Post job

Information security analyst jobs in Puerto Rico - 25 jobs

  • Senior Security Analyst

    Capgemini Holding Inc. 4.5company rating

    Information security analyst job in Guaynabo, PR

    Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired by a collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizations unlock the value of technology and build a more sustainable, more inclusive world. The Senior Security Analyst supports the governance of service provider activities in the enterprise security program, monitoring and escalating problems and providing information on security issues. Undertakes security assurance and audit activities to ensure compliance and to identify risks and opportunities. Provides information to senior managers and executives to ensure that they are aware of any security-related risks or opportunities. Provides subject matter expertise, consultancy and training in security-related matters. Must be able to function in a fast-paced, multi-vendor outsourced environment, facilitating conference calls among other subject matter experts and the client. Your Responsibilities: Handles monthly reporting duties for the Information Risk Management team; Facilitates audit planning and audit remediation activities of the service providers, leading calls and documenting and reporting progress; Has familiarity with Security technologies and controls; Expertise not required, but ability to escalate to more senior subject matter experts is important. Develops work plans to structure solutions and communications; Able to involve client and vendor staff appropriately in resolving Security problems; Participates effectively within the business' Security governance framework; Tracks the corrective and preventive actions being taken to improve Security to closure. Possess strong communication skills to communicate technical and security risk information to management. Your Experience: Ability to self-manage with little interaction from other management staff. Flexible and able to adapt to manage a fast-changing environment. Ability to solve complex issues and provide recommendations and advice regarding remediations. Security architecture, security software, or security policy experience Ability to organize agendas, lead conference calls, and track action items to completion. Security and Audit certifications such as SSCP, CISSP, CISA, CISM, CGEIT, CRISC, Security + are preferred. Job Description - Grade Specific The base compensation range for this role in the posted location is: $65,586-121,980. Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law. The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction. These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity. It is not typical for candidates to be hired at or near the top of the posted compensation range. In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws. Capgemini offers a comprehensive, non-negotiable benefits package to all regular, full-time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include: * Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave * Medical, dental, and vision coverage (or provincial healthcare coordination in Canada) * Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada) * Life and disability insurance * Employee assistance programs * Other benefits as provided by local policy and eligibility Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation. Disclaimers Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law. This is a general description of the Duties, Responsibilities and Qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodation does not pose an undue hardship. Capgemini is committed to providing reasonable accommodation during our recruitment process. If you need assistance or accommodation, please reach out to your recruiting contact. Please be aware that Capgemini may capture your image (video or screenshot) during the interview process and that image may be used for verification, including during the hiring and onboarding process. Click the following link for more information on your rights as an Applicant in the United States. ************************************************************************** Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem.
    $65.6k-122k yearly 6d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in San Juan, PR

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. **Responsibilities:** + **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance. + **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning. + **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications** + Experience with SailPoint IdentityIQ (IIQ) is a must + Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP) + Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses) + Solid understanding of the SailPoint object model, rules, and policies + Experience with both lifecycle manager (LCM) and compliance manager (CM) modules + Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required + Proven track record of successful IAM implementations including large scale enterprise deployments. + Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 51d ago
  • Staff AI Security Architect

    Datavant

    Information security analyst job in San Juan, PR

    Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format. Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care. By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare. **What We're Looking For** As a Staff AI Security Architect at Datavant, you will lead the design, evolution, and adoption of secure by design principles across our AI and Machine Learning (ML) systems. This role sits at the intersection of AI innovation and security architecture. You will define and operationalize AI security strategy, embed security into the AI/ML development lifecycle, and partner deeply with data science, engineering, product, legal, and compliance teams to ensure our AI systems are secure, trustworthy, and scalable. **What You Will Do** + Establish AI security architectural standards, design patterns, and best practices adopted across engineering teams. + Architect and advise on secure end-to-end AI systems, including data pipelines, model training, evaluation, deployment, runtime monitoring, and agentic workflows. + Lead threat modeling, architecture reviews, and risk assessments for AI-driven products, including LLMs, agent frameworks, and multi-agent systems. + Define and evolve a comprehensive AI/ML secure development lifecycle integrated into existing SDLC practices. + Develop reference architectures, documentation, and reusable security components to accelerate secure AI adoption. + Collaborate with legal, privacy, compliance, and responsible AI stakeholders to align security controls with regulatory and ethical requirements. + Act as a trusted advisor to senior leadership on AI security risks, trade-offs, and long-term strategy. **What You Need to Succeed** + 8+ years of experience in security architecture, application security, or product security, with meaningful focus on AI/ML systems. + Hands-on experience securing AI/ML or LLM-based systems, including familiarity with modern AI architectures and agentic workflows. + Strong understanding of AI threat models, including adversarial ML, prompt injection, data poisoning, model theft, and abuse scenarios. + Proven ability to design and influence security architectures for large-scale, distributed systems. + Strong communication skills with the ability to translate complex technical concepts to both technical and non-technical stakeholders. + Have a strong understanding of security controls, both those that exist in audit standards as well as practical controls that can help reduce risk and increase safety. **What Helps You Stand Out** + Hands-on experience building, testing, or tinkering with agentic AI workflows, with an understanding of the security risks they introduce. + Experience securing AI/ML workloads in Databricks, with a deep understanding of its platform-specific security risks. + You have experience with security in healthcare or other highly regulated space. Examples: HIPAA, HITRUST, SOC 2, PCI, FedRamp experience from an operational response standpoint. We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. At Datavant our total rewards strategy powers a high-growth, high-performance, health technology company that rewards our employees for transforming health care through creating industry-defining data logistics products and services. The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job. The estimated total cash compensation range for this role is: $224,000-$280,000 USD To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and/or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and/or religion. This job is not eligible for employment sponsorship. Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here (************************************************** . Know Your Rights (*********************************************************************** , explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay. At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren't even able to see whether you've responded.) Responding is entirely optional and will not affect your application or hiring process in any way. Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please request it here, (************************************************************** Id=**********48790029&layout Id=**********48795462) by selecting the 'Interview Accommodation Request' category. You will need your requisition ID when submitting your request, you can find instructions for locating it here (******************************************************************************************************* . Requests for reasonable accommodations will be reviewed on a case-by-case basis. For more information about how we collect and use your data, please review our Privacy Policy (**************************************** .
    $53k-88k yearly est. 18d ago
  • Software Security Architect

    Hewlett Packard Enterprise 4.7company rating

    Information security analyst job in San Juan, PR

    Software Security ArchitectThis role has been designed as ‘Hybrid' with an expectation that you will work on average 2 days per week from an HPE office. Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world. Our culture thrives on finding new and better ways to accelerate what's next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE. Job Description: Job Family Definition: Designs and develops security programs for software enhancements and new products. Develops solutions for security of software including operating systems, compilers, routers, networks, utilities, databases and Internet-related tools. Determines hardware compatibility and/or influences security hardware design. Management Level Definition: Contributions have visible technical impact on a product or major subcomponent. Applies in-depth professional knowledge and innovative ideas to solve complex security problems. Visible contributions improve security posture, time-to-market, , or satisfy current and future unmet customer security needs. Recognized internal authority on key technology area applying innovative principles and ideas. Provides technical security leadership for significant project/program work. Leads or participates in cross-functional initiatives and contributes to mentorship and knowledge sharing across the organization. Responsibilities: Play a critical role in identifying and mitigating potential security risks, collaborating with cross-functional teams and other stakeholders, and maintaining compliance with industry standards and regulations. Develops organization-wide security architectures and methodologies for software systems development across multiple platforms in the organization. Conduct threat modeling, secure design and risk assessments to proactively identify potential security threats and develop strategies to mitigate them. Collaborates with all stakeholders like product management and engineering teams to integrate security into all stages of design and development for complex products and platforms, including solution design, analysis, coding, testing, and integration. Create and evolve security architectural patterns, threat modeling frameworks, and secure coding guidelines. Provide guidance and support to product development teams in implementing secure coding practices and security best practices. Educating and communicating security information and best practices to other stakeholders at HPE. Translate emerging threats into actionable guidance for engineering and product teams. Represent HPE at industry events and conferences as a product security subject matter expert. Provides guidance and mentoring to less- experienced staff members. Education and Experience Required: Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent. Typically 10+ years experience in a security role . Knowledge and Skills: Experience designing and developing secure software systems design tools and languages. Excellent analytical and problem-solving skills. Experience in overall architecture of software systems for products and solutions. Experience in cloud security technologies. Experience in common security vulnerability classes and taxonomies. Experience in security constructs in programming languages like python, java, go, and C. Excellent written and verbal communication skills; mastery in English and local language. Ability to effectively communicate product architectures, design proposals and negotiate options at senior management levels. History of innovation with multiple patents or deployed solutions in the field of software design. Excellent written and verbal communication skills; mastery in English and local language. Ability to effectively communicate product architectures, design proposals and negotiate options at business unit and executive levels. Additional Skills: Cloud Architectures, Cross Domain Knowledge, Design Thinking, Development Fundamentals, DevOps, Distributed Computing, Microservices Fluency, Full Stack Development, Security-First Mindset, Solutions Design, Testing & Automation, User Experience (UX) What We Can Offer You: Health & Wellbeing We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing. Personal & Professional Development We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have - whether you want to become a knowledge expert in your field or apply your skills to another division. Unconditional Inclusion We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. Let's Stay Connected: Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE. #puertorico#networking Job: Engineering Job Level: TCP_05 HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity. Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities. HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories. No Fees Notice & Recruitment Fraud Disclaimer It has come to HPE's attention that there has been an increase in recruitment fraud whereby scammer impersonate HPE or HPE-authorized recruiting agencies and offer fake employment opportunities to candidates. These scammers often seek to obtain personal information or money from candidates. Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors will never charge any candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process. The credentials of any hiring agency that claims to be working with HPE for recruitment of talent should be verified by candidates and candidates shall be solely responsible to conduct such verification. Any candidate/individual who relies on the erroneous representations made by fraudulent employment agencies does so at their own risk, and HPE disclaims liability for any damages or claims that may result from any such communication.
    $80k-130k yearly est. Auto-Apply 60d+ ago
  • Principal Security Engineer

    Oracle 4.6company rating

    Information security analyst job in San Juan, PR

    1. Nashville, TN 2. Austin, TX Security Architecture is comprised of security experts who are focused and specialized in securing all aspects of OCI Cloud. As security experts, we are sought out by our partner engineering organizations to provide guidance on designing their products, services and features. We set OCI wide security standards and hold a high security requirement bar for all services to ensure the highest level of security to our customers. We are currently looking for a highly motivated security engineer with expertise in Cloud security to join our team. This candidate would be involved in architecture, design, prototyping and development of the security aspects of Oracle Cloud's products and services. You should be a security-minded leader who can work with architects and/or a development team as they design new capabilities to ensure that security requirements are set and the design implements the necessary controls to increase security posture for the service. As a member of the Security Architecture team, you will be required to have a firm grasp on security technologies, trends in cloud security practices, and ability to communicate complex technical security requirements clearly to the development teams, risk assessment, risk mitigation and security tools/automation. **Responsibilities** Key responsibilities: + Conduct threat modeling, security architecture reviews, risk assessment and provide guidance on mitigating the identified issues. + Create and maintain technical security standards and patterns and set the benchmark for AI security requirement bar at OCI. + Stay up-to-date on the latest advancements in AI technologies and apply them to improve OCI's security posture. + Provide expert security guidance to service teams to ensure their products, services and feature are secure by default. + Lead OCI-wide cloud security initiatives to enhance overall cloud security posture. + Provide mentorship to junior engineers on the team. Qualifications: + A minimum of 8+ years of experience with at least 5+ years in Cloud Security required and 2+ years in AI and ML is good to have. + Or a BS or MS in Computer Science/Engineering with a focus on AI/Security, or a related field with a minimum of 8 years of experience in the field is required. + Experience in architecture, design, deployment, and handling of standard security practices and policies is required. Preferred qualifications includes, + A strong background in AI, machine learning, and deep learning. + Experience in applying AI technology to security domain. + Experience as a security leader for a cloud product or set of cloud services, with expertise in IaaS, PaaS. + Experience with architecture security reviews for products or services operating in a cloud environment, especially those which are reliant on homegrown or third-party LLMs and APIs is a plus. + Expertise in concepts of Multi-tenancy, Cloud Security and Virtualization, Access Management, OAuth, Cloud SSO, Identity Provisioning, Identity Governance etc. + Expertise in Encryption, Key management, Cybersecurity fundamentals (e.g., access controls, common software vulnerabilities, and security best practices), Deployment Methodologies, and Security Standards Compliance Certification (STIG, FedRAMP, PCI-DSS), etc. + Very good understanding of concepts related to Docker, Container, Serverless Computing, and Kubernetes. + Ability to design large scalable systems for cloud customers with focus on security. + Network security, VPN/Firewalls and software-defined networking experience is a plus. + Experience operating within and supporting a security assurance and assessment program + Excellent written and verbal communication skills, strong analytical and problem-solving skills. Disclaimer: **Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.** **Range and benefit information provided in this posting are specific to the stated locations only** US: Hiring Range in USD from: $106,300 to $223,400 per annum. May be eligible for bonus and equity. Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. Oracle US offers a comprehensive benefits package which includes the following: 1. Medical, dental, and vision insurance, including expert medical opinion 2. Short term disability and long term disability 3. Life insurance and AD&D 4. Supplemental life insurance (Employee/Spouse/Child) 5. Health care and dependent care Flexible Spending Accounts 6. Pre-tax commuter and parking benefits 7. 401(k) Savings and Investment Plan with company match 8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation. 9. 11 paid holidays 10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours. 11. Paid parental leave 12. Adoption assistance 13. Employee Stock Purchase Plan 14. Financial planning and group legal 15. Voluntary benefits including auto, homeowner and pet insurance The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted. Career Level - IC4 **About Us** As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity. We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
    $73k-90k yearly est. 60d+ ago
  • Field Chief Information Security Officer

    Shi 4.7company rating

    Information security analyst job in San Juan, PR

    **About Us** **Since 1989, SHI International Corp. has helped organizations change the world through technology. We've grown every year since, and today we're proud to be a $16 billion global provider of IT solutions and services.** **Over 17,000 organizations worldwide rely on SHI's concierge approach to help them solve what's next. But the heartbeat of SHI is our employees - all 7,000 of them. If you join our team, you'll enjoy:** + **Our commitment to diversity, as the largest minority- and woman-owned enterprise in the U.S.** + **Continuous professional growth and leadership opportunities.** + **Health, wellness, and financial benefits to offer peace of mind to you and your family.** + **World-class facilities and the technology you need to thrive - in our offices or yours.** **Job Summary** The Chief Information Security Officer will develop and implement a comprehensive information security strategy that aligns with the organization's goals, ensuring the protection of information assets through effective policy enforcement and risk management. This role involves managing incident response, ensuring regulatory compliance, and overseeing security audits and technology investments to enhance the organization's security posture. The CISO will collaborate with various departments, conduct security awareness training, and provide regular updates to senior management and the board on security status, risks, and initiatives. **Role Description** + Develop and implement an information security strategy that aligns with the organization's goals and objectives to ensure comprehensive protection of information assets. + Oversee the development and enforcement of security policies to ensure that all security policies, procedures, and protocols are up-to-date and effectively implemented across the organization. + Lead risk management efforts by identifying, assessing, and mitigating information security risks to protect the organization from potential threats and vulnerabilities. + Manage incident response and recovery by developing and overseeing the execution of incident response plans to address security breaches and ensure timely recovery. + Ensure compliance with regulatory requirements by monitoring and enforcing compliance with relevant laws, regulations, and industry standards related to information security. + Collaborate with other departments such as IT, legal, HR, and others to integrate security measures into all aspects of the organization's operations. + Conduct security awareness training to educate employees on security best practices and promote a culture of security awareness throughout the organization. + Oversee security audits and assessments by regularly conducting internal and external audits to evaluate the effectiveness of security measures and identify areas for improvement. + Manage security technology investments by evaluating, selecting, and implementing security technologies and tools to enhance the organization's security posture. + Report to senior management and the board of directors by providing regular updates on the organization's security status, risks, and initiatives to ensure informed decision-making at the highest levels. **Behaviors and Competencies** + Technical Expertise: Can create new applications for technical knowledge and skills and can lead the development of technical standards and procedures. + Strategic Thinking: Can analyze complex situations, drive organizational transformation, and adapt strategies to changing market conditions. + Risk-Taking: Can inspire and encourage others to take calculated risks, fostering a culture of innovation and adaptability. + Decision-Making: Can lead organizational decision-making, mentor others in developing decision-making skills, and create frameworks that enhance the decision-making capabilities of the team. + Leadership: Can lead strategic team initiatives, inspire others to take leadership roles, and foster a culture of shared responsibility and continuous improvement. + Analytical Thinking: Can lead and innovate in the application of analytical thinking, solve complex problems, influence others, and contribute to best practices. + Communication: Can lead and model exceptional communication at all levels of the organization, develop and implement communication strategies, and coach others to improve their communication skills. + Adaptability: Can drive strategic transformations, inspire others to embrace change, and foster a culture of continuous adaptation. + Collaboration: Can lead complex team projects, inspire others to collaborate effectively, and foster a culture of mutual respect and shared purpose. + Ethics: Can lead strategic initiatives, inspire others to uphold ethical standards, and foster a culture of integrity and ethical conduct. **Skill Level Requirements** + Deep understanding of the security industry, best practices, emerging technologies, and leading solutions - Expert + Experience supporting various compliance and regulatory frameworks - Expert + Change Management, ability to manage, drive, and adapt to organizational change while maintaining team morale and productivity. - Expert + Continuous Improvement, identifying areas for improvement, implementing changes, and measuring results to enhance processes and performance. - Expert + Financial Awareness and understanding of financial concepts, budgeting, with the ability to make informed decisions based on financial data. - Expert + Forward Thinking, anticipating future trends and needs, and making decisions that position oneself or one's organization for success. - Expert + Innovation to generate, develop, and implement new and original ideas, challenging the status quo to improve processes and solutions. - Expert + Resilient, has the ability to recover quickly from difficulties and adapt in the face of challenging circumstances. - Expert + Influence, ability to persuade, lead, and influence others to achieve desired outcomes. - Expert + Willing to Learn, open to new ideas, and has a desire to continuously learn to stay current with the latest trends, threats, and technology. - Expert + Documentation involves creating, maintaining, and managing detailed and accurate records and documentation to support organizational processes and decisions. - Expert **Other Requirements** + Completed Bachelor's degree in computer science, information technology, cybersecurity, or a related field. Master's degree preferred. + 10+ years' experience in an enterprise information security role + 10+ years' experience in a leadership role + Advanced Certifications: CISSP, CRISC, GCEIT, CISM, GIAC The estimated annual pay range for this position is $275,000 - $350,000 which includes a base salary and bonus. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending. Equal Employment Opportunity - M/F/Disability/Protected Veteran Status
    $68k-79k yearly est. 40d ago
  • Application Security Engineer (AppSec)

    Zenus Bank

    Information security analyst job in San Juan, PR

    About Zenus Zenus' mission is to facilitate banking beyond borders. Operating in over 150 countries, we enable people and businesses to open a US bank account online, without the need to be a US citizen, resident, or a company registered in the US - opening up the security, stability and freedom of US banking to the world. As a signatory of the UN's Principles for Responsible Banking, we are committed to making finance fair. Our state-of-the-art technology, exclusive partnerships and proprietary processes are now being made available via our embedded banking services to enable other businesses to create new financial service experiences for their customers. Headquartered in San Juan, Puerto Rico, we have a diverse and inclusive team. About the role The Application Security Engineer (AppSec) is responsible for ensuring the security of applications, APIs, and software components throughout the software development lifecycle. Operating within the SecOps domain and reporting to the Information Security Officer (ISO), the AppSec role focuses on secure design, code-level security, vulnerability identification, and controlled offensive testing, ensuring that applications meet organizational security standards before and after deployment. This role owns what is built securely, not cloud platform configuration or CI/CD automation. This position is hybrid, requiring on-site presence with a schedule of: 3 days on-site 2 days remote Responsibilities & duties: Perform application security testing, including SAST, SCA, and DAST analysis. Execute internal manual penetration testing of applications and APIs on a quarterly basis, within approved scope. Conduct threat modeling for new applications and significant changes. Identify, analyze, and document application-level vulnerabilities and security weaknesses. Work directly with development teams to support secure remediation and secure coding practices. Define and maintain secure coding standards aligned with OWASP Top 10 and OWASP API Top 10. Validate that security findings are properly remediated before release. Maintain vulnerability tracking and reporting in Archer or approved systems. Support ISO during audits and security assessments by providing application security evidence. What you need for this role: 3+ years of experience in application security, secure software development, or ethical hacking. Strong knowledge of secure coding principles and common application vulnerabilities. Hands-on experience with SAST, DAST, and SCA tools. Experience performing manual application and API penetration testing. Familiarity with REST APIs, authentication mechanisms, and authorization models. Understanding of CI/CD pipelines from a security testing perspective. Strong documentation and vulnerability reporting skills.
    $52k-78k yearly est. 17d ago
  • Security Engineer (Epic) - San Juan, PR

    Unitedhealth Group Inc. 4.6company rating

    Information security analyst job in San Juan, PR

    Optum Insight is improving the flow of health data and information to create a more connected system. We remove friction and drive alignment between care providers and payers, and ultimately consumers. Our deep expertise in the industry and innovative technology empower us to help organizations reduce costs while improving risk management, quality and revenue growth. Ready to help us deliver results that improve lives? Join us to start Caring. Connecting. Growing together. As an Epic Security Engineer within the Identity Access Operations team, you will play a critical role in managing user access across both Epic applications and enterprise systems. You will oversee automated and manual provisioning processes, ensure compliance with organizational and regulatory requirements, and collaborate with technical, clinical, and operational stakeholders to maintain a secure and efficient access environment. Your responsibilities will include administering Epic Security structures such as templates, roles, security classes, and provider records, while also supporting enterprise identity operations. Primary Responsibilities: * Work with Optum Connect/OITPS Leaders to understand and define the Manual Access Provisioning objectives, commitments, roadmaps specific to each client as well as under managed services (shared teams) * Review and process access requests from users and departments. Validate the accuracy and completeness of request information * Ensure compliance with access control policies and procedures. Coordinate with relevant stakeholders to obtain necessary approvals * Manage access rights and privileges, including role-based access control (RBAC) and attribute-based access control (ABAC) * Review, validate, and process Epic access requests, ensuring accuracy and alignment with clinical, operational, and technical workflows * Create, modify, and retire Epic user access leveraging EMP, SER, ECL, LRP, and department-level configurations * Apply and maintain Epic user templates, roles, and security classes to ensure consistent Least Privilege access across the organization * Collaborate with Epic application teams to understand module-specific access requirements. * Conduct Epic access audits to identify unused entitlements, access drift, or misaligned permissions * Ensure compliance with internal access control policies and external regulations. Identify and address potential security risks related to access provisioning. Provide guidance and training to users and departments on access management best practices * Collaborate with IT teams, business units, and security departments to understand their access requirements * Build and maintain positive relationships with stakeholders. Provide timely and accurate information on access provisioning activities * Mentor a team of analysts, providing guidance, support. Assign tasks, monitor progress, and ensure deadlines are met. Foster a collaborative and productive work environment * Conduct in-depth data analysis to uncover insights and support decision-making. Utilize advanced analytical techniques and tools to extract meaningful information from large datasets * ENGLISH PROFICIENCY ASSESSMENT WILL BE REQUIRED AFTER APPLICATION* You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in. Required Qualifications: * 5+ years of IAM experience with hands-on Epic Security provisioning and administration * Proven solid understanding of IAM principles, especially in healthcare environments * Experience with Epic modules, security classes, roles, templates, SER/EMP management, and access troubleshooting * Experience with various identity and access management tools and systems * Proven excellent organizational and time management skills * Proven excellent problem-solving and analytical skills * Proven solid communication and interpersonal skills * Proficiency in data analysis tools and techniques (e.g., SQL, Python, R, Excel) * Fully Bilingual Spanish/English proficiency * Reside in Puerto Rico Preferred Qualifications: * Certifications in identity and access management or security * Experience with automated provisioning tools and workflows * Proven knowledge of industry standards and regulations related to access management (e.g., GDPR, HIPAA) At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission. UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
    $62k-73k yearly est. 4d ago
  • IT Security Analyst

    Pharmpix Corporation

    Information security analyst job in Guaynabo, PR

    The IT Security Analyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT Security Analyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations. ESSENTIAL ROLES AND RESPONSIBILITIES User Account Management : Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources. Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources. Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies. Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions. Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities. Threat Intelligence : Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies. Security Controls Implementation : Support implementing security controls, policies, and procedures. Remediation Planning : Assist in implementing remediation plans based on findings from various security assessments. Risk Mitigation : Based on data analysis, research, and emerging technologies, provide recommendations for mitigating information security risks and improving security controls. Collaboration : Collaborate closely with team members to solve security-related issues and improve overall security posture. Other Responsibilities : Perform other job-related duties as assigned. EDUCATION & PROFESSIONAL EXPERIENCE Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. 2-4 years of hands-on experience in IT Security roles. Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management. Experience working in a highly regulated industry. (preferred) LICENSURE / CERTIFICATION Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred. PROFESSIONAL COMPETENCIES Skills: Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues. Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders. Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment. Strong, structured, process-driven, and analytical skills. Demonstrate skills in building relationships within departments and between departments. Good research skills. Knowledge: Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls) Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook. Excellent knowledge of Customer Service best practices. Strong knowledge of computer hardware, software, and networking principles. Technical research and development knowledge are desired. Fluency in spoken and written Spanish and English. Abilities: Understand existing and emerging technologies. Understand business practices, approaches, organization, politics, and culture. Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables. Demonstrated ability to communicate ideas clearly and concisely to leadership. Ability to work well as a member of a team or alone. Willingness to take ownership of problems and follow through to completion. Ability to prioritize and manage time. Arrive at work promptly and consistently. Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective. PHYSICAL AND MENTAL DEMANDS The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk. The position requires that the weight be lifted, and force is exerted up to 50 pounds. Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions. ENVIRONMENTAL AND WORKING CONDITIONS This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work. PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
    $38k-53k yearly est. Auto-Apply 60d+ ago
  • IT Security Analyst

    Pharmpix

    Information security analyst job in Guaynabo, PR

    The IT Security Analyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT Security Analyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations. ESSENTIAL ROLES AND RESPONSIBILITIES User Account Management : Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources. Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources. Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies. Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions. Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities. Threat Intelligence : Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies. Security Controls Implementation : Support implementing security controls, policies, and procedures. Remediation Planning : Assist in implementing remediation plans based on findings from various security assessments. Risk Mitigation : Based on data analysis, research, and emerging technologies, provide recommendations for mitigating information security risks and improving security controls. Collaboration : Collaborate closely with team members to solve security-related issues and improve overall security posture. Other Responsibilities : Perform other job-related duties as assigned. EDUCATION & PROFESSIONAL EXPERIENCE Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. 2-4 years of hands-on experience in IT Security roles. Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management. Experience working in a highly regulated industry. (preferred) LICENSURE / CERTIFICATION Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred. PROFESSIONAL COMPETENCIES Skills: Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues. Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders. Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment. Strong, structured, process-driven, and analytical skills. Demonstrate skills in building relationships within departments and between departments. Good research skills. Knowledge: Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls) Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook. Excellent knowledge of Customer Service best practices. Strong knowledge of computer hardware, software, and networking principles. Technical research and development knowledge are desired. Fluency in spoken and written Spanish and English. Abilities: Understand existing and emerging technologies. Understand business practices, approaches, organization, politics, and culture. Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables. Demonstrated ability to communicate ideas clearly and concisely to leadership. Ability to work well as a member of a team or alone. Willingness to take ownership of problems and follow through to completion. Ability to prioritize and manage time. Arrive at work promptly and consistently. Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective. PHYSICAL AND MENTAL DEMANDS The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk. The position requires that the weight be lifted, and force is exerted up to 50 pounds. Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions. ENVIRONMENTAL AND WORKING CONDITIONS This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work. PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
    $38k-53k yearly est. Auto-Apply 60d+ ago
  • IT Security Analyst

    Tpis

    Information security analyst job in Guaynabo, PR

    The IT Security Analyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT Security Analyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations. ESSENTIAL ROLES AND RESPONSIBILITIES User Account Management: Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources. Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources. Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies. Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions. Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities. Threat Intelligence: Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies. Security Controls Implementation: Support implementing security controls, policies, and procedures. Remediation Planning: Assist in implementing remediation plans based on findings from various security assessments. Risk Mitigation: Based on data analysis, research, and emerging technologies, provide recommendations for mitigating information security risks and improving security controls. Collaboration: Collaborate closely with team members to solve security-related issues and improve overall security posture. Other Responsibilities: Perform other job-related duties as assigned. EDUCATION & PROFESSIONAL EXPERIENCE Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. 2-4 years of hands-on experience in IT Security roles. Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management. Experience working in a highly regulated industry. (preferred) LICENSURE / CERTIFICATION Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred. PROFESSIONAL COMPETENCIES Skills: Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues. Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders. Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment. Strong, structured, process-driven, and analytical skills. Demonstrate skills in building relationships within departments and between departments. Good research skills. Knowledge: Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls) Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook. Excellent knowledge of Customer Service best practices. Strong knowledge of computer hardware, software, and networking principles. Technical research and development knowledge are desired. Fluency in spoken and written Spanish and English. Abilities: Understand existing and emerging technologies. Understand business practices, approaches, organization, politics, and culture. Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables. Demonstrated ability to communicate ideas clearly and concisely to leadership. Ability to work well as a member of a team or alone. Willingness to take ownership of problems and follow through to completion. Ability to prioritize and manage time. Arrive at work promptly and consistently. Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective. TPIS is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
    $38k-53k yearly est. Auto-Apply 8d ago
  • Sr. Cloud Security Architect -SME

    Tetra Tech, Inc. 4.3company rating

    Information security analyst job in Florida, PR

    LS Technologies, a Tetra Tech Company is seeking a highly skilled Cloud Security Architect. This role will provide advanced technical leadership in the design, implementation, and oversight of secure cloud-based systems and architectures supporting FAA mission-critical applications. The candidate will apply deep expertise in cloud security engineering, system integration, and cybersecurity frameworks to ensure compliance with federal regulations and alignment with FAA enterprise architecture standards. The Systems Engineer will work closely with cross-functional teams to ensure the stability, scalability, and security of systems deployed on AWS, while adhering to FAA regulations and best practices. Responsibilities: * Apply senior-level engineering knowledge to analyze and solve engineering, scientific, or management problems. * Serve as the lead Cloud Security Architect, designing and implementing secure architectures for multi-cloud and hybrid environments supporting FAA systems. * Define and document cloud security reference architectures, patterns, and standards consistent with NIST, FedRAMP, DHS CDM, and FAA-specific security requirements. * Develop, track, and manage Plans of Action and Milestones (POA&Ms) to ensure timely remediation of security findings. * Perform and support of IRAT (Information Risk Assessment Tool) testing, validation, and reporting for FAA systems. * Prepare, review, and maintain security documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and continuous monitoring deliverables. * Conduct system engineering analyses to identify risks, vulnerabilities, and mitigation strategies for cloud-based solutions. * Support the development of security controls, continuous monitoring strategies, and compliance documentation for FAA cloud systems. * Collaborate with cross-functional engineering, cybersecurity, and operations teams to ensure seamless integration of security into all phases of the system lifecycle. * Lead technical reviews, risk assessments, and trade-off analyses to inform FAA cloud adoption and modernization initiatives. * Provide subject matter expertise on Identity and Access Management (IAM), Zero Trust Architecture, data encryption, container security, and secure DevSecOps practices. * Mentor and guide junior engineers, ensuring knowledge transfer and capability development within FAA technical teams. * Interface with FAA leadership and external stakeholders to present cloud security strategies, risks, and mitigation plans. Required Qualifications: * 10+ years of progressive systems engineering experience, including at least 5 years focused on cloud security architecture and engineering. * Strong knowledge of NIST risk management framework, FedRAMP, FISMA, Zero Trust, and federal cybersecurity standards. * Demonstrated experience with AWS, Azure, or GCP cloud environments, including security design and compliance. * Hands-on experience with POA&M management, IRAT Testing, and development of security documentation. * Expertise with IAM, PKI, data protection, logging/monitoring, and cloud-native security services. * Hands-on experience with DevSecOps, CI/CD pipelines, and container/orchestration security (Docker, Kubernetes, OpenShift). * Familiarity with vulnerability management tools (e.g., Tenable, Qualys), SIEM solutions (e.g., Splunk, ELK), and endpoint/cloud security platforms. * Strong analytical, communication, and documentation skills, with proven ability to interact with senior government stakeholders. Education: Bachelor's degree in Computer Science, Information Systems, Engineering, or related field (Master's degree preferred). Technical Skills: * AWS Cloud Services - Expertise in AWS infrastructure, security, and automation services. * Scripting & Automation - Proficiency in scripting languages (e.g., Python, Bash, PowerShell) for automation tasks. * Operating Systems - Experience with Linux and Windows operating systems. * Virtualization & Containerization - Knowledge of container platforms like Docker and Kubernetes. * Networking - Understanding of cloud networking concepts such as VPC, subnets, load balancing, and VPN configurations. * CI/CD & DevOps - Familiarity with CI/CD pipelines and DevOps tools such as Jenkins, Git, or AWS CodePipeline. * Zero Trust and Cybersecurity - Knowledge of Zscaler platform Preferred: * Cybersecurity Leadership / General: * CISSP (Certified Information Systems Security Professional) * CISM (Certified Information Security Manager) * CISA (Certified Information Systems Auditor) * Cloud-Specific Security: * CCSP (Certified Cloud Security Professional) * AWS Certified Security - Specialty * Microsoft Certified: Azure Security Engineer Associate * Google Professional Cloud Security Engineer Work Requirements: Work location: USA Position is: Completely remote Work Hours: 9-5 Travel: 10% Physical requirements: * Extended Computer Use: Regular and prolonged periods of working at a computer terminal. * Mobility: Ability to move around the office environment to access computer hardware, networking equipment, and server rooms. * Dexterity: Manual dexterity and visual acuity to operate computer equipment, troubleshoot issues, and perform tasks requiring precision. * Sitting/Standing: Both prolonged sitting and occasional standing may be required for troubleshooting and attending to system issues. * Background check: Must have ability to obtain and maintain a Public Trust. About LS Technologies At LS Technologies, a Tetra Tech Company, we're enhancing our nation's critical infrastructure by providing engineering, technical, and professional services to Federal Government agencies. The quality of our work, deep technical expertise, and genuine passion for public service sets us apart. As a growing organization we are expanding our benefits and communication with our employees, offering add-ons that speak to our growing employees' needs. Join us in delivering high-quality solutions and shaping the future of safety and innovation for our government partners. In 2024 we joined Tetra Tech, enabling us to combine our expertise with the reach and resources of a prestigious global organization. EEO Commitment LS Technologies, a Tetra Tech Company, is proud to be an Equal Opportunity Employer. All qualified candidates will be considered without regard to race, color, religion, national origin, age, disability, sex, marital or familial status, status as a protected veteran, or any other characteristic protected by law. Tetra Tech is a VEVRAA federal contractor, and we request priority referral of veterans. We invite applications from all interested parties. Requesting an Accommodation LS Technologies is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by LS Technologies and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. If you would like to be considered for employment opportunities with LS Technologies and have accommodation needs for a disability or religious observance, please send us an email **************** or speak with your recruiter. Compensation (Pay Bands) Salary at LST is determined by a wide array of factors, such as (but not limited to) education, certifications, knowledge, skills, competencies, and experience, location, and clearance level, as well as contract-specific affordability and organizational requirements and applicable employment laws. Please note that the salary information is a general guideline only. The projected compensation range for this position is provided within the posting and is based on full-time, 40 hour/week status. Part-time staff receive compensation at an hourly rate. The estimated minimum and maximum displayed represents the broadest range for this position (inclusive of high geographic and high clearance requirements) and is just one component of LSTs total compensation package for employees. In compliance with local laws, LS Technologies presents this reasonable compensation range as a guideline for roles in California, Colorado, New York, or Washington D.C." Benefits offered to all employees who work 30+ hours per week: Medical, Dental, Vision, Life Insurance, Short-Term Disability, Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Education Assistance, Parental Leave, Annual Leave, and Holidays. Life at Tetra Tech: * The perks of working at Tetra Tech include: * Comprehensive and market-competitive benefits. * Merit-based financial rewards. * Flexibility and company-wide commitment to work/life balance. * Collaborative team atmosphere that values the contributions of all employees. * Learning and development opportunities for ongoing professional growth. About Tetra Tech: Tetra Tech is the leader in water, environment, and sustainable infrastructure, providing high-end consulting and engineering services for projects worldwide. With 30,000 employees working together, Tetra Tech provides clear solutions to complex problems by Leading with Science to address the entire water cycle, protect and restore the environment, design sustainable and resilient infrastructure, and support the clean energy transition. Explore our open positions at ********************************** Follow us on social media to learn more about our people, culture, and opportunities: LinkedIn: TetraTechCareers; X (Twitter): @TetraTechJobs Additional Information * Organization: 230 LST
    $70k-89k yearly est. 39d ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in San Juan, PR

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills. **Responsibilities:** + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Experience with scripting languages (e.g., PowerShell, Python) for automation and integration. + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Understanding of DevOps practices. + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. + Adaptability to stay ahead of evolving IAM technologies and security threats. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 51d ago
  • Principal Security Engineer

    Oracle 4.6company rating

    Information security analyst job in San Juan, PR

    1. Nashville, TN 2. Austin, TX 3. Ireland 4. United Kingdom Security Architecture is comprised of security experts who are focused and specialized in securing all aspects of OCI Cloud. As security experts, we are sought out by our partner engineering organizations to provide guidance on designing their products, services and features. We set OCI wide security standards and hold a high security requirement bar for all services to ensure the highest level of security to our customers. We are currently looking for a highly motivated security engineer with expertise in Cloud security to join our team. This candidate would be involved in architecture, design, prototyping and development of the security aspects of Oracle Cloud's products and services. You should be a security-minded leader who can work with architects and/or a development team as they design new capabilities to ensure that security requirements are set and the design implements the necessary controls to increase security posture for the service. As a member of the Security Architecture team, you will be required to have a firm grasp on security technologies, trends in cloud security practices, and ability to communicate complex technical security requirements clearly to the development teams, risk assessment, risk mitigation and security tools/automation. **Responsibilities** Key responsibilities: + Conduct threat modeling, security architecture reviews, risk assessment and provide guidance on mitigating the identified issues. + Create and maintain technical security standards and patterns and set the benchmark for AI security requirement bar at OCI. + Stay up-to-date on the latest advancements in AI technologies and apply them to improve OCI's security posture. + Provide expert security guidance to service teams to ensure their products, services and feature are secure by default. + Lead OCI-wide cloud security initiatives to enhance overall cloud security posture. + Provide mentorship to junior engineers on the team. Qualifications: + A minimum of 8+ years of experience with at least 5+ years in Cloud Security required and 2+ years in AI and ML is good to have. + Or a BS or MS in Computer Science/Engineering with a focus on AI/Security, or a related field with a minimum of 8 years of experience in the field is required. + Experience in architecture, design, deployment, and handling of standard security practices and policies is required. Preferred qualifications includes, + A strong background in AI, machine learning, and deep learning. + Experience in applying AI technology to security domain. + Experience as a security leader for a cloud product or set of cloud services, with expertise in IaaS, PaaS. + Experience with architecture security reviews for products or services operating in a cloud environment, especially those which are reliant on homegrown or third-party LLMs and APIs is a plus. + Expertise in concepts of Multi-tenancy, Cloud Security and Virtualization, Access Management, OAuth, Cloud SSO, Identity Provisioning, Identity Governance etc. + Expertise in Encryption, Key management, Cybersecurity fundamentals (e.g., access controls, common software vulnerabilities, and security best practices), Deployment Methodologies, and Security Standards Compliance Certification (STIG, FedRAMP, PCI-DSS), etc. + Very good understanding of concepts related to Docker, Container, Serverless Computing, and Kubernetes. + Ability to design large scalable systems for cloud customers with focus on security. + Network security, VPN/Firewalls and software-defined networking experience is a plus. + Experience operating within and supporting a security assurance and assessment program + Excellent written and verbal communication skills, strong analytical and problem-solving skills. Disclaimer: **Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.** **Range and benefit information provided in this posting are specific to the stated locations only** US: Hiring Range in USD from: $106,300 to $223,400 per annum. May be eligible for bonus and equity. Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. Oracle US offers a comprehensive benefits package which includes the following: 1. Medical, dental, and vision insurance, including expert medical opinion 2. Short term disability and long term disability 3. Life insurance and AD&D 4. Supplemental life insurance (Employee/Spouse/Child) 5. Health care and dependent care Flexible Spending Accounts 6. Pre-tax commuter and parking benefits 7. 401(k) Savings and Investment Plan with company match 8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation. 9. 11 paid holidays 10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours. 11. Paid parental leave 12. Adoption assistance 13. Employee Stock Purchase Plan 14. Financial planning and group legal 15. Voluntary benefits including auto, homeowner and pet insurance The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted. Career Level - IC4 **About Us** As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity. We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
    $73k-90k yearly est. 60d+ ago
  • IT Tech Analyst

    Zenus Bank

    Information security analyst job in San Juan, PR

    We are seeking an IT Tech Analyst with a strong technical background and problem-solving skills to support, maintain, and enhance our IT infrastructure and applications. This role will involve working with various technologies to ensure optimal system performance, security, and user support. The ideal candidate will be passionate about technology, eager to learn, and capable of adapting to new tools and methodologies. Responsibilities: Provide technical support and troubleshooting for IT systems, applications, and networks. Monitor system performance, identify issues, and implement solutions to maintain high availability and efficiency. Collaborate with development teams to deploy, maintain, and enhance software applications. Assist in managing cloud-based solutions and on-premises IT infrastructure. Ensure IT security compliance by implementing and maintaining security protocols and best practices. Document technical processes, configurations, and troubleshooting guides for future reference. Analyze business needs and recommend IT solutions to optimize workflows and improve productivity. Participate in system upgrades, migrations, and integration projects. Work closely with cross-functional teams to support IT initiatives and drive innovation. Stay updated with emerging technologies and industry best practices. Qualifications and Requirements Bachelor's degree in Information Technology, Computer Science, or a related field (or equivalent experience). Fully bilingual (English & Spanish) or native English speaker. 3+ years of experience in IT support, system administration, or a related technical role. Strong knowledge of operating systems (Windows, Linux, mac OS) and troubleshooting techniques. Experience with cloud platforms, preferably Azure (Azure Virtual Machines, Azure Active Directory, Azure Functions). Understanding of networking principles (TCP/IP, VPNs, firewalls, DNS, DHCP). Familiarity with IT security protocols, endpoint protection, and compliance standards. Experience with IT service management (ITSM) tools and ticketing systems. Strong analytical and problem-solving skills with attention to detail. Ability to work independently and efficiently under minimal supervision. Knowledge of scripting languages (PowerShell, Python, or Bash) is a plus. Experience with IT automation, monitoring tools, and CI/CD pipelines is a plus. Prior experience in financial or banking IT environments is a plus.
    $38k-53k yearly est. 60d+ ago
  • IT Security Analyst

    Pharmpix

    Information security analyst job in Guaynabo, PR

    The IT Security Analyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT Security Analyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations. ESSENTIAL ROLES AND RESPONSIBILITIES User Account Management: Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources. Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources. Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies. Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions. Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities. Threat Intelligence: Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies. Security Controls Implementation: Support implementing security controls, policies, and procedures. Remediation Planning: Assist in implementing remediation plans based on findings from various security assessments. Risk Mitigation: Based on data analysis, research, and emerging technologies, provide recommendations for mitigating information security risks and improving security controls. Collaboration: Collaborate closely with team members to solve security-related issues and improve overall security posture. Other Responsibilities: Perform other job-related duties as assigned. EDUCATION & PROFESSIONAL EXPERIENCE Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. 2-4 years of hands-on experience in IT Security roles. Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management. Experience working in a highly regulated industry. (preferred) LICENSURE / CERTIFICATION Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred. PROFESSIONAL COMPETENCIES Skills: Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues. Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders. Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment. Strong, structured, process-driven, and analytical skills. Demonstrate skills in building relationships within departments and between departments. Good research skills. Knowledge: Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls) Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook. Excellent knowledge of Customer Service best practices. Strong knowledge of computer hardware, software, and networking principles. Technical research and development knowledge are desired. Fluency in spoken and written Spanish and English. Abilities: Understand existing and emerging technologies. Understand business practices, approaches, organization, politics, and culture. Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables. Demonstrated ability to communicate ideas clearly and concisely to leadership. Ability to work well as a member of a team or alone. Willingness to take ownership of problems and follow through to completion. Ability to prioritize and manage time. Arrive at work promptly and consistently. Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective. PHYSICAL AND MENTAL DEMANDS The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk. The position requires that the weight be lifted, and force is exerted up to 50 pounds. Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions. ENVIRONMENTAL AND WORKING CONDITIONS This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work. PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
    $38k-53k yearly est. Auto-Apply 60d+ ago
  • Software Security Architect

    Hewlett Packard Enterprise 4.7company rating

    Information security analyst job in Aguadilla, PR

    This role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office. Who We Are: Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today's complex world. Our culture thrives on finding new and better ways to accelerate what's next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE. Job Description: Job Family Definition: Designs and develops security programs for software enhancements and new products. Develops solutions for security of software including operating systems, compilers, routers, networks, utilities, databases and Internet-related tools. Determines hardware compatibility and/or influences security hardware design. Management Level Definition: Contributions have visible technical impact on a product or major subcomponent. Applies in-depth professional knowledge and innovative ideas to solve complex security problems. Visible contributions improve security posture, time-to-market, , or satisfy current and future unmet customer security needs. Recognized internal authority on key technology area applying innovative principles and ideas. Provides technical security leadership for significant project/program work. Leads or participates in cross-functional initiatives and contributes to mentorship and knowledge sharing across the organization. Responsibilities: * Play a critical role in identifying and mitigating potential security risks, collaborating with cross-functional teams and other stakeholders, and maintaining compliance with industry standards and regulations. * Develops organization-wide security architectures and methodologies for software systems development across multiple platforms in the organization. * Conduct threat modeling, secure design and risk assessments to proactively identify potential security threats and develop strategies to mitigate them. * Collaborates with all stakeholders like product management and engineering teams to integrate security into all stages of design and development for complex products and platforms, including solution design, analysis, coding, testing, and integration. * Create and evolve security architectural patterns, threat modeling frameworks, and secure coding guidelines. * Provide guidance and support to product development teams in implementing secure coding practices and security best practices. * Educating and communicating security information and best practices to other stakeholders at HPE. * Translate emerging threats into actionable guidance for engineering and product teams. * Represent HPE at industry events and conferences as a product security subject matter expert. * Provides guidance and mentoring to less- experienced staff members. Education and Experience Required: * Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent. * Typically 10+ years experience in a security role . Knowledge and Skills: * Experience designing and developing secure software systems design tools and languages. * Excellent analytical and problem-solving skills. * Experience in overall architecture of software systems for products and solutions. * Experience in cloud security technologies. * Experience in common security vulnerability classes and taxonomies. * Experience in security constructs in programming languages like python, java, go, and C. * Excellent written and verbal communication skills; mastery in English and local language. Ability to effectively communicate product architectures, design proposals and negotiate options at senior management levels. * History of innovation with multiple patents or deployed solutions in the field of software design. * Excellent written and verbal communication skills; mastery in English and local language. * Ability to effectively communicate product architectures, design proposals and negotiate options at business unit and executive levels. Additional Skills: Cloud Architectures, Cross Domain Knowledge, Design Thinking, Development Fundamentals, DevOps, Distributed Computing, Microservices Fluency, Full Stack Development, Security-First Mindset, Solutions Design, Testing & Automation, User Experience (UX) What We Can Offer You: Health & Wellbeing We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing. Personal & Professional Development We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach any career goals you have - whether you want to become a knowledge expert in your field or apply your skills to another division. Unconditional Inclusion We are unconditionally inclusive in the way we work and celebrate individual uniqueness. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. Let's Stay Connected: Follow @HPECareers on Instagram to see the latest on people, culture and tech at HPE. #puertorico #networking Job: Engineering Job Level: TCP_05 HPE is an Equal Employment Opportunity/ Veterans/Disabled/LGBT employer. We do not discriminate on the basis of race, gender, or any other protected category, and all decisions we make are made on the basis of qualifications, merit, and business need. Our goal is to be one global team that is representative of our customers, in an inclusive environment where we can continue to innovate and grow together. Please click here: Equal Employment Opportunity. Hewlett Packard Enterprise is EEO Protected Veteran/ Individual with Disabilities. HPE will comply with all applicable laws related to employer use of arrest and conviction records, including laws requiring employers to consider for employment qualified applicants with criminal histories. No Fees Notice & Recruitment Fraud Disclaimer It has come to HPE's attention that there has been an increase in recruitment fraud whereby scammer impersonate HPE or HPE-authorized recruiting agencies and offer fake employment opportunities to candidates. These scammers often seek to obtain personal information or money from candidates. Please note that Hewlett Packard Enterprise (HPE), its direct and indirect subsidiaries and affiliated companies, and its authorized recruitment agencies/vendors will never charge any candidate a registration fee, hiring fee, or any other fee in connection with its recruitment and hiring process. The credentials of any hiring agency that claims to be working with HPE for recruitment of talent should be verified by candidates and candidates shall be solely responsible to conduct such verification. Any candidate/individual who relies on the erroneous representations made by fraudulent employment agencies does so at their own risk, and HPE disclaims liability for any damages or claims that may result from any such communication.
    $80k-130k yearly est. Auto-Apply 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in San Juan, PR

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding. **Responsibilities:** + **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture. + **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders. + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 51d ago
  • Principal Security Engineer - Hardware Security

    Oracle 4.6company rating

    Information security analyst job in San Juan, PR

    The Oracle Cloud Infrastructure (OCI) team can provide you the opportunity to build and operate a suite of massive scale, integrated cloud services in a broadly distributed, multi-tenant cloud environment. OCI is committed to providing the best in cloud products that meet the needs of our customers who are tackling some of the world's biggest challenges. We offer unique opportunities for smart, hands-on security engineers with the expertise and passion to solve difficult problems in distributed highly available services and virtual infrastructure. At every level, our engineers have a significant technical and business impact designing and building innovative new systems to power our customer's business critical applications. Our customers run their businesses on our cloud, and our mission is to provide them with the most secure cloud services. The OCI Hardware Security group conducts Security assessments of the production hardware that runs our cloud, and develops the requirements for future Networking, Storage, Compute components. We work closely across Oracle, with third party vendors, and with standards organization to influence the next generation of hardware platform security. In addition to defining the best hardware, OCI HW Security knows that platform security also depends on how that hardware is used. To that end, HW Security also works closely with OCI's operations and engineering teams, constantly striving to improve Oracle Cloud's overall operational security posture by defining the supply chain and operational requirements to establish best practices for managing security for every device in our data centers. A security-focused engineer at any level can have significant technical and business impact. Come shape the future of one of the largest clouds on earth with us. Overall, the OCI Security Architecture team performs a variety of work ranging from cloud security, application security, vulnerability analysis, threat modeling, and hacking/enterprise network penetration. The biggest challenges for the team are the dynamic and fast growth of the business, driving us to improve our systems, tools, and automation to scale to our security expertise several orders of magnitude greater than what we can support today. We understand that software is living and needs investment. The challenge is making the right tradeoffs, communicating those decisions effectively, and crisp execution. **Responsibilities** Career Level - IC4 + Develop and communicate requirements for new vendors and hardware (compute, storage, networking) + Perform architectural reviews, penetration testing, vulnerability analysis of compute infrastructure hardware such as o Servers (Intel, AMD and ARM) o Baseboard Management Controllers such as Oracle's ILOM o UEFI and platform firmware o Smart NICS o Storage devices o Network controllers and other peripherals Network hardware/firmware, topology, and security expertise + Provide consulting on security risk associated with compute hardware and firmware in the context of cloud usage. + Provide consulting and review of device sanitization as per NIST-800-88 R1 standards. + Provide standard operating procedures for safe use of compute hardware through its lifecycle i.e., provisioning, operations and reuse/decommission. Skills + Engage with Oracle Hardware Division and third-party vendors to understand their roadmaps. + Create planning roadmaps to drive multi-year security improvements across the OCI Infrastructure + Review or assess engineering changes, or revisions of, an existing component. E.g.: new firmware for a device, vendor revision of an existing device Identify and participate in external standards groups to drive improvements across the industry + Consult development teams and third-party vendors in design and architecture of secure systems. + Champion and consult on secure development life cycle practices. + Communicate and educate Senior Management on key Security topics and directions. Disclaimer: **Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.** **Range and benefit information provided in this posting are specific to the stated locations only** US: Hiring Range in USD from: $109,200 to $223,400 per annum. May be eligible for bonus and equity. Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. Oracle US offers a comprehensive benefits package which includes the following: 1. Medical, dental, and vision insurance, including expert medical opinion 2. Short term disability and long term disability 3. Life insurance and AD&D 4. Supplemental life insurance (Employee/Spouse/Child) 5. Health care and dependent care Flexible Spending Accounts 6. Pre-tax commuter and parking benefits 7. 401(k) Savings and Investment Plan with company match 8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation. 9. 11 paid holidays 10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours. 11. Paid parental leave 12. Adoption assistance 13. Employee Stock Purchase Plan 14. Financial planning and group legal 15. Voluntary benefits including auto, homeowner and pet insurance The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted. Career Level - IC4 **About Us** As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity. We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
    $73k-90k yearly est. 60d+ ago
  • IT Security Analyst

    Pharmpix

    Information security analyst job in Guaynabo, PR

    Job Description The IT Security Analyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT Security Analyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations. ESSENTIAL ROLES AND RESPONSIBILITIES User Account Management: Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources. Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources. Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies. Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions. Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities. Threat Intelligence: Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies. Security Controls Implementation: Support implementing security controls, policies, and procedures. Remediation Planning: Assist in implementing remediation plans based on findings from various security assessments. Risk Mitigation: Based on data analysis, research, and emerging technologies, provide recommendations for mitigating information security risks and improving security controls. Collaboration: Collaborate closely with team members to solve security-related issues and improve overall security posture. Other Responsibilities: Perform other job-related duties as assigned. EDUCATION & PROFESSIONAL EXPERIENCE Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. 2-4 years of hands-on experience in IT Security roles. Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management. Experience working in a highly regulated industry. (preferred) LICENSURE / CERTIFICATION Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred. PROFESSIONAL COMPETENCIES Skills: Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues. Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders. Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment. Strong, structured, process-driven, and analytical skills. Demonstrate skills in building relationships within departments and between departments. Good research skills. Knowledge: Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls) Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook. Excellent knowledge of Customer Service best practices. Strong knowledge of computer hardware, software, and networking principles. Technical research and development knowledge are desired. Fluency in spoken and written Spanish and English. Abilities: Understand existing and emerging technologies. Understand business practices, approaches, organization, politics, and culture. Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables. Demonstrated ability to communicate ideas clearly and concisely to leadership. Ability to work well as a member of a team or alone. Willingness to take ownership of problems and follow through to completion. Ability to prioritize and manage time. Arrive at work promptly and consistently. Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective. PHYSICAL AND MENTAL DEMANDS The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk. The position requires that the weight be lifted, and force is exerted up to 50 pounds. Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions. ENVIRONMENTAL AND WORKING CONDITIONS This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work. PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
    $38k-53k yearly est. 18d ago

Learn more about information security analyst jobs

Do you work as an information security analyst?

Job type you want
Full Time
Part Time
Internship
Temporary

Browse information security analyst jobs in puerto rico by city

All information security analyst jobs

Jobs in Puerto Rico