Information security analyst jobs in Mack, OH - 55 jobs
All
Information Security Analyst
Information Technology Analyst
Information Security Engineer
Information Systems Security Manager
Security Engineer
Information Security Manager
Information Security Officer
Senior Security Engineer
Information Security Analyst
Belcan 4.6
Information security analyst job in Mason, OH
Job Title: InformationSecurityAnalyst
Zip Code: 45040
Duration: 6 months
Pay Rate: $33.33/hr.
Keyword's: #Masonjobs; #InformationSecurityAnalystjobs;
The IS Application SecurityAnalyst will support the execution, planning, and administration of the Vulnerability Management function within InformationSecurity (IS). The Vulnerability Management Analyst executes core processes in the vulnerability management program focused on vulnerability assessments, penetration testing and social engineering. Additionally, they will support the remediation of vulnerabilities resident within systems to minimize the organizations" potential attack surface for exploitation.
The Analyst will provide oversight, drive, facilitate and coordinate the management of vulnerabilities across the enterprise. The Analyst must understand underlying application code approaches in order to effectively review and respond to application security scans. While technical involvement is required, this role is not intended to perform direct remediation. The Analyst will support automated scans and may provide post-development testing assistance to validate that vulnerability remediation efforts are appropriately tested.
MAJOR DUTIES AND RESPONSIBILITIES
* Monitor and analyze vulnerability assessment data to identify and communicate technical risks to the organization
* Support the identification and impact classification for new vulnerabilities identified in the environment
* Execute and support vulnerability assessments, penetration testing and social engineering activities
* Provide the InformationSecurity and IT Security team information on the emerging cyber threat landscape, including threat actor tactics, techniques, and procedures
* Review and interpret application security scan results with an understanding of underlying code structures to provide effective feedback
* Provide post-development testing support to ensure vulnerability remediation items are validated and tested appropriately
* Facilitate vulnerability management processes by tracking and coordinating remediation efforts across multiple teams
* Ensure timely closure of security gaps by working with application, infrastructure, and operations teams
* Support IS in achieving the vision and strategic objectives of the vulnerability program
* Conduct analysis, aggregate and report on vulnerability data from various scanning tools and platforms
* Manage and utilize IS tools such as DLP, Code scanner, external security profile, etc. to analyze gaps in security controls
* Participate in the IT SDLC program to ensure that security is included in project by default and by design
* Develop strong working relationships with other departments and potentially clients across the organization to ensure a high degree of security compliance client satisfaction
* Assist with regulatory and compliance requirements, contributing to security audits, assessments, attestations, certifications and client vulnerability inquires
* Brief IS leadership on vulnerability assessment results and potential risks
* Support leadership to identify capability gaps in vulnerability management services
* Collaborate with cross-functional teams to improve security posture and embed security into existing IT and operational workflows
* Continue self-development of knowledge, skills and abilities to better support execution of the InformationSecurity (IS) function
BASIC QUALIFICATIONS
* Bachelor"s degree computer science, IT or equivalent
* 3+ years of experience in IT or IS or Compliance
* Experience with major standards such as: SOC 1-2, ISO 27001/2, PCI DSS, HITRUST, SANS, NIST
* Demonstrated experience in implementing compliance frameworks for financial services organization or organizations with similar informationsecurity needs and requirements
* Familiarity and understanding of broad range of IT hardware and software products
* Strong project management skills
* Excellent presentation, verbal communication, and written skills
* Excellent analytical and problem-solving skills
* Experience managing typical enterprise security and intrusion detection systems
* Ability to work in a collaborative environment across business and technology teams
* Ability to interpret application structures and code approaches at a high level in order to review and respond to scan results
PREFERRED QUALIFICATIONS
* Certified Information Systems Security Profession (CISSP), PCI DSS, Certified HIPAA Privacy Security Expert (CHPSE), Certified InformationSecurity manager (CISM), Global Information Assurance Certification (GIAC), or related.
* Experience or knowledge with healthcare or health insurance
* Knowledge of CMS and HIPAA related vendor requirements
* Working knowledge of Security SDLC tools
Belcan is an equal opportunity employer. Your application and candidacy will not be considered based on race, colour, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
$33.3 hourly 2d ago
Looking for a job?
Let Zippia find it for you.
Information Security Specialist: Governance & Compliance Engineer
United States Court of Appeals for The Sixth Circuit 4.3
Information security analyst job in Cincinnati, OH
The InformationSecurity Specialist works with the IT security team to ensure the security of court systems and serve as a security resource to courts within the Sixth Circuit for their governance and compliance program. The major responsibilities and duties include the following:
In coordination with the Circuit IT Security Officer (ITSO), respond to emergent threats, assist court units in the circuit, and track and report progress. Assist in identifying, prioritizing, and coordinating the protection of critical cyber infrastructure and key resources.
Provide guidance and assistance in implementing and maintaining business objectives (i.e. security scorecard, CIS controls, assessments, internal audit controls, security data calls).
Manage informationsecurity projects (or security-related aspects of other IT projects). Coordinate and lead IT staff and court users to identify, plan, and implement initiatives and projects. Prepare and present reports and training.
Develop and maintain a documentation template repository; modernize and maintain the circuit's data repository. Review and advise courts on documentation requirements.
Assist the Circuit ITSO in performing, analyzing, and archiving SWOT and other gap analyses to ensure compliance with required frameworks, controls, and assessment.
Manage CIS controls self-assessment too; provide guidance and assistance to courts on documentation, program management, etc.
Assist the Circuit ITSO in creating, tracking, and maintaining KPIs. Prepare scheduled data points and KPIs for use in reports to circuit-wide executives and other Judiciary stakeholders.
Research custom solutions for courts as needed.
Qualifications
Required: Four years of experience in informationsecurity systems. Experience with cybersecurity compliance programs. Strong communication and interpersonal skills; excellent customer service skills. Detailed, organized, and self-driven. Ability to work under pressure and within the constraints of conflicting deadlines. Proactive, problem-solving approach. Ability to respond effectively in critical situations. Ability to work independently and in a team environment. Ability to travel (25% - 50%).
Preferred: Bachelor's degree in computer science or related field. Related cybersecurity or IT project management certifications. Related experience in a court, government agency, or equivalent environment.
Total Rewards & Work/Life Balance
Compensation*: $87,791 - $142,732 (CL 29) (*Salary commensurate with qualifications)
Benefits: Employer subsidized health and life insurance plans. Dental and vision insurance plans. Flexible spending accounts for health care, dependent care, and commuter expenses. Eligibility for Public Service Loan Forgiveness Program and mass transit subsidies. On-site fitness center. Federal retirement entails a pension plan (FERS-FRAE) and employer-matching Thrift Savings Plan (similar to a 401K). Retirees may carry insurance plans into retirement while paying the same premiums as employees. Visit ********************************* to learn more about the Judiciary's competitive benefits.
Work/Life: Annual time off - 13 vacation days, 13 sick leave days, and 11 paid holidays. Vacation days increase to 20 days after three years and to 26 days after fifteen years. Hybrid telework schedule may be available.
Conditions of Employment
Travel for this position is required. The selected candidate is provisionally hired pending results of background investigation/check and fingerprinting. This position is subject to updated background investigations every five years. Applicants selected for an interview must complete the Optional Background Information section on the Judiciary's application. Employees are required to adhere to the
Judicial Code of Conduct for Judicial Employees
.
Electronic Fund Transfer for payroll direct deposit is required. Positions with the U.S. Courts are at-will, excepted service appointments, and may be terminated with or without cause by the Court. For citizenship requirements and additional information about careers in the Judiciary, visit ************************* The Court reserves the right to modify the conditions of this announcement, or to withdraw the announcement for any reason without notice.
How To Apply
Please submit a single PDF application packet, including (1) a cover letter addressing your qualifications and experience in relation to the job duties and how you learned of the position, (2) a current resume, to the Director of Human Resources via the Resume button on our online application system. Position is open until filled; preference given to applications received by January 5, 2026. Virtual interviews available.
The United States Court of Appeals for the Sixth Circuit is an equal opportunity employer. For a reasonable accommodation during the recruitment process, contact Human Resources at **************.
$87.8k-142.7k yearly Auto-Apply 40d ago
Vice President & Chief Information Security Officer (CISO)
Hillenbrand 4.8
Information security analyst job in Cincinnati, OH
Reports to: Chief Information Officer (CIO) Company: Global Industrial Manufacturing ($3B Revenue) Team: 12 global employees (USA, Germany, India) Budget: $3M Opex
The Vice President & Chief InformationSecurity Officer (CISO) is the senior-most leader responsible for the global InformationSecurity program. This role sets the strategy, establishes governance, oversees execution of technical and operational controls, and ensures the protection of the company's data, systems, and digital assets across a complex global manufacturing environment.
The CISO leads a distributed team across the U.S., Germany, and India, and partners closely with IT, Legal, Compliance, and business leadership to manage cyber risk, secure new technologies, and meet regulatory and customer expectations. This role presents quarterly to the Audit Committee and Executive Management Team on cybersecurity posture, risks, and key initiatives.
Key Responsibilities
Strategic Leadership & Governance
Develop and execute the global informationsecurity strategy aligned to business objectives and risk appetite.
Provide quarterly cybersecurity updates to the Audit Committee and Executive Management Team.
Establish security governance, policies, and standards consistent with leading frameworks (NIST CSF, ISO 27001, CIS).
Oversee enterprise risk assessments and maintain a risk-based roadmap for continuous improvement.
Security Operations & Technical Controls
Lead the design, implementation, and management of all security technologies and controls including endpoint protection, identity & access management, SIEM/SOC operations, cloud security, vulnerability management, and network security.
Ensure proactive monitoring, rapid detection, and response to security incidents across global operations.
Oversee business continuity and disaster recovery security components in partnership with Infrastructure and Applications teams.
Security Architecture & New Technology Reviews
Embed security-by-design into IT and business projects, including cloud, ERP, operational technology (OT), and Industry 4.0 initiatives.
Conduct architectural reviews and threat modeling for new technologies and digital transformation efforts.
Compliance, Privacy & Legal Collaboration
Partner closely with Legal to ensure compliance with global data privacy laws, including GDPR, CCPA, and emerging regulations.
Oversee data protection practices, records retention security considerations, and reporting obligations related to data privacy incidents.
Third-Party & Customer Security
Lead the global third-party risk management program, including supplier assessments and ongoing monitoring.
Respond to and manage customer security inquiries, audits, and contractual security requirements.
Drive vendor governance for security tools, MSSP partnerships, and other outsourced services.
Team Leadership & Budget Management
Lead a global InformationSecurity team of 12 across the U.S., Germany, and India.
Manage a $3M annual operating budget, ensuring cost-effective investments in technology, services, and capabilities.
Mentor, develop, and scale the team to support global manufacturing operations and business growth.
Qualifications
Required
10+ years of progressive experience in InformationSecurity leadership roles.
Minimum 3 years as a CISO or a deputy/second-in-command security leader in a larger enterprise.
Deep expertise in security operations, architecture, governance, risk, compliance, and incident response.
Strong working knowledge of NIST CSF, ISO 27001, CIS Controls, and modern cybersecurity technologies.
Experience in global environments and working with distributed teams.
Demonstrated ability to present complex cybersecurity topics to Audit Committees and senior executives.
Experience managing multimillion-dollar security budgets.
Strong understanding of GDPR, CCPA, and global privacy regulations.
Preferred
Experience in industrial manufacturing or OT/ICS security environments.
Certifications such as CISSP, CISM, CISA, CCSP, or similar.
Familiarity with ERP environments, cloud security (Azure/AWS), and M&A cybersecurity integration.
Experience working with India-based operations or offshore security teams.
Personal Attributes
Executive presence and strong communication skills.
Business-oriented mindset with the ability to translate technical issues into business risk.
Proven ability to drive process discipline, build governance, and mature a security program.
Collaborative leadership style with strong partnership skills across IT, Legal, and business units. #LI-SC1
Who we are:
Hillenbrand (NYSE: HI) is a global industrial company that provides highly-engineered, mission-critical processing equipment and solutions to customers in over 100 countries around the world. Our portfolio is composed of leading industrial brands that serve large, attractive end markets, including durable plastics, food, and recycling. Guided by our Purpose - Shape What Matters For Tomorrow™ - we pursue excellence, collaboration, and innovation to consistently shape solutions that best serve our associates, customers, communities, and other stakeholders. To learn more, visit: ********************
EEO: The policy of Hillenbrand Inc. is to extend opportunities to qualified applicants and employees on an equal basis regardless of an individual's age, race, color, sex, religion, national origin, disability, sexual orientation, gender identity/expression or veteran status. Additionally, Hillenbrand Inc. and our operating companies are committed to being an Equal Employment Opportunity (EEO) Employer and offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us @recruitingaccommodations@hillenbrand.com . In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying. At Hillenbrand, everyone is welcome to apply and "Shape What Matters for Tomorrow".
$98k-125k yearly est. Auto-Apply 25d ago
Information Security Analyst (On-Site Position)
Danis Construction
Information security analyst job in Cincinnati, OH
IS ON-SITE AT OUR CINCINNATI, OHIO OFFICE **
At Danis, we don't just build projects-we build trust. Since 1916, our reputation has been defined by integrity, innovation, and a relentless commitment to delivering exceptional results. We approach every challenge with a problem-solving mindset, combining precision, creativity, and collaboration to bring our clients' visions to life.
We know that our people are the foundation of our success. That's why we invest heavily in their growth. Through Danis University, employees have access to more than 45 specialized training programs designed to support continuous learning and career advancement. Join us and become part of a team that values your expertise, supports work-life balance, and empowers you to thrive professionally.
One of the ways we protect that success is through a strong cybersecurity foundation-led by dedicated professionals who stay ahead of emerging threats. As an InformationSecurityAnalyst, you'll serve as a key defender of our digital environment. Your mission: safeguard sensitive data, neutralize threats, and ensure we stay a step ahead of cyber risks. You'll monitor, investigate, and respond to security events while shaping our company's cybersecurity roadmap. This is a collaborative role, working closely with IT and departments across the organization to elevate our security posture and build a culture of cyber resilience. This position reports to the CIO.
Why Join Danis?
Make an Impact: Lead healthcare projects that support medical professionals and improve patient care. Your work will have a lasting, positive effect on communities.
Competitive Compensation: Enjoy annual merit increases and bonuses.
Comprehensive Benefits: Health and dental insurance for you and your family, as well as life insurance, disability coverage, and supplemental insurance options.
Secure Your Future: 401K plan and profit-sharing opportunities.
Work-Life Balance: Generous PTO and vacation time, because we value your time outside of work.
Give Back: Participate in our “Constructing Hope” program to contribute to meaningful community outreach projects.
Career Development: Access 45+ training programs through Danis University to enhance your skills and grow your career.
What You'll Bring
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
3+ years of hands-on experience in cybersecurity or a related discipline.
Working knowledge of security frameworks (e.g., NIST, ISO 27001).
Proficiency with security tools (e.g., SIEM, EDR, vulnerability scanners).
Strong analytical and investigative mindset.
Clear, confident communication and collaboration skills.
Experience managing cross-functional projects and navigating complex security challenges.
Responsibilities
Your Impact:
Strategic Leadership
Help shape and enforce cybersecurity policies, procedures, and standards grounded in industry best practices.
Lead the development and execution of our cybersecurity roadmap-including threat detection, incident response, and endpoint security initiatives.
Governance, Risk, & Compliance
Conduct routine risk assessments and internal audits to identify vulnerabilities and gaps.
Ensure regulatory compliance (e.g., NIST, Ohio Data Protection Act).
Maintain and test incident response plans; brief leadership on cybersecurity risks and metrics.
Training & Awareness
Drive cybersecurity awareness through engaging education initiatives.
Oversee new hire onboarding for required cyber training.
Facilitate tabletop exercises to simulate and prepare for real-world scenarios.
Threat Detection & Response
Continuously monitor systems for suspicious activity or breaches.
Respond swiftly to security incidents and ensure thorough documentation.
Engage in proactive threat hunting and analysis to detect emerging risks.
Vulnerability & Risk Management
Lead regular system assessments and vulnerability scans.
Ensure robust network segmentation, firewall health, and secure backups.
Security Architecture & Tools
Oversee the deployment and management of critical security tools.
Integrate cybersecurity solutions into enterprise infrastructure in collaboration with IT.
Evaluate and enhance our security technology stack.
Collaboration & Communication
Build trusted partnerships across IT and the broader organization to strengthen security culture.
Support business continuity and disaster recovery planning with department leads.
Manage vendor risk and ensure third-party compliance with internal standards.
Preferred Skills
Familiarity with enterprise systems and platforms (e.g., ERP, CRM).
Deep expertise in endpoint protection, network monitoring, and DLP tools.
Calm, strategic approach to crisis management.
Qualifications Working Environment:
Onsite Role: This position is based fully onsite, allowing for close collaboration with IT peers and business units. Being embedded within the organization supports real-time incident response and hands-on access to systems and infrastructure.
Team-Oriented Culture: You'll be part of a collaborative and supportive IT team that values knowledge sharing, proactive problem-solving, and continuous improvement.
Security-First Mindset: You'll work in an environment where cybersecurity is a top priority, supported by leadership and embraced across departments.
Dynamic and Evolving: The role operates in a fast-paced environment where adaptability is essential. You'll encounter evolving threats, shifting technologies, and the need to respond quickly and effectively.
Professional Development: Ongoing learning is encouraged through access to training, certifications, and internal resources that support your growth in cybersecurity.
Modern Tools & Infrastructure: You'll work with enterprise-grade security tools and platforms and have opportunities to recommend and implement improvements to our technology stack.
EEO Statement
Danis is an Equal Opportunity Employer. Danis does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit and business need.
Please, no agency calls. Unsolicited resumes from agencies will be considered property of Danis, with no obligation for fees.
#LI-ONSITE
$70k-99k yearly est. Auto-Apply 60d+ ago
Computer & Information Security Analyst 2
Vets Hired
Information security analyst job in Cincinnati, OH
This position will primarily be responsible for monitoring and analyzing security alerts using our SecurityInformation and Event Management (SIEM) platform, conducting regular vulnerability assessments and configuration compliance scans, managing email security measures, and providing technical support for various cybersecurity tools as needed.
Responsibilities
Monitor and analyze security alerts using the SIEM system and other specialized monitoring tools.
Triage and investigate potential cybersecurity incidents, prioritizing threats based on severity and potential impact on the system.
Conduct a thorough investigation of security violations and incidents, collaborating with other team members and/or escalating to manager as necessary.
Conduct regular vulnerability assessments and configuration compliance scans across internal and external networks.
Collaborate with cross-functional IT teams on vulnerability remediation efforts and address configuration baseline deviations, ensuring timely resolution and improved security posture.
Monitor and analyze email security systems, including user-reported phishing attempts. Perform appropriate investigation and remediation actions as necessary.
Identify and develop ways to improve the efficiency of security, network, and application log monitoring.
Provide technical and end-user support for cybersecurity tools as needed.
Qualifications
Bachelors degree in technology-related field and 2-4 years of job-related experience. An equivalent combination of education and experience requiring similar knowledge, skills, abilities, and performing duties as described may be substituted for the minimum requirements.
Experience conducting vulnerability scanning and assessments using tools like Nessus Professional and Qualys.
Familiarity with cybersecurity frameworks and standards, such as National Institute of Standards and Technology (NIST) SP 800-53, NIST SP 800-171, and NIST cybersecurity framework is preferred.
Experience with configuration baselines such as Center for Internet Security (CIS) Benchmarks and Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGS) is preferred.
Fundamental networking knowledge, such as TCP/IP and common protocols (HTTP, HTTPS, FTP, SSH, DNS, etc.).
Fundamental understanding of firewalls, intrusion detection/prevention systems (IDS/IPS), data loss prevention (DLP), endpoint antivirus, and email security.
Ability to read and interpret various system and security logs, such as Windows Event Logs, firewall logs, antivirus logs, email security/filtering logs, and IDS/IPS logs is required.
Basic knowledge of SIEM systems such as LogRhythm, QRadar, Splunk, ELK stack, etc.
Must have good verbal and written communication skills.
Must be able to clearly document findings, incidents, and procedures.
Must be able to pass a National Agency Check with Inquiries (NACI/Tier 1) background check.
Working Place: Cincinnati, Ohio, United States Company : ORAU- Oct 29th Virtual Fair
$70k-99k yearly est. 60d+ ago
Information Security Analyst I - Cincinnati, OH
Whitedog Cyber
Information security analyst job in Cincinnati, OH
WhiteDog is seeking an InformationSecurityAnalyst to join our Security Operations Center team. The Analyst will help coordinate and report on cyber incidents impacting SOC-as-a-Service customers. This position involves critical duties and responsibilities that must continue to be performed during crisis situations and contingency operations, which may necessitate extended hours of work.
Onsite Location: Cincinnati, OH (no remote available)
Employment Type: Full-Time, hourly
Compensation: $22-$28/hour
Key Responsibilities:
Responsible for working in a 24x7 Security Operation Center (SOC) in person. (Hours - 7:00pm-7:00am PST)
Provide analysis and trending of security log data from a large number of heterogeneous security devices.
Provide Incident Response (IR) support when analysis confirms actionable incident.
Provide threat and vulnerability analysis as well as security advisory services.
Analyze and respond to previously undisclosed software and hardware vulnerabilities.
Investigate, document, and report on informationsecurity issues and emerging trends.
Integrate and share information with other analysts and other teams.
Ability to work and be available for on-call activities
Other duties as assigned.
Experience and Skills:
Experience in security device management and SIEM.
Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix.
Knowledge of applications, databases, middleware to address security threats against the same.
Knowledge of various security methodologies and processes, and technical security solutions (firewall and intrusion detection systems).
Knowledge of TCP/IP Protocols, network analysis, and network/security applications.
Knowledge of common Internet protocols and applications.
Ability to multi-task, prioritize, and manage time effectively.
Strong attention to detail.
Excellent interpersonal skills and professional demeanor.
Excellent verbal and written communication skills.
Excellent customer service skills.
Proficient in Microsoft Office Applications.
Qualifications:
The successful candidate will possess the personality traits, work habits, communication, and social skills necessary to work effectively within a dynamic and highly operational environment. This person will have exemplary personal and professional integrity and demonstrate strong interpersonal skills. In addition, the qualified candidate will have a strong desire to succeed in a nationally and internationally recognized operational environment.
Bachelor's or Master's degree in a related field or equivalent demonstrated experience and knowledge.
You must be a US Citizen
1-3 years' experience as a Security/Network Administrator or equivalent knowledge.
Security Essentials Certification (GSEC)
Certified Intrusion Analyst (GCIA)
Certified Incident Handler (GCIH)
Certified Ethical Hacker (CEH)
Certified Penetration Tester (CWAPT)
CompTIA Network+
CompTIA Security+
Benefits:
WhiteDog offers a competitive compensation plan with great earning potential. Our benefits include medical coverage, dental coverage, disability, life insurance, 401K and an amazing work environment!
We are an Equal Opportunity Employer. All qualified applicants receive consideration for employment without regard to race, ethnicity, religious affiliation, gender, gender identity or expression, sexual orientation, national origin, or disability status. EOE AA M/ F/Vet/Disabled
$22-28 hourly Auto-Apply 60d+ ago
Manager, Information Security
Medpace 4.5
Information security analyst job in Cincinnati, OH
The Manager of IT Security is a strategic leader responsible for safeguarding the organization's information assets and infrastructure. This individual will develop, implement, and manage a comprehensive cybersecurity program, ensuring compliance with industry standards and regulations. They will lead a team of security professionals, oversee vulnerability assessments and incident response, and drive continuous improvement in the organization's security posture. You will be joining an amazing organization where your contribution will have a significant impact in protecting Medpace and our Sponsors!
Responsibilities
* Plan, direct and manage the day-to-day operations of the IT Security department including the Security Operations Center (SOC);
* Develop, maintain, and enforce IT security procedures and policies that are effective and efficient in protecting Medpace computer systems & data and are consistent with regulatory requirements;
* Keep IT leadership informed by preparing security posture reports; identifying areas/process improvement opportunities; communicating security trends and risks;
* Safeguards information system assets by identifying and solving potential and actual security problems;
* Recognize problems by identifying abnormalities; reporting violations; manage IT Security incidents to closure;
* Experience managing a 24/7 Security Operations Center (SOC);
* Protect systems by defining access privileges, control structures, and resources;
* Work across IT to upgrade systems by implementing and maintaining security controls;
* Collaborate with Functional Areas/business units across the company to ensure IT Security best practices are understood and followed;
* Oversee the hiring, training, evaluation, and retention of associates; and
* Conduct IT Security policy training and ensure employees are working in compliance with SOPs and Good Clinical Practice guidelines.
Qualifications
* Bachelor's degree in informationsecurity, cybersecurity, information technology or related discipline;
* 5+ years of InformationSecurity experience, 1+ years of management or leadership experience;
* Advanced certifications such as SANS GIAC/GCIA/GCIH, CISSP or CASP and/or SIEM-specific training and certification preferred;
* Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements;
* Hands-on experience analyzing high volumes of logs, network data (e.g. Netflow, FPC), and other attack artifacts in support of incident investigations;
* In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Microsoft Sentinel);
* Extensive experience in all Microsoft related products including operating systems, Active Directory, Azure, Remote Server and Desktop Access, SQL Server, Office 365, Teams and SharePoint;
* Experience with Perimeter Security systems and software (e.g., Firewalls, Intrusion Protection Systems, VPN); and
* Excellent management, leadership. communication, presentation, organization and positive influencing skills.
Medpace Overview
Medpace is a full-service clinical contract research organization (CRO). We provide Phase I-IV clinical development services to the biotechnology, pharmaceutical and medical device industries. Our mission is to accelerate the global development of safe and effective medical therapeutics through its scientific and disciplined approach. We leverage local regulatory and therapeutic expertise across all major areas including oncology, cardiology, metabolic disease, endocrinology, central nervous system, anti-viral and anti-infective. Headquartered in Cincinnati, Ohio, employing more than 5,000 people across 40+ countries.
Why Medpace?
People. Purpose. Passion. Make a Difference Tomorrow. Join Us Today.
The work we've done over the past 30+ years has positively impacted the lives of countless patients and families who face hundreds of diseases across all key therapeutic areas. The work we do today will improve the lives of people living with illness and disease in the future.
Cincinnati Perks
* Cincinnati Campus Overview
* Flexible work environment
* Competitive PTO packages, starting at 20+ days
* Competitive compensation and benefits package
* Company-sponsored employee appreciation events
* Employee health and wellness initiatives
* Community involvement with local nonprofit organizations
* Discounts on local sports games, fitness gyms and attractions
* Modern, ecofriendly campus with an on-site fitness center
* Structured career paths with opportunities for professional growth
* Discounted tuition for UC online programs
Awards
* Named a Top Workplace in 2024 by The Cincinnati Enquirer
* Recognized by Forbes as one of America's Most Successful Midsize Companies in 2021, 2022, 2023 and 2024
* Continually recognized with CRO Leadership Awards from Life Science Leader magazine based on expertise, quality, capabilities, reliability, and compatibility
What to Expect Next
A Medpace team member will review your qualifications and, if interested, you will be contacted with details for next steps.
$93k-128k yearly est. Auto-Apply 3d ago
Job Title: Information Security Engineer - Vulnerability Management III
Hudson Manpower
Information security analyst job in Cincinnati, OH
TOP SKILLS:
Must Have
Brinq
Excellent communication and presentation skills, and a proven background of presenting to senior leaders, large groups, etc. on relevant matters pertaining to large projects and impacting key functionality.
Lead and Implementation Experience
Performing referral to principle
proven consistent experience in vulnerability management, security engineering, security consulting etc
Proven experience with proactive threat management, research, escalation, discovery etc.
Security
Solid understanding of popular security tooling and understanding of security architecture/interconnectedness of processes and tooling.
Nice To Have
CISSP, CISA, CISM, AWS Solutions Architect certifications
GRC/audit management experience
Scripting/automation experience - python preferred
Solid proven experience with tooling such as Qualys, Brinqa, Archer, ServiceNOW, Checkmarx, Prisma (and any AWS experience is great as well)
What You'll Do
Responsible for performing all functions required to support day-to-day data security operations and accountable for security and networking infrastructure component availability and integrity, monitoring compliance with IT security policy, and coordinating investigation and reporting of security incidents.
Primary Responsibilities:
Define, deliver, and support enterprise security tools and architecture in collaboration with other teams.
Enhance the Bank's network vulnerability management program for in-scope subsidiaries and affiliates.
Define security environments and lead the implementation and onboarding of new applications, programs, processes, projects, and initiatives into the Enterprise Vulnerability Management Program.
Communicate, escalate, support, and guide the resolution of open vulnerabilities, including infrastructure, application security, and configuration management vulnerabilities.
Conduct security research on threats and remediation techniques/technology, make recommendations to IS/IT teams, and oversee their implementation.
Proactively monitor and investigate security alerts from managed security service providers and in-house security tools.
Conduct risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications, and systems.
Support ad hoc requests for reporting and control evidence, as needed.
Perform threat analysis and incident response by interpreting events.
Support the Bank's operational informationsecurity responsibilities, including developing and maintaining standards, procedures, and guidelines for the Enterprise Vulnerability Management Program.
Share knowledge and industry best practices with team members.
Serve as a security engineer/consultant on projects.
What You'll Get
Competitive base salary
Medical, dental, and vision insurance coverage
Optional life and disability insurance provided
401(k) with a company match and optional profit sharing
Paid vacation time
Paid Bench time
Training allowance offering
You'll be eligible to earn referral bonuses!
All done!
Your application has been successfully submitted!
Other jobs
$69k-93k yearly est. 60d+ ago
IT Analyst
Par Excellence 3.7
Information security analyst job in Cincinnati, OH
A leading provider of supply chain solutions to the healthcare industry seeks experienced candidates for the position of IT Analyst.
The IT Analyst is responsible for providing exceptional service to both internal and external stakeholders through clear communication, execution, and documentation. They will be tasked with facilitating technical implementations, integrating a variety of software systems with customers, and providing Tier 2 troubleshooting support. This position may also include SQL database queries and other related information technology tasks.
Duties and Responsibilities
Serve as the technical subject matter expert, partnering with the Project Management team and customers throughout implementation.
Manage and report on technical progress for assigned projects.
Provide technical assistance for new and modified integrations, including post go-live support.
Collaborate with hospital IT teams (virtually) to install and configure TrackCore software products.
Map customer data files to interface specifications and validate data extracts.
Guide hospital IT staff on data corrections and coordinate end-to-end integration testing.
Facilitate and support Active Directory, SAML, and Single Sign-On (SSO) integrations.
Troubleshoot and resolve Tier 2 software support tickets.
Participate in limited after-hours support rotation.
Required Knowledge, Skills and Abilities
Strong problem-solving ability and technical aptitude.
Self-motivated with the ability to work independently and manage multiple priorities.
Excellent customer service and communication skills (verbal and written).
High attention to detail and commitment to quality.
Strong organizational and project management skills.
Ability to facilitate effective meetings and collaborate across teams.
Ability to travel if needed (primarily for internal meetings or functions).
Preferred Knowledge, Skills and Abilities
HIS experience with a variety of systems (Workday, Infor, MEDITECH, EPIC, McKesson, etc.).
Experience with HL7, CSV, tab-delimited, SQL, RFID, software testing and support
Experience with Supply Chain or Healthcare environments.
Required Education, Credentials and Experience
3+ years in a Healthcare IT environment.
BS in Computer Science or related field or equivalent combination of education and relevant technical experience.
Prior experience providing software implementation or technical support in a professional environment.
Experience working directly with clients or end users in a technical capacity.
For these skills, PAR Excellence will offer a competitive salary along with a full benefits package including medical, dental, life insurance, company provided short term and long term disability, 401k with company match, paid vacations and holidays.
$76k-102k yearly est. Auto-Apply 38d ago
IT Infrastructure Analyst Job Details | Mattr
Mattr
Information security analyst job in Cincinnati, OH
Our IT Infrastructure Analyst will be required to configure and maintain various IT Infrastructure solutions for all locations within Mattr. The candidate will perform analysis and identify bottlenecks or other inefficiencies to ensure long term effectiveness and reliability of our physical IT hardware and virtual machines. They will be responsible for hardware/software maintenance and troubleshooting on a broad range of currently deployed hardware and applications, and at times will help to explore and evaluate new technologies and vendors. This is a versatile role, with some of the analyst's time dedicated to assisting our IT Operations Support team with desktop and end user peripherals. Serving as an escalation point to that team, strong interpersonal and written/verbal communication skills are also critical.
DUTIES:
* Day to Day Infrastructure Operations Support (maintain relevant systems, documentation, ticketing system)
* Afterhours / Weekend Escalations.
* Interface with customer and project teams.
* Assist in small to medium scale infrastructure projects.
* Receive and support escalations from IT Operations Support team.
* Adhere to company safety and security policies & procedures.
REQUIREMENTS:
* Minimum 3 to 5 years of related experience.
* Minimum 2+ years Public Cloud administration
* Minimum 3-5 years of experience working on an enterprise level operations team.
* IT Technical Course or Certificate - must.
* Holding a University Degree - preferred.
* Azure Certifications - preferred.
WHAT MATTR OFFERS
* At Mattr, safety comes first! We go the extra mile to ensure our employees are safe and healthy
* We understand times have changed and so have we. Mattr offers flexible work arrangements (where possible) to suit your needs
* Comprehensive total rewards package that includes competitive salaries, annual incentives, medical benefits, retirement savings plans, paid vacation days, education assistance programs, corporate discounts and more!
* Participation in service milestone awards and recognition opportunities
* Access to mental health support resources such as our Headversity mental health and wellness platform and free, confidential access to our Employee and Family Assistance Program (EFAP)
* Rewarding growth opportunities (may include global career and travel opportunities) supported by personalized training, development and mentoring programs - including LinkedIn Learning access for all employees!
* Commitment to providing a diverse, inclusive and accessible workplace environment
* We prioritize our Environment, Social and Governance (ESG) values and offer a paid Impact Day, allowing employees an opportunity to support charitable organizations in their communities
* Company events, social gatherings and team building activities that promote fun!
* We're working to create a better world. Join us!
Mattr delivers advanced material technologies and complex manufacturing expertise through brands offering engineered products, technology and solutions to support infrastructure projects & markets world-wide. Mattr brands: AmerCable, Shawflex, DSG-Canusa, Flexpipe and Xerxes.
At Mattr, we have built a true team environment where all employees are empowered to contribute to the success of the company. We want you to join our team!
#IND1
Nearest Major Market: Cincinnati
$70k-97k yearly est. 59d ago
IT Security Analyst
Globalchannelmanagement
Information security analyst job in Mason, OH
IT SecurityAnalyst needs 3+ years of experience in IT or IS or Compliance, health sector
IT SecurityAnalyst requires:
SOC 1-2, ISO 27001/2, PCI DSS, HITRUST, SANS, NIST
IT degree
Strong Project management
Familiarity and understanding of broad range of IT hardware and software products
Demonstrated experience in implementing compliance frameworks for financial services organization or organizations with similar informationsecurity needs and requirements
Certified Information Systems Security Profession (CISSP), PCI DSS, Certified HIPAA Privacy Security Expert (CHPSE), Certified InformationSecurity manager (CISM), Global Information Assurance Certification (GIAC), or related.
Experience or knowledge with healthcare or health insurance
Knowledge of CMS and HIPAA related vendor requirements
Working knowledge of Security SDLC tools
IT SecurityAnalyst duties:
Monitor and analyze vulnerability assessment data to identify and communicate technical risks to the organization
Support the identification and impact classification for new vulnerabilities identified in the environment Execute and support vulnerability assessments, penetration testing and social engineering activities
Provide the InformationSecurity and IT Security team information on the emerging cyber threat landscape, including threat actor tactics, techniques, and procedures
Review and interpret application security scan results with an understanding of underlying code structures to provide effective feedback
$70k-97k yearly est. 12d ago
Staff Product Security Engineer
6120-Janssen Scientific Affairs Legal Entity
Information security analyst job in Cincinnati, OH
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at *******************
Job Function:
R&D Product Development
Job Sub Function:
R&D Software/Systems Engineering
Job Category:
Scientific/Technology
All Job Posting Locations:
Cincinnati, Ohio, United States of America, Santa Clara, California, United States of America
:
About Surgery
Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.
Are you passionate about improving and expanding the possibilities of MedTech surgery? Ready to join a team that's reimagining how we heal? Our MedTech Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.
Your unique talents will help patients on their journey to wellness. Learn more at *******************/medtech.
We are searching for the best talent for a Staff Product Security Engineer position, to be located in Santa Clara, CA or Cincinnati, OH.
Job Description:
The Staff Product Security Engineer will be a key member of the Capital R&D organization, make vital contributions to the New Product Development (NPD) pipeline and transform patient care through innovation. They are accountable for leading our NPD teams and creating a strategy to implement cybersecurity into the design and development of product hardware and software for use in cutting edge medical devices and associated capital equipment
You will be responsible for:
Identify threats and vulnerabilities to patient safety and product integrity, assess current security controls and determine potential impact of a threat and the risk level associated with threat/vulnerability pairs.
Drive architecture, requirements, and design to ensure that decisions incorporate security considerations.
Advise embedded system security software to ensure system hardening and secure coding practices.
Support all stakeholders on patch management, vulnerability handling, and SBOM scanning
Document designs and specifications per design control processes and conform to Industry Standards for Medical Device Software (IEC 62304)
Qualifications / Requirements:
Education:
Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity or related degree
Experience and Skills
6+ years' experience (or 4+ with M.S.) establishing security architecture or implementing security solutions in consumer products or medical devices
3+ experience in a software engineering or software architectural role in a New Product Development (NPD) environment
Proven experience with threat modeling and risk assessments for connected products or medical devices
Ability to work autonomously and proactively seek out security opportunities within the different surgical robotics teams
Ability to think big picture and have attention to detail - aligning strategic objectives with tactical implementation.
Proven experience with electrical and embedded software design
Experience developing software for embedded Real-Time Operating Systems (RTOS)
Experience developing embedded software systems using Modern C++ (preferably standards 17+)
A results and performance driven demeanor with strong sense of accountability
Understanding of penetration testing, vulnerability scanning, and/or other general security testing principles
Preferred Skills & Experience:
Experience with FDA, data governance, and privacy standards (HIPAA, ISO 27001, UL 2900)
Work experience with Systems Engineering activities: requirements management and development, risk management, and verification
Strong collaboration, proven technical leadership capabilities, and conflict resolution skills
A security certification from an accredited body is preferred and may be considered in lieu of a portion of required years of experience
Experience working with secure boot, Trusted Platform Module (TPM), Data Distribution System (DDS), and QNX
Other Requirements:
Ability to travel up to 10% domestic US and Internationally
The anticipated base pay range for this position is $105,000- $169,050.
California Bay Area - The anticipated base pay range for this position is $141,000 - $227,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
This position is eligible to participate in the Company's long-term incentive program.
Employees are eligible for the following time off benefits:
Vacation - up to 120 hours per calendar year
Sick time - up to 40 hours per calendar year
Holiday pay, including Floating Holidays - up to 13 days per calendar year
Work, Personal and Family Time - up to 40 hours per calendar year
Additional information can be found through the link below.
For additional general information on Company benefits, please go to: - *********************************************
This job posting is anticipated to close on 7/22/25. The Company may however extend this time-period, in which case the posting will remain available on *************************** to accept additional applications.
Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, external applicants please contact us via
*******************/contact-us/careers
. internal employees contact AskGS to be directed to your accommodation resource.
#RADSW
#Li-Hybrid
Required Skills:
Product Security, Threat Modeling
Preferred Skills:
C++ STL, Embedded C++
$74k-102k yearly est. Auto-Apply 8d ago
Staff Product Security Engineer
8427-Janssen Cilag Manufacturing Legal Entity
Information security analyst job in Cincinnati, OH
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at *******************
Job Function:
R&D Product Development
Job Sub Function:
R&D Software/Systems Engineering
Job Category:
Scientific/Technology
All Job Posting Locations:
Cincinnati, Ohio, United States of America, Santa Clara, California, United States of America
:
About Surgery
Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.
Are you passionate about improving and expanding the possibilities of MedTech surgery? Ready to join a team that's reimagining how we heal? Our MedTech Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.
Your unique talents will help patients on their journey to wellness. Learn more at *******************/medtech.
We are searching for the best talent for a Staff Product Security Engineer position, to be located in Santa Clara, CA or Cincinnati, OH.
Job Description:
The Staff Product Security Engineer will be a key member of the Capital R&D organization, make vital contributions to the New Product Development (NPD) pipeline and transform patient care through innovation. They are accountable for leading our NPD teams and creating a strategy to implement cybersecurity into the design and development of product hardware and software for use in cutting edge medical devices and associated capital equipment
You will be responsible for:
Identify threats and vulnerabilities to patient safety and product integrity, assess current security controls and determine potential impact of a threat and the risk level associated with threat/vulnerability pairs.
Drive architecture, requirements, and design to ensure that decisions incorporate security considerations.
Advise embedded system security software to ensure system hardening and secure coding practices.
Support all stakeholders on patch management, vulnerability handling, and SBOM scanning
Document designs and specifications per design control processes and conform to Industry Standards for Medical Device Software (IEC 62304)
Qualifications / Requirements:
Education:
Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity or related degree
Experience and Skills
6+ years' experience (or 4+ with M.S.) establishing security architecture or implementing security solutions in consumer products or medical devices
3+ experience in a software engineering or software architectural role in a New Product Development (NPD) environment
Proven experience with threat modeling and risk assessments for connected products or medical devices
Ability to work autonomously and proactively seek out security opportunities within the different surgical robotics teams
Ability to think big picture and have attention to detail - aligning strategic objectives with tactical implementation.
Proven experience with electrical and embedded software design
Experience developing software for embedded Real-Time Operating Systems (RTOS)
Experience developing embedded software systems using Modern C++ (preferably standards 17+)
A results and performance driven demeanor with strong sense of accountability
Understanding of penetration testing, vulnerability scanning, and/or other general security testing principles
Preferred Skills & Experience:
Experience with FDA, data governance, and privacy standards (HIPAA, ISO 27001, UL 2900)
Work experience with Systems Engineering activities: requirements management and development, risk management, and verification
Strong collaboration, proven technical leadership capabilities, and conflict resolution skills
A security certification from an accredited body is preferred and may be considered in lieu of a portion of required years of experience
Experience working with secure boot, Trusted Platform Module (TPM), Data Distribution System (DDS), and QNX
Other Requirements:
Ability to travel up to 10% domestic US and Internationally
The anticipated base pay range for this position is $105,000- $169,050.
California Bay Area - The anticipated base pay range for this position is $141,000 - $227,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
This position is eligible to participate in the Company's long-term incentive program.
Employees are eligible for the following time off benefits:
Vacation - up to 120 hours per calendar year
Sick time - up to 40 hours per calendar year
Holiday pay, including Floating Holidays - up to 13 days per calendar year
Work, Personal and Family Time - up to 40 hours per calendar year
Additional information can be found through the link below.
For additional general information on Company benefits, please go to: - *********************************************
This job posting is anticipated to close on 7/22/25. The Company may however extend this time-period, in which case the posting will remain available on *************************** to accept additional applications.
Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, external applicants please contact us via
*******************/contact-us/careers
. internal employees contact AskGS to be directed to your accommodation resource.
#RADSW
#Li-Hybrid
Required Skills:
Product Security, Threat Modeling
Preferred Skills:
C++ STL, Embedded C++
$74k-102k yearly est. Auto-Apply 8d ago
Deputy Information System Security Manager (DISSM) | Sr. Manager - Risk & Compliance
GE Aerospace 4.8
Information security analyst job in Evendale, OH
GE Aerospace is seeking a people leader to serve as a Deputy Information System Security Manager (DISSM) supporting DoD programs. You will lead and develop a team of Information System Security Officers (ISSO)/Analysts, uphold Risk Management Framework (RMF) compliance principles in accordance with the Joint SAP Implementation Guide (JSIG), and drive customer-driven execution through lean fundamentals. You'll ensure the Confidentiality, Integrity, and Availability of various information systems by setting clear standard work and aligning priorities to program and operational readiness.
**Job Description**
**Job Title** Deputy Information System Security Manager (DISSM) | Sr. Manager, Risk & Compliance
**Company Intro/About GE Aerospace** GE Aerospace is a world-leading provider of jet engines, components, and integrated systems for commercial and military aircraft. We design, power, and support the future of flight through a relentless focus on safety, quality, delivery, and cost-backed by a culture of continuous improvement and respect for people.
**Site, Business, OR Functional Area Overview** This role is based in Evendale, OH and supports GE Aerospace defense programs operating under Department of Defense (DoD) requirements. You will partner closely with Program Security, IT, Engineering, Operations, and Quality to sustain mission readiness and audit-ready compliance across classified and unclassified environments.
**Role Overview** GE Aerospace is seeking a people leader to serve as a Deputy Information System Security Manager (DISSM). In this role, you will lead and develop Information System Security Officers (ISSOs)/Analysts, uphold Risk Management Framework (RMF) compliance aligned to JSIG and applicable DoD guidance, and drive customer-driven execution through lean fundamentals. You will ensure the confidentiality, integrity, and availability of information systems by establishing clear standard work, visual management, and priorities that align to program and operational readiness.
**Key Responsibilities**
+ People leadership and operations
+ Lead, coach, and develop a high-performing cyber compliance team; set clear goals, standard work, and development plans; conduct regular 1:1s and performance feedback.
+ Balance regulatory compliance with business needs; align workload and staffing across value streams to meet SQDC priorities.
+ Establish Daily and Visual Management for RMF status, POA&M burn-down, audit readiness, and incident response; run tiered huddles and remove roadblocks.
+ Standardize best practices for labs/test environments; validate and coach to JSIG/NISPOM/DoDM 5205.07 expectations.
+ Compliance and risk management
+ Own readiness and sustainment of RMF authorization and Continuous Monitoring (ConMon) across assigned boundaries/enclaves.
+ Review/approve core artifacts (e.g., SSP, SCTM, ConOps, POA&M, ConMon plans, SOPs).
+ Serve as liaison to SCA, ISOs, Sr. ISSM, IT, CPSOs, and ISSOs; provide transparent status and risk-based recommendations.
+ Validate hardware/software requests; enforce secure configurations, media handling, and cyber supply chain risk management.
+ Lead pre-assessments and corrective action plans to maintain inspection-ready posture and on-schedule RMF execution.
+ Security operations and improvement
+ Lead response for cyber incidents/data spills; coordinate containment, reporting, lessons learned, and corrective actions.
+ Identify control gaps and vulnerabilities across diverse technologies; implement risk-mitigating countermeasures.
+ Apply lean fundamentals (problem solving, standard work, action planning, flow/pull) to reduce waste and cycle time for accreditations and change approvals.
**Required Qualifications**
+ Active DoD IAM III certification (e.g., GSLC, CISSP, CISM) or ability to obtain within 6 months
+ Bachelor's degree from an accredited college or university (or HS Diploma/GED with 4 years' experience) + minimum 5 years relevant experience (military experience counts)
+ This position requires U.S. citizenship
+ This role requires the successful candidate to maintain a US Government Security Clearance; prerequisite for a security clearance is U.S. Citizenship. Preference will be given to candidates who currently hold US Government Security Clearance.
**Desired Characteristics**
+ Attention to detail and strong ownership mindset
+ Proven people leadership: coaching, performance management, team development
+ Strong communication and stakeholder management; able to align multiple functions
+ Demonstrated experience leading small to mid-sized security teams through RMF assessments and ConMon IAW DoD requirements
+ Effective problem solving and analytics; drives action plans to closure
+ Excellent time management and multi-project coordination
+ Familiarity with lean principles and daily management; ability to visualize work, track KPIs, and improve processes
+ Working knowledge of NISPOM, JSIG, ICD 503, and/or DAAPM
+ Possess a current US Government Security Clearance
**Additional Information**
Closing At GE Aerospace, we are committed to fostering an inclusive workplace that values diversity and empowers employees to thrive. This role requires access to U.S. export-controlled information. Therefore, for applicants who are not asylees, refugees, lawful permanent residents, or U.S. Citizens (i.e., not a protected individual under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3), otherwise known as a U.S. Person), final offers will be contingent on the ability to obtain authorization for access to U.S. export-controlled information from the U.S. Government.
_This role requires access to U.S. export-controlled information. Therefore, employment will be contingent upon the ability to prove that you meet the status of a U.S. Person as one of the following: U.S. lawful permanent resident, U.S. Citizen, have been granted asylee or refugee status (i.e., a protected individual under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3))._
**Additional Information**
GE Aerospace offers a great work environment, professional development, challenging careers, and competitive compensation. GE Aerospace is an Equal Opportunity Employer (****************************************************************************************** . Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE Aerospace will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
**Relocation Assistance Provided:** Yes
GE Aerospace is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
$83k-108k yearly est. 2d ago
IT Security Audit Analyst
Global Channel Management
Information security analyst job in Mason, OH
Global Channel Management is a technology company that specializes in various types of recruiting and staff augmentation. Our account managers and recruiters have over a decade of experience in various verticals. GCM understands the challenges companies face when it comes to the skills and experience needed to fill the void of the day to day function. Organizations need to reduce training and labor costs but at same requiring the best "talent " for the job.
Qualifications
SKILLS REQUIREMENTS:Sound written and oral
communication skills required Demonstrates strong leadership and project
management skills within a team environment Must be able to adjust to
multiple demands, shifting priorities, and rapid change Must be results
and goal oriented, possess sound judgment and ability to apply critical
thought processes when developing solutions
EDUCATION & EXPERIENCE REQUIREMENTS:SAP/GRC
experience strongly preferred Bachelor's degree in Management
Information Systems, Computer Science or similar degree CISA
preferred1-3+ years large public accounting firm or general industry IT
audit experience preferred Must be experienced in performing audits
within a multi-platform, networked environment Specific Skills Needed:
Seeking an individual with the ability to learn quickly, attention to
details, strong communication skills (written and verbal) and reliable.
Specific skills: audit background, developed Policy and Procedures,
project management skills, informationsecurity background (optional),
HITRUST knowledge (optional)
Additional Information
$23/hr
6 MONTHS
$23 hourly 60d+ ago
IT Security Analyst
Northern Kentucky University 4.2
Information security analyst job in Highland Heights, KY
Posting Details Information Working Title IT SecurityAnalyst Department IT Central Compensation Title Analyst, IT Security Position Number 30024777 and tbd Position Status Regular Work Schedule 8:15 a.m. - 4:30 p.m. M-F
This role safeguards NKU's digital ecosystem-monitoring, investigating, and responding to security threats while ensuring the right people have the right access at the right time. It supports security operations, identity and access management, Workday security configuration, and lifecycle management of electronic assets.
Primary Responsibilities
* Monitor, detect, investigate, and remediate security alerts and incidents using SIEM and security tools (AlertLogic, Microsoft Defender, Intune, SCCM, AD/Entra, Cisco Firepower, etc.).
* Manage Workday role-based and user-based security, including domain and business process security policies, workflows, and compliance requirements.
* Perform access troubleshooting, resolve security incidents, and translate access/security needs into system configurations.
* Conduct Workday identity and access audits; coordinate IAM changes tied to system updates.
* Investigate and remediate alerts in collaboration with faculty, staff, and students; support SLAs for alerts, availability, and responsiveness.
* Perform digital forensics when needed to preserve and document incident evidence.
* Ensure proper decommissioning and disposition of NKU-owned electronic assets.
* Maintain dashboards and reporting for IT operations, the CISO, governance groups, and external auditors.
* Troubleshoot and maintain SOC tools; ensure rules, configurations, and signatures remain current.
Qualifications
* Bachelor's degree and 3+ years relevant experience.
* Hands-on experience with cyber threat detection, incident response, intrusion analysis, and SIEM/MDR platforms.
* Proficiency in Linux and Windows environments.
* Identity and access management experience required; Workday security administration preferred.
* Strong documentation, communication, troubleshooting, and prioritization skills.
* Ability to translate technical concepts for end users.
* Highly accountable, self-directed, and able to learn new technologies quickly.
* Occasional evening/weekend availability for critical security events.
Position is on-site (with potential for one WFH day/week after onboarding)
Minimum Education Bachelor's Degree Preferred Education Bachelor's Degree Minimum Experience 3 years Salary tbd Pay Grade S74
Posting Detail Information
Requisition Number 2025S2297 Job Open Date 12/03/2025 Job Close Date Quick Link *********************************** Is this an internal only posting?
Supplemental Questions
$47k-63k yearly est. 41d ago
Information Security Analyst (On-Site Position)
Danis Construction
Information security analyst job in Cincinnati, OH
IS ON-SITE AT OUR CINCINNATI, OHIO OFFICE **
At Danis, we don't just build projects-we build trust. Since 1916, our reputation has been defined by integrity, innovation, and a relentless commitment to delivering exceptional results. We approach every challenge with a problem-solving mindset, combining precision, creativity, and collaboration to bring our clients' visions to life.
We know that our people are the foundation of our success. That's why we invest heavily in their growth. Through Danis University, employees have access to more than 45 specialized training programs designed to support continuous learning and career advancement. Join us and become part of a team that values your expertise, supports work-life balance, and empowers you to thrive professionally.
One of the ways we protect that success is through a strong cybersecurity foundation-led by dedicated professionals who stay ahead of emerging threats. As an InformationSecurityAnalyst, you'll serve as a key defender of our digital environment. Your mission: safeguard sensitive data, neutralize threats, and ensure we stay a step ahead of cyber risks. You'll monitor, investigate, and respond to security events while shaping our company's cybersecurity roadmap. This is a collaborative role, working closely with IT and departments across the organization to elevate our security posture and build a culture of cyber resilience. This position reports to the CIO.
Why Join Danis?
Make an Impact: Lead healthcare projects that support medical professionals and improve patient care. Your work will have a lasting, positive effect on communities.
Competitive Compensation: Enjoy annual merit increases and bonuses.
Comprehensive Benefits: Health and dental insurance for you and your family, as well as life insurance, disability coverage, and supplemental insurance options.
Secure Your Future: 401K plan and profit-sharing opportunities.
Work-Life Balance: Generous PTO and vacation time, because we value your time outside of work.
Give Back: Participate in our “Constructing Hope” program to contribute to meaningful community outreach projects.
Career Development: Access 45+ training programs through Danis University to enhance your skills and grow your career.
What You'll Bring
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
3+ years of hands-on experience in cybersecurity or a related discipline.
Working knowledge of security frameworks (e.g., NIST, ISO 27001).
Proficiency with security tools (e.g., SIEM, EDR, vulnerability scanners).
Strong analytical and investigative mindset.
Clear, confident communication and collaboration skills.
Experience managing cross-functional projects and navigating complex security challenges.
Responsibilities
Your Impact:
Strategic Leadership
Help shape and enforce cybersecurity policies, procedures, and standards grounded in industry best practices.
Lead the development and execution of our cybersecurity roadmap-including threat detection, incident response, and endpoint security initiatives.
Governance, Risk, & Compliance
Conduct routine risk assessments and internal audits to identify vulnerabilities and gaps.
Ensure regulatory compliance (e.g., NIST, Ohio Data Protection Act).
Maintain and test incident response plans; brief leadership on cybersecurity risks and metrics.
Training & Awareness
Drive cybersecurity awareness through engaging education initiatives.
Oversee new hire onboarding for required cyber training.
Facilitate tabletop exercises to simulate and prepare for real-world scenarios.
Threat Detection & Response
Continuously monitor systems for suspicious activity or breaches.
Respond swiftly to security incidents and ensure thorough documentation.
Engage in proactive threat hunting and analysis to detect emerging risks.
Vulnerability & Risk Management
Lead regular system assessments and vulnerability scans.
Ensure robust network segmentation, firewall health, and secure backups.
Security Architecture & Tools
Oversee the deployment and management of critical security tools.
Integrate cybersecurity solutions into enterprise infrastructure in collaboration with IT.
Evaluate and enhance our security technology stack.
Collaboration & Communication
Build trusted partnerships across IT and the broader organization to strengthen security culture.
Support business continuity and disaster recovery planning with department leads.
Manage vendor risk and ensure third-party compliance with internal standards.
Preferred Skills
Familiarity with enterprise systems and platforms (e.g., ERP, CRM).
Deep expertise in endpoint protection, network monitoring, and DLP tools.
Calm, strategic approach to crisis management.
Your Impact:
Strategic Leadership
Help shape and enforce cybersecurity policies, procedures, and standards grounded in industry best practices.
Lead the development and execution of our cybersecurity roadmap-including threat detection, incident response, and endpoint security initiatives.
Governance, Risk, & Compliance
Conduct routine risk assessments and internal audits to identify vulnerabilities and gaps.
Ensure regulatory compliance (e.g., NIST, Ohio Data Protection Act).
Maintain and test incident response plans; brief leadership on cybersecurity risks and metrics.
Training & Awareness
Drive cybersecurity awareness through engaging education initiatives.
Oversee new hire onboarding for required cyber training.
Facilitate tabletop exercises to simulate and prepare for real-world scenarios.
Threat Detection & Response
Continuously monitor systems for suspicious activity or breaches.
Respond swiftly to security incidents and ensure thorough documentation.
Engage in proactive threat hunting and analysis to detect emerging risks.
Vulnerability & Risk Management
Lead regular system assessments and vulnerability scans.
Ensure robust network segmentation, firewall health, and secure backups.
Security Architecture & Tools
Oversee the deployment and management of critical security tools.
Integrate cybersecurity solutions into enterprise infrastructure in collaboration with IT.
Evaluate and enhance our security technology stack.
Collaboration & Communication
Build trusted partnerships across IT and the broader organization to strengthen security culture.
Support business continuity and disaster recovery planning with department leads.
Manage vendor risk and ensure third-party compliance with internal standards.
Preferred Skills
Familiarity with enterprise systems and platforms (e.g., ERP, CRM).
Deep expertise in endpoint protection, network monitoring, and DLP tools.
Calm, strategic approach to crisis management.
Qualifications Working Environment:
Onsite Role: This position is based fully onsite, allowing for close collaboration with IT peers and business units. Being embedded within the organization supports real-time incident response and hands-on access to systems and infrastructure.
Team-Oriented Culture: You'll be part of a collaborative and supportive IT team that values knowledge sharing, proactive problem-solving, and continuous improvement.
Security-First Mindset: You'll work in an environment where cybersecurity is a top priority, supported by leadership and embraced across departments.
Dynamic and Evolving: The role operates in a fast-paced environment where adaptability is essential. You'll encounter evolving threats, shifting technologies, and the need to respond quickly and effectively.
Professional Development: Ongoing learning is encouraged through access to training, certifications, and internal resources that support your growth in cybersecurity.
Modern Tools & Infrastructure: You'll work with enterprise-grade security tools and platforms and have opportunities to recommend and implement improvements to our technology stack.
Working Environment:
Onsite Role: This position is based fully onsite, allowing for close collaboration with IT peers and business units. Being embedded within the organization supports real-time incident response and hands-on access to systems and infrastructure.
Team-Oriented Culture: You'll be part of a collaborative and supportive IT team that values knowledge sharing, proactive problem-solving, and continuous improvement.
Security-First Mindset: You'll work in an environment where cybersecurity is a top priority, supported by leadership and embraced across departments.
Dynamic and Evolving: The role operates in a fast-paced environment where adaptability is essential. You'll encounter evolving threats, shifting technologies, and the need to respond quickly and effectively.
Professional Development: Ongoing learning is encouraged through access to training, certifications, and internal resources that support your growth in cybersecurity.
Modern Tools & Infrastructure: You'll work with enterprise-grade security tools and platforms and have opportunities to recommend and implement improvements to our technology stack.
EEO Statement
Danis is an Equal Opportunity Employer. Danis does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit and business need.
Please, no agency calls. Unsolicited resumes from agencies will be considered property of Danis, with no obligation for fees.
#LI-ONSITE
$70k-99k yearly est. Auto-Apply 17d ago
IT Analyst
Par Excellence 3.7
Information security analyst job in Cincinnati, OH
A leading provider of supply chain solutions to the healthcare industry seeks experienced candidates for the position of IT Analyst.
The IT Analyst is responsible for providing exceptional service to both internal and external stakeholders through clear communication, execution, and documentation. They will be tasked with facilitating technical implementations, integrating a variety of software systems with customers, and providing Tier 2 troubleshooting support. This position may also include SQL database queries and other related information technology tasks.
Duties and Responsibilities
Serve as the technical subject matter expert, partnering with the Project Management team and customers throughout implementation.
Manage and report on technical progress for assigned projects.
Provide technical assistance for new and modified integrations, including post go-live support.
Collaborate with hospital IT teams (virtually) to install and configure TrackCore software products.
Map customer data files to interface specifications and validate data extracts.
Guide hospital IT staff on data corrections and coordinate end-to-end integration testing.
Facilitate and support Active Directory, SAML, and Single Sign-On (SSO) integrations.
Troubleshoot and resolve Tier 2 software support tickets.
Participate in limited after-hours support rotation.
Required Knowledge, Skills and Abilities
Strong problem-solving ability and technical aptitude.
Self-motivated with the ability to work independently and manage multiple priorities.
Excellent customer service and communication skills (verbal and written).
High attention to detail and commitment to quality.
Strong organizational and project management skills.
Ability to facilitate effective meetings and collaborate across teams.
Ability to travel if needed (primarily for internal meetings or functions).
Preferred Knowledge, Skills and Abilities
HIS experience with a variety of systems (Workday, Infor, MEDITECH, EPIC, McKesson, etc.).
Experience with HL7, CSV, tab-delimited, SQL, RFID, software testing and support
Experience with Supply Chain or Healthcare environments.
Required Education, Credentials and Experience
3+ years in a Healthcare IT environment.
BS in Computer Science or related field or equivalent combination of education and relevant technical experience.
Prior experience providing software implementation or technical support in a professional environment.
Experience working directly with clients or end users in a technical capacity.
For these skills, PAR Excellence will offer a competitive salary along with a full benefits package including medical, dental, life insurance, company provided short term and long term disability, 401k with company match, paid vacations and holidays.
$76k-102k yearly est. Auto-Apply 39d ago
Network Information Security Engineer
Medpace 4.5
Information security analyst job in Cincinnati, OH
We are hiring a full-time Cybersecurity Engineer who is technical, dedicated to learning new things, security-minded, has strong initiative, and is able to manage projects autonomously. The InformationSecurity team defends the company's digital infrastructure by designing, implementing, and improving the company's cybersecurity architecture. This is a critical role responsible for protecting infrastructure, cloud, edge devices, and data against unauthorized use, modification, exfiltration, or damage. If you're excited to be part of a fast-growing team, then Medpace is a great place to grow your career.
Responsibilities
* Engineer security solutions without oversight while collaborating with multiple internal departments and vendors;
* Analyze security systems and drive continuous improvements;
* Research vulnerabilities, perform vulnerability scanning and remediate threats;
* Mature security best practices and policies internal to the organization;
* Develop new processes while cross-training coworkers and assisting employees on security-related matters;
* Provide security awareness training and testing for employees to verify proper security protocols are being adhered to;
* Performing cyber security incident triage, reviewing logs, and performing remediation activities; and;
* Review and reduce inappropriate/overprovisioned access to drive least privileged access.
Qualifications
* Minimum of bachelor's degree, preferably in Cybersecurity or Information Technology;
* 3 years of experience in implementing, sustaining, and supporting InformationSecurity solutions;
* Understanding of security best practices and how to implement them within an enterprise environment;
* Experience with managing, configuring, and deploying enterprise-grade security solutions in some of the following areas:
* Zero Trust networking and network segmentation
* Networking protocol analysis and forensics
* Firewall configuration, Intrusions Detection and Prevention Systems (IDS/IPS)
* Configuring Azure network architecture, working with Azure policies and Defender for Cloud
Nice to have:
* Experience with vulnerability assessment tools such as Nessus and Tenable;
* Experience with enterprise web proxy solutions, web filters, and VPN such as Zscaler;
* Experience with governing Windows environment including GPO;
* Previous employment or experience in a highly regulated industry such as healthcare, financial, or defense experience with standards such as ISO, NIST, HIPPA, and/or SOC2; and
* Auditing and policy-writing experience.
Medpace Overview
Medpace is a full-service clinical contract research organization (CRO). We provide Phase I-IV clinical development services to the biotechnology, pharmaceutical and medical device industries. Our mission is to accelerate the global development of safe and effective medical therapeutics through its scientific and disciplined approach. We leverage local regulatory and therapeutic expertise across all major areas including oncology, cardiology, metabolic disease, endocrinology, central nervous system, anti-viral and anti-infective. Headquartered in Cincinnati, Ohio, employing more than 5,000 people across 40+ countries.
Why Medpace?
People. Purpose. Passion. Make a Difference Tomorrow. Join Us Today.
The work we've done over the past 30+ years has positively impacted the lives of countless patients and families who face hundreds of diseases across all key therapeutic areas. The work we do today will improve the lives of people living with illness and disease in the future.
Cincinnati Perks
* Cincinnati Campus Overview
* Flexible work environment
* Competitive PTO packages, starting at 20+ days
* Competitive compensation and benefits package
* Company-sponsored employee appreciation events
* Employee health and wellness initiatives
* Community involvement with local nonprofit organizations
* Discounts on local sports games, fitness gyms and attractions
* Modern, ecofriendly campus with an on-site fitness center
* Structured career paths with opportunities for professional growth
* Discounted tuition for UC online programs
Awards
* Named a Top Workplace in 2024 by The Cincinnati Enquirer
* Recognized by Forbes as one of America's Most Successful Midsize Companies in 2021, 2022, 2023 and 2024
* Continually recognized with CRO Leadership Awards from Life Science Leader magazine based on expertise, quality, capabilities, reliability, and compatibility
What to Expect Next
A Medpace team member will review your qualifications and, if interested, you will be contacted with details for next steps.
$71k-97k yearly est. Auto-Apply 3d ago
Deputy Information System Security Manager (DISSM) | Sr. Manager - Risk & Compliance
GE Aerospace 4.8
Information security analyst job in Evendale, OH
SummaryGE Aerospace is seeking a people leader to serve as a Deputy Information System Security Manager (DISSM) supporting DoD programs. You will lead and develop a team of Information System Security Officers (ISSO)/Analysts, uphold Risk Management Framework (RMF) compliance principles in accordance with the Joint SAP Implementation Guide (JSIG), and drive customer-driven execution through lean fundamentals. You'll ensure the Confidentiality, Integrity, and Availability of various information systems by setting clear standard work and aligning priorities to program and operational readiness.Job Description
Job Title Deputy Information System Security Manager (DISSM) | Sr. Manager, Risk & Compliance
Company Intro/About GE Aerospace GE Aerospace is a world-leading provider of jet engines, components, and integrated systems for commercial and military aircraft. We design, power, and support the future of flight through a relentless focus on safety, quality, delivery, and cost-backed by a culture of continuous improvement and respect for people.
Site, Business, OR Functional Area Overview This role is based in Evendale, OH and supports GE Aerospace defense programs operating under Department of Defense (DoD) requirements. You will partner closely with Program Security, IT, Engineering, Operations, and Quality to sustain mission readiness and audit-ready compliance across classified and unclassified environments.
Role Overview GE Aerospace is seeking a people leader to serve as a Deputy Information System Security Manager (DISSM). In this role, you will lead and develop Information System Security Officers (ISSOs)/Analysts, uphold Risk Management Framework (RMF) compliance aligned to JSIG and applicable DoD guidance, and drive customer-driven execution through lean fundamentals. You will ensure the confidentiality, integrity, and availability of information systems by establishing clear standard work, visual management, and priorities that align to program and operational readiness.
Key Responsibilities
People leadership and operations
Lead, coach, and develop a high-performing cyber compliance team; set clear goals, standard work, and development plans; conduct regular 1:1s and performance feedback.
Balance regulatory compliance with business needs; align workload and staffing across value streams to meet SQDC priorities.
Establish Daily and Visual Management for RMF status, POA&M burn-down, audit readiness, and incident response; run tiered huddles and remove roadblocks.
Standardize best practices for labs/test environments; validate and coach to JSIG/NISPOM/DoDM 5205.07 expectations.
Compliance and risk management
Own readiness and sustainment of RMF authorization and Continuous Monitoring (ConMon) across assigned boundaries/enclaves.
Review/approve core artifacts (e.g., SSP, SCTM, ConOps, POA&M, ConMon plans, SOPs).
Serve as liaison to SCA, ISOs, Sr. ISSM, IT, CPSOs, and ISSOs; provide transparent status and risk-based recommendations.
Validate hardware/software requests; enforce secure configurations, media handling, and cyber supply chain risk management.
Lead pre-assessments and corrective action plans to maintain inspection-ready posture and on-schedule RMF execution.
Security operations and improvement
Lead response for cyber incidents/data spills; coordinate containment, reporting, lessons learned, and corrective actions.
Identify control gaps and vulnerabilities across diverse technologies; implement risk-mitigating countermeasures.
Apply lean fundamentals (problem solving, standard work, action planning, flow/pull) to reduce waste and cycle time for accreditations and change approvals.
Required Qualifications
Active DoD IAM III certification (e.g., GSLC, CISSP, CISM) or ability to obtain within 6 months
Bachelor's degree from an accredited college or university (or HS Diploma/GED with 4 years' experience) + minimum 5 years relevant experience (military experience counts)
This position requires U.S. citizenship
This role requires the successful candidate to maintain a US Government Security Clearance; prerequisite for a security clearance is U.S. Citizenship. Preference will be given to candidates who currently hold US Government Security Clearance.
Desired Characteristics
Attention to detail and strong ownership mindset
Proven people leadership: coaching, performance management, team development
Strong communication and stakeholder management; able to align multiple functions
Demonstrated experience leading small to mid-sized security teams through RMF assessments and ConMon IAW DoD requirements
Effective problem solving and analytics; drives action plans to closure
Excellent time management and multi-project coordination
Familiarity with lean principles and daily management; ability to visualize work, track KPIs, and improve processes
Working knowledge of NISPOM, JSIG, ICD 503, and/or DAAPM
Possess a current US Government Security Clearance
Additional Information
Closing At GE Aerospace, we are committed to fostering an inclusive workplace that values diversity and empowers employees to thrive. This role requires access to U.S. export-controlled information. Therefore, for applicants who are not asylees, refugees, lawful permanent residents, or U.S. Citizens (i.e., not a protected individual under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3), otherwise known as a U.S. Person), final offers will be contingent on the ability to obtain authorization for access to U.S. export-controlled information from the U.S. Government.
This role requires access to U.S. export-controlled information. Therefore, employment will be contingent upon the ability to prove that you meet the status of a U.S. Person as one of the following: U.S. lawful permanent resident, U.S. Citizen, have been granted asylee or refugee status (i.e., a protected individual under the Immigration and Naturalization Act, 8 U.S.C. 1324b(a)(3)).
Additional Information
GE Aerospace offers a great work environment, professional development, challenging careers, and competitive compensation. GE Aerospace is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE Aerospace will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
Relocation Assistance Provided: Yes
$83k-108k yearly est. Auto-Apply 2d ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Mack, OH?
The average information security analyst in Mack, OH earns between $60,000 and $116,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Mack, OH
$83,000
What are the biggest employers of Information Security Analysts in Mack, OH?
The biggest employers of Information Security Analysts in Mack, OH are: