Information security analyst jobs in Youngstown, OH - 601 jobs
All
Information Security Analyst
Information Technology Analyst
Senior Security Analyst
Cyber Security Engineer
Senior Information Security Consultant
Data Security Analyst
Cyber Security Analyst
Securities Analyst
Information Technology Security Manager
Senior Security Engineer
Information Security Consultant
Security Engineer
Manager, Network & Security
Information Security Manager
Information Security Analyst
Belcan 4.6
Information security analyst job in Mason, OH
Job Title: InformationSecurityAnalyst
Zip Code: 45040
Duration: 6 months
Pay Rate: $33.33/hr.
Keyword's: #Masonjobs; #InformationSecurityAnalystjobs;
The IS Application SecurityAnalyst will support the execution, planning, and administration of the Vulnerability Management function within InformationSecurity (IS). The Vulnerability Management Analyst executes core processes in the vulnerability management program focused on vulnerability assessments, penetration testing and social engineering. Additionally, they will support the remediation of vulnerabilities resident within systems to minimize the organizations" potential attack surface for exploitation.
The Analyst will provide oversight, drive, facilitate and coordinate the management of vulnerabilities across the enterprise. The Analyst must understand underlying application code approaches in order to effectively review and respond to application security scans. While technical involvement is required, this role is not intended to perform direct remediation. The Analyst will support automated scans and may provide post-development testing assistance to validate that vulnerability remediation efforts are appropriately tested.
MAJOR DUTIES AND RESPONSIBILITIES
* Monitor and analyze vulnerability assessment data to identify and communicate technical risks to the organization
* Support the identification and impact classification for new vulnerabilities identified in the environment
* Execute and support vulnerability assessments, penetration testing and social engineering activities
* Provide the InformationSecurity and IT Security team information on the emerging cyber threat landscape, including threat actor tactics, techniques, and procedures
* Review and interpret application security scan results with an understanding of underlying code structures to provide effective feedback
* Provide post-development testing support to ensure vulnerability remediation items are validated and tested appropriately
* Facilitate vulnerability management processes by tracking and coordinating remediation efforts across multiple teams
* Ensure timely closure of security gaps by working with application, infrastructure, and operations teams
* Support IS in achieving the vision and strategic objectives of the vulnerability program
* Conduct analysis, aggregate and report on vulnerability data from various scanning tools and platforms
* Manage and utilize IS tools such as DLP, Code scanner, external security profile, etc. to analyze gaps in security controls
* Participate in the IT SDLC program to ensure that security is included in project by default and by design
* Develop strong working relationships with other departments and potentially clients across the organization to ensure a high degree of security compliance client satisfaction
* Assist with regulatory and compliance requirements, contributing to security audits, assessments, attestations, certifications and client vulnerability inquires
* Brief IS leadership on vulnerability assessment results and potential risks
* Support leadership to identify capability gaps in vulnerability management services
* Collaborate with cross-functional teams to improve security posture and embed security into existing IT and operational workflows
* Continue self-development of knowledge, skills and abilities to better support execution of the InformationSecurity (IS) function
BASIC QUALIFICATIONS
* Bachelor"s degree computer science, IT or equivalent
* 3+ years of experience in IT or IS or Compliance
* Experience with major standards such as: SOC 1-2, ISO 27001/2, PCI DSS, HITRUST, SANS, NIST
* Demonstrated experience in implementing compliance frameworks for financial services organization or organizations with similar informationsecurity needs and requirements
* Familiarity and understanding of broad range of IT hardware and software products
* Strong project management skills
* Excellent presentation, verbal communication, and written skills
* Excellent analytical and problem-solving skills
* Experience managing typical enterprise security and intrusion detection systems
* Ability to work in a collaborative environment across business and technology teams
* Ability to interpret application structures and code approaches at a high level in order to review and respond to scan results
PREFERRED QUALIFICATIONS
* Certified Information Systems Security Profession (CISSP), PCI DSS, Certified HIPAA Privacy Security Expert (CHPSE), Certified InformationSecurity manager (CISM), Global Information Assurance Certification (GIAC), or related.
* Experience or knowledge with healthcare or health insurance
* Knowledge of CMS and HIPAA related vendor requirements
* Working knowledge of Security SDLC tools
Belcan is an equal opportunity employer. Your application and candidacy will not be considered based on race, colour, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
$33.3 hourly 3d ago
Looking for a job?
Let Zippia find it for you.
Senior Manager, Information Security Office (ISO) Consultant
Capital One 4.7
Information security analyst job in York, PA
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in InformationSecurity. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
Responsibilities:
The Senior Lead ISO Consultant will provide cyber security architecture advisory support needed to build the Technology & Business capabilities on a novel Modern platform, that will enable customer set-up, use, and management of a Capital One Credit Card, including Data Product. In this role, the responsibilities will include:
Act as a central InformationSecurity point of contact for the Global Payment Networks line of business
Coordinate and execute proactive InformationSecurity consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's InformationSecurity capabilities, solutions, policies, procedures and standards
Collaborating with enterprise cyber teams and tech architects in defining and driving the cyber architecture strategy and guiding principles for the architecting and designing of the modern platforms.
Support security architecture and implementation needs for technology modernization efforts
Overseeing all cyber related dependencies across the multiple components being built for the modernization effort.
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad-hoc support on special InformationSecurity hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall InformationSecurity health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Support the team on collectively mapping technologies to a standardized framework in order to identify and execute on best practices in risk reduction through the configuration of cybersecurity tools and platforms.
Support the development, modification, and use of capability, risk, or threat classification frameworks and standardization methodologies to facilitate the conduct of correlative capability, maturity, and effectiveness evaluations.
Support data validation and communications on the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.
About You:
You have a desire to work in a very fast moving, forward leaning, and modern computing environment
You have a deep passion for Securing modern computing platforms
You have a strong desire to continually learn about new technologies
You possess strong conceptual thinking and communication skills
You are able to work well under minimal supervision
You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors
You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality
You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 6 years of experience working in cybersecurity or information technology
At least 5 years of experience providing guidance and oversight of cyber security concepts
At least 5 years of experience performing cyber security risk assessments or cyber security architecture reviews
At least 4 years of experience with cloud security
Preferred Qualifications:
Bachelor's Degree
7+ years of experience in securing a public cloud environment (AWS, GCP, Azure)
6+ years of cyber security advisory and technology consulting experience
6+ years of experience in Cyber Risk Management
3+ years of experience on cryptography, HSMs and similar systems
Knowledge of HPNS, ATM, Mainframe technologies and other payment networks infrastructure technologies
Experience in security integration for Mergers and Acquisitions
Experience with PCI and Payment Network Compliance.
Professional certifications AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
Chicago, IL: $209,000 - $238,500 for Sr Manager, Cyber TechnicalMcLean, VA: $229,900 - $262,400 for Sr Manager, Cyber TechnicalNew York, NY: $250,800 - $286,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to **********************
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
$83k-108k yearly est. 2d ago
Information Technology Financial Analyst
Motion Recruitment 4.5
Information security analyst job in Philadelphia, PA
Our client is looking for an IT Financial Analyst to join their team on a contract, remotely.
Pay: $45-52/hour
Primary Duties and Responsibilities:
Manage the financial relationship between the organization and key strategic IT vendors, including SOW review and tracking, monitoring vendor adherence to financial contract terms, and reconciliation of vendor accounts.
Monitor and report on key Program Accounting initiatives, including project financial reviews.
Maintain and monitor IT Financial processes that are part of the project life cycle, including assisting with training for project managers.
Serve as an educational resource to internal and external partners, as well as business leaders, to aid in the understanding of financial results and measurement systems/metrics.
Provide financial consulting and analytical support, including budgeting and forecasting, to leadership of assigned shared service organizations.
Serve as a mentor for junior IT Financial Analysts.
Work closely with shared service leaders to understand business needs and requirements and ensure alignment of forecasts and budgets.
Prepare monthly accrual and expense re-class entries.
Audit task charge codes in Clarity to ensure proper Accounting standards are followed.
Maintain forecast of operating expense and capital expenditure.
Support the development, maintenance, and continuous improvement of the annual budgeting and ongoing forecast processes.
Assist the capital planning process for assigned organizations, including conducting research and analysis, validating business cases, creating financial models, and making recommendations.
Analyze and interpret financial data and formulate conclusions and recommendations to supported organizations to address concerns or areas of opportunity.
Report monthly actual results against budget and forecast; investigate and explain causes of variance.
Analyze trends and cost drivers and highlight risks and opportunities.
Provide financial analysis to help IT leadership understand financial results and support business decisions.
Provide analysis for monthly management reviews.
Ensure knowledge, understanding, and compliance with company policies and procedures.
Provide feedback to management concerning possible problems or areas of improvement.
Make recommendations to implement improved processes.
Perform other duties as assigned by management.
Experience and Educational Requirements:
Bachelor's Degree or equivalent in relevant work experience. Degree in Finance or Accounting preferred.
8+ years of FP&A experience in a large corporate environment.
Experience working in an IT environment a plus.
Experience creating budgets and forecasts, reporting, financial modeling, and financial analysis.
Experience developing and leading FP&A processes.
Advanced knowledge of accounting principles required.
High level of proficiency in Microsoft Excel and PowerPoint required.
Experience with financial systems required; SAP a plus.
Ability to work with senior management in a cross-functional environment.
Ability to work independently with minimal direction and oversight.
Must be creative and forward-thinking with high ethical standards.
Must possess sound technical skills, analytical ability, good judgment, and a strong operational focus.
Strong presentation skills.
Ability to maintain the highest level of confidentiality.
Ability to work within and meet established deadlines.
Excellent interpersonal, written, and oral communication skills.
Ability to work in a team fostered environment.
Ability to adapt to a flexible schedule.
Minimum Skills, Knowledge, and Abilities:
Demonstrated knowledge of database applications in the business environment.
Strong analytical and problem-solving skills to interpret and evaluate business problems and apply applications knowledge to identify appropriate solutions.
Demonstrated knowledge of project management concepts.
Strong leadership skills.
Good interpersonal skills.
Strong decision making skills.
Strong customer service skills.
Ability to communicate effectively both orally and in writing, including the ability to relate effectively with both technically and non-technically oriented individuals.
Ability to prioritize workload and consistently meet deadlines.
Strong organizational, administrative, and follow-up skills.
$45-52 hourly 1d ago
Cyber Security Engineer
Client Company 4.4
Information security analyst job in Columbus, OH
Seeking a Cyber Security Engineering contractor for: -Planning, implementing, managing, monitoring & upgrading security measures for the protection of client data, systems & networks. -Responding to all system &/or network security breaches. -Testing & identifying network & system vulnerabilities.
-Evaluating the organization's security needs & establishing best practices & standards accordingly.
-Taking appropriate security measures to ensure that the client's infrastructure & existing data are kept safe.
-Perform scheduled & ad-hoc vulnerability scan across networks, servers & endpoints.
-Analyze scan results, validate findings & prioritize remediation based on risk & exploitability.
-Partner with IT team & application teams to coordinate remediation & verify fixes.
-Tune scans and reduce false positives to improve data accuracy.
-Develop vulnerability metrics, dashboards, and executive-level reports.
-Conducting testing and scans to identify any vulnerabilities in the network and system.
Skill required/desired/amount of experience
-Network Security and threat detection-Required-10yrs
-Incident response and vulnerability management-Required-10yrs
-Administering Qualys-Required-10yrs
-Remediation documentation & patch management processes-Required-10yrs
-4yr. college degree-Highly desired
-CISP Certification-Highly desired
$70k-94k yearly est. 1d ago
Entry Level Healthcare IT Analyst
Optimum Healthcare It 4.3
Information security analyst job in Cleveland, OH
Start Your Career in Healthcare Information Technology Today!
Getting your first job can be difficult when employers want experience, but to gain that experience, you need your first job. We bridge the gap between your education and professional career by helping you gain the experience and training you need within the Healthcare Information Technology Industry.
Optimum Healthcare IT is looking for recent college graduates with an interest in moving into the Healthcare IT Industry. Our Optimum CareerPath training program will equip you with the tools needed for your success as a Healthcare IT Analyst.
Healthcare IT Analyst Job Responsibilities:
· The Healthcare IT Analyst will have primary responsibility for the design, build/configuration, testing, validation, documentation, and ongoing support for the Healthcare applications.
· This position will implement, administer, and support assigned systems under the guidance of senior members of the team.
· The position will have a good understanding of healthcare organizations, ancillary systems, and health system operations.
· Analyze and document user requirements, procedures, and problems to automate or improve existing systems. Review system capabilities, workflow, and scheduling limitations.
· Document workflows, configure and/or build activities, change management adherence, end-user notifications, training information, and status reporting in the appropriate system.
· Develop, document, and revise system design procedures, test procedures, and quality standards.
· Expand or modify the system to serve new purposes or improve workflows.
· Review and analyze the system and performance indicators to locate problems and correct errors. Escalate problems and issues to the appropriate staff to ensure timely resolution.
· Coordinate projects, schedule, and facilitate meetings as necessary to complete assignments.
· Technical and functional analyst support of systems that may include Electronic Health Records platforms (Epic, Cerner), IT Project Management, ERP Systems (Workday, Oracle, PeopleSoft, UKG), ITSM applications (ServiceNow), data and analytics applications (Tableau, PowerBI), cloud deployments (GCP, Azure, AWS), and other digital platforms and services.
Requirements:
· Bachelor's Degree
· US work authorization (This position is not open to any H1B /F1/ H-4 EAD OPT/STEM degrees)
· Excellent communication skills (verbal and written)
· Ability to exercise tact and good interpersonal skills
· Superb analytical and time management skills required
· Self-starter, self-motivated, high level of initiative
· Result-focused, ability to solve complex problems and resolve conflicts in a timely manner
· Internships or research project work are highly desired in a healthcare setting
· Understanding of how data works and looks, coming from different formats, is preferred
· Ability to travel during the training program if necessary
$65k-88k yearly est. 3d ago
OT Security Cyber Prevention Engineer
Honda Dev. and Mfg. of Am., LLC
Information security analyst job in Marysville, OH
What Makes a Honda, is Who makes a Honda Honda has a clear vision for the future, and it's a joyful one. We are looking for individuals with the skills, courage, persistence, and dreams that will help us reach our future-focused goals. At our core is innovation. Honda is constantly innovating and developing solutions to drive our business with record success. We strive to be a company that serves as a source of “power” that supports people around the world who are trying to do things based on their own initiative and that helps people expand their own potential. To this end, Honda strives to realize “the joy and freedom of mobility” by developing new technologies and an innovative approach to achieve a “zero environmental footprint.”
We are looking for qualified individuals with diverse backgrounds, experiences, continuous improvement values, and a strong work ethic to join our team.
If your goals and values align with Honda's, we want you to join our team to Bring the Future!
The Honda Development and Manufacturing Production Engineering team is responsible for the operational technology
security of the manufacturing environment. The OT Security Cyber Prevention Engineer works across multiple technical
and business areas to develop, implement, and maintain procedures, standards, and controls to prevent the risk or
impact of a cyber incident. The scope of this function covers manufacturing equipment hardware/firmware/ software, OT
enterprise systems, data analysis and reporting, and collaboration with IT/business users to ensure secure operation
across all HDMA locations and equipment.
New equipment introduction - set OT standards for new equipment, integrate equipment into the OT
network, confirm vulnerabilities, perform risk assessments, and visibility of equipment within the asset
management system.
Training - support the creation, administration and maintenance of OT specific training material.
Policies/procedures/auditing - create, issue, maintain, and audit OT specific policies and procedures.
Access control (physical + logical) - set and implement technical standards for equipment level physical
access and control access to OT related systems and equipment.
OT standard creation - support the development, implementation, and maintenance of technical
standards for the OT equipment and networks
Risk metric management/assessments - establish company OT risk metrics and corresponding
assessments to determine OT risk, perform risk assessments, and establish tools for visibility and
reporting.
Sensing/industry benchmarking - research technical and business OT security industry benchmarks and
generate recommendations for adjustments to internal tools or practices to stay in alignment.
What differentiates Honda and makes us an employer of choice?
Total Rewards:
Competitive Base Salary (pay will be based on several variables that include, but not limited to geographic location, work experience, etc.)
Regional Bonus (when applicable)
Manager Lease Car Program (No Cost - Car, Maintenance, and Insurance included)
Industry-leading Benefit Plans (Medical, Dental, Vision, Rx)
Paid time off, including vacation, holidays, shutdown
Company Paid Short-Term and Long-Term Disability
401K Plan with company match + additional contribution
Relocation assistance (if eligible)
Career Growth:
Advancement Opportunities
Career Mobility
Education Reimbursement for Continued learning
Training and Development Programs
Additional Offerings:
Lifestyle Account
Childcare Reimbursement Account
Elder Care Support
Tuition Assistance & Student Loan Repayment
Wellbeing Program
Community Service and Engagement Programs
Product Programs
Honda is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, age, disability, veteran status, or any other protected factor.
$75k-104k yearly est. 7d ago
Cyber and Information Security Analyst - Cyber Security & TSOC
Firstenergy 4.8
Information security analyst job in Akron, OH
About the Opportunity
We are a forward-thinking electric utility powered by a diverse team of employees committed to making customers' lives brighter, the environment better and our communities stronger.
FirstEnergy (NYSE: FE) is dedicated to integrity, safety, reliability and operational excellence. Headquartered in Akron, Ohio, FirstEnergy includes one of the nation's largest investor-owned electric systems, more than 24,000 miles of transmission lines that connect the Midwest and Mid-Atlantic regions, and a regulated generating fleet with a total capacity of more than 3,500 megawatts.
Location: Position may be filled at Akron, OH or Wadsworth, OH. Position is currently remote but may work at or visit a facility based on business need.
This position is within FirstEnergy Service Company, a subsidiary of FirstEnergy Corp.
This position's base reporting location is in Wadsworth Township, Ohio with significant flexible work location opportunities. This position is part of FirstEnergy's Cyber Security Governance department reporting to the Manager of Cyber Security Policy.
The Cyber and InformationSecurityAnalyst works across all FirstEnergy subsidiaries and business units to protect the cyber assets of FirstEnergy. We seek a knowledgeable individual well-versed in current cyber security and informationsecurity strategies with skills to effectively apply such strategies to a large, dynamic, heterogeneous landscape.
Location: Position may be filled at Akron, OH or Wadsworth, OH. Position is currently remote but may work at or visit a facility based on business need.
This position is within FirstEnergy Service Company, a subsidiary of FirstEnergy Corp.
This position's base reporting location is in Wadsworth Township, Ohio with significant flexible work location opportunities. This position is part of FirstEnergy's Cyber Security Governance department reporting to the Manager of Cyber Security Policy.
The Cyber and InformationSecurityAnalyst works across all FirstEnergy subsidiaries and business units to protect the cyber assets of FirstEnergy. We seek a knowledgeable individual well-versed in current cyber security and informationsecurity strategies with skills to effectively apply such strategies to a large, dynamic, heterogeneous landscape.
Responsibilities include
Act as a subject matter expert (SME) between cybersecurity and the business units in the development of appropriate policies, standards, and frameworks
Continuously monitor trends to anticipate and plan for future impact of cyber risk on a specific business unit (BU) or function
Follow all risk remediation protocols to ensure issues are mitigated, risks are accounted for, and exceptions are tracked in accordance with frameworks, policies and standards set by the organization
Educate stakeholders on cybersecurity-related matters to increase awareness and improve culture
Performs focused information risk assessments of existing or new services and technologies, along with business counterparts
Identifies and facilitates implementation of appropriate controls to effectively manage cyber and information risks as needed
Understand software and system vulnerability processes, manage vulnerability patches through a process lifecycle, and perform vulnerability assessments on systems and services
Qualifications
Bachelor's Degree in Computer Science, InformationSecurity, or similar discipline is preferred
A minimum of 10 years professional-level experience and subject matter expert knowledge in at least one major cyber security discipline required
Ability to identify and assess the severity and potential impact of risks. Communicate risk assessment findings to risk owners outside the cybersecurity program in a way that consistently drives objective, fact-based decisions about risk that optimize the trade-off between risk mitigation and business performance
Familiarity with common cyber security related tools such as vulnerability scanners (Tenable preferred), ServiceNow IRM and GRC, Microsoft Power Automate, Microsoft Power BI, and other similar toolchains
Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
An ability to work on several tasks simultaneously and pay attention to sources of information from inside and outside one's network within an organization
An ability to effectively influence others by informing their opinions, plans or behaviors
Ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily understood, authoritative and actionable manner
Infrequent business travel to Akron, OH may be required
Able to participate in an on-call rotation (cycling daily; on-call once every ~6-8 days) responding to out-of-hours calls and alerts in support of security response
Benefits, Compensation & Workforce Diversity
At FirstEnergy, employees are key to our success. We depend on their talents to meet the challenges of our changing business environment. We are committed to rewarding individual and team efforts through our total rewards philosophy which includes competitive pay plus incentive compensation, a company-sponsored pension plan, 401(k) savings plan with matching employer contribution, a choice of medical, prescription drug, dental, vision, and life insurance programs, as well as skills development training with tuition reimbursement. Please visit our website at *********************** to learn more about all of our employee rewards programs. FirstEnergy proudly supports workforce diversity. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, or status as a qualified individual with a disability. No recruiters or agencies without a previously signed contract. Unable to sponsor or transfer H-1B visas at this time.
Safety
Safety is a core value for FirstEnergy and is essential to all of our business activities. We ensure employees have the tools, information, and processes to perform their duties in a manner that assures safety for themselves, their co-workers, our customers and the public. Our goals are to provide a safe work environment, to maintain an accident-free, injury-free workplace, and to promote and maintain public safety. To meet these goals, we dedicate ourselves to achieving world-class safety standards.
Position Classification
Exempt
$89k-108k yearly est. Auto-Apply 42d ago
Information Security Specialist: Governance & Compliance Engineer
United States Court of Appeals for The Sixth Circuit 4.3
Information security analyst job in Cincinnati, OH
The InformationSecurity Specialist works with the IT security team to ensure the security of court systems and serve as a security resource to courts within the Sixth Circuit for their governance and compliance program. The major responsibilities and duties include the following:
In coordination with the Circuit IT Security Officer (ITSO), respond to emergent threats, assist court units in the circuit, and track and report progress. Assist in identifying, prioritizing, and coordinating the protection of critical cyber infrastructure and key resources.
Provide guidance and assistance in implementing and maintaining business objectives (i.e. security scorecard, CIS controls, assessments, internal audit controls, security data calls).
Manage informationsecurity projects (or security-related aspects of other IT projects). Coordinate and lead IT staff and court users to identify, plan, and implement initiatives and projects. Prepare and present reports and training.
Develop and maintain a documentation template repository; modernize and maintain the circuit's data repository. Review and advise courts on documentation requirements.
Assist the Circuit ITSO in performing, analyzing, and archiving SWOT and other gap analyses to ensure compliance with required frameworks, controls, and assessment.
Manage CIS controls self-assessment too; provide guidance and assistance to courts on documentation, program management, etc.
Assist the Circuit ITSO in creating, tracking, and maintaining KPIs. Prepare scheduled data points and KPIs for use in reports to circuit-wide executives and other Judiciary stakeholders.
Research custom solutions for courts as needed.
Qualifications
Required: Four years of experience in informationsecurity systems. Experience with cybersecurity compliance programs. Strong communication and interpersonal skills; excellent customer service skills. Detailed, organized, and self-driven. Ability to work under pressure and within the constraints of conflicting deadlines. Proactive, problem-solving approach. Ability to respond effectively in critical situations. Ability to work independently and in a team environment. Ability to travel (25% - 50%).
Preferred: Bachelor's degree in computer science or related field. Related cybersecurity or IT project management certifications. Related experience in a court, government agency, or equivalent environment.
Total Rewards & Work/Life Balance
Compensation*: $87,791 - $142,732 (CL 29) (*Salary commensurate with qualifications)
Benefits: Employer subsidized health and life insurance plans. Dental and vision insurance plans. Flexible spending accounts for health care, dependent care, and commuter expenses. Eligibility for Public Service Loan Forgiveness Program and mass transit subsidies. On-site fitness center. Federal retirement entails a pension plan (FERS-FRAE) and employer-matching Thrift Savings Plan (similar to a 401K). Retirees may carry insurance plans into retirement while paying the same premiums as employees. Visit ********************************* to learn more about the Judiciary's competitive benefits.
Work/Life: Annual time off - 13 vacation days, 13 sick leave days, and 11 paid holidays. Vacation days increase to 20 days after three years and to 26 days after fifteen years. Hybrid telework schedule may be available.
Conditions of Employment
Travel for this position is required. The selected candidate is provisionally hired pending results of background investigation/check and fingerprinting. This position is subject to updated background investigations every five years. Applicants selected for an interview must complete the Optional Background Information section on the Judiciary's application. Employees are required to adhere to the
Judicial Code of Conduct for Judicial Employees
.
Electronic Fund Transfer for payroll direct deposit is required. Positions with the U.S. Courts are at-will, excepted service appointments, and may be terminated with or without cause by the Court. For citizenship requirements and additional information about careers in the Judiciary, visit ************************* The Court reserves the right to modify the conditions of this announcement, or to withdraw the announcement for any reason without notice.
How To Apply
Please submit a single PDF application packet, including (1) a cover letter addressing your qualifications and experience in relation to the job duties and how you learned of the position, (2) a current resume, to the Director of Human Resources via the Resume button on our online application system. Position is open until filled; preference given to applications received by January 5, 2026. Virtual interviews available.
The United States Court of Appeals for the Sixth Circuit is an equal opportunity employer. For a reasonable accommodation during the recruitment process, contact Human Resources at **************.
$87.8k-142.7k yearly Auto-Apply 41d ago
Information Security Analyst (On-Site Position)
Danis Construction
Information security analyst job in Cincinnati, OH
IS ON-SITE AT OUR CINCINNATI, OHIO OFFICE **
At Danis, we don't just build projects-we build trust. Since 1916, our reputation has been defined by integrity, innovation, and a relentless commitment to delivering exceptional results. We approach every challenge with a problem-solving mindset, combining precision, creativity, and collaboration to bring our clients' visions to life.
We know that our people are the foundation of our success. That's why we invest heavily in their growth. Through Danis University, employees have access to more than 45 specialized training programs designed to support continuous learning and career advancement. Join us and become part of a team that values your expertise, supports work-life balance, and empowers you to thrive professionally.
One of the ways we protect that success is through a strong cybersecurity foundation-led by dedicated professionals who stay ahead of emerging threats. As an InformationSecurityAnalyst, you'll serve as a key defender of our digital environment. Your mission: safeguard sensitive data, neutralize threats, and ensure we stay a step ahead of cyber risks. You'll monitor, investigate, and respond to security events while shaping our company's cybersecurity roadmap. This is a collaborative role, working closely with IT and departments across the organization to elevate our security posture and build a culture of cyber resilience. This position reports to the CIO.
Why Join Danis?
Make an Impact: Lead healthcare projects that support medical professionals and improve patient care. Your work will have a lasting, positive effect on communities.
Competitive Compensation: Enjoy annual merit increases and bonuses.
Comprehensive Benefits: Health and dental insurance for you and your family, as well as life insurance, disability coverage, and supplemental insurance options.
Secure Your Future: 401K plan and profit-sharing opportunities.
Work-Life Balance: Generous PTO and vacation time, because we value your time outside of work.
Give Back: Participate in our “Constructing Hope” program to contribute to meaningful community outreach projects.
Career Development: Access 45+ training programs through Danis University to enhance your skills and grow your career.
What You'll Bring
Bachelor's degree in Cybersecurity, Information Technology, or a related field.
3+ years of hands-on experience in cybersecurity or a related discipline.
Working knowledge of security frameworks (e.g., NIST, ISO 27001).
Proficiency with security tools (e.g., SIEM, EDR, vulnerability scanners).
Strong analytical and investigative mindset.
Clear, confident communication and collaboration skills.
Experience managing cross-functional projects and navigating complex security challenges.
Responsibilities
Your Impact:
Strategic Leadership
Help shape and enforce cybersecurity policies, procedures, and standards grounded in industry best practices.
Lead the development and execution of our cybersecurity roadmap-including threat detection, incident response, and endpoint security initiatives.
Governance, Risk, & Compliance
Conduct routine risk assessments and internal audits to identify vulnerabilities and gaps.
Ensure regulatory compliance (e.g., NIST, Ohio Data Protection Act).
Maintain and test incident response plans; brief leadership on cybersecurity risks and metrics.
Training & Awareness
Drive cybersecurity awareness through engaging education initiatives.
Oversee new hire onboarding for required cyber training.
Facilitate tabletop exercises to simulate and prepare for real-world scenarios.
Threat Detection & Response
Continuously monitor systems for suspicious activity or breaches.
Respond swiftly to security incidents and ensure thorough documentation.
Engage in proactive threat hunting and analysis to detect emerging risks.
Vulnerability & Risk Management
Lead regular system assessments and vulnerability scans.
Ensure robust network segmentation, firewall health, and secure backups.
Security Architecture & Tools
Oversee the deployment and management of critical security tools.
Integrate cybersecurity solutions into enterprise infrastructure in collaboration with IT.
Evaluate and enhance our security technology stack.
Collaboration & Communication
Build trusted partnerships across IT and the broader organization to strengthen security culture.
Support business continuity and disaster recovery planning with department leads.
Manage vendor risk and ensure third-party compliance with internal standards.
Preferred Skills
Familiarity with enterprise systems and platforms (e.g., ERP, CRM).
Deep expertise in endpoint protection, network monitoring, and DLP tools.
Calm, strategic approach to crisis management.
Qualifications Working Environment:
Onsite Role: This position is based fully onsite, allowing for close collaboration with IT peers and business units. Being embedded within the organization supports real-time incident response and hands-on access to systems and infrastructure.
Team-Oriented Culture: You'll be part of a collaborative and supportive IT team that values knowledge sharing, proactive problem-solving, and continuous improvement.
Security-First Mindset: You'll work in an environment where cybersecurity is a top priority, supported by leadership and embraced across departments.
Dynamic and Evolving: The role operates in a fast-paced environment where adaptability is essential. You'll encounter evolving threats, shifting technologies, and the need to respond quickly and effectively.
Professional Development: Ongoing learning is encouraged through access to training, certifications, and internal resources that support your growth in cybersecurity.
Modern Tools & Infrastructure: You'll work with enterprise-grade security tools and platforms and have opportunities to recommend and implement improvements to our technology stack.
EEO Statement
Danis is an Equal Opportunity Employer. Danis does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit and business need.
Please, no agency calls. Unsolicited resumes from agencies will be considered property of Danis, with no obligation for fees.
#LI-ONSITE
$70k-99k yearly est. Auto-Apply 60d+ ago
Computer & Information Security Analyst 2
Vets Hired
Information security analyst job in Cincinnati, OH
This position will primarily be responsible for monitoring and analyzing security alerts using our SecurityInformation and Event Management (SIEM) platform, conducting regular vulnerability assessments and configuration compliance scans, managing email security measures, and providing technical support for various cybersecurity tools as needed.
Responsibilities
Monitor and analyze security alerts using the SIEM system and other specialized monitoring tools.
Triage and investigate potential cybersecurity incidents, prioritizing threats based on severity and potential impact on the system.
Conduct a thorough investigation of security violations and incidents, collaborating with other team members and/or escalating to manager as necessary.
Conduct regular vulnerability assessments and configuration compliance scans across internal and external networks.
Collaborate with cross-functional IT teams on vulnerability remediation efforts and address configuration baseline deviations, ensuring timely resolution and improved security posture.
Monitor and analyze email security systems, including user-reported phishing attempts. Perform appropriate investigation and remediation actions as necessary.
Identify and develop ways to improve the efficiency of security, network, and application log monitoring.
Provide technical and end-user support for cybersecurity tools as needed.
Qualifications
Bachelors degree in technology-related field and 2-4 years of job-related experience. An equivalent combination of education and experience requiring similar knowledge, skills, abilities, and performing duties as described may be substituted for the minimum requirements.
Experience conducting vulnerability scanning and assessments using tools like Nessus Professional and Qualys.
Familiarity with cybersecurity frameworks and standards, such as National Institute of Standards and Technology (NIST) SP 800-53, NIST SP 800-171, and NIST cybersecurity framework is preferred.
Experience with configuration baselines such as Center for Internet Security (CIS) Benchmarks and Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGS) is preferred.
Fundamental networking knowledge, such as TCP/IP and common protocols (HTTP, HTTPS, FTP, SSH, DNS, etc.).
Fundamental understanding of firewalls, intrusion detection/prevention systems (IDS/IPS), data loss prevention (DLP), endpoint antivirus, and email security.
Ability to read and interpret various system and security logs, such as Windows Event Logs, firewall logs, antivirus logs, email security/filtering logs, and IDS/IPS logs is required.
Basic knowledge of SIEM systems such as LogRhythm, QRadar, Splunk, ELK stack, etc.
Must have good verbal and written communication skills.
Must be able to clearly document findings, incidents, and procedures.
Must be able to pass a National Agency Check with Inquiries (NACI/Tier 1) background check.
Working Place: Cincinnati, Ohio, United States Company : ORAU- Oct 29th Virtual Fair
$70k-99k yearly est. 60d+ ago
IT Security Specialist 4/ITSS2 (39604)
Idealforce
Information security analyst job in Columbus, OH
IDEALFORCE has a CONTRACT position available immediately for a IT Security Specialist(ITSS2) to join our customer in Columbus, OH. This is an ONSITE position and require in person interview. Please find below additional details about this job.
Job Description
Security Consultant to help IT Augment the security staff until OIT can take over all Security related needs for the agency. This position will function as a highly skilled Security Consultant with specific responsibilities that include:
-Monitor network and information system activity.
-Respond to alerts (analyze, interpret, investigate, resolve) based on monitoring activity, for security (malware, malicious actor), and other purposes (malicious activity, misuse, etc.) Uses creativity and innovation to automate and streamline processes and procedures.
-Understands customer support, likes to work with people and can ensure that the customer is satisfied.
-Manage, update, modify alerts, adjust/fine tune event correlation rules, etc. (e.g. filter false positives, increase accuracy/relevance/effectiveness), create new rules based on threat changes/evolving risk, etc.
-Understanding of basic Networking principles, including network troubleshooting for connectivity issues, DHCP, DNS, use of tools like PING, NSLOOKUP and NETSTAT
-Perform specialized security functions (e.g. forensics for incident response).
-Perform event correlation, analysis of malicious activity indicators, and appropriate response, based on review and access to multiple security tools and services.
-Provide routine security and general support (tickets, ad-hoc requests, etc.) to all DPS departments/users, IT groups/resources, external (other state agencies, public), etc.
SPECIAL NOTE: Client is running a 24/7 operation. Consultant may need to come in during incident or emergency situations.
During the interview process with the ODPS staff, the resource consultant must demonstrate competence/experience in their specific area(s) of project assignment. The resource's experience must also be documented for review and verification. Offered resources not showing technical or functional competence/experience will be sufficient reason to reject the Offeror's proposal. It is the responsibility of the Offeror to pre-screen their candidates to ensure compliance. Resource will have a background check conducted by ODPS.
Qualifications
-1-2 Years SIEM (Q-Radar preferred)
-8 years customer service experience
-8 Years Troubleshooting experience
-8+ years knowledge of Networking to including PING, NETSTAT, DHCP, DNS, and NSLOOKUP.
-8 years' experience with Active Directory.
-4 Years experience with Web and Email Filtering and Security (Ironport)
-5+ Years experience with Imperva (DAM/WAF)
-1 years of Vulnerability scanning experience (Qualys)
-3 years A/V suite experience McAfee
-3 years IPS (IBM)
-Contributes to continuous process improvements to increase the efficiency of section.
-Excellent communication skills both written and oral.
-Strong communication/ leadership skills.
-Strong influence, collaboration and negotiation experience.
-Ability to collaborate with supporting resources across business and/or functional lines.
-Have excellent oral and written skills/possess strong meeting and work session facilitation skills.
-Have the ability to work independently and as part of a team, the ability to manage time and resources to meet assigned deadlines.
-Have strong understanding of prioritization stemming from the elicitation of system and/or user requirements.
-Have excellent organizational skills, proven analytical, planning, problem solving, and decision-making skills.
-Must be knowledgeable in the English language/speak clearly and understandably use the English language.
Desired Skills
-Q-Radar
-Ironport Web and Email Security
-Imperva
-Certifications in Microsoft
-Powershell 3.0 scripting background.
-Qualys
-McAfee Enterprise solutions
-IPS
-Splunk
-Other security related tools.
-ITIL Knowledge and ITSM Tools.
Additional Information
Additional Information :
- "All your information will be kept confidential according to EEO guidelines".
- All candidates who are authorized to work in US are encouraged to apply.
- Candidates must clear the Background check prior to commencing the assignment.
THIRD PARTY CANDIDATES:
Email your candidate/s resume to joseph dot shelton at idealforce.com along with the following details: Rate, Current location and Availability.
Disclaimer :
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed.
$71k-100k yearly est. 60d+ ago
Senior System Security / Cybersecurity Analyst
Teksynap
Information security analyst job in Columbus, OH
Responsibilities and Qualifications
RESPONSIBILITIES
Serve as a cybersecurity SME, providing support for ESS and EKC system assessments.
Fully versed in the general tenets of the DoD's authorization process, including relevant cybersecurity policies, procedures, and processes.
Support the DoD cybersecurity process by serving as a SME for ESS and/or EKC systems undergoing authorization.
Design, develop, and implement cybersecurity measures into systems, delivering comprehensive cybersecurity assessment documentation.
Understand and apply security controls identified in NIST 800-53 to the process of assessing and authorizing DLA ESS and EKC systems.
Determine the severity value of identified vulnerabilities and assess their potential impact on the system's current or future authorization status.
Perform key functions related to security control selection, implementation, and documentation.
Collaborate closely with the Information Systems Security Manager (ISSM) on complex system details.
Monitor and control communications at key internal boundaries among subsystems and provide system-wide common controls that meet or exceed the requirements of constituent subsystems.
Lead the development, integration, and testing processes to deliver and deploy production-ready systems that meet business requirements and project schedules.
Work closely with product management to translate business requirements into technical solutions, architecture design, level of effort, and project schedule.
Design architecture and establish best practices to produce efficient and effective system operations while minimizing refactoring and rework.
Provide support for the Security Technical Implementation Guides (STIGs) process and develop and submit cybersecurity documentation as required.
Ensure the implementation of DoD STIG compliance for ESS/EKC systems/applications and maintain compliance with required DoD STIGs.
Support reviews associated with STIGs, cyber assessments, and continuous monitoring activities.
REQUIRED QUALIFICATIONS
Experience:
Five (5) years of relevant C&A experience
MF and NIST C&A experience
DOD cybersecurity experience
Certifications: (One of the following)
CGRC/CAP
CASP+
CCSP
SSCP
Security+
GSEC
CISM
CISSO
FITSP-M
GCIA
GCSA
GCIH
GSLC
GICSP
CISSP-ISSMP
CISSP
Clearance:
Must possess a Secret security clearance or have a current National Agency Check with Local Agency Check and Credit Check (NACLC).
Overview
We are seeking a Senior System Security / Cybersecurity Analyst to join our team supporting DLA Integrated Electronic Security Systems (IESS) and Electronic Key Control (EKC).
TekSynap is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.
We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.
Visit us at *****************
Apply now to explore jobs with us!
The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation.
By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration.
Additional Job Information
WORK ENVIRONMENT AND PHYSICAL DEMANDS
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
Location: Columbus, OH
Type of environment: On Site
Noise level: Medium
Work schedule: Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs.
Amount of Travel: Less than 10%
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
WORK AUTHORIZATION/SECURITY CLEARANCE
U.S. Citizen
Secret security clearance or have a current National Agency Check with Local Agency Check and Credit Check (NACLC).
OTHER INFORMATION
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment.
EQUAL EMPLOYMENT OPPORTUNITY
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information, or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact *************** for assistance.
$71k-100k yearly est. Auto-Apply 60d+ ago
Data Security analyst
Us Tech Solutions 4.4
Information security analyst job in Columbus, OH
US Tech Solutions is a global staff augmentation firm providing a wide-range of talent on-demand and total workforce solutions. To know more about US Tech Solutions, please visit our website ************************ We are constantly on the lookout for professionals to fulfill the staffing needs of our clients, sets the correct expectation and thus becomes an accelerator in the mutual growth of the individual and the organization as well.
Keeping the same intent in mind, we would like you to consider the job opening with US Tech Solutions that fits your expertise and skillset.
Job Description
Scope/Responsibilities/Duties:
• 0-2 years general experience, bachelor' s degree or equivalent combo of education/experience;
• Some experience in desired tech area; position functions with high level of supervision;
• Assesses security and/or compliance of university systems; responsible for assessing, monitoring and analyzing data, identifying security, risk or compliance issues and/or events
• Leveraging job aids for common issues or incidents
• Demonstrated ability to work in a team, attention to detail, solid written communications and some technology experience
• To perform system based risk assessments.
• Review risk assessment questionnaires, perform informationsecurity control reviews and complete documentation for submission to risk management governance committees for approval or denial.
Qualifications
• Review risk assessment questionnaires, perform informationsecurity control reviews and complete documentation for submission to risk management governance committees for approval or denial.
Additional Information
Thanks & Regards,
Kushal Kumar
Talent Acquisition Specialist
Tel: ************
$56k-78k yearly est. 1d ago
Specialist, Information System Security III (SISS3)
Armada Ltd. 3.9
Information security analyst job in Philadelphia, PA
Job Description
Type: Full Time
Overtime Exempt: Exempt
Reports To: ARMADA HQ
Travel Required: Yes
Security Clearance Required: Active Secret Security Clearance
************CONTINGENT UPON AWARD***************
Duties & Responsibilities:
Specialist, Information System Security III (SISS3) will conduct risk and vulnerability assessments of planned and installed systems to identify vulnerabilities, risks and protection needs; conduct systems security evaluation, audits, and reviews; determine the residual risk of a package based on package content and assessment results and documenting for the Security Controls Assessor's (SCA) and higher level review.
Execute Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities.
Specialist, Information System Security III (SISS3) will conduct systems security reviews, audits, or evaluations, as appropriate, to ensure accreditation documents are accurate and represent the current risk posture of the system.
Perform analysis of logs, events, and reporting of various data collections tools including: vulnerability monitoring via Assured Compliance Assessment System (ACAS) and related tools, Host Based Security Systems (HBSS), web content filters, SecurityInformation and event management (SIEM), firewall systems, network devices, server devices, workstations, and intrusion detection and prevention systems (ID/PS).
Specialist, Information System Security III (SISS3) will assess impacts from observed risks and report via the Cybersecurity Program chain of command.
Executing Security Assessment Plans (SAPs) by conducting on-site testing for afloat and PIT ashore systems. Examples include executing STIGs, SRGs, ACAS scanning, and applying patches assets to obtain cybersecurity compliance and remediate vulnerabilities.
Perform the evaluation of system administrator, security engineer, and/or system owner proposed corrections to ensure compliance and best-fit solution.
Specialist, Information System Security III (SISS3) will present and submit data to management, develop reports, and produce procedural documentation in a comprehensive and cohesive manner.
Perform risk management and security engineering for Research, Development, Testing, and Evaluation (RDT&E) RMF Afloat systems include Information Assurance Vulnerability Management (IAVM) support, remediation, patching, scanning and associated boundary maintenance.
Specialist, Information System Security III (SISS3) will document residual risks in a plan of actions and milestones formatted in compliance with the current package system, currently eMASS.
Specialist, Information System Security III (SISS3) will maintain current vulnerability scan data and residual risk plan of actions and milestones in Vulnerability Remediation Asset Manager (VRAM).
Manage, attend, and support configuration control board practices.
Create and verify the accuracy of POA&Ms/RARs as identified by vulnerability actual test results.
Specialist, Information System Security III (SISS3) shall write technical documentation such as user manuals, reports, documentation, policies, presentations, Plan of Action and Milestones (POA&Ms), risk assessments, proposals, outlines, and summaries in support of both ashore and afloat systems across multiple platforms. Support developing of technical documents across multiple platforms including configuration management, milestone, issue tracking, web site content management and RMF documentation.
Specialist, Information System Security III (SISS3) may be required to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe). The estimated number of trips is 14 per year (estimated 25%-30% travel).
Other duties as assigned.
Knowledge, Skills, and Abilities (KSAs):
Ability to travel CONUS (any state in USA) and OCONUS (primarily Japan, and any country in Europe).
Proficient in Microsoft Windows Operating System Administration, including Windows 11, Windows 10, Windows 7, and Windows XP (at a minimum).
Ability to work as a team member, communicate, perform office functions and use office tools, customer focused and deliver exceptional performance.
Possess excellent organizational and file management skills and the ability to plan and execute administrative work with little supervision.
Possess excellent oral and written communication skills.
Required Certifications:
Minimum of one (1) IAT Level II listed certificate required:
CompTIA Security+ (CE)
CompTIA CySA+
GIAC Security Essentials (GSEC)
ISC² SSCP (Systems Security Certified Practitioner)
Minimum/General Experience:
Five (5) years of experience in the following:
Cybersecurity, Engineering, Test and Evaluation (T&E) or Authorization and Assessment (A&A) (formerly C&A) related field.
Information Assurance tools such as Defense Information Systems Agency (DISA) Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS).
Command line interface, PowerShell, and performing automated tasking through use of code.
Minimum Education:
College degree in any technical discipline from an accredited college or university.
Disclaimer:
The above information has been designed to indicate the general nature and level of work to be performed. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of the contractor assigned to this position. Applying: If you feel you have the knowledge, skills and abilities for this position visit our careers page at ******************
Special Notes: Relocation is not available for these jobs
ARMADA provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. ARMADA complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
Must be able to successfully pass a background check, and pre-employment drug testing. Job offers are contingent upon results of background check and drug testing.
$84k-127k yearly est. 24d ago
Senior Security Analyst
Layerzero Power Systems, Inc.
Information security analyst job in Aurora, OH
LOCATED IN AURORA, OHIO***
About Us:
LayerZero Power Systems Inc. is a globally recognized leader in providing state-of-the-art power distribution solutions for critical industries. With a strong focus on reliability, innovation, and customer satisfaction, we deliver advanced power systems products that ensure uninterrupted and dependable power supply in mission-critical environments. Our customer base is comprised of companies in the transaction processing, financial, computer service provision and semiconductor manufacturing sectors. LayerZero Power Systems is on a trajectory of sustained growth, with a loyal customer base of existing Fortune 100 customers and an expanding portfolio of new customers.
Position Description: Senior SecurityAnalyst
Responsible for monitoring, analyzing, and responding to security events across LayerZero's IT environment. This role requires a proactive professional with strong technical skills who can identify risks, investigate incidents, and support the implementation of security controls and best practices.
Primary Duties:
• Monitoring & Incident Response
• Monitor security alerts, logs, and dashboards for potential threats.
• Investigate and respond to security incidents, escalating as needed.
• Perform root cause analysis and recommend corrective actions.
• Risk Management & Compliance
• Assist with vulnerability assessments, penetration testing, and remediation efforts.
• Support compliance initiatives and audits (e.g., ISO, NIST, SOC).
• Maintain documentation of policies, procedures, and incident reports.
• Security Operations
• Manage endpoint protection, firewalls, intrusion detection/prevention systems, and SIEM tools.
• Ensure timely patching and updates across systems.
• Collaborate with IT teams to enforce access controls and data protection practices.
• Continuous Improvement
• Stay current on emerging threats, tools, and best practices.
• Recommend improvements to security architecture and processes.
• Provide training and awareness to employees on cybersecurity practices.
Requirements
Skills & Experience
• Familiarity with SIEM platforms, firewalls, IDS/IPS, and endpoint protection tools.
• Knowledge of security frameworks (NIST, ISO, CIS).
• Strong analytical and problem-solving skills.
• Excellent communication and documentation abilities.
Education:
• Bachelor's degree in InformationSecurity, Computer Science, or related field (preferred).
• 2-4 years of experience in IT security or systems administration.
What We Offer:
Competitive pay with performance incentives
100% company-paid medical, dental, and vision
401(k) with company match
3 weeks PTO, 8 paid holidays, and 2 floating holidays
Why You Will Love Working with Us:
Impact: Develop your skills and expertise in a rapidly growing industry, with your work directly influencing the success of mission-critical projects.
Innovation: Immerse yourself in an environment that celebrates forward-thinking and continuous improvement.
Collaborative spirit: Work closely with engineers, marketers, and other professionals to bring ideas to life.
Grow with us: We are committed to your personal and professional development, offering endless opportunities to improve your skills and advance your career.
At LayerZero, we are proud to be an Equal Opportunity Employer. We welcome and celebrate diversity, and we are committed to creating an inclusive environment for all employees.
Salary Description $85k-115k Annually based on Skills & Experience
$85k-115k yearly 12d ago
Information Security Analyst I - Cincinnati, OH
Whitedog Cyber
Information security analyst job in Cincinnati, OH
WhiteDog is seeking an InformationSecurityAnalyst to join our Security Operations Center team. The Analyst will help coordinate and report on cyber incidents impacting SOC-as-a-Service customers. This position involves critical duties and responsibilities that must continue to be performed during crisis situations and contingency operations, which may necessitate extended hours of work.
Onsite Location: Cincinnati, OH (no remote available)
Employment Type: Full-Time, hourly
Compensation: $22-$28/hour
Key Responsibilities:
Responsible for working in a 24x7 Security Operation Center (SOC) in person. (Hours - 7:00pm-7:00am PST)
Provide analysis and trending of security log data from a large number of heterogeneous security devices.
Provide Incident Response (IR) support when analysis confirms actionable incident.
Provide threat and vulnerability analysis as well as security advisory services.
Analyze and respond to previously undisclosed software and hardware vulnerabilities.
Investigate, document, and report on informationsecurity issues and emerging trends.
Integrate and share information with other analysts and other teams.
Ability to work and be available for on-call activities
Other duties as assigned.
Experience and Skills:
Experience in security device management and SIEM.
Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix.
Knowledge of applications, databases, middleware to address security threats against the same.
Knowledge of various security methodologies and processes, and technical security solutions (firewall and intrusion detection systems).
Knowledge of TCP/IP Protocols, network analysis, and network/security applications.
Knowledge of common Internet protocols and applications.
Ability to multi-task, prioritize, and manage time effectively.
Strong attention to detail.
Excellent interpersonal skills and professional demeanor.
Excellent verbal and written communication skills.
Excellent customer service skills.
Proficient in Microsoft Office Applications.
Qualifications:
The successful candidate will possess the personality traits, work habits, communication, and social skills necessary to work effectively within a dynamic and highly operational environment. This person will have exemplary personal and professional integrity and demonstrate strong interpersonal skills. In addition, the qualified candidate will have a strong desire to succeed in a nationally and internationally recognized operational environment.
Bachelor's or Master's degree in a related field or equivalent demonstrated experience and knowledge.
You must be a US Citizen
1-3 years' experience as a Security/Network Administrator or equivalent knowledge.
Security Essentials Certification (GSEC)
Certified Intrusion Analyst (GCIA)
Certified Incident Handler (GCIH)
Certified Ethical Hacker (CEH)
Certified Penetration Tester (CWAPT)
CompTIA Network+
CompTIA Security+
Benefits:
WhiteDog offers a competitive compensation plan with great earning potential. Our benefits include medical coverage, dental coverage, disability, life insurance, 401K and an amazing work environment!
We are an Equal Opportunity Employer. All qualified applicants receive consideration for employment without regard to race, ethnicity, religious affiliation, gender, gender identity or expression, sexual orientation, national origin, or disability status. EOE AA M/ F/Vet/Disabled
$22-28 hourly Auto-Apply 60d+ ago
Information Security Expert
Cyberthink 4.2
Information security analyst job in Columbus, OH
Title: InformationSecurity SME/Developer with .NET development Duration : 5 Months contract (High possibility of Extension) Interview Type: Both iLinc Web Cam and In Person Interview Skills Required Experience working in Microsoft Identity Integration Server (MIIS) 2003 Required 2 Years
Experience with Identity Lifecycle Manager (ILM) 2007 Required 2 Years
Experience with Forefront Identity Manager (FIM) 2010 including design and implementation Required 2 Years
Experience and strong development skills in the MS Metadirectory Services Namespace in C# Required 2 Years
.NET development experience Required 5 Years
Thanks
Naimesh Solanki
Sr. Technical Recruiter
Phone: ************ x 6578
Qualifications
Experience working in Microsoft Identity Integration Server (MIIS) 2003 Required 2 Years
Experience with Identity Lifecycle Manager (ILM) 2007 Required 2 Years
Experience with Forefront Identity Manager (FIM) 2010 including design and implementation Required 2 Years
Experience and strong development skills in the MS Metadirectory Services Namespace in C# Required 2 Years
Additional Information
All your information will be kept confidential according to EEO guidelines.
$62k-80k yearly est. 1d ago
Manager, Information Security
Medpace 4.5
Information security analyst job in Cincinnati, OH
The Manager of IT Security is a strategic leader responsible for safeguarding the organization's information assets and infrastructure. This individual will develop, implement, and manage a comprehensive cybersecurity program, ensuring compliance with industry standards and regulations. They will lead a team of security professionals, oversee vulnerability assessments and incident response, and drive continuous improvement in the organization's security posture. You will be joining an amazing organization where your contribution will have a significant impact in protecting Medpace and our Sponsors!
Responsibilities
* Plan, direct and manage the day-to-day operations of the IT Security department including the Security Operations Center (SOC);
* Develop, maintain, and enforce IT security procedures and policies that are effective and efficient in protecting Medpace computer systems & data and are consistent with regulatory requirements;
* Keep IT leadership informed by preparing security posture reports; identifying areas/process improvement opportunities; communicating security trends and risks;
* Safeguards information system assets by identifying and solving potential and actual security problems;
* Recognize problems by identifying abnormalities; reporting violations; manage IT Security incidents to closure;
* Experience managing a 24/7 Security Operations Center (SOC);
* Protect systems by defining access privileges, control structures, and resources;
* Work across IT to upgrade systems by implementing and maintaining security controls;
* Collaborate with Functional Areas/business units across the company to ensure IT Security best practices are understood and followed;
* Oversee the hiring, training, evaluation, and retention of associates; and
* Conduct IT Security policy training and ensure employees are working in compliance with SOPs and Good Clinical Practice guidelines.
Qualifications
* Bachelor's degree in informationsecurity, cybersecurity, information technology or related discipline;
* 5+ years of InformationSecurity experience, 1+ years of management or leadership experience;
* Advanced certifications such as SANS GIAC/GCIA/GCIH, CISSP or CASP and/or SIEM-specific training and certification preferred;
* Understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements;
* Hands-on experience analyzing high volumes of logs, network data (e.g. Netflow, FPC), and other attack artifacts in support of incident investigations;
* In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g. Microsoft Sentinel);
* Extensive experience in all Microsoft related products including operating systems, Active Directory, Azure, Remote Server and Desktop Access, SQL Server, Office 365, Teams and SharePoint;
* Experience with Perimeter Security systems and software (e.g., Firewalls, Intrusion Protection Systems, VPN); and
* Excellent management, leadership. communication, presentation, organization and positive influencing skills.
Medpace Overview
Medpace is a full-service clinical contract research organization (CRO). We provide Phase I-IV clinical development services to the biotechnology, pharmaceutical and medical device industries. Our mission is to accelerate the global development of safe and effective medical therapeutics through its scientific and disciplined approach. We leverage local regulatory and therapeutic expertise across all major areas including oncology, cardiology, metabolic disease, endocrinology, central nervous system, anti-viral and anti-infective. Headquartered in Cincinnati, Ohio, employing more than 5,000 people across 40+ countries.
Why Medpace?
People. Purpose. Passion. Make a Difference Tomorrow. Join Us Today.
The work we've done over the past 30+ years has positively impacted the lives of countless patients and families who face hundreds of diseases across all key therapeutic areas. The work we do today will improve the lives of people living with illness and disease in the future.
Cincinnati Perks
* Cincinnati Campus Overview
* Flexible work environment
* Competitive PTO packages, starting at 20+ days
* Competitive compensation and benefits package
* Company-sponsored employee appreciation events
* Employee health and wellness initiatives
* Community involvement with local nonprofit organizations
* Discounts on local sports games, fitness gyms and attractions
* Modern, ecofriendly campus with an on-site fitness center
* Structured career paths with opportunities for professional growth
* Discounted tuition for UC online programs
Awards
* Named a Top Workplace in 2024 by The Cincinnati Enquirer
* Recognized by Forbes as one of America's Most Successful Midsize Companies in 2021, 2022, 2023 and 2024
* Continually recognized with CRO Leadership Awards from Life Science Leader magazine based on expertise, quality, capabilities, reliability, and compatibility
What to Expect Next
A Medpace team member will review your qualifications and, if interested, you will be contacted with details for next steps.
$93k-128k yearly est. Auto-Apply 4d ago
Information Security & Systems Analyst
Friendship Village of Dublin 3.2
Information security analyst job in Dublin, OH
Join a team dedicated to making a real difference in the lives of our community. Our Mission at Friendship Village of Dublin is
“To care for, engage, and inspire our community to reimagine and maximize quality of life at every age”
.
At Friendship Village our Values Drive us to RISE to any Occasion
Values:
Respect
Integrity and Innovation
Stewardship
Excellence
We are seeking a InformationSecurity & Systems Analyst to contribute to our mission by:
The Entry to Mid-Level System Analyst performs security, compliance and administration of systems and is responsible for the design, installation and management, configuration and reliable operation of security/compliance mechanisms, systems and policies that protect the computer network and information systems against cyber events. Participate in research and development to continuously improve and keep up with the IT business needs of the organization. Actively resolve problems and issues with computer and server systems to limit work disruptions within the company.
Essential Duties:
Design, install and manage security mechanisms that protect the computer network and information systems against threats including but not limited to hackers, breaches, viruses and spyware.
Educate and provide awareness to users regarding security policies and procedures as well as threats.
Develop and maintain security policies and guidelines around information classification, system integrity, incident response and user access.
Monitor, audit and review systems for and identify violations or attempted violations of security procedures, processes and access.
Plan and implement appropriate measures to safeguard data from accidental or unauthorized modification, destruction or disclosure.
Respond to incidents, investigate potential incidents and recommend enhancements to close potential security gaps and serve as a backup to other members of the Technology department.
Responsible for post breach/data loss activities including but not limited preservation of evidence, review of data to determine scope and support of legal and other processes.
Participate in supporting efforts, making sure all networks, systems, applications, servers, technology tools and related equipment problems are resolved in a timely manner with limited disruptions.
Monitor performance and maintain systems according to requirements.
Ensure security through access controls, backups and firewalls.
Recommend when to upgrade systems with new releases and models.
Timely completion of IT Projects.
All other duties as assigned.
InformationSecurity & Systems Analyst Responsibilities:
Safeguard and help prevent cyber-attacks:
Implement industry best practices for cyber security.
Be up to date about the latest security trends and newest security technology.
Assist other technical support staff in identifying and implementing appropriate security safeguards, including patch applications and anti-malware strategies.
Operate, administer and monitor network and host-based intrusion detection/prevention systems.
Ensure ongoing compliance with industry standards for informationsecurity:
Participating in risk assessments to identify potential security threats
Conducting employee training on security policies and responsibilities
Auditing IT systems to ensure compliance with regulations.
Reporting security breaches to management for prompt resolution.
Collaborating with vendors to ensure proper data handling security measures.
Monitoring compliance with state and federal data privacy and security regulations.
Developing policies and procedures for maintaining data security.
Monitor and report on devices and networks including:
Maintain, configure, secure and provide reliable operation of computers systems, network servers, and virtualization.
Network switch and firewall health
Internet traffic and usage metrics
Design and install network devices and systems (including maintaining current software versions on all network equipment) Demonstrates ability to independently troubleshoot and diagnose network, telephone, Internet, Wi-Fi, network.
Assists with work order requests:
Helps the IT Team meet service levels of quality and responsiveness:
Satisfaction goal of 90%
2-business-day response time (resolution time dependent on issue SLA)
Creates, updates and closes tickets in incident management system.
Qualifications:
• Bachelor's degree in computer science, programming, or a related field or equivalent industry experience.
• 2-4 Years of Security or Systems Analyst experience
REQUIRED NON TECHNICAL QUALIFICATIONS
• Must have the ability to work under pressure, without constant direction and to react in a positive and spontaneous manner to the needs of residents, staff, visitors, and vendors.
• Must be able to independently handle multiple simultaneous tasks, following specific instructions carefully and general instructions completely.
• Excellent communication skills
• Resourcefulness and problem-solving aptitude
• Self-starter mentality willing to make constant improvements in the technical support process.
• Takes pride and ownership of the support role.
• Excellent customer service and communication skills
• Ability to assess resident and staff complaints and resolve disputes in a friendly professional manner.
REQUIRED TECHNICAL QULAIFICATION
• Strong understanding of cybersecurity tools, concepts and best practices.
• Knowledge of informationsecurity frameworks (e.g.,HIPAA, NIST) and relevant regulations.
• Knowledge of Windows Operating Systems - Desktop (10 and 11) and Server (2016+)
• Windows desktop device configuration, management, and operation.
• IOS Device configuration, management, and operation.
• Networking Concepts and basic troubleshooting (DNS, DHCP, IP Addressing).
• Switching and Routing Concepts (basic troubleshooting and configuration).
• Meraki Network and Camera Equipment
• VOIP/PBX
• Demonstrated working in a helpdesk ticketing environment.
$47k-70k yearly est. 60d+ ago
IT Analyst
The Timken Company 4.6
Information security analyst job in North Canton, OH
What Timken makes possible begins with you. Those who came before us helped land a man on the moon, create the world's infrastructure, and introduce renewable energy alternatives. Now you can join the Timken team to write your own unique story and help drive what's next.
A career at Timken means you can have an immediate impact doing Work That Matters to the world- improving the efficiency of today's industrial equipment and preparing for the future of motion on our planet and beyond. New employees can start contributing right away, and there are many opportunities to advance your career at your own pace. Join our global team of 19,000 people in 45 countries, and start helping our customers push the limits of what's possible in their world of motion.
The position will act as primary support for combining the access control process (i.e. Compreq) and administration of data loss prevention tools. The position will provide US-based support for the access control process for managing access to sensitive systems that support access to controlled technical data. The position will actively work with key stakeholders across the organization to use data loss prevention tools to help manage the flow of sensitive data such as munitions data and privacy data.
Responsibilities:
Primary contact for analyzing and properly managing access control requests in various systems such as Active Directory and SAP, in a timely fashion (i.e. Compreq).
Properly inventory and document access request processes and provide evidence of access control request processes to Audit.
Act as primary regional support for data loss prevention tools such as Crowdstrike DLP and Varonis.
Integrate data loss prevention tools into a comprehensive Insider Threat program.
Act as secondary support for e-discovery and forensics.
Collaborate with cross-functional and international teams and business units (e.g., Engineering, Human Resources, end-users, different business users) in assessing current needs for access control processes and data loss prevention tools.
Recommend technical and process improvements to access control and data prevention space.
Provide excellent service to enterprise stakeholders while ensuring process adherence.
Act as technical lead for IT projects, especially regarding munitions and privacy data.
Stay current with rapidly changing InformationSecurity and IT technology and corporate policies and standards in order to provide advice and recommendations on InformationSecurity-related issues.
Minimum Qualification:
High School Diploma with 7 years of IT experience
Experience with managing data loss prevention tools such as CrowdStrike DLP and Varonis.
Experience with managing users, groups, and computers in Active Directory.
Experience with InformationSecurity tools used for investigations and analytics such as CrowdStrike, Encase, Email Security, and Zscaler.
Must be a US Citizen or permanent resident.
Preferred Skills:
Bachelor's degree in computer science with 3 years preferred
Certifications in Security+ or GIAC with 3-5 years post certification experience.
This position may require access to United States export controlled technical data (“CTD”) and hardware under the Departments of US State (ITAR) and/or Commerce (EAR). Eligible candidates are; US Citizens, Green Card holders, Asylees or others eligible to receive US export license authorizations. Candidate must be authorized to work in the US.
All qualified applicants shall be treated equally according to their individual qualifications, abilities, experiences and other employment standards. There will be no discrimination due to gender or gender identity, race, religion, color, national origin, ancestry, age, disability, sexual orientation, veteran/military status or any other basis protected by applicable law.
$90k-118k yearly est. 52d ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Youngstown, OH?
The average information security analyst in Youngstown, OH earns between $61,000 and $119,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Youngstown, OH