Post job

Information security analyst jobs in Troutdale, OR - 27 jobs

All
Information Security Analyst
Security Engineer
Senior Security Engineer
Information Technology Analyst
Security Architect
Securities Analyst
Senior Security Analyst
Information Security Officer
Information Systems Engineer
Information Security Engineer
Cyber Security Engineer
  • IT Analyst (Supply Chain) (Oracle Expert)

    OIA Global 3.9company rating

    Information security analyst job in Portland, OR

    OIA Global Since its founding in 1988, OIA Global has grown into a $1 billion world-class logistics and packaging company that employs over 1,400 professionals in 28 countries. Our knowledge, solution design experience, and installed infrastructure give our customers the confidence and capability to extend their supply chains from emerging production areas to key commercial markets. Summary: This position liaises between business and technical groups and is responsible for creating documentation to ensure ongoing communication and development is clear. This role will focus primariy on creating and deploying reports that are utilized by both internal and external stakeholders. The Analyst helps ensure technical work is properly prioritized according to the priorities set by leadership and the project manager. This role serves as a primary contact coordinating user acceptance testing before and after production releases as well as production support responsibilities. Hybrid Role: Wil be expected to work designated days in the office and others from home. Location: 2100 S River Parkway, Suite 800, Portland, OR 97201 Salary Range: $80,000 to $110,000 annually The actual pay may vary based on several factors, including professional experience, hiring location, skills, and competencies. Duties and Responsibilities: Understand and discuss technical concepts with non-technical and technical employees Participate in Agile team ceremonies Conduct unit, system, and user acceptance testing to ensure changes meet requirements Lead requirement gathering sessions with users for small projects Document use cases and technical guidelines for assigned projects Resolve maintenance projects as they arise with guidance from Senior and/or Lead Analyst Identify issue patterns and participate in root cause analysis and resolution Responsible for system monitoring, support response and support queue management for any one of OIA's applications Occasional support outside normal business hours Required Skills and Abilities: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Experience leveraging both agile development and waterfall release approaches Experience with LEAN or other process improvement methodologies Experience with writing Functional and System documentation Knowledge of technology, vendors, services, and methodologies to build digital offerings Able to learn how to use flowchart and diagram tools such as LucidChart Familiarity with Application Integration Preferred Familiarity with RPA, AI, ML Preferred Strong leadership, team building, communication, and customer service skills Ability to function autonomously and use good judgment in a fast-paced, global environment Ability to adapt to changing priorities, shifting needs and moderate ambiguity Knowledge of and capable to introduce new technologies to the organization Ability to develop strategies for crucial solutions for the overall success of the business Experience in data analysis and data visualization to draw business-relevant conclusions Education and Experience: 2+ years experience as a business analyst or functional analyst or a similar role Must have hands on experience with Oracle ERP Experience with Power BI, Report development and testing Must have experience with the following ERP modules - General Ledger (GL), Accounts Payable (AP), Accounts Receivable (AR) Fixed Assets (FA), Purchasing (PO), Inventory (INV), Order Management (OM) Physical Requirements: Prolonged periods of sitting at a desk and working on a computer Ability to lift to 15lbs/5 kg Minimum to no travel required The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. OIA Global is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability. We offer an exciting and growth-oriented work environment, and OIA employees enjoy competitive salaries and excellent benefits.
    $80k-110k yearly 5d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Identity Security Analyst

    Intel 4.7company rating

    Information security analyst job in Hillsboro, OR

    The world is transforming - and so is Intel. Intel is a company of bold and curious inventors and problem solvers who create some of the most astounding technology advancements and experiences in the world. With a legacy of relentless innovation and a commitment to bring smart, connected devices to every person on Earth, our diverse and brilliant teams are continually searching for tomorrow's technology and revel in the challenge that changing the world for the better brings. We work every single day to design and manufacture silicon products that empower people's digital lives. Come join us and do something wonderful. Who we Are: Intel's Information Security organization enables Intel to provide secure products, solutions, and services which meet U.S. regulatory requirements. The Information Security organization supports the unique IT information Security and Compliance requirements for Intel Federal projects that deliver products and/or services to the US Government (USG). As part of this team, you will help us grow our secure solution suite to meet U.S. Government requirements. The Intel Information Security organization is seeking an Identity Security Analyst. The candidate chosen for this role will assist senior engineers with design, architecture, and build of secure classified network products to support USG operations. **Primary duties and responsibilities:** + Design, deploy, and manage enterprise-grade PKI solutions. + Lead certificate lifecycle management efforts using EJBCA. + Automate PKI-related tasks and processes. + Collaborate with security, infrastructure, and DevOps teams to integrate PKI solutions with various platforms and applications. + Develop and enforce policies, standards, and best practices for certificate issuance, renewal, and revocation. + Monitor PKI infrastructure health, availability, and compliance with internal and regulatory requirements. + Troubleshoot PKI-related issues including certificate chain validation, CRL/OCSP configurations, and encryption/signing issues. + Provide documentation, technical guidance, and training to internal teams. + Business travel is required as needed. + Ability to thrive in dynamic and fast-paced environments **Qualifications:** You must possess the below minimum qualifications to be initially considered for this position. Preferred qualifications are in addition to the minimum requirements and are considered a plus factor in identifying top candidates. Experience listed below would be obtained through a combination of your degree, research and or relevant previous job and or internship experiences. **Minimum Qualifications:** + US Citizenship required Ability to obtain and maintain a US Government Security Clearance + High School /Equivalent Diploma and 3+ years of applicable experience with at least one of the following security certifications: CISSP, CEH, SSCP OR Bachelor's degree and 2+ years of applicable experience. + 1+ years' experience in designing and implementing custom SailPoint solutions + 2+ years' experience configuring Access Profiles, Roles, and Identity Profiles + 2+ years' experience in Active Directory + 2+ years' experience in APIs (RESTful services preferred) + 1+ years' experience in implementing and supporting SailPoint IIQ modules like Compliance Manager, Lifecycle Manager, Integration modules, in both production and nonproduction environments **Preferred Qualifications:** + Active US Government Top Secret (TS) Security Clearance with the ability to obtain and maintain SCI access Bachelor's degree in Systems Engineering, Cyber Security Engineering, Computer Engineering, Computer Science, Information Systems, or similar discipline and four years of work-related experience; or an equivalent combination of education and experience + Experience with DoD security implementation (e.g. STIG) and security tools for managing the environment + Experience with business continuity and disaster recovery + Experience with scripting in the Windows and UNIX environment + Experience with Microsoft SQL Server 2019/2022Experience with Web Tech: HTML, JavaScript, JSP, XML, XSL, and DTD + Requirements listed would be obtained through a combination of industry relevant job experience, internship experiences and or schoolwork/classes/research. **Job Type:** Experienced Hire **Shift:** Shift 1 (United States of America) **Primary Location:** US, California, Santa Clara **Additional Locations:** US, Arizona, Phoenix, US, Oregon, Hillsboro **Business group:** Join Intel's Finance Group, a key player in driving strategic business decisions that enhance shareholder value. Our team is dedicated to facilitating change and improvement across finance and the operations we support. As strategic partners, we lead acquisitions and inorganic growth initiatives, managing transactions from ideation to completion while serving as trusted advisors to executive leadership. Additionally, we enhance employee experiences by maintaining Intel sites globally and advancing environmental sustainability efforts. **Posting Statement:** All qualified applicants will receive consideration for employment without regard to race, color, religion, religious creed, sex, national origin, ancestry, age, physical or mental disability, medical condition, genetic information, military and veteran status, marital status, pregnancy, gender, gender expression, gender identity, sexual orientation, or any other characteristic protected by local law, regulation, or ordinance. **Position of Trust** N/A **Benefits** We offer a total compensation package that ranks among the best in the industry. It consists of competitive pay, stock bonuses, and benefit programs which include health, retirement, and vacation. Find out more about the benefits of working at Intel (*********************************************************************************** . Annual Salary Range for jobs which could be performed in the US: $124,110.00-175,210.00 USD The range displayed on this job posting reflects the minimum and maximum target compensation for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific compensation range for your preferred location during the hiring process. **Work Model for this Role** This role will require an on-site presence. * Job posting details (such as work model, location or time type) are subject to change.
    $124.1k-175.2k yearly 60d+ ago
  • Information Security Analyst I

    Beneficial State Bank 3.2company rating

    Information security analyst job in Portland, OR

    TITLE: N/A JOB CODE: FLSA: Exempt SALARY GRADE: 7 CATEGORY: Full-time UNION REPRESENTATION: NA SCHEDULE: Hybrid SUPERVISORY ROLE Y/N: 11.2025 The Information Security Analyst I plays a critical role in safeguarding the organization's systems and information assets. This position supports the development and implementation of security strategies, tools, and guidelines to protect against unauthorized access, data breaches, and system disruptions. Responsibilities include monitoring and responding to Information Security-related alerts, supporting audit and risk assessment activities, evaluating internal controls, and recommending improvements to enhance security posture. The analyst assists in migrating non-compliant environments to meet regulatory standards and ensures adherence to data protection laws and banking industry compliance requirements. This role is foundational to maintaining the confidentiality, integrity, and availability of sensitive financial data and supporting the organization's overall cybersecurity framework. ESSENTIAL DUTIES Identity and Access Management Support access provisioning, modification, and termination processes to ensure timely and secure access control. Conduct administrator activity and user access reviews across IT systems, including privileged access audits and firewall/cloud app usage monitoring. Maintain asset and access inventories, perform recurring audits of critical systems, and reconcile against endpoint and network tools. Security Monitoring and Incident Response Monitor and respond to alerts from SIEM, IDS, firewalls, and endpoint protection systems. Conduct vulnerability scans, track remediation efforts, and facilitate related meetings. Maintain readiness for incident response activation, including participation in tabletop exercises. System Administration and Tool Management Administration of cloud computing environments, conditional access, and guest provisioning following established best practices. Manage software controls, browser extensions, and patching processes. Administer security camera system and ensure system uptime. Administer Mobile Device Management system. Threat Intelligence and Continuous Improvement Stay informed on emerging threats in the banking sector and contribute to threat intelligence reporting. Research and test new security tools, controls, and AI applications to enhance the Bank's security posture. Correctly identify true and false positives in alerting systems and tune these systems for continuous improvement. Security Awareness and Training Support phishing simulations and training campaigns, track completion, and report metrics to management. Documentation and Reporting Log findings, remediation efforts, and audit results in a structured ticketing system. Assist with vendor management program administration and reporting. Data Protection and Compliance Ensure compliance with GLBA, FFIEC, and other applicable regulations through log retention, configuration management oversight, and DLP monitoring. Administer data classification tools and respond to violations involving PII or sensitive data. Audit VPN usage and test controls across email, endpoint, and network security platforms. Completes mandatory compliance training in accordance with established deadlines. The position performs duties specific to the position and other functions as assigned. ROLE COMPETENCIES/SKILLS Attention to Detail Collaboration & Communication Diversity & Inclusion Execution & Ownership Time Management Compliance Innovation Systems Thinking Data Analysis & Management Information Security Network Operations Critical Thinking Consulting Analytical Thinking ENVIRONMENT, PHYSICAL & MENTAL ACTIVITIES The incumbent is in a non-confined office-type setting in which they are free to move about at will. It may include some minor annoyances such as noise, odors, drafts, etc. For Hybrid and Remote roles, work may also be performed away from BSB worksites depending on the position and requirements. For Hybrid/Remote work, employees are required to have an environment when working at home that has a dependable, high-speed internet connection and environment conducive to frequent phone or internet calls where private, confidential or other information is not visible, able to be overheard, or physically or electronically accessible to anyone else. The incumbent in the course of performing this position spends time writing, typing, speaking, listening, lifting (up to 10 pounds), driving, carrying, seeing (such as close, color and peripheral vision, depth perception and adjusted focus), sitting, pulling, walking, standing, squatting, kneeling and reaching. The incumbent for this position may operate any or all of the following: personal computer, cellular telephone, printer, fax, and other standard office equipment. The incumbent in this position must be able to accommodate reading documents or instruments, detailed work, problem solving, customer contact, reasoning, math, language, presentations, verbal and written communication, analytical reasoning, stress, multiple concurrent tasks and constant interruptions. The work environment characteristics, physical and mental demands described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. POSITION REQUIREMENTS Minimum Qualifications Bachelor's degree in Information Technology, Cybersecurity, or a related field, or equivalent combination of education and experience. 5 years of professional experience in IT support or related technical roles. Foundational understanding of cybersecurity principles, including access control, endpoint protection, and network monitoring. Familiarity with Microsoft 365, Active Directory, and basic system administration tasks. Ability to conduct audits, manage tickets, and document findings accurately. Strong analytical and troubleshooting skills. Effective communication skills and ability to collaborate across departments. Preferred Qualifications Bachelor's degree in Information Technology, Cybersecurity, or a related field. Experience with banking industry compliance standards (e.g., GLBA, FFIEC). Hands-on experience with security tools such as SIEM, DLP, IDS/IPS, EDR, Email Filtering, and Firewalls. Exposure to vulnerability management platforms and identity/access management processes. Familiarity with Microsoft cloud services and Mobile Device Management. Experience supporting or administering phishing simulations, security awareness programs, or similar efforts. Knowledge of vendor management platforms and data classification tools. Management reserves the right to change this position description at any time according to business needs. #LI_Hybrid
    $111k-144k yearly est. 11d ago
  • Sr. Security Analyst

    Maximus 4.3company rating

    Information security analyst job in Portland, OR

    Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned. *This role is remote but requires working standard business hours in the US time zone of the client.* Essential Duties and Responsibilities: - Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary. - Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget. - Work closely with management and work groups to create and maintain work plan documents. - Track the status and due dates of projects. - Manage relationships with project staff responsible for projects. - Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed. - Facilitate regular meetings and reviews. - Adhere to contract requirements and comply with all corporate policies and procedures. Job Specific Duties and Responsibilities: -Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects. -Review project documentation and client materials and provide analysis of technical and security related topics. -Participate in client meetings and offer observations and insight on technical and security related topics. -Identify risk areas and potential problems that require proactive attention. -Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to: *System Security Plan *Plan of Action and Milestones (POA&M) *Security Assessment Plan *Risk Assessment reports *CMS ARC-AMPE forms and documentation *Data Conversion and Migration Management Plan *Deployment and/or roll-out plans -Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects. -Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues. -Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work. -Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager. -Complete project work in compliance with Maximus standards and procedures. -Support team to complete assigned responsibilities as outlined in the Project schedule. -Support all other tasks assigned by Senior Manager / Project Manager. Minimum Requirements - Bachelor's degree in related field. - 7-10 years of relevant professional experience required. - Equivalent combination of education and experience considered in lieu of degree. Job Specific Requirements: -Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required. -Bachelor's degree from an accredited college or university, or equivalent work experience. -7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry. -5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks. -Familiar with operating systems: Windows, Linux/UNIX, OS/X. -Familiar with AI tools, capabilities. -Strong command of cloud computing topics. -Strong command of agile software development practices as well as waterfall development practices. -Strong desktop software skills: proficient in MS Office, Excel, Word, Project. -Ability to explain and communicate technical subjects to non-technical audiences. -Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills. -Ability to work independently. -Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously. -Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential. -Excellent verbal and writing skills and be comfortable working with customers. -Ability to multi-task with supervision. -Self-motivated fast learner. Preferred Skills: -Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid). -Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional). EEO Statement Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Accommodations Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************. Minimum Salary $ 120,000.00 Maximum Salary $ 140,000.00
    $95k-130k yearly est. Easy Apply 5d ago
  • Information Security Operations Analyst

    Moda Health 4.5company rating

    Information security analyst job in Portland, OR

    Let's do great things, together! About Moda Founded in Oregon in 1955, Moda is proud to be a company of real people committed to quality. Today, like then, we're focused on building a better future for healthcare. That starts by offering outstanding coverage to our members, compassionate support to our community and comprehensive benefits to our employees. It keeps going by connecting with neighbors to create healthy spaces and places, together. Moda values diversity and inclusion in our workplace. We aim to demonstrate our commitment to diversity through all our business practices and invite applications from candidates that share our commitment to this diversity. Our diverse experiences and perspectives help us become a stronger organization. Let's be better together. Position Summary The Operations Analyst is a technical role within Moda's Information Security team and will play a vital role in keeping the organization's proprietary and sensitive information secure. This position works interdepartmentally to investigate issues, identify and correct flaws in security systems, solutions, and programs, and recommend measures to improve the company's overall security posture. Acting as a liaison between Security and IT management, the analyst assists IT strategy and architecture design from a security perspective and identifies issues, concerns, or recommendations as the organization grows its technology infrastructure and processes. This is a FT WFH position. Pay Range $70,496.52 - $91,647.55 annually (depending on experience) *This role may be classified as hourly (non-exempt) depending on the applicant's location. Actual pay is based on qualifications. Applicants who do not exceed the minimum qualifications will only be eligible for the low end of the pay range. Please fill out an application on our company page, linked below, to be considered for this position. ************************** GK=27768922&refresh=true Benefits: Medical, Dental, Vision, Pharmacy, Life, & Disability 401K- Matching FSA Employee Assistance Program PTO and Company Paid Holidays Required Skills, Experience & Education: Bachelor's or master's in Computer Science, Information Security, Cybersecurity, or a related field. 5+ years of experience as a security operations analyst or in related fields such as IT audit, enterprise risk management, penetration testing, or red team/incident response. Experience with common security tools such as SIEM platforms, EDR solutions, and cloud platforms (e.g., Microsoft Azure, Amazon AWS). Knowledge of Microsoft Azure configuration and management is highly desirable. 3+ years of experience with regulatory compliance and information security management frameworks (e.g., HIPAA, NIST, IS0 27000, or COBIT). Strong documentation and reporting skills, including the ability to record security events, investigations, and recommendations for technical and non-technical audiences. Excellent collaboration and communication skills with the ability to influence and work effectively across cross-functional teams. Industry recognized cybersecurity certification (e.g., CISSP, CISM, CompTIA Security+) preferred. Primary Functions: Defend against cybersecurity incidents and identify, analyze, communicate, and contain incidents as they occur. Monitor systems and networks for security alerts, notifications, and issues including patching and update process issues and investigate and document any security issues or events that may occur. Own and drive the investigation of security events and other cybersecurity incidents including review, triage, and response to alerts and notifications. Take a lead role in the documentation of security events and incidents and the assessment of the damage they cause. Review threat intelligence and analyze the current threat landscape and apply threat analysis to Moda's infrastructure systems and networks to identify and address vulnerabilities or exploitable attack paths. Build and drive proactive threat hunting programs including detailed threat analysis of exploitable vulnerabilities leading to actionable remediation plans. Work with IT resources and architects to develop and implement cloud security strategies to facilitate migration of key assets into a public cloud hosted environment. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Work with IT and Security leadership to perform tests or support external testing such as network penetration tests, vulnerability testing, and disaster response failover tests to uncover network vulnerabilities. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Take a proactive and operational role in creating the best practices for IT security companywide. Support cybersecurity risk assessment activities. Work with both Security and IT management to ensure security policies and goals are met in infrastructure and development contexts. Stay current on IT security trends and news including evolving standards. Collaborate and communicate effectively with cross functional colleagues at all levels. Other duties as assigned. Working Conditions: Remote office environment with extensive close PC and keyboard use, constant sitting, and frequent phone communication. Must be able to navigate multiple computer screens. A reliable, high-speed, hard-wired internet connection required to support remote or hybrid work. Must be comfortable being on camera for virtual training and meetings. Work in excess of standard workweek, including evenings and occasional weekends, to meet business need. Internally with all departments. Externally with auditors, clients, technology partners, and other various entities. Together, we can be more. We can be better. Moda Health seeks to allow equal employment opportunities for all qualified persons without regard to race, religion, color, age, sex, sexual orientation, national origin, marital status, disability, veteran status or any other status protected by law. This is applicable to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absences, compensation, and training. For more information regarding accommodations, please direct your questions to Kristy Nehler & Danielle Baker via our ***************************** email.
    $70.5k-91.6k yearly Easy Apply 11d ago
  • Security Architect

    Deloitte 4.7company rating

    Information security analyst job in Portland, OR

    Are you an experienced, passionate pioneer in technology who wants to work in a collaborative environment? As an experienced Security Architect you will have the ability to share new ideas and collaborate on projects as a consultant without the extensive demands of travel. If so, consider an opportunity with Deloitte under our Project Delivery Talent Model. Project Delivery Model (PDM) is a talent model that is tailored specifically for long-term, onsite client service delivery. Recruiting for this role ends on 03/13/2026 Work you'll do/Responsibilities * Responsible for supporting the team with secure network designs and regulatory requirements. * Translate business objectives and risk management strategies into practical, secure technological solutions. * Ensure security principles are infused at every level of the enterprise. * Communicate regularly with Engagement Managers (Directors), project team members, and representatives from various functional and / or technical teams, including escalating any matters that require additional attention and consideration from engagement management * Independently and collaboratively lead client engagement workstreams focused on improvement, optimization, and transformation of processes including implementing leading practice workflows, addressing deficits in quality, and driving operational outcomes The Team Our Cyber Operate offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments. Qualifications Required * Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience * 5+ years of proven experience as a Security Architect * Experience with information security engineering * Experience with security compliance (NIST Cybersecurity Framework) * Strong understanding of secure architecture methodologies. * Experience with incidence response * Limited immigration sponsorship may be available * Ability to travel 10%, on average, based on the work you do and the clients and industries/sectors you serve Preferred * Experience with Security Operations The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $90,000 to $150,000. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Additional Requirements Information for applicants with a need for accommodation: ************************************************************************************************************ Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters. Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you. Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work. Our purpose Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more. Professional development From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte Consulting LLP, a subsidiary of Deloitte LLP. Please see ********************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law. Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers Requisition code: 321158 Job ID 321158
    $90k-150k yearly 3d ago
  • PERS - Information Security Analysis

    Perfecta

    Information security analyst job in Tigard, OR

    Founded in 2017 Perfecta is a division and a wholly owned subsidiary of City National Security a well known and reputed company providing IT Consulting , Staffing and Security services throughout the United States. Perfecta brings a rich experience of over 12 years in providing fully scaled IT Consulting and Staffing & Recruiting services. Perfecta brings a successful track record of delivering value based quality professional solutions at economical price to its customers across the U.S. Perfecta has successfully executed various IT and Staffing projects with its government and commercial clients and has consistently provided quality services to its customers. Job Description Part I. General Information Under this Statement of Work (SOW), the Contractor shall analyze, recommend, create working documentation, guidelines, policies, standards, instructional procedures, and conduct assessments to support the implementation of the following: • PERS Information Security Awareness and Training Program • PERS Information Security Program • Reorganization and alignment of PERS Information Security policies, standards, and procedures Part II. Work The Contractor shall comply with OPERS contractual deliverable review and approval processes by working with OPERS Quality Assurance in utilizing the Quality Checkpoint process attached to this SOW as Attachment 1. Quality Checkpoint is a Quality Assurance process to verify that major deliverables in the project have been reviewed and approved by their respective stakeholders. PERS Information Security Awareness and Training Program Contractor shall assist OPERS' CISO in the creation, documentation, and implementation of a structured Information Security Awareness and Training Program. Contractor shall work with OPERS to plan, document and implement solutions to fit the needs of OPERS. Tasks to support OPERS' Information Security Awareness and Training Program include, but not limited to: 1. Define activities to be performed to enable and implement the Security Awareness and Training Program 2. Research and document materials needed to implement the program 3. Research and document delivery methods and related activities to implement the program 4. Research, obtain stakeholder buy-in, and document a regularly occurring schedule of activities. 5. Develop content for PERS specific, role based training for data/system owners/custodians. 6. Develop content, produce materials for PERS specific training for staff. 7. Deliver Security, Awareness and Training materials, presentations, etc. to targeted audiences Reorganization of PERS Information Security policy structure In the first phase of policy, standard, procedure creation, emphasis was placed on creating required policy documentation to address HPE findings. In this second phase, the emphasis is to consolidate and reorganize the policy structure, resulting in fewer policies, and more specific requirements, based on security domains: 1. Identify and convert redundant policies to standards as appropriate 2. Align policy structure to NIST CSF domains 3. Address gaps by creating policies, standards, and procedures as identified and needed. Implementation of PERS Information Security Program Initialize and implement operation of Information Security program: 1. Conduct Third Party and Software Development Information Security assessments 2. Initialize policy exception requesting, approval, denial, and risk acceptance process. Part III. Special Considerations Contractor acknowledges and agrees that any and all information regarding OPERS installation, design, configuration, data migration will be kept confidential. Part IV. Travel and Other Expenses OPERS shall not reimburse Contractor for any expenses under this Contract. Work must be completed on-site, Tigard, OR Additional Information All your information will be kept confidential according to EEO guidelines.
    $126k-188k yearly est. 60d+ ago
  • Senior Security Engineer

    Microsoft Corporation 4.8company rating

    Information security analyst job in Hillsboro, OR

    The Microsoft Offensive Research & Security Engineering (MORSE) team is looking for a learn-it-all engineer that will help secure Microsoft products and devices. The MORSE team is responsible for securing Microsoft's operating systems, including Windows, cloud computing platforms, and virtualization technologies. These solutions support the daily needs of over one billion customers worldwide. This team performs security design reviews, code reviews, and vulnerability research on key features of Windows and Azure to make sure they meet the highest possible security standards. In this role, you will help a team of engineers tasked with building automation and tooling to streamline and scale detection of vulnerabilities. The ideal candidate will have hands-on experience with native code (C/C++), building security-focused developer-facing tools, a clear understanding of OS security fundamentals, solid computer science skills, and a passion for keeping Microsoft customers safe. Responsibilities * Equip Microsoft developers with powerful, easy-to-use security tools to catch security issues earlier * Improve existing processes and tools to help us deliver our goal of ubiquitous fuzzing * Collaborate with teams of security experts to understand their requirements and build tools to streamline or automate common tasks * Devise new methods to systematically detect vulnerabilities at scale Qualifications Required * Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in security or related field OR equivalent experience. Other Requirements: Ability to meet Microsoft, customer and/or government security screening requirements are required for this role. These requirements include, but are not limited to the following specialized security screenings: Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud Background Check upon hire/transfer and every two years thereafter. Preferred * Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in security or related field OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 8+ years experience in security or related field OR equivalent experience. * Public track record of relevant security research, especially around vulnerability discovery * Experience exploiting bugs and bypassing security mitigations in Operating Systems * Familiarity with Microsoft Windows architecture * 5+ years of experience in a software engineering or security-related field * 3+ years of software engineering in a systems language such as C, C++, or Rust Penetration Testing IC4 - The typical base pay range for this role across the U.S. is USD $119,800 - $234,700 per year. There is a different range applicable to specific work locations, within the San Francisco Bay area and New York City metropolitan area, and the base pay range for this role in those locations is USD $158,400 - $258,000 per year. Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here: **************************************************** This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled. Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about requesting accommodations.
    $158.4k-258k yearly 21d ago
  • Cyber Security Engineer, Staff

    Synopsys, Inc. 4.4company rating

    Information security analyst job in Hillsboro, OR

    Category Engineering Hire Type Employee Job ID 13881 Base Salary Range $129000-$193000 Remote Eligible No Date Posted 08/01/2026 We Are: At Synopsys, we drive the innovations that shape the way we live and connect. Our technology is central to the Era of Pervasive Intelligence, from self-driving cars to learning machines. We lead in chip design, verification, and IP integration, empowering the creation of high-performance silicon chips and software content. Join us to transform the future through continuous technological innovation. You Are: You are a proactive and analytical Cyber Security Engineer who thrives on challenges and is passionate about safeguarding complex digital environments. With a strong background in vulnerability management and a deep understanding of enterprise security, you excel at identifying, assessing, and remediating vulnerabilities across diverse infrastructures. Collaboration is second nature to you; you engage effectively with teams across geographies and cultures, building strong partnerships to drive security initiatives forward. Your communication skills enable you to articulate risks, propose solutions, and influence decision-makers at all levels. With a strong sense of ownership, you are comfortable working independently and taking initiative, yet you also thrive in dynamic, fast-paced environments where teamwork is key. If you are eager to make a measurable impact on the security posture of a global technology leader, Synopsys is the place for you. We are currently hiring for our Hillsboro, Oregon office; however, we are also accepting applications from candidates interested in joining our offices located in Austin, Texas or Morrisville, North Carolina. What You'll Be Doing: * Managing the end-to-end vulnerability life cycle, from initial discovery through resolution and closure. * Leading the development, maintenance, and enhancement of vulnerability management data and reporting platforms for enterprise-wide visibility. * Designing and implementing comprehensive reports and dashboards tailored to demonstrate assessment scope, remediation progress, and risk posture for various stakeholders. * Conducting in-depth vulnerability assessments to identify weaknesses, recommend countermeasures, and deliver timely, actionable reports to key stakeholders. * Driving automation initiatives to streamline vulnerability management processes and improve operational efficiency. * Monitoring vulnerability disclosure mailing lists and threat intelligence feeds to proactively assess emerging threats relevant to Synopsys infrastructure and applications. * Contributing to the ongoing strategic direction and maturity of Synopsys' vulnerability management capabilities. * Supporting compliance and risk management efforts by recommending security controls and corrective actions to mitigate identified vulnerability risks. The Impact You Will Have: * Strengthening Synopsys' security posture by proactively identifying and mitigating vulnerabilities across a global infrastructure. * Increasing stakeholder confidence with clear, actionable, and timely communication of security risks and remediation efforts. * Driving alignment between technical teams, risk management, and compliance through collaborative solutions and best practices. * Reducing the organization's exposure to evolving threats by staying ahead of the latest vulnerability disclosures and threat intelligence. * Supporting Synopsys' mission to deliver secure, high-performance products and services to customers worldwide. What You'll Need: * Bachelor's degree in Computer Science, Information Systems, Electrical Engineering, or equivalent experience. * 5+ years of experience designing and implementing vulnerability management programs in large, global enterprise environments. * Strong data analytics skills with the ability to analyze large datasets and proficiency in using databases/data warehouses and visualization tools (e.g., Grafana, Power BI, Tableau, or similar). * Extensive hands-on experience with enterprise vulnerability scanning tools such as Rapid7 Nexpose, Qualys, Tenable Nessus, and Unified Vulnerability Management (UVM) solutions. * Proven experience managing vulnerabilities in cloud environments, including GCP, AWS, and Azure. * Familiarity with security testing tools (e.g., Kali/Metasploit, Burp Suite) and a solid understanding of common computer weaknesses, exploits, and configuration issues. * Proficiency in using the Common Vulnerability Scoring System (CVSS) for vulnerability assessment and prioritization. * Experience with software development and scripting languages (such as Python, Bash, or PowerShell) to automate workflows and processes. Candidates must be U.S. citizens residing in the United States to meet federal regulations. Who You Are: * A strategic thinker with exceptional problem-solving and analytical skills. * Highly collaborative, with a proven ability to work effectively in cross-functional, geographically distributed teams. * Excellent communicator, able to present complex technical information clearly to both technical and non-technical audiences. * Self-motivated, organized, and able to work independently with minimal supervision. * Adaptable and resilient in dynamic, fast-paced environments. * Committed to continuous learning and staying current on evolving security trends and technologies. The Team You'll Be A Part Of: You'll join the Synopsys Attack Surface Management team, a highly skilled and collaborative group dedicated to identifying and managing security vulnerabilities across the company's global infrastructure, applications, and services. The team values innovation, knowledge sharing, and continuous improvement, working together to proactively defend Synopsys against ever-evolving cyber threats. As part of this team, you'll have the opportunity to shape the future of vulnerability management at Synopsys and make a direct impact on the company's security posture. Rewards and Benefits: We offer a comprehensive range of health, wellness, and financial benefits to cater to your needs. Our total rewards include both monetary and non-monetary offerings. At Synopsys, we want talented people of every background to feel valued and supported to do their best work. Synopsys considers all applicants for employment without regard to race, color, religion, national origin, gender, sexual orientation, age, military veteran status, or disability. In addition to the base salary, this role may be eligible for an annual bonus, equity, and other discretionary bonuses. Synopsys offers comprehensive health, wellness, and financial benefits as part of a competitive total rewards package. The actual compensation offered will be based on a number of job-related factors, including location, skills, experience, and education. Your recruiter can share more specific details on the total rewards package upon request. The base salary range for this role is across the U.S.
    $129k-193k yearly 9d ago
  • Application Security Engineer

    Genesis Financial Solutions 4.4company rating

    Information security analyst job in Beaverton, OR

    As an Application Security Engineer, you'll help drive Concora Credit's Mission to enable customers to Do More with Credit - every single day. The impact you'll have at Concora Credit: We are seeking a highly skilled Application Security Engineer to strengthen our application and product security posture across web, mobile, and cloud-based platforms. The ideal candidate will have deep hands-on experience in secure application development practices, threat modeling, and vulnerability management - with a proven track record of sustained collaboration and communication with development teams and supporting security programs within the financial services industry and PCI DSS compliance environments. The candidate's success will be dependent on their ability to Integrate with multiple teams and be a collaborative and guiding presence. We hire people, not positions. That's because, at Concora Credit, we put people first, including our customers, partners, and Team Members. Concora Credit is guided by a single purpose: to help non-prime customers do more with credit. Today, we have helped millions of customers access credit. Our industry leadership, resilience, and willingness to adapt ensure we can help our partners responsibly say yes to millions more. As a company grounded in entrepreneurship, we're looking to expand our team and are looking for people who foster innovation, strive to make an impact, and want to Do More! We're an established company with over 20 years of experience, but now we're taking things to the next level. We're seeking someone who wants to impact the business and play a pivotal role in leading the charge for change. Responsibilities As our Application Security Engineer, you will: Collaborate daily with development and project teams, assisting developers and architects to ensure compliance with established security standards and secure design principles. Identify, prioritize, and mitigate vulnerabilities based on OWASP Top 10, SANS CWE Top 25, and industry best practices. Lead application security assessments and reviews for web, mobile, and API-based systems throughout the SDLC. Collaborate with internal DevOps and other Dev teams to integrate, manage, and report on automated vulnerability scanning, SAST, DAST, and SCA platforms both as stand-alone tools and within CI/CD pipelines. Partner with DevOps and engineering teams to embed security controls early in the development process (“shift left”). Conduct secure code reviews and support developers in understanding and remediating findings. Conduct and coordinate penetration tests for internal systems and web and mobile applications to validate vulnerability findings and assess real-world exploitability. Champion secure coding practices and deliver targeted security training and awareness to engineering teams. Perform threat modeling and risk assessments for new applications and system changes. Support and maintain PCI DSS compliance as it relates to application security and data protection. Collaborate with infrastructure and cloud security teams to ensure consistent protection across the technology stack. Contribute to continuous improvement of the organization's secure SDLC and AppSec frameworks. These duties must be performed with or without reasonable accommodation. We know experience comes in many forms and that many skills are transferable. If your experience is close to what we're looking for, consider applying. Diversity has made us the entrepreneurial and innovative company that we are today. Qualifications Requirements: 3-5 years of experience in Application Security, Secure Software Development, or related fields. Solid understanding of OWASP Top 10, secure coding standards, vulnerability management, penetration testing methodologies, and common web/mobile vulnerabilities. Hands-on experience with security testing tools (e.g. Sonarqube, Tenable WAS, Burp Suite, OWASP ZAP, Veracode, or similar). Experience integrating AppSec tools into DevOps pipelines (Azure DevOps, Git, etc.). Experience performing or managing web application penetration tests using tools such as Burp Suite, OWASP ZAP, or manual techniques aligned with OWASP Testing Guide. Strong familiarity with PCI DSS and other financial regulatory compliance frameworks. Practical knowledge of web technologies (REST, JavaScript, HTML5, CSS, JSON) and at least one modern programming language (e.g., Java, C#, Python, JavaScript, Swift). Experience securing mobile applications (iOS and Android) through static and dynamic analysis. Excellent communication skills and ability to work cross-functionally with engineering and compliance teams. What's In It For You: Medical, Dental and Vision insurance for you and your family Relax and recharge with Paid Time Off (PTO) 6 company-observed paid holidays, plus 3 paid floating holidays 401k (after 90 days) plus employer match up to 4% Pet Insurance for your furry family members Wellness perks including onsite fitness equipment at both locations, EAP, and access to the Headspace App We invest in your future through Tuition Reimbursement Save on taxes with Flexible Spending Accounts Peace of mind with Life and AD&D Insurance Protect yourself with company-paid Long-Term Disability and voluntary Short-Term Disability Concora Credit provides equal employment opportunities to all Team Members and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Employment-based visa sponsorship is not available for this role. Concora Credit is an equal opportunity employer (EEO). Please see the Concora Credit Privacy Policy for more information on how Concora Credit processes your personal information during the recruitment process and, if applicable, based on your location, how you can exercise your privacy rights. If you have questions about this privacy notice or need to contact us in connection with your personal data, including any requests to exercise your legal rights referred to at the end of this notice, please contact caprivacynotice@concoracredit.com.
    $101k-139k yearly est. Auto-Apply 3d ago
  • Google Cloud Security Architect

    Slalom 4.6company rating

    Information security analyst job in Portland, OR

    Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions. What You'll Do * Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor. * Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles. * Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance. * Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools. * Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data. * Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap. * Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients. * Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients. * Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities. What You'll Bring * Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor. * Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments. * Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud. * Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture. * Experience in security and risk advisory consulting, particularly related to cloud security transformations. * Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs. * Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices. * Relevant certifications are strongly desired, including (but not limited to): * GCP Professional Security Engineer * GCP Professional Cloud Architect * CISSP * Security+ About Us Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all. Compensation and Benefits Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance. Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time. East Bay, San Francisco, Silicon Valley: * Consultant: $120,000-$177,000 * Senior Consultant: $140,000-$203,000 San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC: * Consultant: $110,000-$162,000 * Senior Consultant: $130,000-$186,000 All other locations: * Consultant: $105,000-$148,000 * Senior Consultant: $115,000-$171,000 EEO and Accommodations Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process. We are accepting applications until 12/31.
    $140k-203k yearly 28d ago
  • Security Engineer

    Krg Technology 4.0company rating

    Information security analyst job in Hillsboro, OR

    Rajesh KRG Technologies Inc. 25000 | Avenue Stanford | Suite 253 | Valencia, CA 91355 rajesh.b at krgtech.com / ************ EXT- 514 Job Description : General Cryptography (symmetric algorithms like AES, DES and asymmetric or public crypto like RSA, EC) Experience of open security suites like Openssl, embed TLS, Elgamal or other opensource secure communication packages which export general crypto api's (e.g. Open SSL, Elgamal) Public key and private key concepts Programming in ‘C' Preferred: Basic kernel driver development concepts, linux Userspace Desirable : DRM's, NOCS, Nagra Additional Information All your information will be kept confidential according to EEO guidelines.
    $95k-128k yearly est. 60d+ ago
  • Senior Security Engineer

    Pacific Seafood 3.6company rating

    Information security analyst job in Happy Valley, OR

    At Pacific Seafood, we do more than just provide the world with the healthiest proteins on the planet. We are a family-owned, excellence-driven organization committed to being the brand of choice in the marketplace and the employer of choice in the community. We believe in servant leadership, investing in our team members' personal and professional growth, and rewarding performance. We live by the core values of our Diamond Philosophy: Teamwork, Productivity, Quality, and Excellence-which means consistently doing your best and always striving to do better. Summary: The Senior Security Engineer at Pacific Seafood is a key role in our information technology team supporting efforts to strengthen, enhance, and protect the security posture of our enterprise environment. This position involves leading security initiatives, monitoring and improving security controls, driving incident response and partnering across IT and business teams and is ideal for someone who is proactive, highly analytical, calm under pressure and passionate about building a security by design culture. Key Responsibilities: 1. Security Engineering & Architecture: Establish, maintain and implement enterprise security best practices, policies and hardening standards Participate in architectural reviews and provide security requirements for new systems, applications, cloud resources and infrastructure Integrate new security technologies into existing environments and ensure secure configuration of all systems 2. Threat Detection & Vulnerability Management: Leverage and centralize all logging platforms Conduct proactive threat hunting, log analysis and behavioral detection reviews Perform vulnerability scanning, prioritization, and remediation planning with cross functional teams 3. Incident Response & Security Operations: Oversee the incident response lifecycle including detection, containment, eradication and recovery Develop incident response playbooks and runbooks, and post-incident review documentation Support endpoint detection and response, antivirus tools, server/endpoint security controls 4. Network, Analysis & Security: New Network Device Detection and Threat Determination Device Anomalous Communication Detection and Remediation Network segmentation strategy Firewall Device and User Policy Determination Other duties as assigned Additional responsibilities may be assigned as deemed necessary to support the overall goals and objectives of the position. What you bring to Pacific Seafood: Required: Bachelor's degree in Computer Science or equivalent professional experience Minimum of five years of related experience in information security or infrastructure security Strong experience with Active Directory, Azure Entra ID, MFA, and identity lifecycle management Hands-on experience with endpoint and server security tools including EDR, anti-virus, and configuration baselines Working knowledge of firewalls, enterprise networking, and network security policies Experience with centralized logging solutions, SIEM tools, and vulnerability scanners Ability to analyze technical and non-technical controls, identify gaps, and propose remediations Experience conducting internal security audits, investigations, and compliance reviews Strong communication, documentation, and problem-solving skills Ability to travel as necessary; valid driver's license Preferred: Experience leading enterprise-wide security projects or architectural reviews Palo Alto Security toolset experience (Strata, IoT, PanOS, Cortex XDR) Experience with Microsoft Exchange, Microsoft Purview, and email security tools Experience with privileged access management (PAM) systems Threat hunting and SIEM rule development experience (Sentinel, LogRhythm, etc.) Security certifications such as CISSP, GSEC, CEH, or equivalent Total compensation: At Pacific Seafood your base wage is only a portion of your overall compensation package. We invest in our Team Members through a comprehensive and attractive total rewards package, including but not limited to: Health insurance benefits options, including medical, prescription, vision, dental, basic group life and short term disability. Flexible spending accounts for health flex and dependent care expenses 401(k) Retirement Plan options with generous annual company profit sharing match Paid time off for all regular FT team members, to include sick days, paid holidays, vacation and personal time Employee Assistance Program- Confidential professional counseling, financial, and legal assistance provided at no charge to Team Members and immediate family members Product purchase program Pacific Seafood is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.
    $114k-157k yearly est. Auto-Apply 53d ago
  • Security Engineer (K3s Security & Isolation Specialist)

    Phizenix

    Information security analyst job in Hillsboro, OR

    The Security Engineer will focus on hardening and isolating K3s clusters to minimize blast radius in the event of compromise. This includes enforcing Linux security modules (SELinux, AppArmor), leveraging TPM for secure boot and attestation, implementing least privilege across nodes and workloads, and ensuring multi-tenant isolation within hybrid Kubernetes environments (x86, ARM, accelerators). Responsibilities Security Architecture & Policy Enforcement Design and implement security-first cluster configurations for K3s nodes. Enforce mandatory access control (MAC) using SELinux and AppArmor profiles for pods and system services. Integrate TPM-based attestation and secure boot for cluster nodes to ensure trust in hardware and OS integrity. Establish node, pod, and namespace isolation strategies to reduce lateral movement risk. Harden cluster components (API server, etcd, kubelet) following CIS and NSA Kubernetes security benchmarks. Blast Radius Reduction Define and enforce workload sandboxing strategies (seccomp, AppArmor, SELinux contexts, gVisor/Kata if applicable). Configure minimal privilege policies (RBAC, PodSecurityStandards, NetworkPolicies) to ensure least-privilege execution. Implement namespace, node pool, and hardware partitioning to confine workloads and protect sensitive applications. Apply resource quotas, limits, and scheduling constraints to contain denial-of-service blast radius. Integration with Identity & Secrets Management Work with Security team to ensure strong identity, authentication, and authorization models. Integrate TPM-backed secrets storage and HSM/KMS systems for cryptographic operations. Ensure secure distribution of workload secrets with solutions like SealedSecrets, HashiCorp Vault, or SOPS. Runtime & Supply Chain Security Enforce image signing and verification with cosign or Notary. Integrate SBOM scanning and vulnerability management into CI/CD pipelines. Monitor workloads for runtime anomalies (Falco, Cilium Tetragon, or equivalent). Apply kernel hardening measures (seccomp-bpf, kernel lockdown, IMA/EVM with TPM). Monitoring & Incident Response Build observability hooks for security events (audit logs, syscall monitoring, TPM attestations). Define blast radius response runbooks for compromised pods or nodes. Work with SRE and Security teams to test chaos/security drills simulating breaches. Deliverables K3s cluster baseline hardened with SELinux and AppArmor profiles. TPM-enabled secure boot and node attestation pipeline. Enforced PodSecurityStandards and workload sandboxing (seccomp, gVisor/Kata optional). Documentation of isolation strategies (namespaces, node pools, network segmentation). Audit-ready evidence of compliance with CIS/NSA Kubernetes security benchmarks. Security runbooks for containment and blast radius reduction. Required Skills & Experience Strong knowledge of K3s/Kubernetes internals, especially security features. Hands-on experience with SELinux, AppArmor, seccomp, and Linux capabilities. Experience with TPM (Trusted Platform Module) for secure boot and attestation. Deep understanding of Pod Security (PodSecurityPolicies/Standards, OPA/Gatekeeper/Kyverno). Experience implementing RBAC, NetworkPolicies, and workload isolation at scale. Proficiency in Linux kernel security mechanisms and debugging. Familiarity with container runtimes (containerd, CRI-O, gVisor, Kata) and their security implications. Strong background in incident response, forensic data collection, and audit logging in Kubernetes. Nice to Have Contributions to Kubernetes SIG-Security or open-source security tooling. Experience with supply chain security frameworks (SLSA, NIST 800-190). Familiarity with confidential computing (TEE/SGX/SEV) for workload isolation. Hands-on with Cilium Tetragon, Falco, or other runtime security tools. Knowledge of air-gapped deployments and hardened Linux distributions (e.g., Flatcar, Bottlerocket).
    $86k-121k yearly est. Auto-Apply 60d ago
  • IT Helpdesk Analyst (1618-356)

    Ballard Marine Construction 3.5company rating

    Information security analyst job in Washougal, WA

    IT Helpdesk Analyst Opportunity with Traylor Bros., Inc.! Traylor Bros., Inc. is a highly-respected heavy civil construction company working on some of the biggest, most technically challenging bridge, marine, and underground jobs in North America. William F. Traylor founded Traylor Bros. in 1946, finding success by taking on - and succeeding with - extremely challenging projects. His combination of honesty, courage and innovative abilities are the traits that embody the firm to this day. What makes us different? Our Mission is to excel at constructing complex infrastructure safer, better, and faster by engaging the entrepreneurial and innovative spirit of our team members and providing a limitless opportunity for personal and professional growth in a close-knit and collaborative organization. Our Core Values: Safety. We are committed to providing a safe work environment. This is always our priority. People. Our talented team is our greatest asset. We provide opportunity, reward performance, and support a positive and balanced work environment. Innovation. We have the ability to engineer creative solutions to overcome any obstacle. Ethics. We are honest and ethical in all our business dealings. Communication. We encourage open and honest communication throughout our organization. Community. We add value to our industry and the communities in which we work. Position Summary The IT Helpdesk Analyst serves as the primary point of contact for end users requiring technical assistance. This role provides prompt, high-quality support for hardware, software, mobile devices, and basic network issues. The Analyst is responsible for diagnosing and resolving technical problems, managing helpdesk tickets, supporting Microsoft 365 and related platforms, and ensuring a positive customer service experience while maintaining system reliability, security, and documentation. Key Responsibilities End User Support & Service Desk * Serve as the main point of contact for IT support requests via phone, email, ticketing system, remote tools, and in person * Monitor, prioritize, document, and resolve helpdesk tickets in a timely and professional manner * Build rapport with users and communicate clearly throughout the resolution process * Escalate complex or unresolved issues when necessary * Perform post-resolution follow-ups and analyze recurring issues Technical Support & Systems * Diagnose and resolve hardware, software, and peripheral issues * Provide hands-on desktop support including installations, imaging, and configurations * Support Microsoft Windows and Microsoft 365 environments * Manage user accounts and permissions via Active Directory and Entra AD * Deploy and support PCs, laptops, iPhones, iPads, and peripherals * Perform basic network troubleshooting * Maintain and troubleshoot audio-visual equipment * Maintain and troubleshoot Apple mobile devices Asset, Security & Documentation * Maintain hardware and software inventory and licensing * Coordinate hardware warranty repairs and vendor support * Follow IT security policies and maintain confidentiality * Create and maintain documentation, help sheets, and FAQs * Assist with IT projects and technology deployments Required Qualifications * Associate's degree in IT or equivalent experience * 2-5 years of IT helpdesk or desktop support experience * Strong knowledge of Microsoft Windows and Microsoft 365 * Experience with ticketing systems and remote support tools * Basic networking knowledge * Strong troubleshooting and customer service skills * Self-motivated Preferred Qualifications * Bachelor's degree and/or IT certifications * Experience with Active Directory, Entra AD, and Windows Server * Endpoint management tools such as Microsoft Intune * Microsoft SharePoint, Dynamics 365, or Power Platform experience * Virtualization or networking hardware experience * Call center or customer service background Working Conditions & Physical Requirements Office-based role with occasional travel to other offices or job sites. After-hours or on-call support may be required. Ability to perform hands-on technical work and spend extended periods working at a computer. Traylor Bros., Inc. is an Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, veteran status, sex, sexual orientation, gender identity, age, genetic information, pregnancy, disability, protected activity, or other non-merit factors.
    $90k-127k yearly est. 11d ago
  • Information Systems Engineer III (Zuora)

    Surveymonkey 4.7company rating

    Information security analyst job in Portland, OR

    SurveyMonkey is the world's most popular platform for surveys and forms, built for business-loved by users. We combine powerful capabilities with intuitive design, effectively serving every use case, from customer experience to employee engagement, market research to payment and registration forms. With built-in research expertise and AI-powered technology, it's like having a team of expert researchers at your fingertips. Trusted by millions-from startups to Fortune 500 companies-SurveyMonkey helps teams gather insights and information that inspire better decisions, create experiences people love, and drive business growth. Discover how at surveymonkey.com. What we're looking for We're seeking an experienced Information Systems Engineer to join our team in a hands-on role supporting subscription billing and revenue automation. This role focuses on implementing, configuring, enhancing, and supporting Zuora Billing and its integrations, particularly with Salesforce. Industry background is flexible, but practical experience with Zuora Billing is required. This role operates within the U.S. Central Time Zone. What you'll be working on Configure, customize, and maintain Zuora Billing, including product catalog, rate plans, subscriptions, invoicing, taxation, payments, and related workflows. Partner cross-functionally with Sales, Finance, RevOps, and Engineering to support and optimize the SaaS subscription and order-to-revenue lifecycle. Support end-to-end order-to-revenue processes by troubleshooting issues, performing root cause analysis, and implementing sustainable solutions. Build and maintain Zuora workflows, notifications, custom fields, data mappings, and Salesforce integrations, including data migration activities. Participate in Agile/Scrum ceremonies and ensure system changes follow best practices, compliance standards, and internal governance requirements. We'd love to hear from people with 1+ years of hands-on experience configuring, customizing, and supporting Zuora Billing in a production environment. Experience with Zuora Orders and Orders API. Experience in writing solution documents, POC, and analyzing issues. Experience with quote-to-cash and financial systems such as Zuora, Salesforce (including CPQ), NetSuite, or RevPro. Conducting demos and design walkthrough sessions with other teams and the stakeholders. A bachelor's degree in Finance, Accounting, Business, Management Information Systems, or equivalent professional experience. Working knowledge of core finance and accounting processes (e.g., Order to Cash, Record to Report). Strong communication skills, attention to detail, and the ability to prioritize work while learning new technologies. Experience in Zuora Revenue, Salesforce CPQ and Mulesoft (Nice to have) Experience with data migration and cleansing (Nice to have) The base pay provided for this position ranges from $106,250 / year - $143,750 / year depending on the geographic market and assuming a full-time schedule. Actual base pay is based on a number of factors including market location, job-related knowledge, education or training, skills, and experience. Bonuses and commissions may also be offered as part of the total compensation package, in addition to a competitive benefits package including medical, dental, vision, life, and disability insurance; 401(k) retirement plan; flexible spending & health savings account; paid holidays; paid time off; employee assistance program; and other company benefits. #LI-remote Why SurveyMonkey? We're glad you asked At SurveyMonkey, curiosity powers everything we do. We're a global company where people from all backgrounds can make an impact, build meaningful connections, and grow their careers. Our teams work in a flexible, hybrid environment with thoughtfully designed offices and programs like the CHOICE Fund to help employees thrive in work and life. We've been trusted by organizations for over 25 years, and we're just getting started. Our milestones include celebrating a quarter-century of curiosity with 25 acts of giving, opening new hubs in Costa Rica and India, crossing the threshold of 100 billion questions answered, and earning recognition as one of the Most Inspiring Workplaces across North America and Asia. We live our company values-like championing inclusion and making it happen-by embedding them into how we hire, collaborate, and grow. They help shape everything from our culture to our business decisions. Come join us and see where your curiosity can take you. Our commitment to an inclusive workplace SurveyMonkey is an equal opportunity employer committed to providing a workplace free from harassment and discrimination. We celebrate the unique differences of our employees because that is what drives curiosity, innovation, and the success of our business. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, gender identity or expression, age, marital status, veteran status, disability status, pregnancy, parental status, genetic information, political affiliation, or any other status protected by the laws or regulations in the locations where we operate. Accommodations are available for applicants with disabilities.
    $106.3k-143.8k yearly Auto-Apply 2d ago
  • IT Technical Analyst

    Daikinapplied 4.8company rating

    Information security analyst job in Wilsonville, OR

    Our IT Technical Analyst provides exceptional technical customer service to our employees and vendors. They are the first point of contact for troubleshooting and diagnosing computer issues. Primary Responsibilities Provide excellent IT support to users via help desk and/or problem management software Monitor and respond quickly to requests received through the IT helpdesk software Utilize and manage company help desk solution to track and prioritize workload Maintain inventory of all IT equipment, software, and software licenses Perform timely workstation hardware and software upgrades as required Handles the basic IT issues and problems, and refers more complex issues to higher-level staff Assist with onboarding new employees/users with IT equipment and software May provide leadership, coaching and/or mentoring to more junior staff Demonstrate behaviors consistent with those of the Company's Core Values at all times Complete all other tasks or projects as assigned Key Competencies Solid working knowledge of subject matter Analytical skills Excellent customer service and interpersonal skills Troubleshooting and support skills Ability to work independently while managing multiple tasks and meet deadlines Excellent oral and written communication skills Effective organizational and time management skills Ability to develop strong relationships with internal and external customers People Management None Work Environment This job operates indoors with occasional travel to other locations. Physical Demands Lift/carry 20 lbs. Ability to sit majority of shift Work indoors Expected Hours of Work This is a full-time position. Days/hours of work vary and may include weekends and overtime as necessary. Travel Local travel only Required Education and Experience Associates degree 2 to 4 years of experience Preferred Education and Experience A+ Certificate CCNA Certificate ITIL Certificate Classification: Non-Exempt Reports to: IT Services Manager
    $90k-116k yearly est. 1d ago
  • Information Security Operations Analyst

    Moda Health 4.5company rating

    Information security analyst job in Portland, OR

    Job Description Let's do great things, together! About Moda Founded in Oregon in 1955, Moda is proud to be a company of real people committed to quality. Today, like then, we're focused on building a better future for healthcare. That starts by offering outstanding coverage to our members, compassionate support to our community and comprehensive benefits to our employees. It keeps going by connecting with neighbors to create healthy spaces and places, together. Moda values diversity and inclusion in our workplace. We aim to demonstrate our commitment to diversity through all our business practices and invite applications from candidates that share our commitment to this diversity. Our diverse experiences and perspectives help us become a stronger organization. Let's be better together. Position Summary The Operations Analyst is a technical role within Moda's Information Security team and will play a vital role in keeping the organization's proprietary and sensitive information secure. This position works interdepartmentally to investigate issues, identify and correct flaws in security systems, solutions, and programs, and recommend measures to improve the company's overall security posture. Acting as a liaison between Security and IT management, the analyst assists IT strategy and architecture design from a security perspective and identifies issues, concerns, or recommendations as the organization grows its technology infrastructure and processes. This is a FT WFH position. Pay Range $70,496.52 - $91,647.55 annually (depending on experience) *This role may be classified as hourly (non-exempt) depending on the applicant's location. Actual pay is based on qualifications. Applicants who do not exceed the minimum qualifications will only be eligible for the low end of the pay range. Please fill out an application on our company page, linked below, to be considered for this position. ************************** GK=27768922&refresh=true Benefits: Medical, Dental, Vision, Pharmacy, Life, & Disability 401K- Matching FSA Employee Assistance Program PTO and Company Paid Holidays Required Skills, Experience & Education: Bachelor's or master's in Computer Science, Information Security, Cybersecurity, or a related field. 5+ years of experience as a security operations analyst or in related fields such as IT audit, enterprise risk management, penetration testing, or red team/incident response. Experience with common security tools such as SIEM platforms, EDR solutions, and cloud platforms (e.g., Microsoft Azure, Amazon AWS). Knowledge of Microsoft Azure configuration and management is highly desirable. 3+ years of experience with regulatory compliance and information security management frameworks (e.g., HIPAA, NIST, IS0 27000, or COBIT). Strong documentation and reporting skills, including the ability to record security events, investigations, and recommendations for technical and non-technical audiences. Excellent collaboration and communication skills with the ability to influence and work effectively across cross-functional teams. Industry recognized cybersecurity certification (e.g., CISSP, CISM, CompTIA Security+) preferred. Primary Functions: Defend against cybersecurity incidents and identify, analyze, communicate, and contain incidents as they occur. Monitor systems and networks for security alerts, notifications, and issues including patching and update process issues and investigate and document any security issues or events that may occur. Own and drive the investigation of security events and other cybersecurity incidents including review, triage, and response to alerts and notifications. Take a lead role in the documentation of security events and incidents and the assessment of the damage they cause. Review threat intelligence and analyze the current threat landscape and apply threat analysis to Moda's infrastructure systems and networks to identify and address vulnerabilities or exploitable attack paths. Build and drive proactive threat hunting programs including detailed threat analysis of exploitable vulnerabilities leading to actionable remediation plans. Work with IT resources and architects to develop and implement cloud security strategies to facilitate migration of key assets into a public cloud hosted environment. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Work with IT and Security leadership to perform tests or support external testing such as network penetration tests, vulnerability testing, and disaster response failover tests to uncover network vulnerabilities. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Take a proactive and operational role in creating the best practices for IT security companywide. Support cybersecurity risk assessment activities. Work with both Security and IT management to ensure security policies and goals are met in infrastructure and development contexts. Stay current on IT security trends and news including evolving standards. Collaborate and communicate effectively with cross functional colleagues at all levels. Other duties as assigned. Working Conditions: Remote office environment with extensive close PC and keyboard use, constant sitting, and frequent phone communication. Must be able to navigate multiple computer screens. A reliable, high-speed, hard-wired internet connection required to support remote or hybrid work. Must be comfortable being on camera for virtual training and meetings. Work in excess of standard workweek, including evenings and occasional weekends, to meet business need. Internally with all departments. Externally with auditors, clients, technology partners, and other various entities. Together, we can be more. We can be better. Moda Health seeks to allow equal employment opportunities for all qualified persons without regard to race, religion, color, age, sex, sexual orientation, national origin, marital status, disability, veteran status or any other status protected by law. This is applicable to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absences, compensation, and training. For more information regarding accommodations, please direct your questions to Kristy Nehler & Danielle Baker via our ***************************** email.
    $70.5k-91.6k yearly Easy Apply 12d ago
  • AWS Security Architect

    Slalom 4.6company rating

    Information security analyst job in Portland, OR

    Candidates can live within commutable distance to any Slalom office in the US. We have a hybrid and flexible environment. Who You'll Work With As a modern technology company, we've never met a technical challenge we didn't like. We enable our clients to learn from their data, create incredible digital experiences, and make the most of new technologies. We blend design, engineering, and analytics expertise to build the future. We surround our technologists with interesting challenges, innovative minds, and emerging technologies. We are seeking an experienced AWS Security Architect with deep expertise in AWS cloud architecture, native & external security services, and regulatory compliance to provide advisory and delivery services aligned with the standards of a top-tier consulting firm. This role will partner with enterprise clients to design, assess, and implement secure AWS environments that meet business, compliance, and regulatory requirements. This role requires a strong blend of hands-on technical capabilities, architectural leadership, and client-facing advisory skills. As a trusted advisor, you will lead security strategy sessions, assess current cloud security postures, and deliver AWS-native and third-party solutions that align with best practices. You will work across multiple industry verticals, collaborating with engineering, security, risk, and compliance teams, and guiding clients through security transformation journeys and ensuring AWS adoption is secure, compliant, and resilient. This is a strategic technical consulting role suited for individuals who are passionate about cloud security, compliance, and helping clients adopt secure architectures in regulated environments. Key Responsibilities * Serve as a client-facing advisor, providing strategic guidance on cloud security transformation, governance, and operating models. * Lead cloud security assessments, maturity evaluations, and gap analyses, producing recommendations aligned with regulatory frameworks (e.g., NIST, ISO 27001, CIS, PCI DSS, HIPAA). * Design and implement AWS-native security architectures leveraging IAM, KMS, CloudTrail, Security Hub, GuardDuty, Macie, Detective, and Control Tower. * Establish governance, risk, and compliance (GRC) frameworks for AWS adoption, including policy-as-code and automated compliance monitoring. * Define and implement identity and access management (IAM) strategies, including federation, least privilege, and Zero Trust principles. * Guide clients in adopting secure application and data architectures, including encryption, data loss prevention, and secure API integrations. * Support incident response and forensics readiness through AWS-native logging, monitoring, and detection services. * Collaborate with DevOps and platform teams to integrate security into DevOps pipelines (DevSecOps) with automation for vulnerability management, code scanning, and compliance validation. * Collaborate with client executives to articulate cloud security roadmaps, business cases, and investment priorities. * Partner with internal teams to develop accelerators, templates, and reusable security patterns that improve time-to-value for clients. * Author client deliverables such as risk assessments, security architecture design documents, gap analyses, and roadmap plans. * Provide thought leadership via security workshops, executive briefings, and architecture reviews. * Stay current with AWS service releases, regulatory changes, and emerging cyber risks to inform recommendations. Core Qualifications * 8+ years of IT security experience with at least 4+ years focused on AWS security. * Proven consulting experience delivering security assessments, compliance programs, and cloud security roadmaps for enterprise clients. * Strong expertise in AWS security services (i.e. IAM, KMS, CloudTrail, GuardDuty, Macie, Security Hub, Detective, WAF, Shield). * Deep knowledge of cloud governance, risk management, and regulatory compliance frameworks (NIST, ISO, CIS Benchmarks, SOC 2, HIPAA, PCI DSS) and experience designing or assessing AWS environments aligned with these frameworks. * Hands-on experience embedding security into DevOps/DevSecOps pipelines and Infrastructure-as-Code (Terraform, CloudFormation, AWS CDK). * Experience designing ransomware detection, response, and business resilience strategies in AWS including backup, recovery, and isolation patterns. About Us Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all. Compensation and Benefits Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance. Slalom is committed to fair and equitable compensation practices. For this position, the target base salary pay range in the following locations: Boston, Houston, Los Angeles, Orange County, Seattle, San Diego, Washington DC, New York, New Jersey, for Consultant level is $119,000-$147,500 and for Senior Consultant level it is $136,500-$169,500 and for Principal level it is $151,000-$187,500. In all other markets, the target base salary pay range for Senior Consultant level it is $125,000-$155,500 and for Principal level it is $138,500-$172,000. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time. We will accept applications until 3/31/2026 or until the positions are filled. We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************. EEO and Accommodations Slalom is an equal opportunity employer and is committed to attracting, developing and retaining highly qualified talent who empower our innovative teams through unique perspectives and experiences. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team or contact ****************************** if you require accommodations during the interview process.
    $151k-187.5k yearly Easy Apply 2d ago
  • Senior Security Engineer

    Pacific Seafood 3.6company rating

    Information security analyst job in Happy Valley, OR

    At Pacific Seafood, we do more than just provide the world with the healthiest proteins on the planet. We are a family-owned, excellence-driven organization committed to being the brand of choice in the marketplace and the employer of choice in the community. We believe in servant leadership, investing in our team members' personal and professional growth, and rewarding performance. We live by the core values of our Diamond Philosophy: Teamwork, Productivity, Quality, and Excellence-which means consistently doing your best and always striving to do better. Summary: The Senior Security Engineer at Pacific Seafood is a key role in our information technology team supporting efforts to strengthen, enhance, and protect the security posture of our enterprise environment. This position involves leading security initiatives, monitoring and improving security controls, driving incident response and partnering across IT and business teams and is ideal for someone who is proactive, highly analytical, calm under pressure and passionate about building a security by design culture. Key Responsibilities: 1. Security Engineering & Architecture: * Establish, maintain and implement enterprise security best practices, policies and hardening standards * Participate in architectural reviews and provide security requirements for new systems, applications, cloud resources and infrastructure * Integrate new security technologies into existing environments and ensure secure configuration of all systems 2. Threat Detection & Vulnerability Management: * Leverage and centralize all logging platforms * Conduct proactive threat hunting, log analysis and behavioral detection reviews * Perform vulnerability scanning, prioritization, and remediation planning with cross functional teams 3. Incident Response & Security Operations: * Oversee the incident response lifecycle including detection, containment, eradication and recovery * Develop incident response playbooks and runbooks, and post-incident review documentation * Support endpoint detection and response, antivirus tools, server/endpoint security controls 4. Network, Analysis & Security: * New Network Device Detection and Threat Determination * Device Anomalous Communication Detection and Remediation * Network segmentation strategy * Firewall Device and User Policy Determination * Other duties as assigned Additional responsibilities may be assigned as deemed necessary to support the overall goals and objectives of the position. What you bring to Pacific Seafood: Required: * Bachelor's degree in Computer Science or equivalent professional experience * Minimum of five years of related experience in information security or infrastructure security * Strong experience with Active Directory, Azure Entra ID, MFA, and identity lifecycle management * Hands-on experience with endpoint and server security tools including EDR, anti-virus, and configuration baselines * Working knowledge of firewalls, enterprise networking, and network security policies * Experience with centralized logging solutions, SIEM tools, and vulnerability scanners * Ability to analyze technical and non-technical controls, identify gaps, and propose remediations * Experience conducting internal security audits, investigations, and compliance reviews * Strong communication, documentation, and problem-solving skills * Ability to travel as necessary; valid driver's license Preferred: * Experience leading enterprise-wide security projects or architectural reviews * Palo Alto Security toolset experience (Strata, IoT, PanOS, Cortex XDR) * Experience with Microsoft Exchange, Microsoft Purview, and email security tools * Experience with privileged access management (PAM) systems * Threat hunting and SIEM rule development experience (Sentinel, LogRhythm, etc.) * Security certifications such as CISSP, GSEC, CEH, or equivalent Total compensation: At Pacific Seafood your base wage is only a portion of your overall compensation package. We invest in our Team Members through a comprehensive and attractive total rewards package, including but not limited to: * Health insurance benefits options, including medical, prescription, vision, dental, basic group life and short term disability. * Flexible spending accounts for health flex and dependent care expenses * 401(k) Retirement Plan options with generous annual company profit sharing match * Paid time off for all regular FT team members, to include sick days, paid holidays, vacation and personal time * Employee Assistance Program- Confidential professional counseling, financial, and legal assistance provided at no charge to Team Members and immediate family members * Product purchase program
    $114k-157k yearly est. 53d ago

Learn more about information security analyst jobs

How much does an information security analyst earn in Troutdale, OR?

The average information security analyst in Troutdale, OR earns between $66,000 and $137,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.

Average information security analyst salary in Troutdale, OR

$95,000
Job type you want
Full Time
Part Time
Internship
Temporary