Information Security Specialist
Information security analyst job in Kansas City, MO
CompanyFederal Reserve Bank of Kansas CityWhen you join the Federal Reserve-the nation's central bank-you'll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we're building a dynamic and diverse team for our future.
This role is responsible for modernizing the methods and procedures for performing cybersecurity risk management and assessing cybersecurity risk. This involves assessing the current approach, data, and tools to identify gaps and enhancements. It requires strong partnerships with key stakeholders and business leaders, conveying cyber risk to them in a way that allows them to make risk informed decisions and improve the Organization's security posture.
Important Information
Open to US Citizens, Green Card holders or Permanent Residents with at least 3 years of residency.
No sponsorship is available. Candidates must have valid work authorization, without an end date to be considered. No H1-B, OPT, STEM OPT, CPT, TN, J-1, etc.
This position requires working on-site with 5 days per month remote work flexibility.
Key Activities
Risk Assessment & Analysis
Modernize the current approach to cybersecurity risk management and assessments.
Research and evaluate methodologies and frameworks and subsequently apply them for use in the organization.
Identify and implement risk quantification and scoring approaches within the organization.
Perform in-depth data analysis to identify patterns, trends, and areas of focus and priority.
Incorporate threat intelligence into risk assessments to provide context-aware risk evaluations.
Conduct business impact analyses to understand how security incidents affect critical business functions.
Evaluate and quantify risks associated with third-party vendors and supply chain.
Assess specific risks related to cloud environments and services.
Program Development
Develop reports and dashboards to illustrate the organization's risk posture.
Ensure that cybersecurity risk is integrated with IT risk, and informs overall Enterprise risk.
Research and identify options to establish a risk register.
Develop and track risk treatment plans including mitigation strategies, acceptance justifications, or transfer options.
Map cybersecurity risks to relevant regulatory requirements and compliance frameworks.
Continuously improve risk management processes based on industry trends and organizational needs.
Communication & Collaboration
Meet with technical experts and business leaders to convey cybersecurity risk in a way they can understand.
Partner with incident response teams to incorporate lessons learned into risk models.
Translate complex technical risk scenarios into actionable insights for all levels of the organization.
Qualifications
Experience
Typically requires at least 6 years of relevant cybersecurity risk management experience.
Experience with risk scoring methods and risk quantification.
Experience with generating reports and dashboards to convey cybersecurity risk in a way that is easy to consume.
Experience establishing or running an Enterprise cybersecurity risk management program.
Experience with NIST SP 800-53 security standards.
Experience presenting risk information to executive leadership.
Education & Certifications
Bachelor's degree specializing in an information technology field from an accredited college or university, or equivalent combination of directly related education and/or experience.
Information Security industry certification (SSCP, CISSP, GIAC, CISM, CISA, etc.) preferred.
Technical Knowledge
Strong knowledge of and experience applying cybersecurity risk frameworks and assessment methodologies; examples may include Factor Analysis of Information Risk (FAIR), NIST Cybersecurity Framework (CSF).
Strong skills and experience with data analysis.
Experience with GRC (Governance, Risk, and Compliance) tools.
Knowledge of business impact analysis methodologies.
Familiarity with cloud security frameworks (CCSK, CCSP).
Skills & Abilities
Ability to understand technical details of cybersecurity risk.
Ability to communicate complicated technical risk scenarios to all levels of the organization.
Demonstrated self-motivation and ability to perform work independently, and also collaborate in a team environment.
Additional Information
How We Work (HWW):
On-site: 5 days per month remote work flexibility
Location: Kansas City, Denver, Oklahoma City, Omaha
Remote Eligible: No
Salary:
$98,600 - $139,000 / Senior Level
$117,300 - $165,400 / Advanced Level
Final offers are determined by factors including the candidate's qualifications, internal alignment considerations, district assignment, and geographic location.
Screening: US Citizens or Green Card holders and Permanent Residents with at least 3 years of residency. This position has additional screening requirements due to the information accessed while performing the job. These additional screenings would be initiated at the time of offer acceptance and could take up to a couple of months to complete. You can begin work before the screening is completed; however, continued employment is contingent on acceptable screening results. The areas screened may include education/employment verification, criminal history, credit history, and reference checks.
Sponsorship: The Federal Reserve Bank of Kansas City will not sponsor a new applicant for employment authorization for this position. Applicants must be currently authorized to work in the United States without the need for visa sponsorship now or in the future.
About Us
Total Rewards & Benefits
Who We Are
What We Do
Follow us on
LinkedIn
, Instagram,
X (formerly Twitter)
, and
YouTube
#KCFedIT
Full Time / Part TimeFull time Regular / TemporaryRegularJob Exempt (Yes / No) YesJob CategoryInformation Technology Family GroupWork ShiftFirst (United States of America)
The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.
Always verify and apply to jobs on Federal Reserve System Careers (************************************* or through verified Federal Reserve Bank social media channels.
Privacy Notice
Auto-ApplySr. Information Security Engineer
Information security analyst job in Kansas City, MO
Provides advanced technical level computer security support to ensure the firm's overall information assets are adequately protected. This position is responsible for the deep, technical engineering aspect of all security hardware and software, with the skills to interpret data from both security and non-security class equipment with an emphasis on configuration and tuning of equipment. This position requires advanced capabilities in equipment configuration, installation, system interoperability and deployment.
Communicates courteously and professionally by phone, email and in person, using good communication skills, keeping supervisor abreast of current issues and potential problems as they develop; while seeking advice as needed.
Responsible for equipment hardware, appliances and software. Conducting, coordinating, testing, implementing, deploying, and operational maintenance of all information security systems, applications, appliances and related devices throughout the firm.
Configures multiple products, both hardware and software, to interact with each other; devises solutions to a changing threat landscape as it evolves.
Responsible for assessing, recommending, developing, implementing and maintaining the firm's computer security infrastructure and security standards.
Provides technical engineering expertise in the selection, testing, implementation and deployment of information security systems. This includes the evaluation of new security products, and their interoperability with existing firm equipment.
Provides technical support and direction in information security monitoring, assessment, configuration, maintenance, auditing and testing.
Performs security event and intrusion analysis on a daily basis and mitigates any incidents that are medium to critical in nature. This may include troubleshooting non-security related equipment at the network layer level.
Performs penetration testing, including wired and wireless, social-engineering, and application security vulnerability assessments as required by management.
Provides guidance and input to technical reviews of proposed security projects and the certification and accreditation process.
Independently and, as a team member, plans, executes and documents security tests and evaluation.
Performs engineering and analysis of in-place technical and non-technical security controls protecting information and information systems. Uses advanced technical skills in network security design and implementation, including non-security related equipment interfacing as needed.
Has advanced understanding of the OSI model and how to apply the OSI model to daily troubleshooting and network security projects.
Manages information security aspects of IT projects, ensuring security protocols are in place and in compliance with other applicable information security policies. Reviews project plans for other IT teams to determine security requirements, and follows up to ensure security of new systems.
Provides guidance to non-senior security staff on information security and any security related projects.
Lead for security risk assessments and penetration studies of networks for both security and non-security equipment. Recommends solutions for security vulnerabilities and takes corrective measures and/or applies security patches when appropriate.
Installs, tests, configures, monitors, maintains and upgrades malicious code detection applications/tools to ensure Malware is blocked or eradicated when detected. Configuration and tuning of security equipment as needed to adjust to changing threat landscapes.
Analyzes problematic security log entries from security infrastructure systems, provides technical solutions to issues and security breaches.
Is on call to respond to security incidents from Shook users, representatives or clients as needed, or disaster recovery and business continuity operations. Maintains advanced knowledge of the firm's Information System Security posture, goals and objectives.
Required Technical Skillsets
Windows 2016+ Server Operating System Support and Configuration
• Azure Cloud Security Architecture and Implementation
Azure Blob Storage and Containers
• Certificate Authority and Key Management
• Cloud Intrusion Protection Systems / WAF
Cloud based DLP Systems
• Fluent ability to operate Security Information and Event Management solution
Additional Preferred Skillsets
Knowledge of CrowdStrike EDR, CrowdStrike SIEM
• Content Filtering via Web Gateway
• Malicious Site Analysis
• Apple (Mac) Security Enforcement
• Cloud Vulnerability and Penetration Testing
• Virus Protection, Endpoint Encryption
• Data Classification
AI Security
Information Security Specialist
Information security analyst job in Kansas City, MO
Company Federal Reserve Bank of Kansas City When you join the Federal Reserve-the nation's central bank-you'll play a key role, collaborating with leading tech professionals to strengthen and protect our economic, financial and payments systems. We invest in contemporary and emerging technology each year to support the Federal Reserve and our economy, and we're building a dynamic and diverse team for our future.
This role is responsible for modernizing the methods and procedures for performing cybersecurity risk management and assessing cybersecurity risk. This involves assessing the current approach, data, and tools to identify gaps and enhancements. It requires strong partnerships with key stakeholders and business leaders, conveying cyber risk to them in a way that allows them to make risk informed decisions and improve the Organization's security posture.
Important Information
* Open to US Citizens, Green Card holders or Permanent Residents with at least 3 years of residency.
* No sponsorship is available. Candidates must have valid work authorization, without an end date to be considered. No H1-B, OPT, STEM OPT, CPT, TN, J-1, etc.
* This position requires working on-site with 5 days per month remote work flexibility.
Key Activities
Risk Assessment & Analysis
* Modernize the current approach to cybersecurity risk management and assessments.
* Research and evaluate methodologies and frameworks and subsequently apply them for use in the organization.
* Identify and implement risk quantification and scoring approaches within the organization.
* Perform in-depth data analysis to identify patterns, trends, and areas of focus and priority.
* Incorporate threat intelligence into risk assessments to provide context-aware risk evaluations.
* Conduct business impact analyses to understand how security incidents affect critical business functions.
* Evaluate and quantify risks associated with third-party vendors and supply chain.
* Assess specific risks related to cloud environments and services.
Program Development
* Develop reports and dashboards to illustrate the organization's risk posture.
* Ensure that cybersecurity risk is integrated with IT risk, and informs overall Enterprise risk.
* Research and identify options to establish a risk register.
* Develop and track risk treatment plans including mitigation strategies, acceptance justifications, or transfer options.
* Map cybersecurity risks to relevant regulatory requirements and compliance frameworks.
* Continuously improve risk management processes based on industry trends and organizational needs.
Communication & Collaboration
* Meet with technical experts and business leaders to convey cybersecurity risk in a way they can understand.
* Partner with incident response teams to incorporate lessons learned into risk models.
* Translate complex technical risk scenarios into actionable insights for all levels of the organization.
Qualifications
Experience
* Typically requires at least 6 years of relevant cybersecurity risk management experience.
* Experience with risk scoring methods and risk quantification.
* Experience with generating reports and dashboards to convey cybersecurity risk in a way that is easy to consume.
* Experience establishing or running an Enterprise cybersecurity risk management program.
* Experience with NIST SP 800-53 security standards.
* Experience presenting risk information to executive leadership.
Education & Certifications
* Bachelor's degree specializing in an information technology field from an accredited college or university, or equivalent combination of directly related education and/or experience.
* Information Security industry certification (SSCP, CISSP, GIAC, CISM, CISA, etc.) preferred.
Technical Knowledge
* Strong knowledge of and experience applying cybersecurity risk frameworks and assessment methodologies; examples may include Factor Analysis of Information Risk (FAIR), NIST Cybersecurity Framework (CSF).
* Strong skills and experience with data analysis.
* Experience with GRC (Governance, Risk, and Compliance) tools.
* Knowledge of business impact analysis methodologies.
* Familiarity with cloud security frameworks (CCSK, CCSP).
Skills & Abilities
* Ability to understand technical details of cybersecurity risk.
* Ability to communicate complicated technical risk scenarios to all levels of the organization.
* Demonstrated self-motivation and ability to perform work independently, and also collaborate in a team environment.
Additional Information
How We Work (HWW):
* On-site: 5 days per month remote work flexibility
* Location: Kansas City, Denver, Oklahoma City, Omaha
* Remote Eligible: No
Salary:
* $98,600 - $139,000 / Senior Level
* $117,300 - $165,400 / Advanced Level
* Final offers are determined by factors including the candidate's qualifications, internal alignment considerations, district assignment, and geographic location.
Screening: US Citizens or Green Card holders and Permanent Residents with at least 3 years of residency. This position has additional screening requirements due to the information accessed while performing the job. These additional screenings would be initiated at the time of offer acceptance and could take up to a couple of months to complete. You can begin work before the screening is completed; however, continued employment is contingent on acceptable screening results. The areas screened may include education/employment verification, criminal history, credit history, and reference checks.
Sponsorship: The Federal Reserve Bank of Kansas City will not sponsor a new applicant for employment authorization for this position. Applicants must be currently authorized to work in the United States without the need for visa sponsorship now or in the future.
About Us
* Total Rewards & Benefits
* Who We Are
* What We Do
Follow us on LinkedIn, Instagram, X (formerly Twitter), and YouTube #KCFedIT
Full Time / Part Time
Full time
Regular / Temporary
Regular
Job Exempt (Yes / No)
Yes
Job Category
Information Technology Family Group
Work Shift
First (United States of America)
The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.
Always verify and apply to jobs on Federal Reserve System Careers (************************************* or through verified Federal Reserve Bank social media channels.
Privacy Notice
Senior IT Security Analyst
Information security analyst job in Kansas City, MO
The Senior IT Security Analyst is responsible for managing activities relating to monitoring and responding to security events. The analyst is responsible for monitoring application, host, and network threats, including external threat actors and rogue insiders. As a trusted member of the Information Security team and industry community, the analyst works closely with internal technical teams, business units, and external entities aligned with the business, including private intelligence-sharing groups, law enforcement, and government agencies.
The analyst is responsible for conducting in-depth research, documenting threats, understanding the risk to the business, and sharing information with those who need to know. Analysts are expected to continually adapt to stay a step ahead of cyber attackers and stay up to date on the latest methods attackers use to infiltrate computer systems. Analysts in this role are expected to consistently learn and grow. This is not a passive career opportunity, but rather one that requires a passion for security and rigor to protect the business.
Duties & Responsibilities
* Responsible for developing, managing, and maintaining threat intelligence and threat hunting program and processes
* Regularly research and identify emerging threats, TTPs in public and closed forums, and work with colleagues to access risk and implement/validate controls as necessary.
* Assist with Security Operations activities, including but not limited to, triage of alarms/alerts, and performing technical security assessments.
* Participate in a call tree for outsourced Security Operations Center to assist with triage and remediation of critical and high rated alerts that are escalated both during and after business hours.
* Research and recommend solutions to fulfill regulatory compliance with all standards set forth by FFIEC guidelines, Sarbanes Oxley, Gramm-Leach-Bliley and other regulations applicable to the financial services industry and publicly traded companies.
* Perform periodic review of IT procedures and security of all systems in order to maintain integrity of company and customer data.
* Document and perform verification of IT related changes in accordance with Company security policies and procedures.
* Research and recommend hardware and software solutions to augment or enhance existing security measures.
* Stay current in events and trends in IT security.
* Investigate and report any security violations and incidents and ensure proper protection and corrective measures have been taken when an incident or vulnerability has been discovered.
* Conduct scheduled reviews of key application security settings.
* Develop metrics and scorecards to measure risk to the organization, as well as effectiveness and efficiency of SOC associates.
* Assist in process development and improvements to maximize the efficiency and effectiveness of the department and related programs
* Supports audit and incident processes, as required
* Monitor and support internal SEIM systems, reports, and searches
* Monitor and support internal phishing email report systems and reports
* Partner and establish relationships to work closely with cross-functional teams consisting of representatives in the business
* Develops strong liaison relationships with key internal business and technology teams
* Coach level I & IIs on security domains and program processes
* Depending on need, VP Security may determine a Team Lead designation for Level III role
* Participate in security work streams for a variety of enterprise projects and initiatives
* Determine and communicate security risk postures to partners and leaders as appropriate
Education & Experience
Knowledge of:
* Strong experience with threat information sharing and threat hunting processes to proactively identify potential or existing threats in medium to large environments.
* Proficient with SIEM tools, threat intelligence platforms, and security orchestration, automation, and response (SOAR) solutions to centralize and manage the incident and remediation workflow.
* Knowledge and understanding of networking concepts and securing traffic across LAN, WAN, and Internet infrastructure.
* Proficiency in operating systems such as Windows, Linux, and MacOS to effectively research and analyze threats in a sandbox environment, and respond to incidents.
* Experience in incident handling and investigation including using formal chain-of-custody methods, forensic tools, and best practices.
* Applicable knowledge of adversary tactics, techniques, and procedures (TTPs), MITRE ATT&CK framework, and CVSS.
* Capable of scripting in Python, Bash, Perl, RegEx, or PowerShell.
* Knowledge and understanding of networking concepts and securing traffic across LAN, WAN, and Internet infrastructure.
* Familiarity with cloud architectures, security standards, and best practices
* Strong oral and written communication skills
* Strong organizational skills and attention to detail
* Excellent interpersonal skills
Ability to:
* Ability to analyze incident logs, attack vectors, and understand vulnerabilities and exploits.
* Take independent action within established options and develops new procedures and approaches to problems when necessary
* Analyze assignments based on a wide knowledge of many factors where application of advanced or technical concepts are required
* Self-starter requiring minimal supervision
* Highly organized and efficient.
* Demonstrated strategic and tactical thinking.
* Stays current with the evolving threat landscape.
* Perform duties and make decisions under frequent time pressures
Education and Training:
* (Preferred) Bachelor's degree in Computer Science, Management Information Systems (MIS) or related field or equivalent work experience.
* On-the-job training in relevant roles relating to security operations, threat intel and hunting, system administration, incident response, or equivalent
* Security+, CySA+, GCIH, CSA, CCSP or similar certification; or willingness and ability to pursue certification/re-certification within the first six months of hire.
* At least 5 years' experience in security operations center environments, threat intelligence/hunting, or security systems administration
* Requires knowledge of Microsoft Office and other productivity tools
Benefits and Compensation
Salary offered is based on factors, including but not limited to, the job duties, required qualifications and relevant experience, and local market trends. The role may be eligible for bonus or incentives based on company and individual performance.
(Base Pay Range: $86,000 - $123,000/year)
Busey provides a competitive Total Rewards package in return for your time, talents, efforts and ultimately, results. Your personal and professional well-being-now and in the years to come-are important to us. Busey's Total Rewards include a competitive benefits package offering 401(k) match, profit sharing, employee stock purchase plan, paid time off, medical, dental, vision, company-paid life insurance and long-term disability, supplemental voluntary life insurance, short-term and long-term disability, wellness incentives and an employee assistance program. In addition, eligible associates may take advantage of pre-tax health savings accounts and flexible spending accounts. Visit Busey Total Rewards for more information.
Equal Opportunity
Busey values a diverse and inclusive workplace and strives to recruit, develop and retain individuals with exceptional talent. A team with diverse talent, working together, is essential to Busey's commitment of delivering service excellence. Busey is an Equal Opportunity Employer including Disability/Vets. Visit Busey.com/Careers to learn more about Busey's Equal Opportunity Employment.
Unsolicited Resumes
Busey Bank, and its subsidiaries, does not accept any liability for fees for resumes from recruiters or employment agencies ("Agency"), without a binding, written recruitment agreement between Busey and Agency describing the services and specific job openings ("Agreement"). Busey may consider any candidate for whom an Agency has submitted an unsolicited resume and explicitly reserves the right to hire those candidate(s) without any financial obligation to the Agency, unless an Agreement is in place. Any email or verbal contact with any Busey associate is inadequate to create a binding agreement. Agencies without an Agreement are requested not to contact any associates of Busey with recruiting inquiries or resumes. Busey respectfully requests no phone calls or emails.
Application Deadline 11/15/25
Auto-ApplyIT Security Manager
Information security analyst job in Overland Park, KS
This is the perfect role to really put your mark on something. This is a newly created position, tasked with building a team to support the security vision of an entire business unit. Key Responsibilities: ·Communicates Information Security goals and new programs effectively within the organization
·Ensures consistent and effective security practices
·Establishes appropriate Information Security procedures and governance
·Oversees the deployment, integration, and initial configuration of all new Information Security solutions and Information Security policies, standards, and operational procedures
·Manages investigations into identified problematic activity and provides on-going communication with IT senior management
·Owns and manages relationships with vendors performing managed security services for the Overseas & Trading division
·Provides centralized guidance and governance of Information Security solutions
·Engages in ongoing communications with peers in the Infrastructure and Application Support groups as well as the business groups to ensure understanding of security goals
·Collaborates with affiliate companies to assist with identifying and managing Cybersecurity risk
·Assist with Information Security awareness programs
·Creates and maintains a set of metrics to document and measure the performance and effectiveness of the Information Security program; responsible for communicating metrics to the Overseas & Trading senior management.
·Participates in annual and long-range planning activities to ensure Information Security needs are addressed
Qualifications
Must be open to travel approximately 35% of the time.
A college degree in MIS, CIS, Business Management, or related field
5+ years of overall Information Security experience
1+ years working on an Information Security implementation team
An Information Security industry certification is preferred
Progressive experience in a combination of Information Technology, Risk Management, Information Security, and Compliance roles is preferred
Must have a working knowledge of at least one of the following regulatory compliance requirements and IT management frameworks:
CIS Critical Security Controls
ISO 27000-series standards
NIST SP800-53 and related standards
Must have a working knowledge of the following Information Security practices, standards, and systems:
Data Loss Prevention (DLP) systems
Encryption technologies and standards
Endpoint security software
Governance, Risk, and Compliance (GRC) systems
Identity and Access Management (IAM)
Incident response practices
Network security (e.g. firewalls, IDS/IPS, VPN, etc.…)
Risk assessment practices
Security Information Event Management (SIEM) systems
Vulnerability management practices and scanning tools
Additional Information
Solid company with excellent track record of stability,.Great opportunities for growth and learning.
Cyber Security Training
Information security analyst job in Kansas City, MO
Kanshe Infotech is Consulting Firm Which Provides World online training. Online Training (Remote Training + Real-time exp) available. Our training is more than just hours of lecture, we believe in student engagement, motivation and knowledge sharing as tools for success and we do it with great dedication and precision. We offer online training that clearly stands out of the group, sign up for a demo session.
Job Description
Our Training Features:
· You will receive top quality instruction that Kanshe Infotech is famous for Online IT training.
· Trainees will receive immediate response to any training related queries, either technical or otherwise. We advise our trainees not to wait till the next class to seek answers to any technical issue.
· Training sessions are conducted by real-time instructor with real-time examples.
· Every training session is recorded and posted to the batch after each weekend class.
· We are offering online training on Cyber Security.
.
Provide OPT Stem Ext.:
Guidance and support for applying for the 24-month OPT STEM extension
Help with OPT Employment letter:
Help with drafting and obtaining OPT employment letters that meet USCIS requirements.
· We provide training in technology of your choice.
· Good online training virtual class room environment.
· Highly qualified and experienced trainers.
· Professional environment.
· Special interview training
· Training for skill enhancement.
· Study material and Lab material provided.
· E-Verified company.
If you are interested or if you know anyone looking for a change, please feel free to call or email me for details or questions. I look forward to seeing resumes from you or your known and highly recommended candidates.
Thanks
Additional Information
All your information will be kept confidential according to EEO guidelines.
Cyber Resilience Specialist
Information security analyst job in Kansas City, MO
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies. We are currently looking for a Senior Consultant or Principal level Security strategist with deep technical and functional expertise in Business Continuity and Disaster Recovery.
What You'll Do
* Lead and facilitate Business Impact Assessments (BIAs) across business units
* Develop and update Business Continuity Plans (BCPs) and Disaster Recovery Plans (DRPs) aligned to critical business functions and systems
* Assess organizational risk and capability gaps related to crisis management, workforce continuity, and infrastructure resilience
* Design tiered recovery strategies based on RTOs, RPOs, and MVC (Minimum Viable Company) principles
* Coordinate and conduct tabletop exercises, test execution, and post-mortem reviews
* Align BC/DR practices with enterprise risk management frameworks, compliance requirements (e.g., HIPAA, ISO 22301), and audit expectations
* Support program governance, metrics, training, and awareness efforts
What You'll Bring
* 6+ years of experience in Business Continuity, Disaster Recovery, or operational resilience consulting
* Strong working knowledge of BIAs, BCP/DRP development, and crisis management planning
* Understanding of IT infrastructure concepts and DR technologies (e.g., backup systems, cloud platforms)
* Experience supporting risk assessments and regulatory audits
* Excellent facilitation and stakeholder management skills
* Strong writing skills to produce clear, client-ready plans and reports
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this role, we are hiring at the following levels and targeted base pay salary ranges: The targeted base salary pay range for Senior Consultant in New Jersey, New York City, and Washington DC is $153,000 to $186,000. The targeted base salary range for Senior Consultant in Atlanta, Chicago, Detroit, Kansas City, Minneapolis, Nashville, Philadelphia, Phoenix, St. Louis is $140,000 to $171,000. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************.
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
#LI-MS12
Easy ApplyEngineer, Information Security
Information security analyst job in Overland Park, KS
We're seeking a proactive, detail-oriented Information Security Engineer to join our Technology and Information Security team. This role plays a critical part in protecting the integrity, confidentiality, and availability of our systems and data. You'll work hands-on with advanced security tools and collaborate across teams to ensure the firm's technology environment remains resilient and compliant.
If you thrive on solving complex security challenges, driving continuous improvement, and safeguarding data in a fast-paced, highly regulated industry-this opportunity is for you.
What You'll Do
Implement, operate, and maintain enterprise-level information security tools and controls across the organization.
Conduct security assessments and control testing to evaluate system performance and operational effectiveness.
Support and mature core security processes, including:
Malware response and remediation
Vulnerability management and patch governance
Security log analysis and monitoring
Incident tracking, reporting, and documentation
Analyze the security posture of new and existing applications, software, and infrastructure; provide actionable insights and recommendations.
Collaborate with IT and business partners to identify risks, implement mitigations, and ensure security is embedded into technology and operational initiatives.
Contribute to continuous improvement of the firm's Information Security Program through data analysis, reporting, and cross-functional input
What You Bring
Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or related field-or equivalent experience.
3-5 years of professional experience in information security, IT operations, or a related technical field; experience in financial services a plus.
Familiarity with security tools and frameworks (SIEM, EDR, vulnerability scanners, CIS, NIST, ISO 27001).
Proven ability to operate with independence and accountability in a dynamic environment.
Excellent communication and collaboration skills, with the ability to work effectively across teams and influence without authority.
Analytical mindset with strong attention to detail, organization, and documentation discipline.
Why Join Us
We believe in giving associates progressive opportunities, actively nurturing professional growth, and giving back to the community. You'll find an environment that values curiosity, collaboration, and innovation-where your expertise contributes directly to protecting the firm and its clients.
We're dedicated to building a diverse and inclusive culture where everyone has the support to reach their full potential. Our team enjoys a flexible, hybrid work environment that encourages both professional excellence and work-life balance.
EOE/M/F/D/V
Auto-ApplySecurity Analyst
Information security analyst job in Overland Park, KS
Job Description
About the Role
As a SOC Analyst at Foresite, you're not just monitoring screens-you're safeguarding the digital frontier. You'll be the vigilant guardian of our clients' security, analyzing threats, responding to incidents, and ensuring their peace of mind in the cloud. But it's more than just a job; it's a launching pad for your cybersecurity career. If you have a passion for security, a keen eye for detail, and a drive to protect organizations from cyberattacks, this role is your first step towards an exciting future at Foresite.
Responsibilities:
Stand Watch: Monitor security information and event management (SIEM) systems, including Google Chronicle SIEM, to detect and analyze potential security threats in real-time.
Investigate and Respond: Investigate suspicious activities, analyze security alerts, and respond to security incidents with urgency and precision.
Uncover the Unknown: Conduct threat hunting activities to proactively identify and mitigate emerging threats before they impact our clients.
Collaborate and Communicate: Work closely with security engineers, incident responders, and clients to ensure a coordinated and effective response to security events.
Document and Analyze: Document security incidents, analyze attack patterns, and contribute to the development of threat intelligence reports.
Continuously Learn: Stay up-to-date on the latest security threats, vulnerabilities, and best practices to maintain a cutting-edge security posture.
Embrace the Challenge: Thrive in a fast-paced environment, adapt to evolving threats, and embrace the challenge of protecting our clients from cyberattacks.
Qualifications:
Security Foundation: Solid understanding of security principles, common attack vectors, and security technologies.
SIEM Experience: Hands-on experience with SIEM systems, preferably Google Security Operations, demonstrating your ability to monitor, analyze, and respond to security events.
Analytical Mindset: Strong analytical and problem-solving skills, enabling you to effectively investigate security incidents and identify root causes.
Communication Skills: Excellent written and verbal communication skills, allowing you to clearly convey technical information to both technical and non-technical audiences.
Teamwork and Collaboration: Ability to work effectively as part of a team, collaborating with colleagues and clients to achieve shared security goals.
Passion for Security: A genuine passion for cybersecurity and a desire to protect organizations from cyber threats.
Relevant Certifications (Preferred): Industry certifications such as CompTIA Security+, BTL1, or GIAC Security Essentials Certification (GSEC) are a plus.
Jr. Security Analyst
Information security analyst job in Kansas City, MO
Forrest T. Jones & Company, Inc., and its affiliates (“FTJ”), provide insurance and insurance related services to clients, corporations, employers and individuals. These services include providing benefits through innovative life and health insurance plans, financial services, and customized insurance products for niche markets.
Position Summary
The Security Analyst develops and manages security for more than one IT functional area.
Assists in the development and implementation of security policies and procedures.
Prepares status reports on security matters to develop security risk analysis scenarios and response procedures.
Responsible for the tracking and monitoring of software viruses.
Enforces security policies and procedures by administering and monitoring security profiles.
Reviews security violation reports and investigates possible security exceptions.
Updates, maintains and documents security controls.
Responsibilities
Utilizes information security tools to monitor risk levels and security posture.
Supports IT security goals and reduce organizational risk.
Collects and maintain data needed to meet information security reporting.
Conducts monitoring and analysis of information security data sources.
Supports company wide information security training and awareness program.
Prepares, distributes, and maintains plans, instructions, guidance, and standard operating procedures.
Supports compliance activities.
Qualifications
Associates degree and at least 2 years in similar position.
Knowledge of the following topics:
Computer networking concepts, protocols, and network security methodologies.
Incident response and handling
Applicable business processes and operations for customer organizations.
Business continuity and disaster recovery planning
Host/Network access control mechanisms.
Intrusion detection methods and techniques.
New and emerging IT and cybersecurity technologies
Server and client operating systems
We offer comprehensive benefits to full-time employees including company-paid medical, STD, LTD and life insurance; voluntary dental, vision, Life/AD&D insurance, 401(k) with company matching, generous paid time off and much more.
We encourage applicants of all ages and experience, as we do not discriminate on the basis of an applicant's age.
ALL OFFERS OF EMPLOYMENT ARE CONTINGENT UPON PASSAGE OF A DRUG SCREEN AND BACKGROUND CHECK.
Auto-ApplyIT Compliance Analyst
Information security analyst job in Kansas City, MO
Collabera is ranked amongst the top 10 Information Technology (IT) staffing firms in the U.S., with more than $525 million in sales revenue and a global presence that represents approximately 12,000+ professionals across North America (U.S., Canada), Asia Pacific (India, Philippines, Singapore, Malaysia), and Europe (Ireland, Netherlands, Poland, United Kingdom). We support our clients with a strong recruitment model and a sincere commitment to their success, which is why more than 75% of our clients rank us amongst their top three staffing suppliers.
Not only are we committed to meeting and exceeding our customer's needs, but also are committed to our employees' satisfaction as well. We believe our employees are the cornerstone of our success and we make every effort to ensure their satisfaction throughout their tenure with Collabera. As a result of these efforts, we have been recognized by Staffing Industry Analysts (SIA) as the “Best Staffing Firm to Work For” for five consecutive years since 2012. Collabera has over 50 offices across the globe with a presence in ten countries and provides staff augmentation, managed services and direct placement services to global 2000 corporations.
For consultants and employees, Collabera offers an enriching experience that promotes career growth and lifelong learning. Visit ***************** to learn more about our latest job openings.
Awards and Recognition
--Staffing Industry Analysts: Best Staffing Firm to Work For (2016, 2015, 2014, 2013, 2012)
--Staffing Industry Analysts: Largest U.S. Staffing Firms (2016, 2015, 2014, 2013)
--Staffing Industry Analysts: Largest Minority Owned IT Staffing Firm in the US.
Job Description
A Fortune manufacturing electric utility industry looking for IT Compliance analyst who will be supporting the IT Division staff in meeting compliance obligations and will provide support to ensure compliance with compliance obligations involving Information Technology systems that support the Bulk Electric System (BES) and SOX application environments.
Duties and Responsibilities:
· Help with specific assignments related to developing, implementing, documenting and monitoring compliance activities for Information Technology.
· Help with specific assignments related to developing, implementing, documenting and monitoring Critical Infrastructure Protection (CIP) program activities for the Company.
· Aid in ensuring the compliance activities, functions, plans and recommendations meet the risk posture of the corporation and the goals and performance measurements of the Information Systems Compliance Department.
· Contribute to the effectiveness of the compliance program by assisting with the documentation and implementation of departmental procedures.
Qualifications
· Bachelor's degree in Information Systems, Computer Science or related field, 2 years of information technology experience and a minimum of 1 year of direct NERC CIP Standards Compliance experience or 2 years of other relevant experience OR 4 years of information technology experience and 1 year of direct NERC CIP Standards compliance experience or 2 years of other relevant experience.
· Change Management or general ticketing systems
· Personal experience with Industrial Defender, an application used for the configuration and management of computer system baselines.
· Certified Information Systems Auditor (CISA) or other compliance related certification a plus.
Additional Information
If you want to know more and apply, please connect with:
Niraj Singh
****************************
************
***********************************************
Easy ApplyIT Security Manager
Information security analyst job in Kansas City, MO
DUTIES AND RESPONSIBILITIES: * The IT Security Manager will be responsible for leading the IT Security team; * Protecting the company's employees, customers, data, network, and all other assets from internal and external threats; * Managing IT Security vendor and partner relationships, including MSSPs;
* Installing and Managing Palo Alto Firewalls and remote access solutions;
* Designing and administering a vulnerability management program;
* Developing and maintaining a Vendor Management program;
* Managing on-premises and cloud Identity & Access Management platforms;
* Designing and implementing Multi-Factor Authentication (MFA) and Single Sign-On (SSO) for all possible systems.
* Assisting with required compliance audits;
* Performing regular access and system log reviews;
* Researching and creating plans to implement advanced information security techniques;
* Creating and maintaining Information security policy documentation;
* Working with stakeholders during design and implementation of new technologies to ensure they are set up with security in mind upfront;
* Handling IT Service Management trouble tickets as advanced-level support for internal users in security related matters;
* Administering current backup and restore procedures with Dell Avamar;
* And designing and leading internal security awareness training programs.
ABOUT THE COMPANY:
Bluebird Fiber is a premier fiber telecommunications provider of internet, data transport, and other services to carriers, businesses, schools, hospitals, and other enterprises in the Midwest. To learn more, please visit bluebirdfiber.com.
Join an amazing team of telecommunication professionals! Bluebird is a dynamic growing company in need of a Data Architect to be a part of a collaborative team. This is a full-time, benefit eligible position in the Kansas City, Missouri area. All of us at Bluebird work hard to meet objectives for the organization and live the mission and values of this growing company to meet a common goal. Check out this video that highlights our amazing company culture.
POSITION SUMMARY:
We are seeking a highly skilled IT Security Manager to help secure the infrastructure, communications, and data within the organization. This important role will be responsible for designing the organization's cybersecurity defense-in-depth platform; leading the team responsible for implementing and monitoring those defenses; and ensuring that our systems are secure, reliable, safe, and accessible for business-critical functions. The ideal candidate is an experienced security practitioner and leader who can work with stakeholders to understand existing systems, networks, and technologies to secure them as the business grows.
EDUCATION AND EXPERIENCE:
* Bachelor's degree in Computer Science, Information Technology, or a related technical field.
* 7+ years of hands-on experience in Cybersecurity, IT Service Management, Network Engineering, or related field, with a proven track record of building secure, friction-less experiences.
* Proven experience (5+ years) designing and implementing enterprise-level cloud environments, preferably through Terraform.
* Experience (3+ years) managing Palo Alto firewalls and related technology.
* Experience (3+ years) managing Tenable.io or other Nessus vulnerability scanners.
* Scripting experience (5+ years) with Python and Powershell to automate various Microsoft 365 or internal processes.
* Experience (3+ years) with AWS technologies, including EC2, EKS, Fargate, and Cloudwatch.
* Knowledge of how to design and implement network device access utilizing HPE Aruba Clearpass Policy Manager.
* Experience (3+ years) developing Security Policy documentation;
* Excellent written and verbal communication skills, with the ability to influence and build consensus with other business units.
* Professional certifications in cybersecurity, networking, AWS, or Microsoft systems management preferred.
* Telecommunications industry experience preferred.
SKILLS AND ABILITIES:
* Highly motivated, self-starter with a strong sense of duty
* Continual learner, eager to engage with industry trends and new technologies
* Critical thinking, analytical, and problem-solving skills with the ability to troubleshoot and devise a course of corrective action
* Holds people accountable and can keep teams focused
* Highly organized and efficient with the ability to multitask, prioritizes tasks appropriately
* Goes above and beyond to solve complex problems
* Productive without sacrificing quality, maintainability, accessibility, or performance; perform duties at a high degree of accuracy
* Welcomes giving and receiving feedback, while handling such in a positive and respectful manner
Security Engineer
Information security analyst job in Overland Park, KS
Quest Analytics is one of the fastest growing companies in the Healthcare software space in the US. Healthcare providers and insurance companies rely on our software. We do the important work of providing access to healthcare for all Americans! We are searching for a Security Engineer to join our team in our Overland Park, KS office! In this role, you will contribute to the achievement of security objectives for Quest Analytics. You will provide technical security leadership across multiple security domains to ensure IT best practices and compliance requirements are met for both industry and regulatory standards (HITRUST, FISMA, NIST) when applicable. You will provide deep information security expertise for projects within any of the Information Technology or DevOps disciplines and can provide security guidance to multiple technical teams. You will possess a thorough understanding of emerging technologies and our current business strategy and will offer and recommend solutions. In this role you will:
Collaborates with Systems Administrators, DevOps Engineers, the Director of Security, Development personnel, and Legal, and HR associates to align security requirements to meet business objectives.
Participates in monthly security reviews and provides oversight to application implementations through ongoing security design reviews and risk assessments in order to build security into solutions and to ensure compliance with industry and regulatory standards.
Provides security support during vendor risk assessments.
Viewed as a security expert across the organization, working with various technology team members to convey security best practices and communicate Quest Analytics security requirements.
Owns, maintains and matures information security review processes and documentation.
Plans the delivery and implementation of core information security projects and capabilities in relation to network connectivity, firewalls, threat analysis, encryption, and segmentation.
Partners with technology and business partners to ensure compliance with policies and standards.
Determines security requirements for internal and external projects via interpretation of policies and standards.
Evaluates new technologies, processes, standards, and frameworks on an ongoing basis.
Ensures capability readiness for security controls (people, process, and technology).
Evaluates gaps in existing technologies and processes.
Assists with the implementation, configuration, and operations of various security tools as required.
Works with the organization to achieve and maintain industry security standards (HITRUST, FISMA, ISO etc.).
What we are looking for:
Bachelor's Degree in Information Systems, Computer Science or related field preferred.
Experience working in a security role for a SaaS organization is a must.
Applicants should possess 5+ years of industry related experience in Information Security, Information Technology or Application Development.
3+ years demonstrated success in developing, operating, leading and implementing security solutions and functions. Relevant Examples include- Vulnerability Management, Application Pen Testing, Cloud Security, Data Security or Threat Management/Intelligence.
Strong experience independently developing processes to solve complex issues and implementing new security programs based on current industry best practices.
Experience working with application security vulnerabilities and technologies is required.
Three or more years' participating in vendor and internal security assessments is required.
Two or more years' experience working in a security operations role is desired.
Certifications: CISSP, CISM, CEH or equivalent preferred.
Has strong focus on business outcomes.
Comfortable with collaboration, open communication and reaching across functional borders.
Self-motivated and able to work in a fast-paced, deadline-oriented environment .
Excellent troubleshooting, listening, and problem-solving skills.
Proven ability to solve complex issues.
Customer focused.
Works well in a team environment.
We are not currently engaging with outside agencies on this role.
What you'll appreciate:•Workplace flexibility - you choose between remote, hybrid or in-office•Company paid employee medical, dental and vision•Competitive salary and success sharing bonus•Flexible vacation with no cap, plus sick time and holidays•An entrepreneurial culture that won't limit you to a job description•Being listened to, valued, appreciated -- and having your contributions rewarded•Enjoying your work each day with a great group of people Apply TODAY!careers.questanalytics.com
About Quest AnalyticsFor more than 20 years, we've been improving provider network management one groundbreaking innovation at a time. 90% of America's health plans use our tools, including the eight largest in the nation. Achieve your personal quest to build a great career here. Visa sponsorship is not available at this time.
Preferred work locations are within one of the following states: Alabama, Arizona, Arkansas, Colorado, Connecticut, Delaware, Florida, Georgia, Idaho, Illinois (outside of Chicago proper), Indiana, Iowa, Kansas, Kentucky, Louisiana, Maine, Maryland, Massachusetts, Michigan, Minnesota, Mississippi, Missouri, Montana, Nebraska, Nevada, New Hampshire, New Mexico, North Carolina, North Dakota, Ohio, Oklahoma, Oregon, South Carolina, South Dakota, Tennessee, Texas, Utah, Vermont, Virginia, West Virginia, Wisconsin, or Wyoming.
Quest Analytics provides equal employment opportunities to all people without regard to race, color, religion, sex, national origin, ancestry, marital status, veteran status, age, disability, sexual orientation or gender identity or expression or any other legally protected category. We are committed to creating and maintaining a workforce environment that is free from any form of discriminations or harassment.
Applicants must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.
Persons with disabilities who anticipate needing accommodations for any part of the application process may contact, in confidence *********************
NOTE: Staffing agencies, headhunters, recruiters, and/or placement agencies, please do not contact our hiring managers directly. We are not currently working with additional outside agencies at this time. Any job posting displayed on websites other than questanalytics.com or jobs.lever.co/questanalytics/ may be out of date, inaccurate and unavailable We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Auto-ApplyEngineer, Information Security
Information security analyst job in Overland Park, KS
We're seeking a proactive, detail-oriented Information Security Engineer to join our Technology and Information Security team. This role plays a critical part in protecting the integrity, confidentiality, and availability of our systems and data. You'll work hands-on with advanced security tools and collaborate across teams to ensure the firm's technology environment remains resilient and compliant.
If you thrive on solving complex security challenges, driving continuous improvement, and safeguarding data in a fast-paced, highly regulated industry-this opportunity is for you.
What You'll Do
Implement, operate, and maintain enterprise-level information security tools and controls across the organization.
Conduct security assessments and control testing to evaluate system performance and operational effectiveness.
Support and mature core security processes, including:
Malware response and remediation
Vulnerability management and patch governance
Security log analysis and monitoring
Incident tracking, reporting, and documentation
Analyze the security posture of new and existing applications, software, and infrastructure; provide actionable insights and recommendations.
Collaborate with IT and business partners to identify risks, implement mitigations, and ensure security is embedded into technology and operational initiatives.
Contribute to continuous improvement of the firm's Information Security Program through data analysis, reporting, and cross-functional input
What You Bring
Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or related field-or equivalent experience.
3-5 years of professional experience in information security, IT operations, or a related technical field; experience in financial services a plus.
Familiarity with security tools and frameworks (SIEM, EDR, vulnerability scanners, CIS, NIST, ISO 27001).
Proven ability to operate with independence and accountability in a dynamic environment.
Excellent communication and collaboration skills, with the ability to work effectively across teams and influence without authority.
Analytical mindset with strong attention to detail, organization, and documentation discipline.
Why Join Us
We believe in giving associates progressive opportunities, actively nurturing professional growth, and giving back to the community. You'll find an environment that values curiosity, collaboration, and innovation-where your expertise contributes directly to protecting the firm and its clients.
We're dedicated to building a diverse and inclusive culture where everyone has the support to reach their full potential. Our team enjoys a flexible, hybrid work environment that encourages both professional excellence and work-life balance.
EOE/M/F/D/V
Auto-ApplyInformation Security Officer
Information security analyst job in Shawnee, KS
Job Posting Office of Information Technology Services (OITS) Our employees are our most valuable resource, pivotal to our success. OITS is dedicated to fostering a work environment that values work-life balance. With the state's generous paid time off, including holidays, this ensures our employees have the time they need to rejuvenate. We actively support our team's professional growth through tuition and certification reimbursement, empowering them to pursue their career aspirations. With sample opportunities for continued learning, we prioritize career and leadership development and mentorship. OITS is a great place to work, come join our team!
Verification of identity and employment eligibility to work in the United States is required by federal law. For a list of acceptable documents that establish these criteria, please refer to the federal Form I-9. OITS does not provide sponsorships for this position.
E-Verify: The Office of Information Technology Services (OITS) participates in E-Verify and will provide the federal government with your I-9 information to confirm that you are authorized to work in the U.S. For additional information regarding E-Verify, please click here. For additional information regarding Immigrant and Employee Rights (IER) please click here.
Office of Information Technology Services
About the Position:
* Who can apply: Anyone
* Classified/Unclassified Service: Unclassified
* Full/Part-time: Full-Time
* Regular/Temporary: Regular
* Eligible to Receive Benefits: Yes
* Veterans' Preference Eligible: Yes
* This position is eligible for OITS's hybrid work program. The candidate must work in the office three days a week. The supervisor and business needs will determine the hybrid schedule.
Compensation:
* Annual Salary/Hourly Rate: $85,000 - 95,000/Annually
Note: Salary can vary depending upon education, experience, or qualifications.
Position Summary:
The Information Security Officer (ISO) plays a critical role in safeguarding IT assets, systems, and data for the assigned agencies ensuring alignment with the Kansas Information Security Office's (KISO) overarching security strategy. The ISO supports the agency's business objectives and helps to ensure compliance with state, federal, and contractual security regulations. This role leads the implementation of security frameworks, policies, risk management, and third-party risk assessments, reporting directly to the Information Security Assurance Supervisor within the Executive Branch.
Embedded within one or more agencies, the ISO must balance agency-specific needs with state-wide security objectives and policies. This role requires a strong understanding of governance, risk management, and security frameworks, such as the NIST Cybersecurity Framework (CSF).
Key Responsibilities:
* Develop, implement, and maintain agency-specific information security policies and procedures to ensure alignment with the Kansas Information Security Office (KISO) strategy and applicable laws, regulations, and frameworks (e.g., NIST CSF, NIST 800-53).
* Lead risk management activities including risk assessments, mitigation planning, and third-party/vendor risk evaluations to protect agency data, systems, and infrastructure.
* Serve as the primary liaison between the agency and KISO, communicating and implementing statewide cybersecurity initiatives while balancing agency-specific operational needs.
* Conduct compliance assessments and support audits related to federal, state, and contractual security requirements, including CJIS, HIPAA, IRS Pub 1075, and others.
* Collaborate with agency leadership and technical teams to provide strategic guidance and ensure security is integrated into all business operations and IT projects.
* Respond to security incidents by coordinating with internal and external stakeholders to manage investigation, containment, and recovery, followed by root cause analysis and improvement plans.
* Provide security awareness training and consultation to agency staff to promote a strong security culture and ensure understanding of security policies and practices.
Required skills:
* Strong working knowledge of security frameworks such as NIST CSF or NIST 800-53.
* Ability to develop and implement policies and procedures, and to present security strategies to both technical and non-technical audiences.
* Effective communication skills, with the ability to convey complex security concepts in simple terms to technical and business stakeholders.
* Strong leadership and project management skills, with the ability to prioritize tasks in a fast-paced environment.
* Ability to assess regulatory requirements and determine whether existing controls meet those requirements.
* Proficient in reading and comprehending technical information related to software, hardware, and telecommunications systems.
Minimum Qualifications:
* Eleven (11) years' direct experience relative to the field of work, with at least three (3) years of direct experience in information security.
Preferred:
* One or more cybersecurity certifications (CISSP, CISM, CISA) or must obtain within one year.
* Familiarity with government and public sector environments
* Knowledge of state and federal regulations such as CJIS, HIPAA, and IRS Pub 1075.
Necessary Special Requirements: Ability to obtain and retain an OITS Security and KCJIS clearances are requirement of employment and continued employment.
Disclaimer: Due to security requirements related to system access, the following will result in disqualification for this position: Felony Convictions, Felony Deferred Adjudication, Class A Misdemeanor Deferred Adjudication, Class B Misdemeanor Convictions less than 10 years, an Open Arrest for Any Criminal Offense (Felony or Misdemeanor).
Employment Benefits:
In addition to the starting salary, the State of Kansas offers a significant benefits package that is available the first day of employment. All benefits eligible, full-time employees may elect to enroll in:
* Comprehensive medical, mental, dental, vision, and additional coverage
* Sick & Vacation leave
* Work-Life Balance programs: parental leave, military leave, jury leave, funeral leave
* Paid State Holidays
* Employee discounts with the STAR Program
* Retirement and deferred compensation programs
* This benefits package represents additional annual compensation.
Visit the Employee Benefits page for more information…
Recruiter Contact Information:
* Name: Brenda Cripps
* Email: OITS_******************
* Mailing Address: 900 SW Jackson St, Room 803, Topeka, KS 66612
Required documents for this application to be complete:
* On the My Job Applications page, verify these documents are present and valid. Upload or delete and upload new if needed.
* DD214 (if you are claiming Veteran's Preference)
* Inside your Job Application upload these documents:
* Resume (or choose existing if you have one)
* Cover Letter
Helpful Resources at jobs.ks.gov: "How, What, & Where do I Upload Documents."
Job Application Process
* First Sign in or register as a New User
* Complete or update your contact information on the:
* Careers> My Contact Information page
* NOTE: This information is included on all your job applications
* Upload required documents listed above for the Careers> My Job Applications page
* NOTE: This information is included on all your job applications
* Start your draft job application, upload other required documents, and submit when it is complete.
* Manage your draft and submitted applications on the Careers> My Job Applications page.
* Check your email and My Job Notifications for written communications from the Recruiter
* Email - sent to the Preferred email on the My Contact Information page
* Notifications - view the Careers> My Job Notifications page
Helpful Resources at jobs.ks.gov: "How to Apply for a Job - Instructions" and "How to Search for a Job - Instructions."
How to Claim Veterans Preference
Veterans' Preference Eligible (VPE): Former military personnel or their spouse that have been verified as a "veteran"; under K.S.A. 73-201 will receive an interview if they meet the minimum competency factors of the position. The veterans' preference laws do not guarantee the veteran a job. Positions are filled with the best qualified candidate as determine by the hiring manager.
How to Claim Disability Hiring Preference
Applicants that have physical, cognitive and/or mental disabilities may claim an employment preference when applying for positions. If they are qualified to meet the performance standards of the position, with or without a reasonable accommodation, they will receive an interview for the position. The preference does not guarantee an applicant the job, as positions are filled with the best qualified candidate as determined by the hiring manager.
Learn more about claiming Disability Hiring Preference:
Disability Hiring Preference | Kansas Department of Administration (ks.gov)
Equal Employment Opportunity
The State of Kansas is an Equal Opportunity Employer. All qualified persons will be considered for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, political affiliation, disability, or any other factor unrelated to the essential functions of the job.
If you wish to identify yourself as a qualified person with a disability under the Americans with Disabilities Act and would like to request an accommodation, please address the request to the agency recruiter.
Security Engineer - Data Protection
Information security analyst job in Kansas City, MO
Lockton is seeking a dedicated Security Engineer specializing in Data Protection. This role is focused on leveraging the Microsoft Purview suite to safeguard our organization's most critical data assets across our hybrid environment. The ideal candidate will be a subject matter expert in designing, implementing, and managing data-centric security controls within Microsoft Purview and Azure.
Key Responsibilities:
* Design, implement, and manage a comprehensive data protection strategy utilizing the Microsoft Purview governance and compliance portal.
* Deploy and configure Microsoft Purview solutions, including Data Loss Prevention (DLP), Microsoft Information Protection (MIP) for data classification and sensitivity labeling, Insider Risk Management, and eDiscovery.
* Develop and enforce data governance policies to discover, classify, and protect sensitive data across Microsoft 365, Azure, on-premises infrastructure, and other SaaS applications.
* Create, tune, and monitor robust Data Loss Prevention (DLP) policies for endpoints, email, Microsoft Teams, and cloud applications to prevent data exfiltration.
* Collaborate with business, legal, and compliance teams to translate data protection requirements into technical policies and controls.
* Manage the configuration and lifecycle of sensitivity labels to ensure proper encryption, access control, and visual markings are applied to documents and emails.
* Serve as the subject matter expert for data-related security incidents, using Purview tools for investigation, forensics, and response.
* Monitor the effectiveness of data protection controls and provide regular reporting on compliance, risk posture, and policy enforcement to leadership.
* Stay current with the latest advancements and threats in the data protection landscape and the evolution of the Microsoft Purview platform.
* Actively coach and mentor other security and technology team members on data protection best practices.
* Participate in the security team's on-call rotation and be available to respond to critical data security incidents outside of regular business hours.
Senior Security Engineer
Information security analyst job in Kansas City, MO
Best People + Right Culture. These are the driving forces behind JE Dunn's success. By hiring inspired people, giving them interesting and challenging work, enabling them with innovative tools, and letting them share in the company's rewards, we've found a sustainable way to grow in our industry for the last 100+ years.
Our diverse teams around the country strive to enrich lives through inspired people and places everyday, and we need inspired people like you to join us in our pursuit of building perfection.
Role Summary
The Senior Security Engineer will design, install, manage, document, and maintain enterprise security systems and standards across commonly used platforms (e.g. cloud, on-premises), ensuring end-user experience is supported through collaboration across other Information Technology functions. This role will provide specifications, analyze and recommend solutions, and suggest new products and services, delivering results through varied high-impact projects. All activities will be performed in support of the strategy, vision and values of JE Dunn.
* Autonomy & Decision-Making: Makes decisions on routine matters, provides recommendations to supervisor and refers all exceptions to supervisor.
* Career Path: Security Architect
Key Role Responsibilities - Core
KEY ROLE RESPONSIBILITIES
SECURITY ENGINEER FAMILY - CORE
* Acts as escalation contact and subject matter expert for security operations and information technology team in relation to security solutions and practices.
* Mentors team members on technical and security methodology characteristics.
* Continuously improving the security program with automation and orchestration scripting for security operations efficiency and effectiveness.
* Acts as primary technical resource for design and implementation projects.
* Drafts and recommends operating procedures and changes to information security practices and solutions.
* Trains and engages operations and support personnel on security solutions.
* Advise on trends, threats, and emerging security risks, relevant to the organization.
* Engineer effective solutions that securely enable and protect in alignment with our organization compliance requirements.
* May be a subject matter expert for a variety of security related systems or applications.
* Communicates with operational groups for collaboration of security program management.
* Advocates secure culture and provides education throughout the appropriate client group.
* Improves maturity capability of processes, procedures, and operations of the security program.
* Communicates intelligence and program effectiveness reports to supervision.
Key Role Responsibilities - Additional Core
SENIOR SECURITY ENGINEER
In addition, this position will be responsible for the following:
* Designs and implements security solutions for various platforms
* Conducts comprehensive security assessments and audits to determine the effectiveness of security controls
* Assists operations as needed in incident response and contribute to post-incident analysis
* Develops and implements security policies, procedures, and configuration standards to meet regulatory and client security requirements
* Reviews the Governance, Risk, and Compliance platform to determine any opportunities to lower security risk level
* Implements and maintains access control system for any type of new enhancement opportunities
* Collaborates with development teams to ensure secure software development practices
* Monitors and analyzes security events and logs to make sure backend and correlation are implemented and working
* Designs and implements robust security ensuring alignment with industry best practices and organization configurations
* Deploys and helps maintain a secure cloud infrastructure and security controls. This includes network security, security monitoring, data protection, and compliance configuration
* May assist the Security Architect in conducting threat modeling and risk assessments for new projects and cloud initiatives, identifying and mitigating potential security risks
* Builds security automation scripts and tools to streamline security operations and improve efficiency
* Works closely with cross-functional teams to provide security guidance and best practices, ensuring security is embedded in the project lifecycle
* Plays an active role in contributing ideas for security innovations
* Assists in the design and execution of incident response as it pertains to security engineering
* Ensures compliance with security frameworks and regulations by engineering and implementing new security controls to address gaps in the security program
* Implements security technologies with full understanding on accountability and ownership for full deployment
Knowledge, Skills & Abilities
*
* Ability to perform work accurately and completely, and in a timely manner
* Communication skills, verbal and written - Intermediate
* Ability to lead technical projects once assigned
* Working knowledge of NIST cyber security framework, defense federal acquisition regulation supplement, and ISO 270XX
* Ability to solve technical issues - Advanced
* Demonstrated expert knowledge of information security practices
* Substantial knowledge of Python and Powershell scripting languages
* Proficient with multiple IT platforms including Microsoft Windows, Linux, iOS, Cisco Networking, Cisco firewalls, intrusion detection and load balancers
* Proficient with multiple cloud platforms
* Technical writing and documentation skills
* Organizational skills
* Ability to quickly and effectively solve complex problems
* Ability to deliver quality through attention to detail
* Ability to work in team and independently
* Ability to work a flexible schedule - might be on call in the evenings and weekends
* Ability to build relationships and collaborate within a team, internally and externally
Education
*
* Bachelor's degree in information security or related field (Preferred)
* In lieu of the above requirements, equivalent relevant experience will be considered
Experience
* 5+ Years information security experience (Preferred)
Working Environment
* Must be able to lift up to 25 pounds
* May require periods of overnight travel
* Normal office environment
* Frequent activity: Sitting, Viewing Computer Screen
* Occasional activity: Standing, Walking, Bending, Climbing, Reaching above Shoulder, Pushing, Pulling
Benefits Information
The benefits package aligned to this position is Professional Non-Union. Please click the link below for more details.
Click here for benefits details.
This role is expected to accept applications for at least three business days and may continue to be posted until a qualified applicant is selected or the position has been cancelled.
JE Dunn Construction is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer and it is our policy to provide equal opportunity to all people without regard to race, color, religion, national origin, ancestry, marital status, veteran status, age, disability, pregnancy, genetic information, citizenship status, sex, sexual orientation, gender identity or any other legally protected category. JE Dunn Construction is a background screening, drug-free workplace.
JE Dunn provides reasonable accommodations to qualified individuals with disabilities. If you would like to request a reasonable accommodation in order to apply for a job, please submit your request to accommodations@jedunn.com
JE Dunn Construction Company does not accept unsolicited resumes from search firms or agencies. Any resume submitted to any employee of JE Dunn Construction without a prior written search agreement will be considered unsolicited and the property of JE Dunn Construction Company. Please, no phone calls or emails.
Why People Work Here
At JE Dunn we offer our employees an inspired place to enrich their life and the lives of those around them
Building on our rich history, our employee owners are shaping the future of JE Dunn. In our team-focused environment we do life together and are generously rewarded for our efforts
About JE Dunn
For more information on who we are, click here.
EEO NOTICES
Know Your Rights: Workplace Discrimination is Illegal
California Privacy Policy
E-Verify
JE Dunn participates in the Electronic Employment Eligibility Verification Program.
E-Verify Participation (English and Spanish)
Right to Work (English)
Right to Work (Spanish)
Sr. Information Security Risk Analyst
Information security analyst job in Kansas City, MO
As part of UMB's Corporate Information Security and Privacy (CISP) team, the mission is to identify threats, vulnerabilities, and risks and to help protect the people, information, and services within the organization. CISP works closely with all lines of business. This role will work especially close with UMB enterprise technology and information security teams to ensure data protection initiatives are present, usable and, understood within the organization.
As the Sr. Information Security Risk Analyst, you will be responsible for supporting UMB Financial Corporation's Information Security Program to ensure UMB is able to address rapidly changing threats, technologies, and business conditions. This is a subset of the overall responsibilities which involves other multiple initiatives as assigned by Corporate Risk leadership.
This role is hybrid (Mon through Thu on-site / Fri remote) located in downtown Kansas City, MO.
How you'll spend your time:
Collaborate and drive security initiatives, working with people across multiple teams and diverse functions.
Enable the business and other stakeholders to make risk-aware decisions by advising business units and technology leaders of the information security risks and proposing acceptable risk treatment options and alternatives.
Support the information security program efforts through the collection of performance indicators, metrics, and other evidence and communicating relevant, succinct, and actionable recommendations to leadership.
Support UMB's PCI-DSS compliance and assessment activities while supporting our internal technology and business teams across the organization.
Proactively maintain a current and working understanding of information security best practices, the practical application of security concepts, relevant information security and technology regulations, threats, and industry trends.
Assist in responding to internal/external audits, including third-party security assessments, if applicable.
Maintain a current and working understanding of relevant information security and technology regulations and industry trends, including UMB Information Security Policies and the practical application of the Policies.
Manage multiple simultaneous workstreams supporting disparate stakeholders, providing appropriate and timely communication of issues, concerns, risks, and status.
We're excited to talk with you if:
You have at least 5 years of experience in information security, security audit, or information security risk management/compliance.
You have a Bachelor's degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience.
You have strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL.
You have the ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously.
You have understanding of and practical experience with information security risk assessments and information security audits.
Bonus Points If:
You have CISSP, CRISC, SEC+ or applicable certifications/accreditation.
You have strong understanding of information security regulatory requirements and best practices.
You have general understanding of banking and financial services processes, and the related risks to securing and managing data.
Applicants must have legal authority to work in the United States. Work Visa sponsorship not available for this position.
Compensation Range:
$69,230.00 - $149,000.00
The posted compensation range on this listing represents UMB's standard for this role, but the actual compensation may vary by geographic location, experience level, and other job-related factors. In addition, this range does not encompass the full earning potential for this role. Please see the description of benefits included with this job posting for additional information
UMB offers competitive and varied benefits to eligible associates, such as Paid Time Off; a 401(k) matching program; annual incentive pay; paid holidays; a comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage; health savings, flexible spending, and dependent care accounts; adoption assistance; an employee assistance program; fitness reimbursement; tuition reimbursement; an associate wellbeing program; an associate emergency fund; and various associate banking benefits. Benefit offerings and eligibility requirements vary.
Are you ready to be part of something more?
You're more than a means to an end-a way to help us meet the bottom line. UMB isn't comprised of workers, but of people who care about their work, one another, and their community. Expect more than the status quo. At UMB, you can expect more heart. You'll be valued for exactly who you are and encouraged to support causes you care about. Expect more trust. We want you to do the right thing, no matter what. And, expect more opportunities. UMBers are known for having multiple careers here and having their voices heard.
UMB and its affiliates are committed to inclusion and diversity and provide employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including gender, pregnancy, sexual orientation, and gender identity), national origin, age, disability, military service, veteran status, genetic information, or any other status protected by applicable federal, state, or local law. If you need accommodation for any part of the employment process because of a disability, please send an e-mail to ************************* to let us know the nature of your request.
If you are a California resident, please visit our
Privacy Notice for California Job Candidates
to understand how we collect and use your personal information when you apply for employment with UMB.
Auto-ApplySr. Information Security Engineer
Information security analyst job in Kansas City, MO
Provides advanced technical level computer security support to ensure the firm's overall information assets are adequately protected. This position is responsible for the deep, technical engineering aspect of all security hardware and software, with the skills to interpret data from both security and non-security class equipment with an emphasis on configuration and tuning of equipment. This position requires advanced capabilities in equipment configuration, installation, system interoperability and deployment.
Communicates courteously and professionally by phone, email and in person, using good communication skills, keeping supervisor abreast of current issues and potential problems as they develop; while seeking advice as needed.
Responsible for equipment hardware, appliances and software. Conducting, coordinating, testing, implementing, deploying, and operational maintenance of all information security systems, applications, appliances and related devices throughout the firm.
Configures multiple products, both hardware and software, to interact with each other; devises solutions to a changing threat landscape as it evolves.
Responsible for assessing, recommending, developing, implementing and maintaining the firm's computer security infrastructure and security standards.
Provides technical engineering expertise in the selection, testing, implementation and deployment of information security systems. This includes the evaluation of new security products, and their interoperability with existing firm equipment.
Provides technical support and direction in information security monitoring, assessment, configuration, maintenance, auditing and testing.
Performs security event and intrusion analysis on a daily basis and mitigates any incidents that are medium to critical in nature. This may include troubleshooting non-security related equipment at the network layer level.
Performs penetration testing, including wired and wireless, social-engineering, and application security vulnerability assessments as required by management.
Provides guidance and input to technical reviews of proposed security projects and the certification and accreditation process.
Independently and, as a team member, plans, executes and documents security tests and evaluation.
Performs engineering and analysis of in-place technical and non-technical security controls protecting information and information systems. Uses advanced technical skills in network security design and implementation, including non-security related equipment interfacing as needed.
Has advanced understanding of the OSI model and how to apply the OSI model to daily troubleshooting and network security projects.
Manages information security aspects of IT projects, ensuring security protocols are in place and in compliance with other applicable information security policies. Reviews project plans for other IT teams to determine security requirements, and follows up to ensure security of new systems.
Provides guidance to non-senior security staff on information security and any security related projects.
Lead for security risk assessments and penetration studies of networks for both security and non-security equipment. Recommends solutions for security vulnerabilities and takes corrective measures and/or applies security patches when appropriate.
Installs, tests, configures, monitors, maintains and upgrades malicious code detection applications/tools to ensure Malware is blocked or eradicated when detected. Configuration and tuning of security equipment as needed to adjust to changing threat landscapes.
Analyzes problematic security log entries from security infrastructure systems, provides technical solutions to issues and security breaches.
Is on call to respond to security incidents from Shook users, representatives or clients as needed, or disaster recovery and business continuity operations. Maintains advanced knowledge of the firm's Information System Security posture, goals and objectives.
Required Technical Skillsets
* Windows 2016+ Server Operating System Support and Configuration
* Azure Cloud Security Architecture and Implementation
* Azure Blob Storage and Containers
* Certificate Authority and Key Management
* Cloud Intrusion Protection Systems / WAF
* Cloud based DLP Systems
* Fluent ability to operate Security Information and Event Management solution
Additional Preferred Skillsets
* Knowledge of CrowdStrike EDR, CrowdStrike SIEM
* Content Filtering via Web Gateway
* Malicious Site Analysis
* Apple (Mac) Security Enforcement
* Cloud Vulnerability and Penetration Testing
* Virus Protection, Endpoint Encryption
* Data Classification
* AI Security
Bachelor's degree (B.A.) from four-year college or university; or four years information security and two years advanced information security experience and/or training with an emphasis on engineering functions; or eight years of combined information systems and information security experience; and/or equivalent combination of education and experience. Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) and/or Certified Cloud Security Professional (CCSP) are strongly preferred. Must have advanced knowledge with PC and LAN servers, IT systems, and other Information Security related technologies. Has advanced technical skills in network servers, workstations, and applications.
IT Compliance Analyst
Information security analyst job in Kansas City, MO
Collabera is ranked amongst the top 10 Information Technology (IT) staffing firms in the U.S., with more than $525 million in sales revenue and a global presence that represents approximately 12,000+ professionals across North America (U.S., Canada), Asia Pacific (India, Philippines, Singapore, Malaysia), and Europe (Ireland, Netherlands, Poland, United Kingdom).
We support our clients with a strong recruitment model and a sincere commitment to their success, which is why more than 75% of our clients rank us amongst their top three staffing suppliers.
Not only are we committed to meeting and exceeding our customer's needs, but also are committed to our employees' satisfaction as well.
We believe our employees are the cornerstone of our success and we make every effort to ensure their satisfaction throughout their tenure with Collabera.
As a result of these efforts, we have been recognized by Staffing Industry Analysts (SIA) as the “Best Staffing Firm to Work For” for five consecutive years since 2012. Collabera has over 50 offices across the globe with a presence in ten countries and provides staff augmentation, managed services and direct placement services to global 2000 corporations.
For consultants and employees, Collabera offers an enriching experience that promotes career growth and lifelong learning.
Visit ***************** to learn more about our latest job openings.
Awards and
Recognition
--Staffing Industry Analysts: Best Staffing Firm to Work For (2016, 2015, 2014, 2013, 2012)
--Staffing Industry Analysts: Largest U.S. Staffing Firms (2016, 2015, 2014, 2013)
--Staffing Industry Analysts: Largest Minority Owned IT Staffing Firm in the US.
Job Description
A Fortune manufacturing electric utility industry looking for IT
Compliance analyst who will be
supporting the IT Division staff in meeting compliance obligations and will provide support to ensure compliance with compliance obligations involving Information Technology systems that support the Bulk Electric System (BES) and SOX application environments.
Duties and Responsibilities:
·
Help with specific assignments related to developing, implementing, documenting and monitoring compliance activities for Information Technology.
·
Help with specific assignments related to developing, implementing, documenting and monitoring Critical Infrastructure Protection (CIP) program activities for the Company.
·
Aid in ensuring the compliance activities, functions, plans and recommendations meet the risk posture of the corporation and the goals and performance measurements of the Information Systems Compliance Department.
·
Contribute to the effectiveness of the compliance program by assisting with the documentation and implementation of departmental procedures.
Qualifications
·
Bachelor's degree in Information Systems, Computer Science or related field, 2 years of information technology experience and a minimum of 1 year of direct NERC CIP Standards Compliance experience or 2 years of other relevant experience OR 4 years of information technology experience and 1 year of direct NERC CIP Standards compliance experience or 2 years of other relevant experience.
·
Change Management or general ticketing systems
·
Personal experience with Industrial Defender, an application used for the configuration and management of computer system baselines.
·
Certified Information Systems Auditor (CISA) or other compliance related certification a plus.
Additional Information
If you want to know more and apply, please connect with:
Niraj Singh
****************************
************
***********************************************
Easy Apply