Services and Vendor Management Programs. Collabera recognizes true potential of human capital and provides people the right opportunities for growth and professional excellence. Collabera offers a full range of benefits to its employees including paid vacations, holidays, personal days, Medical, Dental and Vision insurance, 401K retirement savings plan, Life Insurance, Disability Insurance. Job Description Duties: Administers user credentials. Coordinates and administers daily activities regarding overall maintenance of RACF, Network, User-ID, user groups, etc. to assure security integrity. Understands and applies current Information Technology (IT) security policies to ensure adherence to standards established by Corporate Computer security. Understands and applies knowledge of security system parameters and tables utilized within existing security tools and various applications. Follows routine techniques and processes to resolve administrative issues. Uses analytical skills to resolve low to medium level security issues. Participates in various roles as a team member. Occasionally participates on multiple teams. Assumes proportionate share of responsibility for an effective team and understands good teaming concepts. Takes part in projects directly related to existing processes and tools. Follows processes and actively looks for ways to improve the process. Performs some decision making when requests fall outside of the normal processes. Works on tasks and projects that are low to medium risk and of low to moderate complexity in nature, and where most errors are resolved by documented processes. Qualifications 3 - 4 years of information technology experience required Knowledge of roles, objects, and user profiles within SAP. Knowledge of SAP FICO or related financial background is desired. An understanding of computer security principles and the ability to independently use that knowledge Overall knowledge of SAP security policies and general knowledge of computer security. Need sharp candidates that can get up to speed with minimal training Additional Information To know more on this position or to schedule an interview please contact; Reginald Cubangbang (314) -815-5415
    $69k-94k yearly est. 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in Des Moines, IA

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding. **Responsibilities:** + **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture. + **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders. + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 29d ago
  • Manufacturing IT Analyst

    Emerson 4.5company rating

    Information security analyst job in Marshalltown, IA

    If you are a passionate IT Analyst looking for an opportunity to grow, Emerson has an exciting opportunity for you! Manufacturer of large custom-designed control valves, you will work in a dynamic and high-tech production facility performing a variety of technical, and analytical duties in the operation of enterprise, client/server and desktop computer systems, networks, and mobile devices. This includes analysis in the areas of user and system requirements, application implementation and maintenance, computer system and server support, mobile device support, basic network design and maintenance, and database administration. In This Role, Your Responsibilities Will Be: Analysis technical areas of user and system requirements. This involves the implementation of solutions to areas that could use improvement, which may include working with other teams to do so. Application implementation and maintenance, including various 3rd party applications as well as unique applications developed in-house, often involving the connections between different manufacturing machines and computers. Desktop and laptop support at both the hardware and software level, including custom purpose-built desktop workstations. This also includes the support of tablets and barcode scanners. Server support including performance analysis and application maintenance for both physical and virtual environments. Also includes oversight of access security to servers and network folders. Oversees active directory administration including processing requests to create or modify user and computer accounts, as well as management of security groups relevant to the local area. Handles procurement of computer systems, accessories, and electronics such as TVs and audio equipment through conventional means and also through the Oracle iProcurement interface. Also works with vendors for procurement and licensing of various software used throughout the production environment. Mobile device support including contract negotiations with various vendors, procurement and setup of mobile devices and accessories, and technical support for local mobile device users. Network maintenance including assisting with the implementation of network changes and the maintenance and overseeing of various subnets. Production of effective project and technical documentation. Supports Safety culture Who You Are: You quickly and decisively take actions in fact-changing, unpredictable situations. You convert ideas into actions and produce results with new initiatives. You provide timely and helpful information to individuals across the organization. You scan the environment for new technical skills, knowledge, or capabilities that can benefit business or personal performance. For This Role, You Will Need: 2-year Associate's Degree and 3 years professional experience is required OR in the absence of a degree 5 years of experience is required. Ability to analyze and resolve hardware, software, and application problems. Procurement, implementation and maintenance of enterprise, distributed, client/server, and desktop computer systems. Understanding of the principles and practices for producing effective project and technical documentation. High-level knowledge and experience in the Microsoft Office software suite and online functionality. Install/Configure Apple and Android mobile operating systems. Preferred Qualifications that Set You Apart Bachelor's Degree in an IT related field. Experience working in a manufacturing environment Basic understanding of Oracle, SQL, VBA, Active Directory, Java, and general software licensing practices. Excellent written and verbal communication skills, phone skills, planning and prioritizing skills. Organizational and time management skills to accommodate changing workload and multiple priorities. Must be a self-motivator and have the initiative to work independently. Must have great interpersonal skills to maintain a good working relationship with all personnel. Must be able and willing to be available most nights and weekends in case of an emergency. Our Culture & Commitment to You: At Emerson, we prioritize a workplace where every employee is valued, respected, and empowered to grow. We foster an environment that encourages innovation, collaboration, and diverse perspectives-because we know that great ideas come from great teams. Our commitment to ongoing career development and growing an inclusive culture ensures you have the support to thrive. Whether through mentorship, training, or leadership opportunities, we invest in your success so you can make a lasting impact. We believe diverse teams, working together are key to driving growth and delivering business results. We recognize the importance of employee wellbeing. We prioritize providing flexible, competitive benefits plans to meet you and your family's physical, mental, financial, and social needs. We provide a variety of medical insurance plans, with dental and vision coverage, Employee Assistance Program, 401(k), tuition reimbursement, employee resource groups, recognition, and much more. Our culture offers flexible time off plans, including paid parental leave (maternal and paternal), vacation and holiday leave.
    $62k-80k yearly est. Auto-Apply 18d ago
  • Security Analyst - IT

    Baker Group 3.9company rating

    Information security analyst job in Ankeny, IA

    PURPOSE The Security Analyst - IT is responsible for designing, implementing and maintaining the security systems that safeguard the organization's data. This role plays a critical role in protecting the company from cyber threats by monitoring security environments, identifying vulnerabilities, responding to incidents and ensuring compliance with established security standards and best practices. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. Defend Baker Group systems against unauthorized access, modification and/or destruction Perform vulnerability/networking scanning assessments and monitor network traffic for unusual activity Configure/support security tools (firewalls, anti-malware software, patch management systems, etc.) Implement and maintain network security policies, application security, access control and corporate data safeguards Analyze, establish and maintain security requirements for Baker Group networks Train team members on security awareness and procedures Conduct both internal and external security audits and make policy recommendations Provide technical security advice Analyzing security breaches to identify the root cause Continuously update Baker Group's incident response and disaster recovery plans Verify third-party vendor security and collaborate with them to meet security requirements Assist with tier 2 and 3 level support tickets as needed MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Bachelor's degree in computer science or related field, or equivalent relevant experience required Minimum of two years' experience in information security or related field Experience with computer network penetration testing and techniques Strong knowledge of firewalls, proxies, SIEM, antivirus, and IDPS concepts CERTIFICATES, LICENSES, REGISTRATIONS CompTIA Security+, preferred CISSP-Certified Information Systems Security Professional, preferred MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Demonstrated ability to identify and mitigate network vulnerabilities, along with the capacity to clearly explain prevention strategies Skilled in timely patch deployment with a clear understanding of associated business impacts Excellent verbal and written communication skills Ability to multi-task while remaining thorough and detail-oriented Strong problem-solving skills Passion for technology and strong desire to work with new technologies ENVIRONMENTAL ADAPTABILITY Prolonged periods of sitting at a desk and working on a computer Must be able to lift 10 pounds occasionally May have occasional visits to a job site which would require periods of standing, walking and/or climbing stairs EQUIPMENT/TOOLS Laptop computer Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
    $72k-106k yearly est. Auto-Apply 14d ago
  • Security Analyst

    Arete Technologies 4.5company rating

    Information security analyst job in Des Moines, IA

    Arete Technologies, Inc. offers set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with focus on providing paramount and unsurpassed services combined with cost saving solutions to the clients We understand the business requirements in the present day corporate scenario and aspire to provide world-class services enabling the organization to burgeon and flourish while keeping the work-life balance intact. The Global delivery mechanism followed at Arete Technologies, Inc. saddles proficient schemas and unconventional channels to provide one-stop solutions for all your workforce needs. our Team is an exquisite amalgamation of vast experiences of over 30 years in IT Consulting and Staffing industry. Connoisseurs in the field of staff augmentation for IT, we operate on 24 by 7 model with an aim of providing affordable and adept professionals with an assurance of satisfaction for both Consultants and Clients. We are pre-eminent service providers in the field of staff augmentation, IT Consultancy, Software development, Web Development providing unexcelled services and focusing on both the employers and employees. Job Description · The security analyst is responsible for advising IPERS in all policies regarding security. Knowledge and understanding of information risk concepts and principles, as a means of relating business needs to security controls. Knowledge of and experience in developing and documenting security architecture and plans, including strategic, tactical and project plans. Proficiency in performing risk, business impact, control and vulnerability assessments. Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts. Technical knowledge of Microsoft Windows and a wide range of security technologies, such as network security appliances, identity and access mgt tools Qualifications SafeNet Luna HSM administration COOP/COG coordinator Windows PKI administration Network Forensics Log parsing Incident Response Continuous Monitoring Power shell Scripting HID Credential Management System administration Varonis DatAdvantage, DatAlert, and DataPrivilege administration Vormetric DSM administration - file level encryption product OSINT - Open Source Intelligence gathering and analysis End User security training program administration Maldoc analysis Additional Information All your information will be kept confidential according to EEO guidelines.
    $59k-85k yearly est. 11h ago

Learn more about information security analyst jobs

How much does an information security analyst earn in Des Moines, IA?

The average information security analyst in Des Moines, IA earns between $57,000 and $109,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.

Average information security analyst salary in Des Moines, IA

$79,000

What are the biggest employers of Information Security Analysts in Des Moines, IA?

The biggest employers of Information Security Analysts in Des Moines, IA are:
  1. The Baker Group
  2. ITA Group
Job type you want
Full Time
Part Time
Internship
Temporary