Application Security Architect (Technical Architect)
Information Security Analyst Job In Saint Louis, MO
Innovate here. And see your ideas come to life. It's an exciting time to work in tech at Edward Jones. We are making massive investments in emerging technologies to improve how we work with our clients and with each other. Relationships are the focus of our business model. And working in Technology here means using your skills to build, deliver and maintain the technologies that enable us to deepen and support those relationships. The best part? We develop and create our own industry-leading solutions internally. And you can be a part of it. Working with emerging new technologies. Creating platforms, programs and experiences that change how we work together - and support our client-first focus. Changing the future of our firm, the industry and the advisor-client relationship.
Job Overview
Position Schedule: Full-Time
Team Overview:
Edward Jones is seeking a Security Architect to lead security considerations of our technology transformation efforts in cloud environments. This person will assist in our digital transformation goals, increased business agility, elastic scalability, enhanced security, and reduction in our support for on-premises commodity solutions.
What You'll Do:
The Security Architect will be responsible for embedding with the business portfolio to support and represent Information Systems (IS) security policies, standards, and requirements.
Identify risks and threats within the business line portfolio and regularly evaluate the security posture of the cloud environment.
Advocate for a security-by-design approach in cloud and digital transformation initiatives.
Review and recommend architecture to ensure security controls are embedded into designs and patterns, as well as supporting scalability, reliability, and compliance.
Provide guidance on technology selection and operational processes for running systems in a cloud environment.
Participate in proof-of-concept efforts for new SaaS and IaaS applications to represent security requirements.
Define and track key performance indicators for cloud security.
Edward Jones' compensation and benefits package includes medical and prescription drug, dental, vision, voluntary benefits (such as accident, hospital indemnity, and critical illness), short- and long-term disability, basic life, and basic AD&D coverage. Short- and long-term disability, basic life, and basic AD&D coverage are provided at no cost to associates. Edward Jones offers a 401k retirement plan, and tax-advantaged accounts: health savings account, and flexible spending account. Edward Jones observes ten paid holidays and provides 15 days of vacation for new associates beginning on January 1 of each year, as well as sick time, personal days, and a paid day for volunteerism. Associates may be eligible for bonuses and profit sharing. All associates are eligible for the firm's Employee Assistance Program. For more information on the Benefits available to Edward Jones associates, please visit our benefits page.
Hiring Minimum: $113810
Hiring Maximum: $193785
Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance and the California Fair Chance Act. Edward Jones is prohibited from hiring individuals with certain specified criminal history as set forth in Section 3(a)(39) and 15(b)(4) and Rule 17a-3(a)(12) of the Securities and Exchange Act of 1934, and conducts background reviews consistent with FINRA Rule 3110(e). A copy of a notice regarding the provisions of the Los Angeles County Fair Chance Ordinance is available at: dcba.lacounty.gov/wp-content/uploads/2024/08/FCOE-Official-Notice-Eng-Final-8.30.2024.pdf.
Read More About Job Overview
Skills/Requirements
What Experience You'll Need:
Minimum 8 years' experience in cybersecurity as a practitioner.
Experience with architecting secure systems.
Must be able to communicate effectively to multiple audiences including firm-wide business units, senior leaders, associates, external vendors.
Experience applying and operating security capabilities such as Cloud Access Security Broker (CASB) and Cloud Security Posture Management (CSPM).
Experience applying and operating CI/CD pipeline capabilities such as Infrastructure as Code (IaC) scanning, Static Application Security Testing and Dynamic Application Security Testing (DAST).
Experience developing and applying cloud security policies and procedures.
What Could Set You Apart:
Hands-on experience and subject matter expertise with Microsoft Azure.
Working knowledge in network, storage, application development, operating systems, identity authentication & authorization, PAM, SSO, encryption standards, and contract negotiations.
Technology background in the financial sector.
Understanding of various regulatory requirements and laws, including but not limited to: New York Codes Rules and Regulations (NYCRR), National Institute of Standards and Technology Cybersecurity Framework (NIST CSF).
Microsoft Architect certifications, ISC2 certifications, SANS certifications
**Candidates that live within in a commutable distance from our Tempe, AZ and St. Louis, MO home office locations are expected to work in the office three days per week, with preference for Tuesday through Thursday.**
Read More About Skills/Requirements
Awards & Accolades
At Edward Jones, we are building a place where everyone feels like they belong. We're proud of our associates' contributions to the firm and the recognitions we have received.
Check out our U.S. awards and accolades: Insights & Information Blog Postings about Edward Jones
Check out our Canadian awards and accolades: Insights & Information Blog Postings about Edward Jones
Read More About Awards & Accolades
About Us
Join a financial services firm where your contributions are valued. Edward Jones is a Fortune 500¹ company where people come first. With over 9 million clients and 20,000 financial advisors across the U.S. and Canada, we're proud to be privately-owned, placing the focus on our clients rather than shareholder returns.
Behind everything we do is our purpose: We partner for positive impact to improve the lives of our clients and colleagues, and together, better our communities and society. We are an innovative, flexible, and inclusive organization that attracts, develops, and inspires performance excellence and a sense of belonging.
People are at the center of our partnership. Edward Jones associates are seen, heard, respected, and supported. This is what we believe makes us the best place to start or build your career.
View our Purpose, Inclusion and Citizenship Report.
¹Fortune 500, published June 2024, data as of December 2023. Compensation provided for using, not obtaining, the rating.
Edward Jones does not discriminate on the basis of race, color, gender, religion, national origin, age, disability, sexual orientation, pregnancy, veteran status, genetic information or any other basis prohibited by applicable law.
#LI-HO
Information Security Specialist
Information Security Analyst Job In Saint Louis, MO
Collabera is ranked amongst the top 10 Information Technology (IT) staffing firms in the U.S., with more than $550 million in sales revenue and a global presence that represents approximately 12,000+ professionals across North America (U.S., Canada), Asia Pacific (India, Philippines, Singapore, Malaysia) and the United Kingdom. We support our clients with a strong recruitment model and a sincere commitment to their success, which is why more than 75% of our clients rank us amongst their top three staffing suppliers.
Not only are we committed to meeting and exceeding our customer's needs, but also are committed to our employees' satisfaction as well. We believe our employees are the cornerstone of our success and we make every effort to ensure their satisfaction throughout their tenure with Collabera. As a result of these efforts, we have been recognized by Staffing Industry Analysts (SIA) as the “Best Staffing Firm to Work For” for five consecutive years since 2012. Collabera has over 40 offices across the globe with a presence in seven countries and provides staff augmentation, managed services and direct placement services to global 2000 corporations.
For consultants and employees, Collabera offers an enriching experience that promotes career growth and lifelong learning. Visit ***************** to learn more about our latest job openings. Awards and Recognitions --Staffing Industry Analysts: Best Staffing Firm to Work For (2016, 2015, 2014, 2013, 2012) --Staffing Industry Analysts: Largest U.S. Staffing Firms (2016, 2015, 2014, 2013) --Staffing Industry Analysts: Largest Minority Owned IT Staffing Firm in the US.
Job Description
Responsibilities:
Performs focused risks assessments of existing or new services and technologies (both internal and external) by utilizing questionnaires, surveys, interviews and observations and reviewing documentation to identify and evaluate risk scenarios.
Communicates risk assessment findings to information security “customers,” or business partners.Provides consultative advice to information security customers that enables them to make informed risk management decisions.Identifies appropriate controls to effectively manage information risks as needed.Identifies opportunities to improve risk posture, developing solutions for remediating or mitigating risks and assessing the residual risk.Maintains strong working relationships with individuals and groups involved in managing information risks across the organization
Qualifications
Required Skills/Experience
• 3+ years of work experience in information security, especially in an Information Risk Analysis, Enterprise Risk Management (ERM), and/or IT Audit role
• Knowledge of quantitative and qualitative risk evaluation methods
• An ability to identify and assesses the severity and potential impact of risks and communicate risk assessment findings to risk owners outside Information Security in a way that consistently drives objective, fact-based decisions about risk that optimize the trade-off between risk mitigation and business performance
• Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
• An ability to effectively influence others to modify their opinions, plans, or behaviors
• An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business
• Excellent prioritization capabilities, with an aptitude for breaking down work into manageable parts, effectively assessing the priority and time required to complete each part
• An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one's network within an organization
• Open and able to apply original and innovative thinking to produce new ideas and create innovative products in an environment that embraces continuous improvement
Additional Information
To set up an inerview for this position, feel free to contact:
Imran Malek
************
*******************************
Information Assurance/Security Assessor Expert (TS/SCI w/Poly required)
Information Security Analyst Job In Saint Louis, MO
Do you enjoy problem solving? Are you able to see the big picture and think critically to assess a situation? Are you passionate about aiding Government and Public Services (GPS) organizations in preparing for and overcoming the challenges they face? If so, Deloitte could be the place for you! Join our Strategic Risk team and help our clients identify, understand, and prepare for their largest mission risks. If you seek a role that offers you the opportunity to advise government organizations on complex issues, challenges you to think both analytically and strategically, and can develop personally and professionally, consider a career in Deloitte Risk & Financial Advisory's Strategic Risk practice.
Recruiting for this role ends on 03/30/2025.
Work You'll Do:
+ Analyze and define security requirements for applications and systems across all technology layers
+ Gather and organize technical information about an organization's mission goals and needs, existing security products, and ongoing programs in cybersecurity
+ Perform assessment and risk analyses of systems and applications during all phases of the system development life cycle.
+ Participate, and sometimes lead, in the planning, execution and reporting of security audits and network vulnerability assessments with minimal supervision
+ Perform interviews, examinations, and testing of security controls
+ Assist in preparation of assessment deliverables - Security Control Assessment Report, Security Risk Assessments, etc.
+ Plan, execute and report on information technology, privacy, and operational reviews in order to identify mission, privacy, security, compliance, information technology and regulatory risks"
The Team:
Deloitte's Government and Public Services (GPS) practice - our people, ideas, technology and outcomes-is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of over 15,000+ professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.
Our Strategic Risk practice is comprised of sharp analytical thinkers who are adept at complex problem solving and risk management. Our practitioners are committed to our clients' missions and bring diverse life experiences, skillsets, and creative approaches to work every day to help our clients achieve mission success. Our practitioners are also experienced in collaborating with teams from across our organization in order to bring the full breadth of Deloitte, its commercial and public sector experience, to best support our clients.
Qualifications:
Required:
+ Bachelor's degree or combination of education, professional training, or work experience
+ Ability to be on site 100% of the time in St Louis. MO
+ 8+ years experience with NIST, RMF and FISMA frameworks
+ 8+ years experience with IT Security
+ 5+ years experience with Cyber Security Auditing in the Federal space
+ Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
+ Active TS/SCI with Polygraph security clearance required
+ Ability to travel up to 5% on average, based on the work you do and the clients and industries/sectors you serve
+ Possess a DOD 8570 IAT III level certification such as: Security + CE CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSOP, CISM, GSLC, CCISO
#DS&J
#CJ2
Information for applicants with a need for accommodation: ************************************************************************************************************
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Lead Analyst-Information Security ISSO
Information Security Analyst Job In Saint Louis, MO
Description & Requirements Reporting to the Sr. Manager for the Program Security Services team (US Services), the Lead Analyst-ISSO is responsible for managing the overall security posture of their assigned projects. Acting as an independent contributor, the Lead Analyst-ISSO will document and validate security compliance requirements, as defined in client contracts and established regulatory frameworks (NIST 800-53, HIPAA, IRS 1075, CMS MARS-E/ARC-AMPE, PCI-DSS). This position requires broad knowledge of Information Technology, including cloud providers such as Azure and AWS. This role will also manage stakeholder relationships with both internal and external customers.
Travel up to 10% nationally.
Additional Requirements as per contract/client: Must be a US Citizen.
Essential Duties and Responsibilities:
-Responsible for ensuring information security for an assigned area of Business / Project focusing on key areas of risk, outlined in the Information Security policy, under the direction of the Information Security management team.
- Conduct Information Security risk assessments and compliance evaluations for infrastructure and application assets within required timeframes and to industry standards and regulatory specifications.
- Ensure controls implementation for identified Information Security risks for business area of responsibility.
- Define, create and maintain the documentation for certification and accreditation of each information system in accordance with regulatory requirements.
- Support audit and client engagements, coordinate the collection, review and submission of Information Security deliverables and coordinate the remediation of audit concerns.
- Manage expectations with multiple stakeholders on projects and programs in conjunction with the Information Security team.
- Promotion of Information Security awareness through various communication channels within the organization.
- Collaborate with the Information Security team members on process improvements, secure design and recertification of MAXIMUS assets.
- Travel required up to 25%.
- Other duties as assigned.
Develop Plan of Action and Milestones (POA&M) as necessary
Manage exceptions to policies and procedures
Minimum Requirements
- Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
- Bachelor's Degree
- 7+ of security or technology related experience
- Works on complex issues where analysis of situations or data requires an in depth evaluation of variable factors.
- Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
- Networks with key contacts outside own area of expertise.
- Develops solutions to a variety of complex problems.
- Work requires considerable judgment and initiative.
- Ability to communicate technical information in understandable business terms
- Excellent interpersonal skills, presentation skills, and verbal / written communication skills
- Strong customer service abilities required.
- Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
- Ability to perform comfortably in a fast-paced, deadline-oriented work environment
- Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
Travel is up to 10%
At least one of the following certifications is REQUIRED: CISSP, CISA or CISM.
Experience with NIST 800-53 and HIPAA is REQUIRED.
Experience with Cloud providers, such as Azure and AWS.
Knowledge of any of the following security frameworks is preferred: IRS 1075, CMS MARS-E/ARC-AMPE, PCI-DS
Smartsheet experience preferred.
#LeadAnalyst #maxcorp #LI-JH1 #HighlightedJobs1224LI #HighlightedJobs1224FB #HighlightedJobs1224X
EEO Statement
Active military service members, their spouses, and veteran candidates often embody the core competencies Maximus deems essential, and bring a resiliency and dependability that greatly enhances our workforce. We recognize your unique skills and experiences, and want to provide you with a career path that allows you to continue making a difference for our country. We're proud of our connections to organizations dedicated to serving veterans and their families. If you are transitioning from military to civilian life, have prior service, are a retired veteran or a member of the National Guard or Reserves, or a spouse of an active military service member, we have challenging and rewarding career opportunities available for you. A committed and diverse workforce is our most important resource. Maximus is an Affirmative Action/Equal Opportunity Employer. Maximus provides equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disabled status.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Minimum Salary
$
108,375.00
Maximum Salary
$
140,000.00
Sr. Information Systems Security Officer (ISSO)
Information Security Analyst Job In Saint Louis, MO
Sr. ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:
* Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades.
* Maintain responsibility for managing cybersecurity risk from an organizational perspective.
* Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
* Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
* Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).
* Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.
* Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
* Provide subject matter expertise for cyber security and trusted system technology.
* Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.
* Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes.
* Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.
* Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.
Qualifications:
* Bachelor's Degree.
* A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
* eMASS experience.
* Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
* Strong desktop publishing skills using Microsoft Word and Excel.
* Experience with industry writing styles such as grammar, sentence form, and structure.
* Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:
* CISSP, CASP, or a similar certificate is preferred.
* Master's Degree in Cybersecurity or related field.
* Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.
* Demonstrated ability to work well independently and as a part of a team.
* Excellent work ethic and a high commitment to quality.
Our Commitment:
Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.
Health, Dental, and Vision
Life Insurance
401k
Flexible Spending Account (Health, Dependent Care, and Commuter)
Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!
Explore additional job opportunities with CGS on our Job Board:
*************************************
For more information about CGS please visit: ************************** or contact:
Email: *******************
$118,560 - $171,253.33 a year
Advanced Cyber Analyst, TS/SCI (St Louis)
Information Security Analyst Job In Saint Louis, MO
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.
An active Top Secret / SCI clearance is required for consideration for hire for this role. Work is to be performed 100% onsite with our Government Customer
An Advanced Cybersecurity Analytics Specialist participates on a team of skilled cybersecurity professionals that support the Cybersecurity Operations Center. Advanced Cybersecurity Analytics Specialist perform investigative services in order to identify trends and patterns within the organizations information technology infrastructure that indicate the presence of malicious cyber actors. Advanced Cybersecurity Analytics Specialist aggregate data from multiple sources and provide operational recommendations to organizational leadership. The operational recommendations are delivered to organizational leadership in the form of presentations, graphic visualizations, tuning requests, and custom signature creation.
What You'll Get To Do:
The Contractor shall provide ACA services which aggregates and analyzes products, data, and information to identify trends and patterns, anomalous activity, provide situational awareness of government networks, missions, and threats, and provide operational recommendations, visualizations, tuning requests, and custom signature creation to the Cybersecurity Operations Cell (CSOC) and other internal and external stakeholders.
You'll Bring These Qualifications:
The ACA team will provide the training on how to use the analytic tools and help the candidate to understand the data science parts needed for the job but what ACA needs the most are candidates who are:
REQUIRED: US Citizen with an Active TS/SCI (required to obtain a CI Poly within 6 months)
Please note this is 100% onsite work (no remote)
Detail-oriented and who are willing to collaborate with others.
Lifelong and Fast learners
Excellent communicators
Excellent research and problem-solving skills
Strong familiarity with SNORT signatures and YARA rules.
Strong familiarity with the Elastic Stack (Elastic search, Logstash, and Kibana)
Cybersecurity experience, mid-level at a minimum (for example Help-desk, Tier I - III SOC, Engineering, DevSecOps)
Willing to institute a cultural change on how to use Big Data to impact organizational decision making.
All Contractor personnel performing ACA services shall have or obtain within six months of start a certification that is in compliance with Department of Defense (DoD) Directive (DoDD) 8140.01 and DoD 8570.01-M IAT Level III and CSSP Analyst.
We use Greenhouse Software as our applicant tracking system and Free Busy for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application.
Why GuidePoint?
GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1000 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 4,200 customers.
Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.
This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.
Some added perks….
Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
100% employer-paid medical premiums (employee only $0 deductible and HSA plans) along with 75% employer-paid family contributions
100% employer-paid dental premiums (employee only) along with 75% employer-paid family contributions
12 corporate holidays and a Flexible Time Off (FTO) program
Healthy mobile phone and home internet allowance
Eligibility for retirement plan after 2 months at open enrollment
Pet Benefit Option
Data Security Analyst
Information Security Analyst Job In Saint Louis, MO
Join our dynamic and thriving company as a Data Security Analyst in St. Louis, MO where you'll have the opportunity to make an impact and shape the future of our renowned brands. If you have a passion for fashion, eager to learn and have an eye for detail, this is the perfect role for you! As a member of our team, you'll be part of a company that values results, caring and learning.
What You'll Be Doing
Monitor security service performance and availability: Provide recommendations on security equipment, software, and services
On-going investigation: Inspect information security alarms and events to determine vulnerability and impact
Implement processes: Put forth structured risk assessment processes, conducting ongoing threat and vulnerability assessments, and evaluating controls and countermeasures to mitigate risk
Participate in architecture reviews: Ensure adherence to information security architecture
Develop processes: Create plans for preventing, detecting, identifying, analyzing and responding to information security incidents
Design and deliver programs: Create education and training programs on information security and privacy matters
The Timberline Group Phone: ************ PO Box 565, Sullivan, Mo 63080 ********************* *************************
"Delivering quality solutions through quality people"
Cyber Security Operations Specialist Tier 3
Information Security Analyst Job In Saint Louis, MO
**ACTIVE TS/SCI SECURITY CLEARANCE REQUIRED**
Join Our Team as a CSOC Tier 3 Cybersecurity Incident Responder - Protect the Nation's Critical Infrastructure!
Are you ready to take on a pivotal role in defending critical systems from cyber threats? As a CSOC Tier 3 Cybersecurity Incident Responder, you will be at the forefront of cybersecurity operations, providing advanced support for containment, eradication, and recovery during incidents. Your expertise in malware analysis, digital forensics, and incident response will be key in ensuring our defenses remain strong and resilient.
This position offers you the chance to collaborate with a skilled team, engage in hands-on technical work, and continuously improve response strategies through exercises and simulations. If you're driven, detail-oriented, and have a passion for cybersecurity, we want you on our team!
What You'll Do:
Incident Response Leadership: Coordinate and execute tasks during cybersecurity incidents, including containment measures, IP/domain blocks, and disabling user accounts under Government direction.
Collaborative Investigations: Work closely with the Security and Installations Directorate, Insider Threat Office, law enforcement, and counterintelligence personnel to triage and investigate incidents.
Incident Reporting & Categorization: Produce detailed security incident reports, categorize events, and ensure proper reporting, containment, and eradication of incidents.
Cross-team Coordination: Ensure seamless coordination across contracts and organizations to de-conflict blue/red team activities and ensure recovery from incidents.
Documentation & Analysis: Develop timelines, briefings, and documentation to inform stakeholders about incident impacts and response actions. Keep detailed records of actions taken in authorized ticketing systems.
Custom Tools & Scripting: Develop and execute custom scripts and tools to analyze data and respond to incidents, when authorized by the Government.
Digital Media & Malware Analysis: Perform in-depth analysis of host, server, and network data, including volatile and non-volatile memory, system artifacts, and malware reverse engineering.
Adversary Attribution & Signature Development: Identify indicators of compromise and develop signatures to share with cybersecurity stakeholders. Provide detailed adversary attribution to support incident response.
Continuous Improvement: Collaborate with Tier 1 and 2 teams to remediate discrepancies and provide recommendations to prevent future incidents.
What You'll Need to Succeed:
Experience: A Bachelor's Degree or 8+ years of relevant cybersecurity experience, with a strong focus on incident response and digital forensics.
Security Clearance: Active TS/SCI clearance with the ability to obtain a polygraph.
Certifications: Must have or be able to obtain certifications as required by DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder within six months of start.
Advanced Cybersecurity Skills: Expertise in malware analysis, digital forensics, and response to cybersecurity incidents, including host, server, and network data analysis.
Technical Expertise: Proficiency in scripting and automation, with a focus on developing custom tools to enhance incident response capabilities.
Strong Communication: Ability to work under pressure and clearly communicate complex technical details to both internal teams and external stakeholders.
Collaboration & Coordination: Experience working as part of a team, coordinating efforts across multiple organizations and government agencies to ensure swift and effective incident response.
Documentation & Reporting: Skilled at creating detailed incident reports, timelines, and recommendations, with a focus on clear, actionable insights.
Preferred Qualifications:
Advanced Degree: A Master's degree in Cybersecurity or a related field.
Higher-Level Certifications: IAT III certification or equivalent expertise in the cybersecurity field.
Why You Should Apply:
Impactful Work: Play a key role in defending critical systems from advanced cyber threats and work on real-world cybersecurity incidents.
Collaborative Team: Work with top-tier cybersecurity professionals and government agencies to strengthen national security.
Continuous Learning: Engage in hands-on, technical work with opportunities for continuous improvement through exercises, simulations, and advanced training.
Mission-Driven: Support critical national security missions and contribute to the broader cybersecurity community.
If you're ready to take on a challenging and rewarding role in cybersecurity, apply today and help us strengthen our defenses against emerging cyber threats!
Additional Information
All your information will be kept confidential according to EEO guidelines.
Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically $115-125k. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
Highlights of our benefits include Health/Dental/Vision, 401(k) match, Accrued PTO, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and more!
D2 is committed to maintaining a diverse environment. All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law.
Job applicants that are interested in one of our openings and may require a reasonable accommodation to participate in the job application or interview process, should contact us to request an accommodation.
Cyber Security Engineer
Information Security Analyst Job In Saint Louis, MO
Responsibilities Overall Assignment Description: Mid-level Cyber Security Engineers support the refinement of information security requirements and ensure that the requirements are integrated into information technology component products and information systems through purposeful security architecting, design, development, and configuration.
Duties include:
* Supports development teams working to design and develop information systems or upgrade legacy systems.
* Supports product research and support Analysis of Alternative (AoA) activities that independently identify the most appropriate security solutions.
* Develops system concepts, contribute to the capability phase of the systems development lifecycle, and translate technology and environmental conditions (e.g., law and regulation) into system security designs and processes.
* Supports development and documentation of Security Architectures, Roadmaps, and investments.
* Responsible for assisting with managing all security requirements including NGA documentation and processes.
* Ensures system security compliance and requirements are met.
Qualifications
Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan.
Skills and Experience:
Required:
* Bachelor's degree or higher in Engineering, Computer Science, Information Technology, Management Information Systems, or related STEM degree program.
* 6+ years of working experience in government or industry within Cyber Security Engineering is required and may be considered in lieu of degree.
* DoD 8570 Level I (IASAE) certification compliance
* TS/SCI clearance adjudication or ability to obtain SCI and pass a poly.
Desired:
* DoD 8570 Level II (IASAE) certification compliance
* Mid-level working experience in government or industry supporting enterprise-level cyber security efforts involving architecting, designing, development, and configuration of cloud and on premise based systems and software
* Familiarity with security requirements, including NGA documentation and processes.
* Understanding and experience implementing of ICD-503
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range
$112,000 - $179,000. This represents the typical salary range for this position based on experience and other factors.
Data Security/RMF Analyst
Information Security Analyst Job 19 miles from Saint Louis
Job Details Experienced Scott Air Force Base - Scott AFB, IL Full Time 4 Year Degree $70,000.00 - $90,000.00 Salary/year Description
FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services.
Overview of position:
FEDITC is seeking a Data Security/RMF Analyst to work in the Scott AFB, IL area. A United States Citizenship and an active Secret DoD Security Clearance is required to be considered for this position.
Responsibilities:
The Data Security/RMF Analyst is responsible for ensuring the safety of information systems and protecting them from intentional or inadvertent access or destruction.
This role involves interfacing with the user community to understand their security needs and implementing procedures to accommodate them.
Ensures that users understand and adhere to necessary security procedures and conducts accurate evaluations of the required security levels.
Requires a familiarity with domain structures, user authentication, digital signatures, firewall theory, and configuration.
Other support duties as needed/directed.
Qualifications
Experience/Skills:
5+ years of related experience
Certifications:
IAT Level II
Clearance:
Active Secret Security Clearance is required.
Must be a US Citizen and pass a background check.
Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITC'S Client(s)/Customer(s)/Prime contractor(s).
Benefits:
Medical
Dental
Vision
401K with 4% match
Paid Time Off (PTO)
Life and Disability Insurance
Employee Assistance Program
Flexible Spending Accounts (FSA)
Dependent Care Reimbursement Program
Group Term Life Insurance
Supplemental Life and A&D Insurance
Short & Long Term Disability
Life Discount Program
FEDITC, LLC. is committed to fostering an inclusive workplace and provides equal employment opportunities (EEO) to all employees and applicants for employment. We do not employ AI tools in our decision-making processes. Regardless of race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran, FEDITC, LLC. ensures that all employment decisions are made in accordance with applicable federal, state, and local laws. Our commitment to non-discrimination in employment extends to every location in which our company operates.
Cyber Security Operations Specialist I/Tier 1
Information Security Analyst Job In Saint Louis, MO
Cyber Security Operations Specialist I/Tier 1Job Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: TS/SCIEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *
Do you like working with high performing CSOC - Cyber Security Operations Specialists teams? Are you self-motivated and enjoy a challenge?
CACI IS THE WINNER!!! of long-term contract with the National Geospatial-Intelligence Agency (NGA) for Transport &Cybersecurity Services (TCS) contract. The functional capabilities are to provide the information technology (IT)infrastructure services required to deliver timely, relevant, and accurate GEOINT in support of national security. TCS provides innovative design, engineering, procurement, implementation, operations, sustainment and disposal of transport and cybersecurity IT services on multiple networks and security domains, at multiple locations worldwide to support the NGA GEOINT mission.
The Opportunity:
As the Cyber Security Operations Specialist, you will provide CSOC Tier 1 services, which is 24x7x365 coordination ,execution, and implementation of all actions required for the containment, eradication, and recovery measures for events and incidents. CSOC Tier 1 services include recording, investigating, and processing events received via walk-ups, phone calls, email, chat, web, cybersecurity tools, and enterprise tools. The Cyber Security Operations Specialist will require a certification that is compliant with DoD 8140.01 and DoD 8570.01-M IAT Level II (pre-hire requirement) and CSSP Analyst(required to obtain within six months of start date).
Responsibilities:
• Utilize the SEIM to perform 24/7 monitoring, detection, and initial triage (identify, investigate, categorize, prioritize, ticketing, and forwarding) of events/alerts/incidents. The SIEM processes approximately 100,000 Correlated Events Per Second;
• Create tickets in the agency directed ticketing system for all alerts/incidents;
• Obtain and aggregate all arti facts, data, screen shots, and other products from assets within Network Security Services, Endpoint Security Services, Cybersecurity Data Analysis Services, and other NGA assets as needed to complete the ticket for higher tier analysis;
• Submit tuning requests as needed to Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services;
• Interact with and generate tickets on behalf of CSOC customers through multiple means of communication, to include but not limited to walk-ins, phones, web, email, and text-based chat systems;
• Document the steps used to analyze and triage an event/alert/incident with sufficient detail to enable the government and other contract services to systematically reconstruct aft er ti er 1 analysis;
• Provide custom metrics to support regular and ad hoc reporting requirements (e.g., incident category types, tools used, number of indicators, time opened at each step, trending statistics, service availability, system utilization, etc.);
• Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report
Qualifications:
• Must be a US Citizen with an Active TS/SCI to start work, but required to obtain a CI Poly within 6 months.
• Bachelors Degree and Zero (0) - Two (2) years of job related experience in a CSOC environment. Additional experience may be considered in lieu of a degree.
• DoD 8570.01-M IAT Level II
• Post-Hire Requirement: CSSP Analyst Certification (must be obtained within 6 months of hire date)
-
______________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI takes pride in fostering a diverse and accessible culture where every individual feels supported to chart their own path. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
______________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$48,300-$96,600
CACI is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Cyber Security Operations Specialist II
Information Security Analyst Job In Saint Louis, MO
WCBinc is looking for a Cyber Security Operations Specialist II to operate and manage all aspects of Information Systems, data availability, integrity, authentication, confidentiality, and non-repudiation. This role will develop and execute security policies, plans, and procedures and ensure security measures of the network.
What You'll Get to Do:
Provide cyber threat intelligence services for the collection, fusion, analysis, creation, and distribution of threat intelligence from government entities, commercial feeds, open sources, and other partners to obtain situational awareness of the threat environment.
Provide cyber threat intelligence services on an expanded 12x5 service support level during core hours and on-call support with two-hour response time during non-core hours.
Cyber threat intelligence services shall develop and disseminate reports and tippers to internal and external stakeholders based on events, alerts, and incidents on customer systems and networks.
Implements and monitors security measures for communication systems, networks, and provide advice that systems and personnel adhere to established security standards and Governmental requirements for security on these systems.
Designs and implements data network security measures; operates Network Intrusion Detection and Forensics; conducts performance analysis of Information Systems security incidents; develops Continuity of Operation (COOP)/Disaster Recovery (DR) plans and supports certification of Information Systems and Networks.
Supervises operation of Electronic Key Management System, other information security duties, and Public Key Infrastructure.
Receive tickets from other Cybersecurity Operations Services sub-services and conduct detailed analysis to validate any event/alert/incident
Categorize, prioritize, investigate, and assess cybersecurity events/alerts/incidents to identify the extent and scope of the event/alert/incident and what impact there is on the operation or systems
Update and forward tickets to other Cybersecurity Operations Services to customer as needed
Collect, aggregate, and analyze artifacts and evidence from all available tools, knowledge sources, and data artifacts to determine and document the who, what, when, where, why and how of an intrusion, its extent, how to limit damage, and how to recover
Submit custom signatures and tuning requests as needed to Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services
Assists the C-IRT by assessing ongoing incident activity to predict adversary responses and locations of compromise
Documents tickets and analysis to a level of detail sufficient to reconstruct the analyst's analysis, to include but not limited to the steps taken, timelines, and data required to justify the analyst's assessment
Provide custom metrics reports including incident category types, tools used, number of indicators, time opened at each step, trending statistics, service availability, system utilization, etc.
Provide input to the daily CSOC Significant Activity, Operations, and the weekly CSOC Status Report
Advanced Cybersecurity Analytics, coordinate with Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services to develop or tune rules/signatures/scripts
Cyber Security Operations Specialist, CSOC Tier 3
Information Security Analyst Job In Saint Louis, MO
Abile Group has an exciting and challenging opportunity for a Cyber Security Operations Specialist, CSOC Tier 3 on a contract providing Network and Cybersecurity services supporting an Intelligence Community customer. All the personnel on the team will work together to support transport and cybersecurity information technology (IT) services on multiple networks and security domains, at multiple locations worldwide, inclusive of new facilities and building constructions to support the IC mission.
The right candidate will possess the below skills and qualifications and be ready to handle all responsibilities independently and professionally.
Responsibilities
Coordinates and implements tasks, performs analysis, and builds/documents response activities required during cyber security incident response, including but not limited to actions such as implementing containment measures, IP blocks, domain blocks, and disabling user accounts on the direction of the Government.
Coordinates with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), in addition to other law enforcement and counterintelligence personnel as required to perform advanced investigation and triage of incidents.
Collaborates with appropriate authorities in the production of security incident reports.
Categorizes incidents and events.
Coordinates with other contracts, organizations, activities, and other services as appropriate to ensure incidents are properly reported, contained, and eradicated.
Coordinates with other contracts, organizations, activities, and other services as appropriate to de-conflict blue/red team activity with open incidents/events.
Coordinates with other contracts, organizations, activities, and services to ensure NGA recovers from an incident/event.
Builds timelines, documents, briefings, and other products as required to inform stakeholders of incident response actions, analysis, and the impact of both adversary activity and blue force response actions.
Documents actions taken and analysis in the authorized ticketing system to a level of detail where the actions taken and analysis are capable of being systematically reconstructed.
Develops and when approved by the Government generates and updates reports in the Joint Incident Management System (JIMS), Incident Case Management System (ICMS), and/or other authorized reporting systems as directed.
Develops, maintains, sustains, and when properly authorized by the Government executes custom scripts, tools, and capabilities to collect and analyze data, and respond to incidents/events.
Performs digital media analysis on host, server, and network data as required to analyze and respond to an incident, including but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
Develops and identifies indicators of compromise to send to Cybersecurity stakeholders and other Contract Services.
Provides adversary attribution.
Performs malware analysis and signature development.
Coordinates with CSOC Tier 1 and 2 services to remediate all discrepancies and provide recommendations to prevent reoccurrence.
Qualifications
Clearance Required: TS/SCI with ability to obtain a CI Poly.
Degree and Years of Experience: Bachelor's degree and 6 years experience in Cyber Security (CSOS).
Required Certifications:
DoDD 8140.01 and DoD 8570.01-M IAT Level II.
CSSP Incident Responder.
Desired Certifications:
Masters degree.
IAT III.
Required Skills:
Provides input to and coordinates with all applicable stakeholders to develop and deliver the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report.
Serve as C-IRT members as required and serve under the direct control of, and take direction from, the Government C-IRT Commander.
Develop and coordinate courses of action with various Government and contract stakeholders, and when properly authorized by the Government, execute Defensive Cyberspace Operations-Internal Defensive Measures on behalf of the NGA on NGA networks and systems.
Performs digital media analysis and malware reverse engineering on host, server, and network data as required to analyze and respond to an incident, including but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
When properly authorized by the Government, execute custom scripts, tools, and capabilities to collect and analyze data, and respond to incidents/events.
Develops, documents, and provides the Government incident investigation reports which include sufficient information to document the entire lifecycle of the incident and the response, including but not limited to adversary and friendly forces activity, host and network analysis, timelines, and recommendations for corrective actions, recommendations for new Tactics, Techniques, and Procedures (TTP) and other recommendations as appropriate, within 30 days of C-IRT stand-down.
Conduct Quality Control reviews of a percentage of closed CSOC Tier 2 tickets each week to ensure proper analysis, categorization, documentation, and notification.
About Abile Group, Inc.
Abile Group, Inc. was formed in July 2004 to partner with the Intelligence Community and their Contractors in the areas of Enterprise Analytics & Performance Management, IT & Systems Engineering and Program & Project Management. We have significant experience with the Federal Government and are an EDWOSB dedicated to our employees and clients. We are looking for high performing employees who enjoy providing advice and guidance along with solutions development and implementation support, crafted by combining industry best practices with the clients' subject matter experience and Abile's breadth of expertise.
EEO Statement
Abile Group, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. Anyone requiring reasonable accommodations should email ********************** with requested details. A member of the HR team will respond to your request within 2 business days.
Please review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities.
Cyber Security Operations Specialist II
Information Security Analyst Job In Saint Louis, MO
EOE Statement We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.
Description
WCBinc is looking for a Cyber Security Operations Specialist II to operate and manage all aspects of Information Systems, data availability, integrity, authentication, confidentiality, and non-repudiation. This role will develop and execute security policies, plans, and procedures and ensure security measures of the network.
What You'll Get to Do:
+ Provide cyber threat intelligence services for the collection, fusion, analysis, creation, and distribution of threat intelligence from government entities, commercial feeds, open sources, and other partners to obtain situational awareness of the threat environment.
+ Provide cyber threat intelligence services on an expanded 12x5 service support level during core hours and on-call support with two-hour response time during non-core hours.
+ Cyber threat intelligence services shall develop and disseminate reports and tippers to internal and external stakeholders based on events, alerts, and incidents on customer systems and networks.
+ Implements and monitors security measures for communication systems, networks, and provide advice that systems and personnel adhere to established security standards and Governmental requirements for security on these systems.
+ Designs and implements data network security measures; operates Network Intrusion Detection and Forensics; conducts performance analysis of Information Systems security incidents; develops Continuity of Operation (COOP)/Disaster Recovery (DR) plans and supports certification of Information Systems and Networks.
+ Supervises operation of Electronic Key Management System, other information security duties, and Public Key Infrastructure.
+ Receive tickets from other Cybersecurity Operations Services sub-services and conduct detailed analysis to validate any event/alert/incident
+ Categorize, prioritize, investigate, and assess cybersecurity events/alerts/incidents to identify the extent and scope of the event/alert/incident and what impact there is on the operation or systems
+ Update and forward tickets to other Cybersecurity Operations Services to customer as needed
+ Collect, aggregate, and analyze artifacts and evidence from all available tools, knowledge sources, and data artifacts to determine and document the who, what, when, where, why and how of an intrusion, its extent, how to limit damage, and how to recover
+ Submit custom signatures and tuning requests as needed to Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services
+ Assists the C-IRT by assessing ongoing incident activity to predict adversary responses and locations of compromise
+ Documents tickets and analysis to a level of detail sufficient to reconstruct the analyst's analysis, to include but not limited to the steps taken, timelines, and data required to justify the analyst's assessment
+ Provide custom metrics reports including incident category types, tools used, number of indicators, time opened at each step, trending statistics, service availability, system utilization, etc.
+ Provide input to the daily CSOC Significant Activity, Operations, and the weekly CSOC Status Report
+ Advanced Cybersecurity Analytics, coordinate with Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services to develop or tune rules/signatures/scripts
Position Requirements
You'll Bring These Qualifications:
+ Bachelor's Degree in a Technical field (i.e. Information Technology, Information Systems, Computer Science)
+ 4+ years' experience working in Cyber Security Operating Host Based Security System (HBSS), firewalls, Intrusion Prevention Systems, Intrusion Detection Systems, other point of presence security tools, Virtual Private Networks, and related security operations.
+ DoD 8570.01-M IAT Level II certification and CSSP Analyst.
+ Utilize the SEIM to perform 24/7 monitoring, detection, and initial triage (identify, investigate, categorize, prioritize, ticketing, and forwarding) of events/alerts/incidents.
+ Experience with Cyber Incident Response Team (C-IRT) Services
+ Cyber Incident Quality Control Services - Conduct Quality Control reviews of a percentage closed Tier II tickets each week to ensure proper analysis, categorization, documentation, and notification
+ Cyber Threat Intelligence Services - Conduct emerging threat and intelligence fusion analysis
+ Cyber Threat Emulation Services; Develop, test, and when properly authorized, execute custom scripts, programs, and/or other capabilities to emulate cyber threats to include Cyber Data Presentation Services
+ Cyber Hunt Services/Planned Hunt Services; update, and document tickets in the authorized ticketing system to initiate the incident response.
+ TS/SCI Security Clearance (US Citizenship required)
These Qualifications Would be Nice to Have:
+ IAT Level III
+ Master's Degree in a Technical field
Location St. Louis
Full-Time/Part-Time Full-Time
Exempt/Non-Exempt Exempt
Security Clearance Requirements Top Secret / SCI
This position is currently accepting applications.
Cyber Security Engineer II
Information Security Analyst Job In Saint Louis, MO
ITC is a Woman Owned Small Business delivering exceptional consultation to the U.S. Government in Systems/Software Engineering, Cybersecurity Solutions, Mission Operations/INTEL Analysis, and Management Services in order to enable our customers to solve the most challenging problems. With continued growth comes opportunity, and we are currently searching for a Top-Secret SCI with polygraph-cleared Senior-level Cyber Security Engineer.
Responsibilities:
Mid-level Cyber Security Engineers support the refinement of information security requirements and ensure that the requirements are integrated into information technology component products and information systems through purposeful security architecting, design, development, and configuration.
Duties include:
Supports development teams working to design and develop information systems or upgrade legacy systems.
Supports product research and support Analysis of Alternative (AoA) activities that independently identify the most appropriate security solutions.
Develops system concepts, contribute to the capability phase of the systems development lifecycle, and translate technology and environmental conditions (e.g., law and regulation) into system security designs and processes.
Supports development and documentation of Security Architectures, Roadmaps, and investments.
Responsible for assisting with managing all security requirements including NGA documentation and processes.
Ensures system security compliance and requirements are met.
Requirements
TS/SCI with CI Polygraph
Bachelor's degree or higher in Engineering, Computer Science, Information Technology, Management Information Systems, or related STEM degree program, or equivalent Mid Level work experience as a Cyber Security Engineer.
Mid-level working experience in government or industry within Cyber Security Engineering.
Desired:
DoD 8570 Level II (IASAE) certification compliance
Mid-level working experience in government or industry supporting enterprise-level cyber security efforts involving architecting, designing, development, and configuration of cloud and on premise based systems and software
Familiarity with security requirements, including NGA documentation and processes.
Understanding and experience implementing of ICD-503
ITC is an Equal Opportunity employer. Qualified applicants or employees will receive consideration for employment without regard to race, color, religion, ethnic or national origin, ancestry, age, sex, sexual orientation, gender identity, pregnancy (including childbirth or related condition) citizenship, familial status, mental or physical disability status, veteran status, genetic information, other non-disqualifying disability, or any other characteristic protected by law.
Cloud Security Engineer
Information Security Analyst Job In Saint Louis, MO
Compunnel Software Group is a New Jersey based premier information technology consulting & services company into this market for nearly two decades now; with close to two decades of experience in IT Industry which includes consulting, development, e-learning etc.
Our company is going through a tremendous growth spurt and we are now interested in personnel like you to augment the work force in the company. We have several projects starting that we are staffing for. If you think you would like to become a consultant for
Compunnel Software Group Inc
., please send me an updated copy of your resume along with a detailed summary of your work experience. I need a phone number to contact you. I look forward to possibly working with you on these positions.
We offer specialized services to our clients to meet their business objectives. Successful solutions that are valued by our clients are in industry areas such as pharmaceuticals, telecommunications, banking, finance, manufacturing, publishing and consumer products.
Job Description
Position: Cloud Security Engineer
Duration: 6+ months
Location: St. Louis, MO, 63167
Must Have:
Cloud Security
Security Patches
Cloud Security Automation Engineer
Client is seeking a Cloud Security Automation Engineer with deep technical experience in securing cloud technologies.
The successful candidate possesses out of the box thinking, the ability to collaboration with development team members, and experience with automation and solving end to end application/infrastructure security problems.
Our mission is to design and build a highly secure cloud environment without sacrificing our developers' ability to quickly innovate and deliver world class software solutions.
Responsibilities:
•
Define security best practices for our cloud platform and provide guidance to development teams.
• Build tools to monitor for compliance of security policy and automate the resolution process.
• Evangelize security throughout the enterprise and collaborate to help architect secure applications.
• Research emerging technologies and build proof of concepts to investigate better ways of meeting our control objectives.
• Collaborate with incident response, risk and compliance, product security and development teams to solve critical security problems.
• Develop an AppSec pipeline and integrate it into the agile software development process.
Required Qualifications:
•
BA/BS degree in Computer Science, Information Systems, Cyber Security or a related technical field or equivalent experience.
• At least 3 years of experience in Information Security and/or infrastructure
engineering.
• An accomplished security practitioner with a strong understanding of industry trends in all areas of security.
• Experience with building IaaS cloud based solutions including AWS, Azure, etc.. and knowledge of their network security and IAM models.
• Experience working with security vendors including evaluating and implementing new products.
Desired Qualifications:
•
Expertise in common AWS services (CloudFormation, Route53, VPC, EC2, Lambda, etc...) and their security best practices.
• Programming experience in JavaScript, Java, Scala, Python, Perl, Ruby, etc.. and their use in automating security and compliance.
• Strong understanding of security technologies including host and network based protection and detection technologies.
• Experience with vulnerability management (including: running vulnerability scans, creating reports, communicating with asset owners and giving remediation guidance).
• Experience with continuous integration and automation tools (e.g. Jenkins, Chef, Puppet, Ansible).
• Experience writing security white papers and/or presenting security products and technologies to diverse audiences.
• CISSP or CSSLP (Certified Secure Software Lifecycle Professional) certification.
Qualifications
Must Have:
Cloud Security
Security Patches
Additional Information
All your information will be kept confidential according to EEO guidelines.
TRANSCOM IGC - Cloud Security Engineer
Information Security Analyst Job In Saint Louis, MO
The Cloud Security Engineer will have experience providing engineering solutions to design, implement and deploy security solutions into the cloud. meet security compliance. The cloud security engineer will help define security workflows, recommend security tools for the cloud and drive implementation of these workflows and tools into DEVSECOPS delivery approach.
Requirements
+ 4+ years of experience and bachelors degree
+ DoD 8570 compliance, Comptia Security +CE
+ Experience conducting analysis, studying and recommending security solutions sets in cloud environments
+ Experience implementing process and tools that enable continuous security monitoring
+ Support security testing within cloud
+ Identify or respond to incidents in order to resolve and isolate security threat
+ Experience with NIST 800 series publications
+ Experience with RMF
+ Experience with leading detection and security scanning tools
+ Ability to maintain and publish security documentation required for program reviews
+ Secret security clearance
Benefits
Since 1993, ITP has been providing reliable, cost-effective solutions to meet our customers' goals and objectives in the commercial and public marketplace. We are Women Owned Small Business Certified with a GSA IT 70 Schedule and a Navy SeaPort-e contract. We offer a full range of benefits, Health, 401K, Life, Disability, Student Loan Help, Bonuses...etc.
Smart? Motivated? Ready to roll? You'll feel right at home at ITP. Where creativity is encouraged, initiative is rewarded, and reputations are made. A career here translates into continual opportunities to grow and expand on what you can do as we help clients become high-performance organizations.
There's no better place to grow your career! If you wish to be part of this dynamic opportunity, please apply to this job posting.
Information Security Specialist
Information Security Analyst Job In Saint Louis, MO
Collabera is ranked amongst the top 10 Information Technology (IT) staffing firms in the U.S., with more than $550 million in sales revenue and a global presence that represents approximately 12,000+ professionals across North America (U.S., Canada), Asia Pacific (India, Philippines, Singapore, Malaysia) and the United Kingdom. We support our clients with a strong recruitment model and a sincere commitment to their success, which is why more than 75% of our clients rank us amongst their top three staffing suppliers.
Not only are we committed to meeting and exceeding our customer's needs, but also are committed to our employees' satisfaction as well. We believe our employees are the cornerstone of our success and we make every effort to ensure their satisfaction throughout their tenure with Collabera. As a result of these efforts, we have been recognized by Staffing Industry Analysts (SIA) as the “Best Staffing Firm to Work For” for five consecutive years since 2012. Collabera has over 40 offices across the globe with a presence in seven countries and provides staff augmentation, managed services and direct placement services to global 2000 corporations.
For consultants and employees, Collabera offers an enriching experience that promotes career growth and lifelong learning. Visit ***************** to learn more about our latest job openings. Awards and Recognitions --Staffing Industry Analysts: Best Staffing Firm to Work For (2016, 2015, 2014, 2013, 2012) --Staffing Industry Analysts: Largest U.S. Staffing Firms (2016, 2015, 2014, 2013) --Staffing Industry Analysts: Largest Minority Owned IT Staffing Firm in the US.
Job Description
Responsibilities:
Performs focused risks assessments of existing or new services and technologies (both internal and external) by utilizing questionnaires, surveys, interviews and observations and reviewing documentation to identify and evaluate risk scenarios.
Communicates risk assessment findings to information security “customers,” or business partners.Provides consultative advice to information security customers that enables them to make informed risk management decisions.Identifies appropriate controls to effectively manage information risks as needed.Identifies opportunities to improve risk posture, developing solutions for remediating or mitigating risks and assessing the residual risk.Maintains strong working relationships with individuals and groups involved in managing information risks across the organization
Qualifications
Required Skills/Experience
• 3+ years of work experience in information security, especially in an Information Risk Analysis, Enterprise Risk Management (ERM), and/or IT Audit role
• Knowledge of quantitative and qualitative risk evaluation methods
• An ability to identify and assesses the severity and potential impact of risks and communicate risk assessment findings to risk owners outside Information Security in a way that consistently drives objective, fact-based decisions about risk that optimize the trade-off between risk mitigation and business performance
• Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
• An ability to effectively influence others to modify their opinions, plans, or behaviors
• An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business
• Excellent prioritization capabilities, with an aptitude for breaking down work into manageable parts, effectively assessing the priority and time required to complete each part
• An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one's network within an organization
• Open and able to apply original and innovative thinking to produce new ideas and create innovative products in an environment that embraces continuous improvement
Additional Information
To set up an inerview for this position, feel free to contact:
Imran Malek
************
*******************************
Information Assurance/Security Assessor Expert (TS/SCI w/Poly required)
Information Security Analyst Job In Saint Louis, MO
Do you enjoy problem solving? Are you able to see the big picture and think critically to assess a situation? Are you passionate about aiding Government and Public Services (GPS) organizations in preparing for and overcoming the challenges they face? If so, Deloitte could be the place for you! Join our Strategic Risk team and help our clients identify, understand, and prepare for their largest mission risks. If you seek a role that offers you the opportunity to advise government organizations on complex issues, challenges you to think both analytically and strategically, and can develop personally and professionally, consider a career in Deloitte Risk & Financial Advisory's Strategic Risk practice.
Recruiting for this role ends on 03/30/2025.
Work You'll Do:
* Analyze and define security requirements for applications and systems across all technology layers
* Gather and organize technical information about an organization's mission goals and needs, existing security products, and ongoing programs in cybersecurity
* Perform assessment and risk analyses of systems and applications during all phases of the system development life cycle.
* Participate, and sometimes lead, in the planning, execution and reporting of security audits and network vulnerability assessments with minimal supervision
* Perform interviews, examinations, and testing of security controls
* Assist in preparation of assessment deliverables - Security Control Assessment Report, Security Risk Assessments, etc.
* Plan, execute and report on information technology, privacy, and operational reviews in order to identify mission, privacy, security, compliance, information technology and regulatory risks"
The Team:
Deloitte's Government and Public Services (GPS) practice - our people, ideas, technology and outcomes-is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of over 15,000+ professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.
Our Strategic Risk practice is comprised of sharp analytical thinkers who are adept at complex problem solving and risk management. Our practitioners are committed to our clients' missions and bring diverse life experiences, skillsets, and creative approaches to work every day to help our clients achieve mission success. Our practitioners are also experienced in collaborating with teams from across our organization in order to bring the full breadth of Deloitte, its commercial and public sector experience, to best support our clients.
Qualifications:
Required:
* Bachelor's degree or combination of education, professional training, or work experience
* Ability to be on site 100% of the time in St Louis. MO
* 8+ years experience with NIST, RMF and FISMA frameworks
* 8+ years experience with IT Security
* 5+ years experience with Cyber Security Auditing in the Federal space
* Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
* Active TS/SCI with Polygraph security clearance required
* Ability to travel up to 5% on average, based on the work you do and the clients and industries/sectors you serve
* Possess a DOD 8570 IAT III level certification such as: Security + CE CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSOP, CISM, GSLC, CCISO
#DS&J
#CJ2
Information for applicants with a need for accommodation: ************************************************************************************************************
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our diverse, equitable, and inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our client most complex challenges. This makes Deloitte one of the most rewarding places to work. Learn more about our inclusive culture.
Our purpose
Deloitte's purpose is to make an impact that matters for our clients, our people, and in our communities. We are creating trust and confidence in a more equitable society. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. We are focusing our collective efforts to advance sustainability, equity, and trust that come to life through our core commitments. Learn more about Deloitte's purpose, commitments, and impact.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte Advisory" means Deloitte & Touche LLP, which provides audit and enterprise risk services; Deloitte Financial Advisory Services LLP, which provides forensic, dispute, and other consulting services; and its affiliate, Deloitte Transactions and Business Analytics LLP, which provides a wide range of advisory and analytics services. Deloitte Transactions and Business Analytics LLP is not a certified public accounting firm. Please see ************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. These entities are separate subsidiaries of Deloitte LLP.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Requisition code: 208651
Security Analysts
Information Security Analyst Job In Saint Louis, MO
Security analysts are responsible for analyzing system and application security and making recommendations that optimize the protection of our computer systems and information resources. Security analysts develop, test, implement and maintain security policies and programs. They are responsible for staying current on security best practices and identifying security procedures to support business objectives and regulatory compliance.
Responsibilities:
The Information Security Office (ISO) Regulatory Compliance team is seeking a Security Analyst 2 to actively contribute to our organization's compliance efforts. This role calls for someone who can work closely with various business units, conduct thorough assessments, and assist in crafting effective remediation plans.
Key Responsibilities:
As a Security Analyst 2 on the Regulatory Compliance Team, you will:
Coordinate audits with external assessors (QSA) and internal stakeholders to streamline assessment process related to collecting evidences
Lead the validation of PCI requirements testing results and drive compliance gap remediation efforts
Create and maintain documentation to support PCI program
Conduct comprehensive internal compliance assessments, identify compliance gaps, and actively participate in developing remediation plans.
Collaborate closely with different business units to ensure alignment with relevant regulations and standards.
Support automation efforts across the compliance function.
Regularly review policies and procedures to ensure ongoing compliance with regulatory requirements.
Effectively manage and prioritize multiple projects related to regulatory compliance.
Stay vigilant in monitoring and tracking regulatory changes, providing teams with guidance on updating policies and procedures as needed.
Be a source of guidance and support for fellow members of the compliance team.
Qualifications:
Required:
Must be presently authorized to work in the U.S. without a requirement for work authorization sponsorship by our company for this position now or in the future
Must be committed to incorporating security into all decisions and daily job responsibilities
3+ years with leading, planning and execution of PCI assessments which includes review of control design with a focus on payment card compliance and security.
Demonstrate the ability to work both independently with a strong sense of ownership and collaboratively within a team to achieve departmental and project objectives.
Ability to maintain a high degree of confidentiality.
Detail-oriented with strong project management skills, including project planning, directing project activities, and leading project teams.
Proficient in documentation, communication skills, and a proven ability to deliver formal and informal presentations to a diverse audience.
Ability to organize and prioritize multiple complex assignments and tasks for self and team members, ensuring deadlines are met.
Excellent problem-solving and analytical skills, with the ability to define problems, collect data, establish facts, and draw valid conclusions.
Demonstrated leadership, collaboration, and relationship management skills, representing goals within the team and outside the department.
Ability to be flexible and adaptable to changing requirements and responsibilities while delivering high-quality results.
Commitment to incorporating security into all decisions and daily job responsibilities.
Proficiency with Microsoft Office applications, including Outlook, Word, PowerPoint, and Excel.
Preferred:
Bachelor's degree in Cyber Security, Computer Science, Computer Information Systems, Management Information Systems, or extensive security-related experience, or an equivalent combination of education and experience.
Functional knowledge of productivity, documentation, and collaboration tools such as SharePoint, Jira, Confluence, and Jive.
The Timberline Group Phone: ************ 623 Missouri Ave #104, Sullivan, Mo 63080 ********************* *************************
"Delivering quality solutions through quality people"