Post Job

Information Security Analyst Jobs in Sun Village, CA

- 181 Jobs
All
Information Security Analyst
Senior Security Specialist
Information Security Manager
Information Security Director
Senior Security Analyst
Information Systems Security Officer
Information Technology Analyst
Security System Engineer
Information Security Officer
  • Lead, Info Security Systems Engineer

    L3Harris Technologies 4.4company rating

    Information Security Analyst Job In Los Angeles, CA

    L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do. L3Harris Technologies is the Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security. Job Title: Information Security Systems Engineer Job Code: 21708 Job Location: Van Nuys, CA Job Schedule: 9/80 Job Description: Applies current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security. Throughout the lifecycle of system, works closely with customers to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early, and in a sustainable manner that will allow for the security authorization of the system of interest. Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products using methods such as encryption technology, vulnerability analysis and security management. Responsible for integration of multiple methods into a cohesive system security perimeter and environment while implementing the policies and procedures necessary to monitor and maintain such an environment. Prepares Certification and Accreditation documentation, using multiple industry standards such as DITSCAP, NIACAP, DCID 6/3, Common Criteria, and NIST 800-37, to achieve security authorization of supported systems. Represents program security needs, concerns and requirements at customer meetings. Essential Functions: Lead assessment activities for security and privacy controls in embedded systems using NIST 800-53. Experience leading programs through the Risk Management Framework (RMF) accreditation and authorization (A&A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard Body of Evidence (BoE) package development. Experience with A&A package processing Experience in RMF accreditation of Platform IT (PIT) systems. Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC. Experience in DoD software selection and approval processes for COTS, GOTS and FOSS Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data Assist program security in the development of policies and procedures for emerging security technologies Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects Experience with Security Testing and Verification Experience as Control Account Manager (CAM) with Earned Value Management System (EVMS tools Experience as Intergrated Product Team Lead (IPTL) Work is to be accomplished 100% onsite, in a lab environment, no options for remote support Qualifications: Education requirements: Bachelor's Degree and minimum 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related experience. In lieu of a degree, minimum of 13 years of prior related experience. Minimum of Collateral Secret security clearance required. Must be able to obtain and maintain a DOD 8140 certification (or NIST 800-181), appropriate for the position within 6-months of start Preferred Additional Skills: NSA Type 1 Certification of cryptographic high assurance devices Experience with NSA High Assurance products and IASRD and SERD requirements Lead the development and implementation of Anti-Tamper (AT) throughout the System Development Lifecycle. Key tasks include Assessing systems for Critical Program Information Conducting trade studies Developing AT requirements Implementing security architectures Assessing threats via attack/countermeasure analysis Conducting Verification and Validation activities. Serve as a SME in the area of AT. Experience using DoD 5200.39 in identifying and protecting critical program information (CPI). Experience in Engineering trustworthy and secure systems IAW NIST 800-160. Draft Program Protection Plans (PPPs), Cybersecurity Strategies, Security Classification Guides (SCGs), and AT Plans Interact with customer to define AT requirements, solutions, trades, costs, implementation, system impacts, and effectiveness Active TS/SCI Clearance is highly desired In compliance with pay transparency requirements, the salary range for this role is $125,000 - $232,000. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements. L3Harris Technologies is proud to be an Equal Opportunity Employer. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. All applicants will be considered for employment without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender (including pregnancy, childbirth, breastfeeding or other related medical conditions), gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, characteristic or membership in any other group protected by federal, state or local laws. L3Harris maintains a drug-free workplace and performs pre-employment substance abuse testing and background checks, where permitted by law. Please be aware many of our positions require the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information. By submitting your resume for this position, you understand and agree that L3Harris Technologies may share your resume, as well as any other related personal information or documentation you provide, with its subsidiaries and affiliated companies for the purpose of considering you for other available positions. L3Harris Technologies is an E-Verify Employer. Please click here for the E-Verify Poster in English or Spanish. For information regarding your Right To Work, please click here for English or Spanish.
    $125k-232k yearly 3d ago
  • IT Analyst II - Technology Project Coordinator (TPC)

    Droisys 4.3company rating

    Information Security Analyst Job In Los Angeles, CA

    Droisys is an innovation technology company focused on helping companies accelerate their digital initiatives from strategy and planning through execution. We leverage deep technical expertise, Agile methodologies, and data-driven intelligence to modernize systems of engagement and simplify human/tech interaction. Amazing things happen when we work in environments where everyone feels a true sense of belonging and when candidates have the requisite skills and opportunities to succeed. At Droisys, we invest in our talent and support career growth, and we are always on the lookout for amazing talent who can contribute to our growth by delivering top results for our clients. Join us to challenge yourself and accomplish work that matters. Title: IT Analyst II - Technology Project Coordinator (TPC) Office Location: Los Angeles, CA Work Location: In Office Terms: Long Term Position Overview: The Technology Project Coordinator (TPC) is a technical representative, charged with assisting the Technology Project Management Team in addressing the needs of bond funded technology projects. This position will serve as a supporting resource for Technology Project Managers in managing and maintain project documentation, scheduling meetings, and serving in an overall coordination capacity to successfully complete bond funded projects. The TPC will support the Technology Project Management team by responding to technology project requirements and providing the necessary support to successfully deliver projects on time and on budget. The TPC will need to align technology projects with construction and engineer efforts to ensure a complete and functional system is in place for the client. Additionally there will be opportunities for the TPC to lead technology projects from planning through completion. The TPC will manage and coordinate the implementation of complex technology projects, identify and coordinate with project team to resolve technical issues, develop project presentations, including but not limited to the following project types: Networking and Communications Physical Security Audio Visual Classroom Technologies VoIP and Telephony Software Upgrades Helpdesk and Workorder Systems Wireless Deployment Highspeed and Broadband Networks Tasks include but not limited to: Project Documentation: Project Initiation Forms Project Schedules Risk Identification and Mitigation Utilize Bluebeam and/or Revit to review drawings/specifications and perform takeoffs Meeting Coordination: Schedule and coordinate meetings Create agendas and take meeting notes Coordinate with stakeholders to finalize meeting minutes Project Execution: Coordinate with stakeholders to complete project tasks Provide timely status reports Organize project folders and documentation Create reports and presentations as needed Perform onsite project observation reports Coordinate with vendors and oversee installation Position Description: Successfully support in the coordination of 5 to 10 projects simultaneously, ranging in value and complexity. Documents and reports all project data accurately and in a timely manner Successfully support in the delivery of technology projects on schedule and within budget Report and collaborate with Program Management Office and Technology Project Management Department on project matters Assist with the development of detailed technical scopes of work to support technology projects Review and coordinate the approval of technology project submittals. Coordinate with Asset Management to support asset tagging of technology equipment Coordinate with Accounting to process invoicing Track all project status and provide management reports as needed Update risks logs and identify risk mitigation plans Minimum Required Qualifications: 3 year of experience in management of multiple projects; experience within a capital improvement programs and familiarity with relevant codes and standards Demonstrated experience working in construction environments Experience coordinating on multiple IT projects with differing complexities and size Experience with website management and dashboard tools Demonstrated experience installing low voltage cabling including broadband and internet services Experience with software such as Bluebeam and/or Visio Preferred Qualifications: Experience in Community College Facilities Experience coordinating with contractors and subcontractors Experience integrating technology within construction and engineering projects. IT or project management certifications Droisys is an equal opportunity employer that values diversity, inclusion, and belonging. We are committed to fostering a diverse work environment and do not discriminate based on race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status, or any other characteristic protected by law.
    $83k-111k yearly est. 18d ago
  • Lead System Security Analyst

    Maximus 4.3company rating

    Information Security Analyst Job In Los Angeles, CA

    Description & Requirements We are seeking a Lead Systems Security Analyst to join our team supporting our Internal Revenue Service (IRS) client. Essential Duties and Responsibilities: - Lead the design, development, engineering, and implementation of application solutions that meet security requirements. - Lead the collaboration with cybersecurity contacts and/or clients to triage, document, and address application security vulnerabilities. - Design and implement role-based access control architecture and Segregation of Duties (SOD) protocol. - Communicate solutions and updates to senior leadership, which may include clients. - May support Authority-to-Operate (ATO) process. Job-Specific Essential Duties and Responsibilities: - Develop specifications for extremely complex computer network security/protection technologies for IRS information and network systems/applications. - Develop security solutions for the IRS's networks and virtual private networks, application systems, key public infrastructures, authentication and directory services to ensure the security of network and taxpayer information. - Perform patch/release management and ensure all packages are deployed efficiently and as transparently as possible. Interface with the program team to ensure appropriate resolution of issues. - Identify emergent vulnerabilities, evaluate associated risks and threats, and design network vulnerability scans to identify security vulnerabilities and provide remediation alternatives to the customer. - Provide system support on security tools and surrounding interconnectivity with external and internal system segments. - Provide technical expertise on the integration of IT systems. - Develop system requirements, specification preparation, test plans, deployment and upgrade plans. - Conduct Operations and Maintenance support to identify severity of problems, determines corrective action, resolves technical problems, and performs fault isolation and implements solutions. - Carry out procedures to address Information Assurance (IA) and security requirements based upon the analysis of user, policy, regulatory, and resource demands. - Advise information system owners on client/project security policies and requirements for systems. - Provide support for design, architecture, development, unit test, deployment, installation, configuration, integration, operation, and maintenance. - Develop cyber security documentation and artifacts to support system authorization, including System Security Plan, Security Control Assessment, Authorization to Operate (ATO). - Support readiness activities, including development of training materials and schedules for end-user training on deployed systems, and coordination of stakeholder working sessions to identify and track gap closure. - Support the implementation and configuration of systems and security products. - Support data quality analysis and reporting. - Ensure all tasks are completed in compliance with all IRS security requirements. - Provide status reports, attend and facilitate meetings and take/distribute minutes. - Perform complex risk analyses and risk assessment. Plan and execute risk management activities. Minimum Requirements - Typically has a University Degree (BA/BS) or equivalent experience and minimum 7 years of related work experience. Job-Specific Minimum Requirements: - Minimum three (3) years of working experience with Splunk and technical add-ons in the integration, testing, and implementation of large-scale analytical data sets in Splunk. - Minimum five (5) years of experience with implementing, configuring and managing IRS systems, platforms and tools (e.g., Splunk, Qmulos, Archer, Cloud, ESAT, CDM) - Knowledge of federal information security policies, standards, procedures, directives, and risk management processes. - Minimum two (2) years of experience working in an Agile Team - Proven ability to work on and with many development teams that are dispersed across geographical sites. Experience using online communication tools (e.g., Microsoft Teams, Zoom). - Excellent verbal and written communication skills. - Ability to work in a fast-paced, dynamic environment. - Ability to work well independently or in a team setting. Additional Requirements, as per Contract/Client: - Candidates must have held an active IRS MBI clearance within the last 2 years to qualify - Candidates must be a US Citizen or a Legal Permanent Resident (Green Card status) for 3 years, and be Federal Tax compliant. EEO Statement Active military service members, their spouses, and veteran candidates often embody the core competencies Maximus deems essential, and bring a resiliency and dependability that greatly enhances our workforce. We recognize your unique skills and experiences, and want to provide you with a career path that allows you to continue making a difference for our country. We're proud of our connections to organizations dedicated to serving veterans and their families. If you are transitioning from military to civilian life, have prior service, are a retired veteran or a member of the National Guard or Reserves, or a spouse of an active military service member, we have challenging and rewarding career opportunities available for you. A committed and diverse workforce is our most important resource. Maximus is an Affirmative Action/Equal Opportunity Employer. Maximus provides equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disabled status. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Minimum Salary $ 145,000.00 Maximum Salary $ 165,000.00
    $87k-130k yearly est. 2d ago
  • Senior Information Security, Risk & Compliance Specialist

    Geotab

    Information Security Analyst Job In Ontario, CA

    Who we are Geotab is a global leader in IoT and connected transportation and certified “Great Place to Work™.” We are a company of diverse and talented individuals who work together to help businesses grow and succeed, and increase the safety and sustainability of our communities. Geotab is advancing security, connecting commercial vehicles to the internet and providing web-based analytics to help customers better manage their fleets. Geotab's open platform and Geotab Marketplace , offering hundreds of third-party solution options, allows both small and large businesses to automate operations by integrating vehicle data with their other data assets. Processing billions of data points a day, Geotab leverages data analytics and machine learning to improve productivity, optimize fleets through the reduction of fuel consumption, enhance driver safety and achieve strong compliance to regulatory changes. Our team is growing and we're looking for people who follow their passion, think differently and want to make an impact. Ours is a fast paced, ever changing environment. Geotabbers accept that challenge and are willing to take on new tasks and activities - ones that may not always be described in the initial job description. Join us for a fulfilling career with opportunities to innovate, great benefits, and our fun and inclusive work culture. Reach your full potential with Geotab. To see what it's like to be a Geotabber, check out our blog and follow us @InsideGeotab on Instagram. Join our talent network to learn more about job opportunities and company news.Who you are: We are always looking for amazing talent who can contribute to our growth and deliver results! We are seeking a Senior Information Security, Compliance & Risk Specialist, that will keep the legal and ethical integrity of Geotab through policy enforcement and program planning. The Senior Information Security, Compliance & Risk Specialist, will ensure all departments of our business are complying with the rules and regulations the company upholds. If you are a compliance guru, a team player, and are keen to join an industry leader - we would love to hear from you! What you'll do: As a Senior Information Security, Compliance & Risk Specialist, your key area of responsibility will be to support the development of information security policies to achieve the Geotab's security goals. In this role you will provide technical drafts for individual policies addressing Programs, Network Connectivity Security, Wireless Security, Incident Handling, and Password Utilization. You will also need to prepare gap analyses for management regarding policies that will advance Geotab's technology goals and objectives. To be successful in this role you will be a need to be able to work independently and in a team when required, with strong written and verbal communication skills, and have the ability to quickly understand complex security concepts. In addition, the successful candidate will need to have excellent project management skills with an ability to identify needs, develop effective solutions, and manage projects and programs through to completion. The successful candidate will also be able to manage multiple timelines and contrasting priorities to ensure timely results. How you'll make an impact: Develop deep knowledge of Geotab's security programs as well as our internal systems and data infrastructure, in order to consult effectively on Security best practices. Provide information assurance and subject matter expertise as required in support of panels, committees, and working groups. Ensures security compliance with legal and regulatory standards. Incorporate findings to develop, update, or revise policies and standards for customers. Oversee and manage security audits against the systems, processes, and network infrastructure according to existing security policies and standards. Collaborate with and advise internal departments to improve on security-related risks. Act as a technical mentor/SME to other team members, and act as a point of escalation for more complex issues and initiatives. Support Geotab global strategic initiatives. What you'll bring to the role: Post-Secondary Diploma/Degree specialization in Computer Science, Engineering or a related field. 5-8 years experience in security evaluation/analysis and/or risk assessments, within a technology-focused industry. Working knowledge of system and network security engineering best practices. Familiarity with basic information security documentation requirements, certification and accreditation processes, and abreast with general reporting requirements for industry security standards (e.g. ISO 27001, NIST SP 800-53). Expertise in common security tool use. High accuracy and meticulous attention to detail. Able to work well under pressure and respond to fast changing priorities and deadlines. Highly organized and able to manage multiple tasks and projects simultaneously. Excellent verbal and written communication skills, including comfort with delivering presentations and training. Strong interpersonal relationship building skills. Strong analytical skills with the ability to problem solve with well-judged decisions. Strategic mindset, has a keen sense of priorities, along with an ability to pivot as the landscape changes. A strong team-player with the ability to engage with all levels of the organization. Technical competence using software programs, including, but not limited to, Google Suite for business (Sheets, Docs, Slides). Entrepreneurial mindset and comfortable in a flat organization. If you got this far, we hope you're feeling excited about this role! Even if you don't feel you meet every single requirement, we still encourage you to apply. Please note: Geotab does not accept agency resumes and is not responsible for any fees related to unsolicited resumes. Please do not forward resumes to Geotab employees. Why job seekers choose Geotab Flex working arrangements Home office reimbursement program Baby bonus & parental leave top up program Online learning and networking opportunities Electric vehicle purchase incentive program Competitive medical and dental benefits Retirement savings program *The above are offered to full-time permanent employees only How we work At Geotab, we have adopted a flexible hybrid working model in that we have systems, functions, programs and policies in place to support both in-person and virtual work. However, you are welcomed and encouraged to come into our beautiful, safe, clean offices as often as you like. When working from home, you are required to have a reliable internet connection with at least 50mb DL/10mb UL. Virtual work is supported with cloud-based applications, collaboration tools and asynchronous working. The health and safety of employees are a top priority. We encourage work-life balance and keep the Geotab culture going strong with online social events, chat rooms and gatherings. Join us and help reshape the future of technology! We believe that ensuring diversity is fundamental to our future growth and progress and is an integral part of our business. We believe that success happens where new ideas can flourish - in an environment that is rich in diversity and a place where people from various backgrounds can work together. Geotab encourages applications from all qualified individuals. We are committed to accommodating people with disabilities during the recruitment and assessment processes and when people are hired. We will ensure the accessibility needs of employees with disabilities are taken into account as part of performance management, career development, training and redeployment processes. If you require accommodation at any stage of the application process or want more information about our diversity and inclusion as well as accommodation policies and practices, please contact us at ******************. By submitting a job application to Geotab Inc. or its affiliates and subsidiaries (collectively, “Geotab”), you acknowledge Geotab's collection, use and disclosure of your personal data in accordance with our Privacy Policy. Click here to learn more about what happens with your personal data.
    $90k-131k yearly est. 14d ago
  • Sr. Industrial Security Analyst

    Top Secret Clearance Jobs

    Information Security Analyst Job In Hawthorne, CA

    Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. SR. INDUSTRIAL SECURITY ANALYST SpaceX is looking for a multidisciplinary Industrial Security Analyst to serve as a primary security officer within our Hawthorne, CA office. This is a chance to fill a critical role within a dynamic and high-tempo environment working on programs pushing the boundaries of industry and technology. A successful candidate will be a self-starter and problem-solver and will possess the ability to convey security requirements to a diverse group of technical personnel. Responsibilities Own all SAP, SCI, and collateral security aspects within a fast-paced SCIF/SAPF environment Support the physical security program/infrastructure, to include CUA's, CONOPS, OPSEC plans, PPP's, DD254's, etc. Coordinate additional security requirements such as polygraphs and SCI indoctrinations/debriefings Facilitate associated badging and access Assist with initial security clearance briefings, debriefings, and security-centric education Process classified visit access requests Maintain accountability of associated program materials Support and in some instances own compliance inspections Conduct security related inquires Attend and support to various customer meetings and working groups Basic Qualifications High school diploma or equivalency certificate 5+ years security experience performing NISPOM related security responsibilities 7+ years security experience performing responsibilities specifically within a SCI/SAP environment Active Top Secret clearance with SCI eligibility. Note that an active clearance may provide the opportunity for you to work on sensitive SpaceX missions. If so, you will be subject to pre-employment drug and random drug and alcohol testing Preferred Skills And Experience Bachelor's or master's degree Strong knowledge of the NISPOM, DoD SAP Security Manuals, Intelligence Community Directives (ICDs), and related security policies and procedures Familiarity with DISS, NBIS, CORE, TALON and JADE Familiarity with SIMS Additional Requirements Ability to favorably complete a U.S. Government CI scope polygraph Ability to travel in support of mission requirements Willingness to work overtime or weekends as needed in support of mission-critical deadlines and milestones Pay Range COMPENSATION AND BENEFITS: Sr. Industrial Security Analyst: $110,000.00 - $145,000.00/per year Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation & will be eligible for 10 or more paid holidays per year. Exempt employees are eligible for 5 days of sick leave per year. Itar Requirements To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. 1157, or (iv) Asylee under 8 U.S.C. 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here. SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status. Applicants wishing to view a copy of SpaceX's Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should notify the Human Resources Department at **************.
    $110k-145k yearly 55d ago
  • Sr. Information Systems Security Officer (ISSO)

    Contact Government Services

    Information Security Analyst Job In Los Angeles, CA

    Sr. ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: * Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. * Maintain responsibility for managing cybersecurity risk from an organizational perspective. * Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. * Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. * Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). * Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. * Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. * Provide subject matter expertise for cyber security and trusted system technology. * Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. * Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. * Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. * Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: * Bachelor's Degree. * A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. * eMASS experience. * Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. * Strong desktop publishing skills using Microsoft Word and Excel. * Experience with industry writing styles such as grammar, sentence form, and structure. * Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: * CISSP, CASP, or a similar certificate is preferred. * Master's Degree in Cybersecurity or related field. * Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. * Demonstrated ability to work well independently and as a part of a team. * Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: ************************************* For more information about CGS please visit: ************************** or contact: Email: ******************* $118,560 - $171,253.33 a year
    $118.6k-171.3k yearly Easy Apply 60d+ ago
  • Director of Information Security, Productions

    Sony Pictures 4.8company rating

    Information Security Analyst Job In Culver City, CA

    The Information Security organization at Sony Pictures Entertainment is responsible for protecting our content, systems and data from being stolen, damaged or destroyed. To do so, we are constantly improving our tools, capabilities and processes. The Director of Information Security, Productions is accountable for overseeing our information security posture and providing clear, data-driven insight into InfoSec risk across all Sony Pictures Entertainment productions worldwide to support effective decision-making by our partners in production, content distribution, IT and throughout our business. Success will require developing and maintaining strong working relationships across the company, and leveraging the full capabilities of our Information Security and IT organizations to provide the best possible solutions to meet the needs of SPE movies and television productions. This role will also be accountable for identifying key process indicators across our production portfolios to determine where we have Information Security risk that it out of alignment with business expectations. Finally, it will require a strong familiarity with movie- and television-making standard tools and processes in order to effectively meet our production team needs. Key indicators of success in this role will be: * Business leaders have near real-time visibility into Information Security risk across our entire production portfolio, using metrics that are widely regarded as meaningful by our business partners, and that support timely and effective decision-making, at the right levels in the organization, to mitigate risk where needed. * Sony Pictures Entertainment has an industry leading set of technology tools supporting our productions, that have information security built in without creating unnecessary user friction. * Our production teams trust Sony Pictures to provide a secure digital workplace that is highly available, easy to use and keeps our data and content secure. * Information Security, Physical Security/Safety and Information Technology work as unified partners to support and secure our motion picture and television productions from concept to distribution. Within this organization, we value learning and agility, and empowering our teams to deliver positive outcomes. The Director of Information Security, Productions will be a key contributor to our success in supporting the most essential functions of our core business and establishing SPE and Sony as leaders in Production Security. Responsibilities: * Provide transparency into the Information Security risk profile - focusing on actionable information - of our world-wide active production portfolio, including all subsidiaries and controlled joint ventures. * Provide guidance on the needs of our production teams to Information Security Risk, Awareness, Architecture, Governance and Compliance teams. * Communicate production and content risk appropriately and effectively at all levels of the business. * Partner with Productions Security and Safety to flag all production incidents that have Information Security components in order to accurately report on overall risk and uncover trends to drive continual program improvement. * With IT and Physical Security, continually evolve the security controls in place for productions to most effectively meet our business goals. * Ensure that our security architecture and production technology teams build security into our production technology stacks. * Ensure security controls enable effective business operations by securing confidential information and content without creating undue friction for end users. * Ensure it remains current and effective in mitigating emerging threats. * Promote a high-trust culture of security across Sony Pictures Entertainment productions in support of our goal of being the most trusted studio in the industry. * Be accountable for developing and maintaining production security policies, standards and procedures that take into account the needs of our business partners. * Work with Security Awareness team to develop documentation and training materials appropriate for production team members. * When needed, participate in incident response activities by supporting our Incident Response team and ensuring effectively and timely communications between IR and business stakeholders. Ensure follow-up on action items coming out of incident learnings. Requirements: * 10+ years of experience in Information Security, Information Technology or a related field * 10+ years of experience in an organization directly involved in movie, television and/or other entertainment production, or equivalent educational experience * Strong understanding of the technologies, tools and processes used in production of movies and/or television. * Knowledge of Information Security frameworks, standards and best practices and their relevance to business success * Specific knowledge of processes, tools and practices used to maintain confidentiality in the context of movie and television productions. * Demonstrated ability to partner with business leaders to create and maintain information security policies, practices and procedures. * Ability to develop and maintain meaningful metrics to track program and process effectiveness. * Strong planning and analytical skills * Strong communications skills The anticipated base salary for this position is $180,000-$225,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position. Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics. SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law. To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.
    $180k-225k yearly 60d+ ago
  • Information Systems Security Officer

    Mantech International Corporation 4.5company rating

    Information Security Analyst Job In Los Angeles, CA

    General information Requisition # R59004 Posting Date 03/12/2025 Security Clearance Required TS/SCI Remote Type Onsite Time Type Full time Description & Requirements Shape the future of defense with ManTech! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect and innovate with ManTech! ManTech seeks a motivated, customer-oriented Information Systems Security Officer II to join our team in the El Segundo, CA area. The ISSO's primary function is working within Special Access Programs (SAPs) supporting SMC and AFSPC mission areas. The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities. Performance shall include: * Review, prepare, and update AIS accreditation packages. Identify AIS vulnerabilities and implement countermeasures. * Notify customer when changes occur that might affect AIS accreditation/certification. * Perform AIS self-inspections, provide security coordination and review of all system test plans. * Conduct security surveys at subordinate facilities and gather pertinent security documentation for inclusion into system accreditation packages. * Maintain AIS security records and prepare Co-Utilization Agreements for network nodes operating in government facilities. * Prepare reports on the status of security safeguards applied to computer systems. * Ensure AIS and network nodes are operated, maintained, and disposed of in accordance with security policies and practices. * Must complete training on Joint Security Implementation Guidance (JSIG) and Risk Management Framework (RMF) Information Security Continuous Monitoring (ISCM). Minimum Qualifications: * Bachelor's degree, an additional 4 years of experience might be substituted for a degree. * 3+ years of related experience. * 2+ years of relevant SCI experience. * Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 within 6 months of the date of hire. * Must be familiar with security policy/manuals and the appropriate ICDs/JAFANs/DOD Manuals and other guiding policy documents. Preferred Qualifications: * 1+ year of SAP-related experience highly desired. * The ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners.. * Possess a high degree of originality, creativity, initiative requiring minimal supervision. * Willingness to travel within the organizational Area of Responsibility (AOR) (note - could be extensive, and will include both air and ground transportation) Clearance Requirements: * US Citizenship with an active Top-Secret Clearance with SCI Eligibility. * Eligibility for access to Special Access Program. * Willingness to submit to a polygraph. Physical Requirements: * Must be able to remain in a stationary position 50%. * Needs to occasionally move about inside the office to access file cabinets, office machinery, etc. * Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer. * Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations. The projected compensation range for this position is $89,800.00-$150,800.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, ManTech invests in it's employees beyond just compensation. ManTech's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you are a qualified individual with a disability and require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please email us at ******************* and provide your name and contact information.
    $89.8k-150.8k yearly 7d ago
  • Manager, Information Security Corrective Action

    The Walt Disney Company 4.6company rating

    Information Security Analyst Job In Burbank, CA

    At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences. The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando. Corporate is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy. What You'll Do: Manage reviews of reports, assessments, and findings to identify remediation and/or corrective action needed. Manage coordination with IT and business partners to facilitate necessary remediation and corrective action. Manage verification of remediation and corrective action activity to ensure it achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards. Document and review open items in status reports, including next steps, dependencies, and stakeholders. Manage communication of results to stakeholders, including technical and non-technical audiences. Provide recommendations to improve security posture. Contribute in improving security baselines and standards. Stay updated on evolving security guidelines and incorporate them into IT and business practices. Stay informed on emerging threats and vulnerabilities. Proactively recommend adjustments to mitigate risks. Required Qualifications & Skills: A minimum of 10 years of related cybersecurity experience Demonstrated experience managing corrective action. Ability to manage and work well with individuals and teams with varying technical and business backgrounds. Deep understanding of security frameworks and standards. Significant relationship management skills. Analytical thinking and attention to detail. Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills Demonstrated ability to handle confidential information. Managerial experience in a security program for a large and complex organization. Required Education: Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field. The hiring Range for this position in California is $138,900.00 to $186,200.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered. Job Posting Segment: Enterprise Technology Job Posting Primary Business: Corporate Global Information Security Primary Job Posting Category: Security Governance Employment Type: Full time Primary City, State, Region, Postal Code: Burbank, CA, USA Alternate City, State, Region, Postal Code: USA - FL - Kirkman Point 1 Date Posted: 2025-02-19
    $138.9k-186.2k yearly 25d ago
  • Information Security Analyst

    Cathay Bank 4.4company rating

    Information Security Analyst Job In Rancho Cucamonga, CA

    People Drive Our Success Are you enthusiastic, highly motivated, and have a strong work ethic? If yes, come join our team! At Cathay Bank - we strive to provide a caring culture that supports your aspirations and success. We believe people are our most valuable asset and we proudly foster growth and development empowering you to achieve your professional goals. We have thrived for 60 years and persevered through many economic cycles due to our team members' drive and optimism. Together we can make a difference in the financial future of our communities. Apply today! What our team members are saying: Video Clip 1 Video Clip 2 Video Clip 3 Learn more about us at cathaybank.com GENERAL SUMMARY This position is responsible for ensuring that the Bank's security operations is managed and maintained in accordance with established Information Security policies, published regulations and industry best practices. Primarily responsible for the administration, operations and maintenance of the Security Information and Event Management (SIEM) solution and other security tools. This position supports incident response activities and log data analysis to secure the information and systems, including but not limited to: Microsoft Windows Active Directory, financial business applications, network and communications security monitoring, endpoint security tools and data loss prevention tools. ESSENTIAL FUNCTIONS Tunes SIEM and other security tools to reduce false positives. Assesses and addresses current gaps. Identifies improvements and creates plans towards maturity. Administers configuration of SIEM and other security tools as required by the Security Operation Center. Adapts and develops new analysis in response to emerging threats and intelligences. Supports incident response activities. Analyzes security events, incidents, log data analysis to secure the information and systems, including but not limited to: Microsoft Windows Active Directory, financial business applications, network and communications security monitoring, endpoint security tools and data loss prevention tools. Ensures compliance with published baseline configuration standards and recommends enhancements as required. Ensures the appropriate installation, maintenance, and monitoring of approved rules for preventive security solutions including antimalware, security gateways, firewalls and SIEM solutions. Assists in security assessment and vulnerability assessment remediation efforts. Participates in developing corrective actions based on the assessment's findings and identified vulnerabilities. Works closely with vendors to troubleshoot and to enhance the current security toolsets to their optimal potential. Gathers performance and compliance data/metrics from IS and IT sources. Interacts with managed security services operations. QUALIFICATIONS Education: BS/MS in Information Technology or Business Administration preferred, or equivalent business experience. Information Security and SIEM-related training required. Security+, SSCP or CISSP certifications preferred. Experience: 3+ years' experience in a Security Operations team. 2+ years' experience with Security Information and Event Management (SIEM) solutions. Working knowledge on operating and monitoring network and endpoint security solutions. Understanding of industry security frameworks such as NIST CSF, CIS and OWASP. Experience with Threat Intelligence platforms and Cloud Security tools preferred. Experience with Regex and custom scripting preferred. Experience with SIEM administration, configuration, tuning preferred. Skills/Ability: Excellent communication and problem-solving skills. Strong Inter-personal communication and collaboration skills. Self-starter and open for learning opportunities. Ability to train and mentor colleagues with less experience. OTHER DETAILS $28.85 - $42.07 / hour Pay determined based on job-related knowledge, skills, experience, and location. This position may be eligible for a discretionary bonus. Cathay Bank offers its full-time employees a competitive benefits package which is a significant part of their total compensation. It is our goal to provide employees with a comprehensive benefits package to fit their needs which includes, coverage for medical insurance, dental insurance, vision insurance, life insurance, long-term disability insurance, and flexible spending accounts (FSAs), health saving account (HSA) with company contributions, voluntary coverages, and 401(k). Cathay Bank may collect personal information from potential job candidates and applicants. For more information on how we handle personal information and your applicable rights, please review our Privacy Policy. Cathay Bank is an Equal Opportunity and Affirmative Action Employer. We believe in diversity, equity, and inclusion in the workplace. We welcome applications for employment from all qualified candidates, regardless of race, color, ethnicity, ancestry, citizenship, gender, national origin, religion, age, sex (including pregnancy and related medical conditions, childbirth and breastfeeding), reproductive health decision-making, sexual orientation, gender identity and expression, genetic information or characteristics, disability or medical condition, military status or status as a protected veteran, or any other status protected by applicable law. Click here to view the “Know Your Rights: Workplace Discrimination is Illegal” Poster: Poster- English Poster- Spanish Poster- Chinese Traditional Poster- Chinese Simplified Cathay Bank endeavors to make **************************** to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact, Mickey Hsu, FVP, Employee Relations Manager, at ************** or *************************. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
    $28.9-42.1 hourly 60d+ ago
  • Information Security JOB Training Opportunity

    Year Up United 3.8company rating

    Information Security Analyst Job In Bell, CA

    Year Up United is a one-year or less, intensive job training program that provides young adults with in-classroom skill development, access to internships and/or job placement services, and personalized coaching and mentorship. Year Up United participants also receive an educational stipend. The program combines technical and professional training with access to internships and job placement support through our industry-leading talent placement firm YUPRO Placement. If you receive an internship, it may be at Salesforce, Workday, or PayPal among other leading organizations in the California Bay Area (Pleasant Hill, San Francisco, San Jose). Are you eligible? You can apply to Year Up United if you are: - 18-29 years old - A high school graduate or GED recipient - Eligible to work in the U. S. - Available Monday-Friday throughout the duration of the program - Highly motivated to learn technical and professional skills - Have not obtained a Bachelors degree What will you gain? Professional business and communication skills, interviewing and networking skills, resume building, ongoing support and guidance to help you launch your career. During the internship phase, Year Up United students earn an educational stipend of $525 per week. In-depth classes include: - Application Development & Support - Customer Success - Helpdesk/Desktop Support - Project Management Support - Data Analytics - Quality Assurance - Business Fundamentals - Cyber Security Get the skills and opportunity you need to launch your professional career. 75% of Year Up United graduates are employed and/or enrolled in postsecondary education within 4 months of graduation. Employed graduates earn an average starting salary of fifty-three thousand dollars per year. Learn More
    $36k-44k yearly est. 1d ago
  • Director of Information Security

    JBA International 4.1company rating

    Information Security Analyst Job In Los Angeles, CA

    The Director of Information Security reports to the Chief Information Officer (CIO) and is responsible for information security policy assessments, enforcing compliance with firm security policies and applicable law, vendor management and security incident management. Working with the firm's Information Technology teams, including Network Operations, Customer Experience, Practice Services and Research, the Director of Information Security will help develop, manage, audit and enforce security related policies and procedures throughout the firm's enterprise on premise and cloud systems. REQUIRED KNOWLEDGE, SKILLS AND ABILITIES: Admin-level knowledge of Windows system administration and Active Directory. Knowledge of network security principals, best practices and industry standards. Knowledge of security models that maintain and enforce security policies. Expert understanding of cloud controls and environments, a strong foundation in IT solutions deployment and practical understanding of IT security compliance, risk management and information security principles including access control, network security, information security architecture, information security operations, and leading practices and associated tools in a cloud environment are critical. Experience with IT security, compliance, risk and privacy frameworks such as ISO 27001, NIST 800-53, HIPAA, GDPR, CCPA. Knowledge of security tools and concepts including: IDS/IPS; SIEM; Web Proxy; Encryption; Patch management; Vulnerability Scanning & Remediation; Forensics; Penetration Testing; DLP; Email Gateways; Anti-spam Services; MDM; Privileged Account Management; Log Analytics; Two Factor Authentication; Single Sign On. Individual must possess excellent communication and interpersonal skills with a high degree of empathy and emotional intelligence, be self-motivated with the ability to manage and prioritize multiple deliverables to meet deadlines and demonstrate proven success delivering results individually and as part of a team in a fast-paced, demanding, growth environment. JOB COMPETENCIES / SUCCESS FACTORS: Client-service orientation Pro-active problem solving Strong communication skills Work ethic and teamwork Leadership skills Interpersonal skills QUALIFICATIONS: 4+ years of experience working in an Information Security management role. CISSP certification Project management experience preferred Previous law firm experience highly desired
    $134k-185k yearly est. 60d+ ago
  • Chief Information Security Officer

    Entravision Communications Corporation 4.3company rating

    Information Security Analyst Job In Los Angeles, CA

    About Entravision Entravision is a leading global advertising, media and ad-tech solutions company connecting brands to consumers by representing top platforms and publishers. Our service portfolio enables high-performance campaigns while using highly competitive audience reach, cutting-edge mobile programmatic solutions, machine-learned bidding algorithms and demand-side platforms on a global scale. In the US, Entravision is a leader in Hispanic marketing & media solutions serving both local and national Clients for more than 25 years. Our unique portfolio includes primarily Spanish language TV & Radio broadcast assets across 35 markets, an exclusive audio network & streaming platform, and a robust mix of curated digital & social media content solutions. Chief Information Security Officer Los Angeles, CA | Full Time COMPENSATION RANGE: 250,000.00 - 275,000.00 Summary As the Chief Information Security Officer (CISO), you will be responsible for overseeing and enhancing our organization's information, cyber, and technology security posture. You will play a critical role in safeguarding our digital assets, ensuring compliance with regulatory requirements, and mitigating risks associated with cybersecurity threats. This position reports directly to the Chief Operating Officer (COO) and requires a strategic thinker with strong leadership skills and deep technical expertise in cybersecurity. Essential Functions * Strategic Leadership: Develop and implement a comprehensive cybersecurity strategy aligned with the organization's goals and objectives. Provide strategic guidance to senior management on cybersecurity matters and ensure alignment with business priorities. * Risk Management: Identify, assess, and prioritize cybersecurity risks to the organization's information systems, networks, and data. Implement risk mitigation strategies and controls to minimize exposure to cyber threats. * Incident Response: Develop and maintain an incident response plan to effectively respond to cybersecurity incidents and breaches. Lead incident response efforts to contain and remediate security incidents in a timely manner. * Compliance and Governance: Ensure compliance with relevant cybersecurity regulations, standards, and frameworks. Maintain strong relationships with regulatory bodies and industry associations to stay informed about emerging threats and compliance requirements. * Security Awareness: Promote a culture of cybersecurity awareness and education across the organization. Conduct training sessions and awareness campaigns to enhance employee understanding of cybersecurity risks and best practices. * Vendor Management: Evaluate the security posture of third-party vendors and partners. Establish security requirements for vendor contracts and monitor compliance with security standards. * Budget and Resource Management: Develop and manage the cybersecurity budget, ensuring adequate resources are allocated to support cybersecurity initiatives and projects. Required Education and Experience * Bachelor's and/or Advance degree in Information Security, Cybersecurity, Information Assurance, Information Technology, Computer Science, or related field. * Relevant certifications in Information Security, Cybersecurity, (e.g., CISSP, CISM, CISA, etc.) preferred. * Minimum of 8 years of experience in cybersecurity roles, with at least 5 years in a leadership or managerial capacity. * Advanced working knowledge of cybersecurity principles, technologies, and best practices. * Deep understanding of security, auditing, and compliance frameworks that service the entertainment, media, and broadcasting industry. (i.e., CSP, ISO, NIST, PCI DSS, GDPR, HIPPA, ADA, WCAG) * Proven track record of developing and implementing cybersecurity strategies in a complex organization. * Excellent communication and interpersonal skills with the ability to collaborate effectively with stakeholders at all levels of the organization. * Demonstrated leadership ability, with experience building and leading high-performing cybersecurity teams. * Strong analytical and problem-solving skills, with the ability to make informed decisions in high-pressure situations. POSITION TYPE/EXPECTED HOURS OF WORK This is a Full Time position. Actual schedule and hours may vary. SUPERVISORY RESPONSIBILITY Reports directly to Global Head Human Resources, Learning and Talent Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. Entravision Communications Corporation participates in the E-Verify system operated by the US Department of Homeland Security and the Social Security Administration and will use E-Verify to confirm work eligibility for all new hire employees. Entravision Communications is an Equal Opportunity Employer. We encourage women and minorities to apply
    $138k-168k yearly est. 4d ago
  • Senior Security Specialist

    Arete Associates 4.5company rating

    Information Security Analyst Job In Los Angeles, CA

    At Areté, we are on the forefront of utilizing innovative solutions, with great minds from all backgrounds, to help solve the nation's most complex security challenges. We strive for an inclusive, collaborative team environment that approaches differences as opportunities for innovation and excellence. As an employee-owned company, we foster an atmosphere that propels diverse career opportunities and professional growth. Discover your future with us. The Senior Security Specialist will implement the industrial security program and ensure security requirements are met for the Areté Northridge Facility. Coordinate and monitor highly sensitive aspects of DoD or other industrial security programs and other security activities while ensuring compliance with government and company security policies and procedures. Support clearance processing, visit certifications, document control, and physical security, to include alarm response for controlled area program, as well as additional security related taking. Thorough understanding of security databases such as DISS, eQIP, and NISS. The Senior Security Specialist is responsible for implementing and providing guidance to customers and management on security issues such as security education, classified document control, security investigations, classification control and personnel clearances. The Senior Security Specialist will apply knowledge of, and experience with, strong understanding of Physical Security requirements to include collateral Closed Areas; along with a working knowledge of SF-86, SF-312, DD-254, SF700, SF702, Operations Security (OPSEC) to develop, implement, and maintain the OPSEC Program to protect sensitive unclassified information, activities, equipment, and materials. Alongside the Corporate Facility Security Officer the Senior Security Specialist will develop, participate in, and /or provide training and awareness. This is a non-exempt, non-supervisory, full-time position based in our Northridge, CA office. Primary Responsibilities: The Senior Security Specialist is responsible for implementing the industrial security program and ensuring company and customer security requirements are met. The successful candidate will interface with all levels of Arete personnel and government management personnel to ensure contract security compliance with National Industrial Security Operating Manual(NISPOM) 32 CFR Part 117 , DoD Manual 5205.07, Contract Security Classification Specification (DD254) and Program Classification Guides. Work as a team player, exhibit flexibility, and excellent organizational skills. Analyze moderate problems and provide focused solutions with the ability to effectively communicate information to various audiences. Bring security risks to the attention of the Corporate Facility Security Officer , senior management and PM's as identified. The candidate will be required to conduct security self-inspections alongside the Corporate Facility Security Officer, apply risk mitigation methodologies, support customer assessments, and implement security measures to meet requirements. The Senior Security Specialist must possess the confidence to make critical security decisions concerning high value contracts and to implement security procedures that will prevent unauthorized access to company and government facilities or information. Provide clear guidance to company employees and recommend modifications to operations policies or procedures as appropriate. We have an impressive range of benefits, programs, and perks that we offer: Generous PTO and Leave Times Flextime Scheduling (Core hours 0900-1500) Bereavement Paid Time Off (PTO) Paid Parental Leave Financial Benefits 401K Retirement Plan Contribution Employee Stock Ownership Plan Continuing Education Funds Health, Medical, and Wellness Benefits Medical Insurance Dental & Vision Insurance Life Insurance and Long-Term Disability (LTD) Vision Reimbursement Qualities We Look For Creativity Integrity Passion Responsiveness Collaboration Experiences and Background We Look For Leading teams or projects or equivalent experience/combined education, with 1- 3/5 ~ years of professional experience. Thorough working knowledge of the NISPOM, other relevant DoD security guidance, as well as the Intelligence Community Directive (ICD) standards Self-starter with ability to work independently, customer service orientated Commitment to security - creating and delivering the highest value to customers Ability to interpret company and government security policies and apply them to program operations Strong understanding of Physical Security requirements to include collateral Closed Areas. Along with working knowledge of SF-86, SF-312, DD-254, SF700, SF702 and other required forms. Thorough understanding of security databases such as eQIP, NISS and DISS. Experience creating and conducting initial security briefings, debriefings, indoctrinations, pre/post foreign travel briefings and refresher briefings, as appropriate. Ability to develop and establish an effective security awareness, training, and education program. Assist in executing the requirements set forth in the Technology Control Plan (TCP) for foreign visitors. Communicate with parties within and outside of own area, which may include external constituents depending upon the area. Requires ability to influence others outside of own area on policies, practices and procedures. Assist with Proposal Writing and Contract Closeouts. Candidate must have the ability to obtain a clearance at the Secret level or above. Nice to have- FSO training certificate COMSEC Custodian certificate or experience required. Complete IAEC-2112 COMSEC Training Course six months after being appointed as Alternate COMSEC Account Manager Courier preparation procedures Experience developing and implementing OPSEC plans Knowledge of Access Control and Intrusion Detection Systems Experience conducting Security incident inquiries Resourceful in solving problems and capitalizing on opportunities Professional Certifications/Affiliations The salary range for this role is $72,000/yr to $80,000/yr; however, Arete considers several factors when extending an offer of employment, including but not limited to: the position and associated responsibilities, a candidate's work experience, education/training, and key skills. Other Requirements U.S. citizenship is required to meet position eligibility. Must have a current Secret Level Clearance or above at the time of hire. Selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Successful passage of a criminal background screen is required to meet position eligibility. Areté will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Los Angeles Fair Chance Initiative for Hiring. Successful passage of a Department of Transportation (DOT) drug test is required to meet position eligibility Other Considerations Areté is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law. If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our website because of your disability. To request an accommodation, please contact Areté Human Resources at ************ for assistance.
    $72k-80k yearly 47d ago
  • Security Professional High Rise

    Job Listingsallied Universal

    Information Security Analyst Job In Los Angeles, CA

    Allied Universal , North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose. While working in a dynamic, diverse and inclusive workplace, you will be part of a team that fuels a culture that will reflect in our communities and customers we serve. We offer medical, dental and vision coverage, life insurance, retirement plan, employee assistance programs, company discounts, perks and more for most full-time positions! Job Description Allied Universal is hiring a Security Professional High Rise $22.70 per hour. The Security Professional will conduct unarmed foot and/or vehicle patrol (interior and/or exterior) in a hospital environment. Additional duties include control access and egress; monitor CCTV and alarm systems; compose reports; deter criminal activity and misconduct. Due to the safety sensitive nature of this role, qualified candidates must be able to submit to drug screening to the extent permissible by law. This assignment is in a healthcare facility. As such, a tuberculosis (TB) test and certain vaccinations may be required. RESPONSIBILITIES: Perform security patrols of hospital grounds on foot or in vehicle; document detailed observations of unusual conditions that may create security concerns or safety hazards Assist hospital staff with de-escalation of situations involving patients; restrain combative individuals as necessary (within company and customer guidelines) Transport patients to the morgue, as needed Assist in escorting patients from helicopter pad (high elevation) to the emergency room Assist with evacuations during fires, medical emergencies, and natural disasters Sound alarms or call police or fire department in case of fire or presence of unauthorized persons Warn violators of rule infractions, such as loitering, smoking, or carrying forbidden articles Permit authorized persons to enter property and monitor entrances and exits; ensure only authorized individuals enter and exit the hospital, and that no contraband or hospital items are brought in or out Observe departing personnel to protect against theft of company property and ensures that authorized removal of property is conducted within appropriate client requirements Investigate and prepare reports on accidents, incidents, and suspicious activities; maintain written logs as required QUALIFICATIONS (MUST HAVE): High school diploma or equivalent Current driver's license if driving a company- or customer-owned vehicle Licensing requirements are subject to state and/or local laws and regulations and may be required prior to employment Minimum of two (2) years of verifiable employment history relating customer service or the protective service industry (preferably security, healthcare, military, law enforcement, or corrections) Must be at least 18 years of age, or higher if required by the state Able to operate radio or telephone equipment and/or console monitors Demonstrated ability to interact cordially and communicate with the public Effective oral and written communication skills Problem solving skills Active listening skills Ability to assess and evaluate situations effectively; identify critical issues quickly and accurately Able to mediate conflict with tact, diplomacy Write informatively, clearly, and accurately Attention to detail PREFERRED QUALIFICATIONS (NICE TO HAVE): Service in Military Occupational Specialty related to law enforcement, security (such as Military Police, Elite Military Forces, combat arms) or any support role in a Combat Zone Graduate of a Certified Public Safety Academy (military or civilian) or verified work experience in the law enforcement, adult corrections, or firefighter field Bachelor's degree in law enforcement or criminal justice related studies A minimum of 8 or more years of service in any military branch Associate's degree (or 60 credits) or higher in law enforcement or criminal justice with current or prior active military service BENEFITS: Health insurance and 401k plans for full-time positions Schedules that fit with your personal life goals Ongoing paid training programs and career growth opportunities Employee discounts through our perks program to your favorite restaurants, entertainment venues and much more… Closing Allied Universal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. For more information: *********** If you have any questions regarding Equal Employment Opportunity, Affirmative Action, Diversity and Inclusion, have difficulty using the online system and require an alternate method to apply, or require an accommodation at any time during the recruitment and/or employment process, please contact our local Human Resources department. To find an office near you, please visit: ***********/offices. Requisition ID 2025-1351809
    $22.7 hourly 17h ago
  • Director of Information Security, Productions

    Sony Pictures Entertainment 4.8company rating

    Information Security Analyst Job In Culver City, CA

    The Information Security organization at Sony Pictures Entertainment is responsible for protecting our content, systems and data from being stolen, damaged or destroyed. To do so, we are constantly improving our tools, capabilities and processes. The Director of Information Security, Productions is accountable for overseeing our information security posture and providing clear, data-driven insight into InfoSec risk across all Sony Pictures Entertainment productions worldwide to support effective decision-making by our partners in production, content distribution, IT and throughout our business. Success will require developing and maintaining strong working relationships across the company, and leveraging the full capabilities of our Information Security and IT organizations to provide the best possible solutions to meet the needs of SPE movies and television productions. This role will also be accountable for identifying key process indicators across our production portfolios to determine where we have Information Security risk that it out of alignment with business expectations. Finally, it will require a strong familiarity with movie- and television-making standard tools and processes in order to effectively meet our production team needs. Key indicators of success in this role will be: + Business leaders have near real-time visibility into Information Security risk across our entire production portfolio, using metrics that are widely regarded as meaningful by our business partners, and that support timely and effective decision-making, at the right levels in the organization, to mitigate risk where needed. + Sony Pictures Entertainment has an industry leading set of technology tools supporting our productions, that have information security built in without creating unnecessary user friction. + Our production teams trust Sony Pictures to provide a secure digital workplace that is highly available, easy to use and keeps our data and content secure. + Information Security, Physical Security/Safety and Information Technology work as unified partners to support and secure our motion picture and television productions from concept to distribution. Within this organization, we value learning and agility, and empowering our teams to deliver positive outcomes. The Director of Information Security, Productions will be a key contributor to our success in supporting the most essential functions of our core business and establishing SPE and Sony as leaders in Production Security. Responsibilities: + Provide transparency into the Information Security risk profile - focusing on actionable information - of our world-wide active production portfolio, including all subsidiaries and controlled joint ventures. + Provide guidance on the needs of our production teams to Information Security Risk, Awareness, Architecture, Governance and Compliance teams. + Communicate production and content risk appropriately and effectively at all levels of the business. + Partner with Productions Security and Safety to flag all production incidents that have Information Security components in order to accurately report on overall risk and uncover trends to drive continual program improvement. + With IT and Physical Security, continually evolve the security controls in place for productions to most effectively meet our business goals. + Ensure that our security architecture and production technology teams build security into our production technology stacks. + Ensure security controls enable effective business operations by securing confidential information and content without creating undue friction for end users. + Ensure it remains current and effective in mitigating emerging threats. + Promote a high-trust culture of security across Sony Pictures Entertainment productions in support of our goal of being the most trusted studio in the industry. + Be accountable for developing and maintaining production security policies, standards and procedures that take into account the needs of our business partners. + Work with Security Awareness team to develop documentation and training materials appropriate for production team members. + When needed, participate in incident response activities by supporting our Incident Response team and ensuring effectively and timely communications between IR and business stakeholders. Ensure follow-up on action items coming out of incident learnings. Requirements: + 10+ years of experience in Information Security, Information Technology or a related field + 10+ years of experience in an organization directly involved in movie, television and/or other entertainment production, or equivalent educational experience + Strong understanding of the technologies, tools and processes used in production of movies and/or television. + Knowledge of Information Security frameworks, standards and best practices and their relevance to business success + Specific knowledge of processes, tools and practices used to maintain confidentiality in the context of movie and television productions. + Demonstrated ability to partner with business leaders to create and maintain information security policies, practices and procedures. + Ability to develop and maintain meaningful metrics to track program and process effectiveness. + Strong planning and analytical skills + Strong communications skills Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics. To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.
    $152k-207k yearly est. 60d+ ago
  • Manager, Information Security Corrective Action

    The Walt Disney Company 4.6company rating

    Information Security Analyst Job In Burbank, CA

    At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences. The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando. Corporate is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy. **What You'll Do:** + Manage reviews of reports, assessments, and findings to identify remediation and/or corrective action needed. + Manage coordination with IT and business partners to facilitate necessary remediation and corrective action. + Manage verification of remediation and corrective action activity to ensure it achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards. + Document and review open items in status reports, including next steps, dependencies, and stakeholders. + Manage communication of results to stakeholders, including technical and non-technical audiences. + Provide recommendations to improve security posture. + Contribute in improving security baselines and standards. + Stay updated on evolving security guidelines and incorporate them into IT and business practices. + Stay informed on emerging threats and vulnerabilities. + Proactively recommend adjustments to mitigate risks. **Required Qualifications & Skills:** + A minimum of 10 years of related cybersecurity experience + Demonstrated experience managing corrective action. + Ability to manage and work well with individuals and teams with varying technical and business backgrounds. + Deep understanding of security frameworks and standards. + Significant relationship management skills. + Analytical thinking and attention to detail. + Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills + Demonstrated ability to handle confidential information. + Managerial experience in a security program for a large and complex organization. **Required Education:** + Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field. The hiring Range for this position in California is $138,900.00 to $186,200.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered. **Job ID:** 10113538 **Location:** Burbank,California **Job Posting Company:** The Walt Disney Company (Corporate) The Walt Disney Company and its Affiliated Companies are Equal Employment Opportunity employers and welcome all job seekers including individuals with disabilities and veterans with disabilities. If you have a disability and believe you need a reasonable accommodation in order to search for a job opening or apply for a position, email Candidate.Accommodations@Disney.com with your request. This email address is not for general employment inquiries or correspondence. We will only respond to those requests that are related to the accessibility of the online application system due to a disability.
    $138.9k-186.2k yearly 25d ago
  • Information Security Analyst

    Cathay Bank 4.4company rating

    Information Security Analyst Job In Rancho Cucamonga, CA

    People Drive Our Success Are you enthusiastic, highly motivated, and have a strong work ethic? If yes, come join our team! At Cathay Bank - we strive to provide a caring culture that supports your aspirations and success. We believe people are our most valuable asset and we proudly foster growth and development empowering you to achieve your professional goals. We have thrived for 60 years and persevered through many economic cycles due to our team members' drive and optimism. Together we can make a difference in the financial future of our communities. Apply today! What our team members are saying: Video Clip 1 Video Clip 2 Video Clip 3 Learn more about us at cathaybank.com GENERAL SUMMARY This position is responsible for ensuring that the Bank's Security operations and preventive controls are managed and maintained in accordance with established Information Security policies, standards and procedures, published regulations and industry best practices. Primarily responsible for the constant review of vendor security controls in comparison with policies and industry frameworks, risk assessments, determination of control gaps and their remediation. ESSENTIAL FUNCTIONS Performs vendor security risk assessments to determine inherent risk on proposed projects and assesses vendor security controls to determine residual risk. Evaluates the potential exposure to application security risks and threats based on industry security frameworks and recommends appropriate mitigation. Periodically assesses the information security controls design and execution applied by vendors for completeness and efficacy. Identifies control gaps for remediation. Assesses vendor security practices including Information Security governance, Identity and access control, Incident monitoring and response, Vulnerability assessment and Penetration tests, Network Security and Endpoint Security, among others. Acts as liaison with Third Party Risk Management, Information Technology and business department Relationship Managers related to vendor risk assessments. Reports information security risks and follows-up remediations. Remediates audit and regulatory findings and recommendations related to Information Security and Vendor Risk Management. QUALIFICATIONS Education: College degree in Information Technology or Information Security or equivalent; Security+, SSCP, CISSP, CISM or similar information security certifications preferred. Experience: Minimum of 2 years experience in Information Security Risk, Information Security Operations or Security Auditing. Proven experience on third-party risk management and vendor security assessments. Experience working with Vendor Risk Management (VRM) applications preferred. Working knowledge of security practices such as Endpoint Security, Network Security, Security Operations and Security Governance required. Skills/Ability: Proven ability to initiate and manage projects. Excellent communication and problem-solving skills. Strong inter-personal communication and collaboration skills. Self-starter, highly motivated, and able to work with general supervision. OTHER DETAILS $29.81 - $42.07 / hour Pay determined based on job-related knowledge, skills, experience, and location. This position may be eligible for a discretionary bonus. Cathay Bank offers its full-time employees a competitive benefits package which is a significant part of their total compensation. It is our goal to provide employees with a comprehensive benefits package to fit their needs which includes, coverage for medical insurance, dental insurance, vision insurance, life insurance, long-term disability insurance, and flexible spending accounts (FSAs), health saving account (HSA) with company contributions, voluntary coverages, and 401(k). Cathay Bank may collect personal information from potential job candidates and applicants. For more information on how we handle personal information and your applicable rights, please review our Privacy Policy. Cathay Bank is an Equal Opportunity and Affirmative Action Employer. We believe in diversity, equity, and inclusion in the workplace. We welcome applications for employment from all qualified candidates, regardless of race, color, ethnicity, ancestry, citizenship, gender, national origin, religion, age, sex (including pregnancy and related medical conditions, childbirth and breastfeeding), reproductive health decision-making, sexual orientation, gender identity and expression, genetic information or characteristics, disability or medical condition, military status or status as a protected veteran, or any other status protected by applicable law. Click here to view the “Know Your Rights: Workplace Discrimination is Illegal” Poster: Poster- English Poster- Spanish Poster- Chinese Traditional Poster- Chinese Simplified Cathay Bank endeavors to make **************************** to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact, Mickey Hsu, FVP, Employee Relations Manager, at ************** or *************************. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
    $29.8-42.1 hourly 60d+ ago
  • Senior Security Specialist

    Arete Associates Inc. 4.5company rating

    Information Security Analyst Job In Los Angeles, CA

    At Areté, we are on the forefront of utilizing innovative solutions, with great minds from all backgrounds, to help solve the nation's most complex security challenges. We strive for an inclusive, collaborative team environment that approaches differences as opportunities for innovation and excellence. As an employee-owned company, we foster an atmosphere that propels diverse career opportunities and professional growth. Discover your future with us. The Senior Security Specialist will implement the industrial security program and ensure security requirements are met for the Areté Northridge Facility. Coordinate and monitor highly sensitive aspects of DoD or other industrial security programs and other security activities while ensuring compliance with government and company security policies and procedures. Support clearance processing, visit certifications, document control, and physical security, to include alarm response for controlled area program, as well as additional security related taking. Thorough understanding of security databases such as DISS, eQIP, and NISS. The Senior Security Specialist is responsible for implementing and providing guidance to customers and management on security issues such as security education, classified document control, security investigations, classification control and personnel clearances. The Senior Security Specialist will apply knowledge of, and experience with, strong understanding of Physical Security requirements to include collateral Closed Areas; along with a working knowledge of SF-86, SF-312, DD-254, SF700, SF702, Operations Security (OPSEC) to develop, implement, and maintain the OPSEC Program to protect sensitive unclassified information, activities, equipment, and materials. Alongside the Corporate Facility Security Officer the Senior Security Specialist will develop, participate in, and /or provide training and awareness. This is a non-exempt, non-supervisory, full-time position based in our Northridge, CA office. Primary Responsibilities: * The Senior Security Specialist is responsible for implementing the industrial security program and ensuring company and customer security requirements are met. * The successful candidate will interface with all levels of Arete personnel and government management personnel to ensure contract security compliance with National Industrial Security Operating Manual(NISPOM) 32 CFR Part 117 , DoD Manual 5205.07, Contract Security Classification Specification (DD254) and Program Classification Guides. * Work as a team player, exhibit flexibility, and excellent organizational skills. Analyze moderate problems and provide focused solutions with the ability to effectively communicate information to various audiences. Bring security risks to the attention of the Corporate Facility Security Officer , senior management and PM's as identified. * The candidate will be required to conduct security self-inspections alongside the Corporate Facility Security Officer, apply risk mitigation methodologies, support customer assessments, and implement security measures to meet requirements. * The Senior Security Specialist must possess the confidence to make critical security decisions concerning high value contracts and to implement security procedures that will prevent unauthorized access to company and government facilities or information. * Provide clear guidance to company employees and recommend modifications to operations policies or procedures as appropriate. We have an impressive range of benefits, programs, and perks that we offer: Generous PTO and Leave Times * Flextime Scheduling (Core hours 0900-1500) * Bereavement * Paid Time Off (PTO) * Paid Parental Leave Financial Benefits * 401K Retirement Plan Contribution * Employee Stock Ownership Plan * Continuing Education Funds Health, Medical, and Wellness Benefits * Medical Insurance * Dental & Vision Insurance * Life Insurance and Long-Term Disability (LTD) * Vision Reimbursement Qualities We Look For * Creativity * Integrity * Passion * Responsiveness * Collaboration Experiences and Background We Look For * Leading teams or projects or equivalent experience/combined education, with 1- 3/5 ~ years of professional experience. * Thorough working knowledge of the NISPOM, other relevant DoD security guidance, as well as the Intelligence Community Directive (ICD) standards * Self-starter with ability to work independently, customer service orientated * Commitment to security - creating and delivering the highest value to customers * Ability to interpret company and government security policies and apply them to program operations * Strong understanding of Physical Security requirements to include collateral Closed Areas. Along with working knowledge of SF-86, SF-312, DD-254, SF700, SF702 and other required forms. * Thorough understanding of security databases such as eQIP, NISS and DISS. * Experience creating and conducting initial security briefings, debriefings, indoctrinations, pre/post foreign travel briefings and refresher briefings, as appropriate. * Ability to develop and establish an effective security awareness, training, and education program. Assist in executing the requirements set forth in the Technology Control Plan (TCP) for foreign visitors. * Communicate with parties within and outside of own area, which may include external constituents depending upon the area. Requires ability to influence others outside of own area on policies, practices and procedures. * Assist with Proposal Writing and Contract Closeouts. * Candidate must have the ability to obtain a clearance at the Secret level or above. Nice to have- * FSO training certificate * COMSEC Custodian certificate or experience required. Complete IAEC-2112 COMSEC Training Course six months after being appointed as Alternate COMSEC Account Manager * Courier preparation procedures * Experience developing and implementing OPSEC plans * Knowledge of Access Control and Intrusion Detection Systems * Experience conducting Security incident inquiries * Resourceful in solving problems and capitalizing on opportunities * Professional Certifications/Affiliations The salary range for this role is $72,000/yr to $80,000/yr; however, Arete considers several factors when extending an offer of employment, including but not limited to: the position and associated responsibilities, a candidate's work experience, education/training, and key skills. Other Requirements U.S. citizenship is required to meet position eligibility. Must have a current Secret Level Clearance or above at the time of hire. Selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Successful passage of a criminal background screen is required to meet position eligibility. Areté will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the Los Angeles Fair Chance Initiative for Hiring. Successful passage of a Department of Transportation (DOT) drug test is required to meet position eligibility Other Considerations Areté is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law. If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our website because of your disability. To request an accommodation, please contact Areté Human Resources at ************ for assistance.
    $72k-80k yearly 49d ago
  • Manager, Information Security Corrective Action

    Walt Disney Co 4.6company rating

    Information Security Analyst Job In Burbank, CA

    At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences. The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando. Corporate is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy. What You'll Do: * Manage reviews of reports, assessments, and findings to identify remediation and/or corrective action needed. * Manage coordination with IT and business partners to facilitate necessary remediation and corrective action. * Manage verification of remediation and corrective action activity to ensure it achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards. * Document and review open items in status reports, including next steps, dependencies, and stakeholders. * Manage communication of results to stakeholders, including technical and non-technical audiences. * Provide recommendations to improve security posture. * Contribute in improving security baselines and standards. * Stay updated on evolving security guidelines and incorporate them into IT and business practices. * Stay informed on emerging threats and vulnerabilities. * Proactively recommend adjustments to mitigate risks. Required Qualifications & Skills: * A minimum of 10 years of related cybersecurity experience * Demonstrated experience managing corrective action. * Ability to manage and work well with individuals and teams with varying technical and business backgrounds. * Deep understanding of security frameworks and standards. * Significant relationship management skills. * Analytical thinking and attention to detail. * Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills * Demonstrated ability to handle confidential information. * Managerial experience in a security program for a large and complex organization. Required Education: * Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field. The hiring Range for this position in California is $138,900.00 to $186,200.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered. About The Walt Disney Company (Corporate): At Disney Corporate you can see how the businesses behind the Company's powerful brands come together to create the most innovative, far-reaching and admired entertainment company in the world. As a member of a corporate team, you'll work with world-class leaders driving the strategies that keep The Walt Disney Company at the leading edge of entertainment. See and be seen by other innovative thinkers as you enable the greatest storytellers in the world to create memories for millions of families around the globe. About The Walt Disney Company: The Walt Disney Company, together with its subsidiaries and affiliates, is a leading diversified international family entertainment and media enterprise that includes three core business segments: Disney Entertainment, ESPN, and Disney Experiences. From humble beginnings as a cartoon studio in the 1920s to its preeminent name in the entertainment industry today, Disney proudly continues its legacy of creating world-class stories and experiences for every member of the family. Disney's stories, characters and experiences reach consumers and guests from every corner of the globe. With operations in more than 40 countries, our employees and cast members work together to create entertainment experiences that are both universally and locally cherished. This position is with Disney Worldwide Services, Inc., which is part of a business we call The Walt Disney Company (Corporate). Disney Worldwide Services, Inc. is an equal opportunity employer. Applicants will receive consideration for employment without regard to race, religion, color, sex, sexual orientation, gender, gender identity, gender expression, national origin, ancestry, age, marital status, military or veteran status, medical condition, genetic information or disability, or any other basis prohibited by federal, state or local law. Disney champions a business environment where ideas and decisions from all people help us grow, innovate, create the best stories and be relevant in a constantly evolving world. Apply Now Apply Later Current Employees Apply via My Disney Career Explore Location
    $138.9k-186.2k yearly 26d ago

Learn More About Information Security Analyst Jobs

How much does an Information Security Analyst earn in Sun Village, CA?

The average information security analyst in Sun Village, CA earns between $77,000 and $159,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.

Average Information Security Analyst Salary In Sun Village, CA

$110,000
Job type you want
Full Time
Part Time
Internship
Temporary