Nuclear Cyber Security Engineer - REMOTE
Remote job
IF YOU DO NOT HAVE THE REQUIRED BACKGROND IN THE U.S. COMMERCAL NUCLEAR INDUSTRY, PLEASE DO NOT APPLY. Immediate opening for a Cyber Security Engineer with commercial nuclear background, to perform design modifications (involving digital upgrades) as well as preparing cyber assessments on those digital components. Prefer direct/perm hire, will consider contract. This person will be the go-to individual for Cyber related projects.
Must be familiar with NEI-08-09, EPRI graded approach, have digital mod experience, and extensive understanding of plant SSC (Safety Classification of Structures, Systems, and Components). Site Cyber qualifications to perform CSAT (Cyber Security Assessment Team) would be a plus. Compensation based on experience, but likely in the 140K-$160K range.
JSG offers medical, dental, vision, life insurance options, short-term disability, 401(k), weekly pay, and more. Johnson Service Group (JSG) is an Equal Opportunity Employer. JSG provides equal employment opportunities to all applicants and employees without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, marital status, protected veteran status, or any other characteristic protected by law.
#D650
Smart Contract Security Engineer
Remote job
Our client is building the infrastructure for a more trustworthy internet.
We are looking for a Smart Contract Security Engineer. In this role, you wont just audit code, you'll shape the security model for high-value protocols and safeguard the trust of an entire ecosystem. You'll work at the intersection of cutting-edge research, high-stakes engineering, and adversarial thinking, building defences for decentralized systems.
This is a full-time position, fully remote or located with our primarily Seattle-based team.
What You Will Do
Lead design and security reviews of complex staking, reward distribution, and protocol contracts
Build tooling, fuzzers, and formal verification pipelines to identify vulnerabilities before attackers do
Collaborate directly with protocol researchers and engineers to harden new features from inception
Read, interpret, and refine formal verification specifications to ensure they capture critical security properties
Work closely with product and leadership teams to set on-chain strategy and roadmaps
This is a unique opportunity to create a new paradigm of permissionless innovation and have outsized impact on the protocol and broader ecosystem.
What You Will Bring
Deep understanding of blockchain fundamentals, EVM, and common vulnerabilities
Experience with developer tools for smart contract development (e.g., Hardhat, Foundry)
Passion for collaborating with developers, security auditors, and stakeholders
Strong testing skills and experience with testing frameworks for smart contracts
Experience with production deployments of non-trivial protocols and associated security audits
Ability to collaborate with cross-functional and geographically remote teams
For more information, please contact **************************
Application Security Architect - Hybrid
Remote job
Crown Equipment Corporation is a leading innovator in world-class forklift and material handling equipment and technology. As one of the world's largest lift truck manufacturers, we are committed to providing the customer with the safest, most efficient and ergonomic lift truck possible to lower their total cost of ownership.
Remote Work: Crown offers hybrid remote work for this position. A reasonable commute is necessary as some onsite work is required. Relocation assistance is available.
Primary Responsibilities
Define security architecture standards and blueprints for web, mobile, cloud, and Application Programming Interface (API)-based applications.
Review design documents and perform architecture risk assessments for new and existing applications.
Collaborate with DevOps, Engineering, and Infrastructure teams to ensure architectures align with secure design principles.
Integrate automated security testing/scanning tools (Static Application Security Testing (SAST), Software Composition Analysis (SCA)) into Continuous Integration (CI) or Continuous Delivery (CD) pipelines.
Define and enforce secure coding standards and practices across development teams.
Provide training and guidance to developers on secure development principles and vulnerability prevention.
Conduct threat modeling and attack surface reviews for high-risk or critical applications.
Identify potential security flaws and recommend mitigations early in development process.
Track and communicate technical risk to product managers, developers, and leadership teams.
Develop and maintain application security policies, baselines, and architecture frameworks.
Ensure application security practices align with regulations including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI-DSS).
Support audit and compliance initiatives by providing documentation and evidence of secure development practices.
Minimum Qualifications
Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related field is required, along with 2-4 years related experience.
Non-degree considered if 12+ years of related experience along with a high school diploma or GED
Preferred Qualifications
5+ years in cybersecurity with at least 3 years in application security or secure software development experience.
Secure Software Development Life Cycle (SDLC) in development. Deep knowledge of Open Web Application Security Project (OWASP) Top 10, National Institute of Standards and Technology (NIST), and secure coding frameworks.
Experience with Securing Secrets and Service Accounts desired.
Experience with Web Application Firewall (WAF) implementation/support preferred.
Familiarity with Identity and Access Management and cloud security practices (AWS, Azure).
Certified Information Systems Security Professional (CISSP), or similar certification (Certified Secure Software Lifecycle Professional, Certified Ethical Hacker (CEH) certified).
Familiarity with container security (Docker, Kubernetes).
Understanding of authentication protocols (Open Authorization (OAuth) and Security Assertion Markup Language (SAML)).
Experience with DevSecOps tools and container security tools desired.
Work Authorization:
Crown will only employ those who are legally authorized to work in the United States. This is not a position for which sponsorship will be provided. Individuals with temporary visas or who need sponsorship for work authorization now or in the future, are not eligible for hire.
No agency calls please.
Compensation and Benefits:
Crown offers an excellent wage and benefits package for full-time employees including Health/Dental/Vision/Prescription Drug Plan, Flexible Benefits Plan, 401K Retirement Savings Plan, Life and Disability Benefits, Paid Parental Leave, Paid Holidays, Paid Vacation, Tuition Reimbursement, and much more.
EOE Veterans/Disabilities
OT Security Architect
Remote job
We are seeking an OT Security Architect to work remotely. This position will be responsible for safeguarding our operational technology infrastructure. This role offers the flexibility to work remotely with periodic travel to our manufacturing sites. First Quality is a growing manufacturing organization that has defined security as one of its key business values. Joining our team will provide you with unique personal and professional growth opportunities where you'll be hands-on and securing cutting-edge industrial automation and technologies contributing to a growing field where cybersecurity directly protects critical processes, manufacturing, and safety.
Primary responsibilities include:
• Primarily responsible for OT security event monitoring, management, and response
• Create an IS reference architecture for our OT networks
• Work with OT engineering team, as well as with SOC team and verify that the reference architecture fits the business processes and requirements
• Work with OT engineering teams for defining security controls for their on-going projects
• Provide technical guidance to the GRC team with assessing OT 3rd party vendor and supply chain
• Integrate with OT engineering projects and verify that the required IS controls are properly implemented
• Revise and develop processes to strengthen the current OT Security Operations Framework, review policies and highlight the challenges in managing SLAs
• Perform threat management, threat modeling, identify threat vectors and develop use cases for OT security monitoring including red\blue penetrations tests
• Responsible for developing, configuring, and maintaining OT security automation and orchestration IR's and tools.
• Creation of reports, dashboards, metrics for OT security operations and presentation to Sr. Mgmt.
• Create required standards and procedures (i.e. IS purchasing standard, sanitization process) in coordination with all relevant stakeholders
The ideal candidate should possess the following:
• Minimum of five (5) years of professional experience in OT security and operations.
• Knowledge of controls and automation equipment and principles (i.e. PLCs, SCADA, DCS, HMIs, VFDs, etc.)
• Familiarity with security frameworks and standards such as NIST, ICS Mitre ATT&CK, and IEC 62443
• Experience in defining and implementing security controls for OT engineering projects.
• Experience managing projects with the abilities to prioritize tasks and manage time effectively.
• Experience in developing, configuring, and maintaining OT security automation and orchestration tools.
• Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field. In lieu of degree, related experience will be considered.
• Background in manufacturing controls is preferred
What We Offer You
We believe that by continuously improving the quality of our benefits, we can help to raise the quality of life for our team members and their families. At First Quality you will receive:
• Competitive base salary and bonus opportunities
• Paid time off (three-week minimum)
• Medical, dental and vision starting day one
• 401(k) with employer match
• Paid parental leave
• Child and family care assistance (dependent care FSA with employer match up to $2500)
• Bundle of joy benefit (years' worth of free diapers to all team members with a new baby)
• Tuition assistance
• Wellness program with savings of up to $4,000 per year on insurance premiums
• ...and more!
First Quality is committed to protecting information under the care of First Quality Enterprises commensurate with leading industry standards and applicable regulations. As such, First Quality provides at least annual training regarding data privacy and security to employees who, as a result of their role specifications, may come in to contact with sensitive data.
First Quality is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, sexual orientation, gender identification, or protected Veteran status.
For immediate consideration, please go to the Careers section at ********************
to complete our online application.
Information Security - Governance, Risk, and Compliance (GRC) Director (Remote)
Remote job
Information Technology at Procter & Gamble is where business, innovation and technology integrate to build a competitive advantage for P&G. Our mission is clear -- we deliver IT to help P&G win with the over 5 billion consumers we serve worldwide. Our IT professionals are diverse business leaders who apply IT expertise to deliver innovative, tech-focused business models and capabilities for our 65 iconic, trusted brands.
From Day 1, you'll be trusted to dive right in, take the lead, use your initiative, and build billion-dollar brands that help make everyday activities easier and make the world a better place! Our company offers purposeful work that will take your career places you never envisioned, in creative workspaces where innovation thrives and where your technical expertise is recognized and rewarded.
The Opportunity
P&G is seeking a Governance, Risk, and Compliance Director passionate about safeguarding data, enabling business through smart risk management, and shaping the future of cybersecurity. The IT Governance, Risk, and Compliance (GRC) Organization at Procter & Gamble is responsible for risk identification, assessment, and remediation across the IT landscape, as well as driving automated governance and compliance breakthroughs. As the GRC expert, you'll play a critical role in maturing and maintaining the security risk and compliance posture of our organization. You will lead initiatives that align our security program with business goals, ensure regulatory and policy compliance, and creatively solve problems to manage risk for the company.
Responsibilities:
Governance:
Maintain and evolve the information security policy framework and controls aligned with industry best practices (e.g., NIST, ISO 27001, CIS).
Establish and track metrics to measure policy adherence and program maturity.
Drive internal alignment on security roles, responsibilities, and expectations.
Risk Management:
Manage the enterprise risk management process including risk identification, analysis, treatment planning, and reporting.
Conduct security risk assessments for internal systems, projects, vendors, and business processes.
Facilitate risk-based decision-making at all levels of the organization.
Compliance:
Ensure ongoing compliance with applicable regulations and frameworks (e.g., GDPR, HIPAA, CCPA, SOX).
Maintain a library of evidence and documentation to support audit and regulatory needs.
Monitor the effectiveness of IT controls and identify gaps in compliance. Analyze control measurements for negative trends and reoccurrence frequency. Collaborate with internal/external auditors on compliance audits, audit findings, and issue remediation
Awareness & Enablement:
Contribute to the continuous improvement of the risk and compliance mindset across P&G. Build IT risk awareness by providing support and training to others.
Collaborate cross-functionally with IT, Legal, Privacy, and Business Operations teams.
Stay up to date with how current events, security focus areas, and the regulatory environment may impact P&G's compliance processes
Estimated Percent of Time Spent on Work
25% - Risk identification, analysis, and assessment
40% - Plan and drive enterprise-wide initiatives to reduce risk and improve compliance across the organization
25% - Assess and improve the effectiveness of IT controls and compliance across the enterprise
10% - Collaboration with internal/external auditors, driving a risk-aware compliance mindset
Job Qualifications
Required:
Bachelor's degree in Computer Science, Computer Systems Engineering, Cybersecurity, Industrial Engineering, Business Management Information Systems, Software Development, or related field
Prior hands on experience working in a security-focused role, such as Information Security Analyst, SOC Analyst, Security Engineer, etc.
8+ years of experience in Governance, Risk, and Compliance with a focus on Information Security
In-depth knowledge of major security frameworks (e.g., NIST CSF, ISO 27001, SOC 2).
Experience conducting risk assessments, audits, and control testing.
Strong understanding of regulatory compliance requirements (e.g., GDPR, HIPAA, SOX, PCI DSS).
Proven ability to write policies, manage documentation, and communicate clearly to both technical and non-technical stakeholders.
Ability to influence and build relationships with business unit stakeholders, external service providers, and architecture teams.
The ability to work independently, collaborate, and learn quickly.
English fluency (speak, write, and read)
Preferred Skills:
Certified in CISSP, ISACA CRISC, CGEIT, CISA, or similar
Pay Range: $160,000 - $220,000
Compensation for roles at P&G varies depending on a wide array of equal opportunity factors including but not limited to the specific office location, role, degree/credentials, relevant skills, and level of experience. At P&G compensation decisions are dependent on the facts and circumstances of each case. Total rewards at P&G include salary + bonus (if applicable) + benefits. Your recruiter may be able to share more about our total rewards offerings and the specific salary range for the relevant location(s) during the hiring process.
Our company is committed to providing equal opportunities in employment. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Immigration Sponsorship is not available for this role. For more information regarding who is eligible for hire at P&G along with other work authorization FAQ's, please click HERE.
P&G participates in e-verify as required by law.
Qualified individuals will not be disadvantaged based on being unemployed.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Job Schedule
Full time
Job Number
R000136880
Job Segmentation
Experienced Professionals
Starting Pay / Salary Range
$160,000.00 - $220,000.00 / year
Auto-ApplyInformation Security Manager
Remote job
Benefits:
401(k)
401(k) matching
Competitive salary
Dental insurance
Health insurance
Opportunity for advancement
Paid time off
Vision insurance
Benefits/Perks
Competitive Compensation
Career Advancement Opportunities
Great Work Environment
Job SummaryWe are seeking an experienced Information Security Manager to join our team! As our Information Security Manager, you will be responsible for managing all Information Security projects, ensuring the safety and security of the data in our care, and identifying and eliminating threats before they start. You will also work closely with other departments to ensure compliance with security best practices and create reports to present to upper management and other department heads on security protocols. The ideal candidate has previous experience working in Information Security, has demonstrable experience leading a team, and has a deep understanding of best security practices.
Responsibilities
Manage IT projects and oversee goals, ensure metrics are being met, and projects are being completed in a timely manner
Work closely with staff to manage any support issues that arise, handle all user access credentials, and hardware inventory
Maintain and adjust any documentation for users in regard to common technology processes, hardware handling, and more
Maintain and adjust any communications procedures to ensure staff issues are being heard and handled appropriately
Investigate any security incidents and handle documentation and remediation
Monitor security systems to protect data and spot any questionable activity before it becomes a threat
Present reports to upper management to discuss security concerns and ongoing efforts, as needed
Qualifications
Previous experience in IT Security and Management preferred
Strong interpersonal and communication skills
Demonstratable experience and knowledge in IT, security, and best practices
Strong leadership ability
Self-driven and motivated
The ability to meet deadlines and work under high-pressure situations
Flexible work from home options available.
Compensation: $140,000.00 - $150,000.00 per year
PROVIDING QUALITY STAFFING AND CONSULTING
SINCE 2011
Based out of San Antonio, Tex as, our minority women-owned company specializes in all staffing and consulting needs. Whether you're trying to hire a pharmacist, a respiratory therapist, or skilled and non-skilled laborer, we will staff your company with the best candidate. We bring extensive experience and professionalism and we will personalize our assistance to your needs and concerns. Most of our contracts are with the Army and Air Force as Sub-Contractors.
Our staff has a quick turn around and have been able to fill positions within 48 hours with short notice, we have filled hard to fill locations and jobs, and managed over 16 contracts with over 70 employees at a time. Managed call-ins at 24/7 hospitals and ensured shifts were filled, and managed PRNs with notice of less than 24 hours. Also, provided temp laborers for next day jobs.
Our consulting division provides contracting assistance, program managing, application assistance, certification assistance and proposal writing. We are very knowledgeable in a variety of areas and are eager to assist your company's prosperity.
Auto-ApplyDirector, Information Security
Remote job
As Director of Information Security at Moov you will be responsible for the comprehensive enterprise-wide information security policy, strategy, architecture, operations, and capability enhancements of Moov and our platform. This position collaborates with the senior leadership team on security strategy, capability enhancements, and the development of enterprise security awareness and accountability.
You will:
Key Responsibilities:
Develop, implement, and maintain information security policies, practices, and operations.
Oversee incident evaluation and response, ensuring swift and effective handling.
Manage corporate information security risk and regulatory architecture and status reporting efforts.
Create and roll out audit and compliance programs.
Implement technical compliance solutions and support for security awareness and training programs to ensure compliance.
Collaborate with cross-functional teams to maintain a high standard of cybersecurity posture and response.
Build and operate a security and compliance program for money movement regulations, aligning with information security policies and standards.
Foster a security-conscious culture and ensure the platform's security.
Leadership and Strategy:
Execute a plan to achieve and maintain industry compliance for SOC 1, SOC 2, PCI, NACHA, FedRAMP, and other compliance programs.
Research, educate, and recommend technical solutions to support compliance efforts.
Develop, implement, and manage a comprehensive organization-wide information security and risk management program.
Deliver education on compliance with security policies.
Conduct security risk assessments and manage risk management processes.
Ensure compliance with relevant laws, regulations, and policies in Moov's information security practices.
Lead the information security team that is protecting Moov.
Recruit, motivate, mentor, and lead the best security talent.
You have:
Bachelor's degree in Computer Science, Engineering, Information Systems, Cyber Security, Business, or a related academic discipline.
7-10+ years of relevant experience or an equivalent combination of education and experience.
Strong knowledge of regulatory requirements and information security management frameworks, including SOC 1, SOC 2, ISO/IEC 27001, ITIL, SOX, PCI, FedRamp, and NIST.
Ability to work in a fast-paced environment.
Knowledge of payment systems, fintech, or online banking.
Certification in CISSP, CISM, CRISC, CISA, CFE, or similar is highly recommended.
Experience with banking regulations.
Knowledge of OSS tools and active participation in OSS community.
Experience working with remote-only teams.
Experience with mid-size organizations and startups.
Our company:
Moov is a 100% remote company with people from more than 26 states. We're backed by a16z and other respected investors. We won Visa's global Everywhere Initiative and our community of builders grows larger every day. We're committed to building a team that represents a variety of backgrounds, perspectives, and skills and we embrace diversity, creativity, and equal opportunity.
Our people:
Our customers come from all walks of life and so do we. We hire great people from a variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger.
We have mountain bikers, skiers/boarders, runners, video gamers, musicians, movie buffs, weight lifters, and about every other type of person in between. We enjoy solving problems and tackling challenges with creativity. If we don't know the answer, we revel in the hunt to find it. We like helping people and choose to give first. We're patient, open, and honest. If you share our values and enthusiasm for making the complex simple and delightful, you'll find a home at Moov.
Benefits include:
Competitive base salary + employee stock options w/early exercise opportunity
100% remote. We make remote-work work.
We match what you contribute to your 401(k) up to 5% of your salary
Generous parental leave
Medical Ins: Health Savings Account (HSA) option w/employer contribution
EAP and other wellness resources
Unlimited PTO+ generous paid holiday schedule
Professional Development Budget, we have a culture that encourages and promotes professional growth and development
Home office stipend
Culture of people helping people who give first, celebrate wins together and embrace autonomy, transparency, and trust
The opportunity to join an experienced and ambitious team passionate about solving customers' needs and who love what they do
Partner with a community of 3000+ developers around the world, helping them focus on possibilities vs payments
Employee referral incentive
Salary range: $220k - $232k based on experience, geography, and other key factors
Advice:
If you're nervous about not meeting every qualification above, apply anyway. Moov is all about pushing boundaries-ours, yours, and the industry's-so we look for curious people willing to experiment and grow. While we can't teach curiosity and compassion, we can teach some technical skills. Of course, we can't guarantee anything, but as Michael Scott says,“You miss 100% of the shots you don't take!” (Or was that Wayne Gretzsky?)
One more thing:
Don't go iron your clothes for your interview (do people still own irons?). We're all pretty casual here, so you can wear whatever you are most comfortable in.
Okay-last thing:
When you meet with us, have some concrete, tangible examples of when you've added value, improved something, created something, or done some fantastic, customer-centric work. We also want to learn about you as a person. If you want to know what it's like working at Moov, check out stories from our employees.
PS:
Share our job roles with others! Wouldn't it be nice to make new friends and bring over old friends? We think so.
Moov Financial is a participant of E-Verify. All potential employees and employees are bound by the guidelines in the MOU and the rules and responsibilities. For more or up to date information on E-verify, go to ********************** and click on E-verify.
Chief Information Security Officer
Remote job
About Skylight
Skylight is a digital consultancy using design and technology to help government agencies deliver better public services. We're at the forefront of a civic movement to reinvent how all levels of government serve families, patients, and many others in today's digital world.
If you want to play a part in driving this critical movement forward, we'd love for you to join our growing team of public interest technologists. The work we do matters.
About the job
As Skylight's Chief Information Security Officer (CISO), you'll lead Skylight's security, compliance, and policy efforts, ensuring they align with Skylight's business, technical, and regulatory requirements. As a trusted advisor and partner across the organization, you'll balance deep technical understanding with clear communication and strong relationship-building skills.
Because Skylight supports multiple federal clients, our work must comply with CMMC Level 2, NIST 800-171, and, potentially, HIPAA. You'll play a pivotal role in maintaining compliance with these regulations by developing organizational readiness, guiding engineering teams, and ensuring secure, compliant operations across all systems.
In this role, you'll report directly to the Chief Information Officer (CIO). This is a hands-on, collaborative leadership role where you'll partner closely with the CIO on priorities, decisions, and direction. You'll also collaborate with the CIO on key aspects of Skylight's IT infrastructure, including onboarding/offboarding, account management, and role-based access controls. While you don't need to be an expert administrator for every tool we use, your partnership in this area is essential to maintaining both operational integrity and regulatory compliance.
What you'll do
Lead the design, implementation, and day-to-day operation of Skylight's information security and compliance efforts
Maintain and continuously improve compliance with Skylight's regulatory requirements, including NIST 800-171, CMMC Level 2, and HIPAA
Represent Skylight externally for security audits, risk assessments, and communication with external assessors
Collaborate with the Chief Operating Officer (COO) and CIO to achieve and maintain Skylight's facility security clearance (FCL)
Administer and enforce identity and access management across Skylight's IT infrastructure, including AWS, Azure, Google Cloud Platform (GCP), Google Workspace, and Slack
Partner with project and delivery teams to integrate security and compliance into project planning, delivery, and client communications
Lead periodic risk assessments and report findings to the CIO and leadership team to inform decision-making
Develop and maintain internal security and IT policies, ensuring they're accessible, practical, and actionable
Deliver annual security awareness training across the organization
Collaborate with the CIO to align security priorities with company strategy and resource planning
Stay current on evolving security practices, technologies, and emerging threats
What we're looking for Minimum qualifications
An active security clearance or the eligibility to obtain one
Hands-on experience with identity and access management (IAM), role-based access control (RBAC), and related concepts in AWS, Azure, and GCP
Demonstrated success leading security audits or compliance assessments
Excellent communication and documentation skills, with the ability to explain technical and regulatory concepts in plain language
Experience enumerating and mitigating organizational vulnerabilities
Experience mitigating security risks in the software development life cycle at the organizational level
Ability to interpret and translate non-technical material, such as regulations, into business and technical requirements
Deep understanding of and achieving compliance with NIST 800-171
Proven ability to foster trust and collaboration across technical and non-technical teams
Ability to work successfully within a professional services environment (e.g., can communicate effectively with clients)
A passion for creating better public outcomes through great government services
A mindset and work approach that aligns with our core values
Ability to travel for work from time to time
Nice-to-have qualifications
Expertise in other relevant regulatory frameworks like CMMC, HIPAA, or FISMA
Hands-on experience administering Google Workspace
Professional development experience in at least one programming language
Professional experience working with infrastructure-as-code
Prior experience working in the civic tech space
Experience working in a remote-team environment
Don't meet 100% of the criteria but think you can do the job? We'd love to chat anyway! We're on a mission to build diverse teams, and studies have shown that women and marginalized folks are less likely to apply to jobs if they don't check every box.
Other requirements
All work must be conducted within the U.S., excluding U.S. territories. Some federal contracts require U.S. citizenship to be eligible for employment.
You must be legally authorized to work in the U.S. now and in the future without sponsorship.
As a government contractor, you may be required to obtain a public trust or security clearance.
You will be required to complete a company background check successfully.
Position type
This is a full-time, exempt position.
Location
This is a fully remote position.
Care package Salary
The salary range for this position is between $170,000 and $240,000.
Benefits
Your well-being is important to us, so we focus on supporting you in a variety of ways:
Medical insurance, dental insurance, vision insurance
Short-term and long-term disability insurance
Life and AD&D insurance
Dependent care FSA, healthcare FSA, health savings account
Dollar-for-dollar 401(k) match up to 10% of your salary with no vesting period
Flexible paid-time-off policy (generally around 25 days per year), plus 11 paid federal holidays
Up to 12 weeks paid-time-off for all eligible new birth, adoption, or foster parents
Performance rewards, including annual salary increase, annual performance bonus, spot bonuses, and stock options
Business development / sales bonuses
Referral bonuses
Annual $2,000 allowance for professional development
Annual $750 allowance for tech-related purchases
Annual swag budget of $100 to display your Skylight pride with some merchandise (hoodies, hats, and more)
Dollar-for-dollar charity donation matching, up to $500 per year
Flexible, remote-friendly work environment
An environment that empowers you to unleash your superpowers for public good
Interview tips
Visit our join page to learn more about how our interview process works.
Check out our Career Pathways framework to learn more about the different roles within Skylight and the skills needed to do them.
If you'd like to request reasonable accommodations during the application or interviewing process, please contact our recruiting team at recruiting@skylight.digital.
We participate in E-Verify and upon hire, will provide the federal government with your Form I-9 information to confirm that you're authorized to work in the U.S.
We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, sex, religion, age, disability, veteran status, or any other category protected by applicable law.
Auto-ApplyVice President, Chief Information Security Officer
Remote job
Introduction
KLDiscovery offers a fantastic opportunity for you to use your talents to make a meaningful impact in a fast-paced, growing technology and services organization! KLDiscovery is a global leader in eDiscovery, compliance, and data management solutions, empowering law firms, corporations, and government agencies to tackle their most complex legal and regulatory challenges.
We are looking for a Vice President, Chief Information Security Officer to join our team who is passionate about our mission and brings initiative, authenticity, and collaborative spirit to everything they do. If you're fueled by innovation and committed to delivering exceptional results, KLDiscovery is the perfect place to grow your career.
Work Status: Remote, work from home opportunity.
Is This Role For You?
The Vice President, Chief Information Security Officer provides strategic and operational direction to the organization to ensure the attainment of business objectives. Ensure that all revenue and profit goals are met. Revise objectives and policies in response to changes in internal and external conditions. Coordinate operations between divisions and departments. Establish responsibilities and procedures for attaining objectives. Establish strategies and objectives, coordinating with all organizational goals and standards. Responsible for financial performance and attainment of profit goals.
A Day in The Life
Development of policies and standards aimed at minimizing costs related to acquisition, implementation, and operation of IT systems across business units. This includes the management of vendor relationships and ensuring this is leveraged across business units.
Manage and develop key performance indicators to assure customer satisfaction and operational performance; manage problem escalation and communication with senior management and customers where appropriate.
Ensure software and hardware license compliance through documented, established process.
Coordinate gap analysis to identify training needs for department. Define requirements and ensure compliance for next level of advancement. Direct, coach, and mentor management staff in performance management skills. Build a department that optimizes senior talent, while promoting the growth of junior talent. Performance Management including collecting data on regular basis, organize and create annual reviews, provide regular coaching of individuals. Manage the timeliness of reviews for the department.
Provide daily operational direction and oversight in meeting committed service level agreements (SLAs). Maintain and improve operational policies and procedures.
Provide quarterly updates to the BoD and Senior Level Management.
Travel as necessary for internal needs as well as client requested audits.
What You Will Bring To The Role
Bachelor's degree in technology-related field or equivalent work experience.
15+ years' experience; Ten to Thirteen years management. This experience should include:
Management of production data centers and external customer SLA support
Demonstrated success in providing best practice process and support implementation
Proven track record and managing teams of 20 or more people
Demonstrated knowledge of global telecommunications
Demonstrated quality control implementation experience
Demonstrated success in change management
Extensive experience with the build out, growth, management, and support of high-volume Data Centers
Fiscal responsibility, including creating and managing to a budget
Demonstrated ability to create a vision for IT Operations focused on IT Service Management and ITIL
Demonstrated success in defining, tracking, and communicating internal and business focused metrics
Demonstrated success in defining and implementing a global IT shared services model
Coaching, developing, and mentoring direct reports and ensure processes are in place to develop the future leaders of the IT organization
Skills:
Must be able to synthesize large amounts of data/concepts effectively into understandable terms both written and oral
Must be capable of communicating with Sr. Level Management both verbally and in written communications
Must be adaptive with varied skill sets that can fit into a variety of project situations
Must be quick learning and possess a high comfort-level with non-repetitive projects and new challenges
Must be quick thinking: ability to listen, grasp concepts and engage during interactive discussions
Should be able to work with limited supervision
Should have strong organizational and time management skills
Should be well rounded with an exceptional work ethic
Should be results-oriented with an exceptional ability to be independent, motivated, and proactive
Should be customer-focused and possess resilient interpersonal talents and poise to manage change
Excellent communication (oral, listening, and writing) skills
Strong problem solving, time management and organizational skills
Understanding of data center commercial market space
General knowledge of applications management processes and methodologies
Expert knowledge of system management and process methodologies and practices
Strong understanding with practical application of WAN/LAN and internet connectivity and concepts.
Driving Career Growth, Benefit Excellence: The KLD Advantage
At KLD we invest in employees and their families by placing their wellbeing first. We offer competitive total compensation that includes base pay, bonus potential, inclusive benefits, wellness programs, and perks. We use market and industry data to inform pay decisions while considering geography and labor markets, individual experience, and business needs. Individual compensation will vary, although a reasonable estimate of the current annualized base pay range for this position is $200,000 to $250,000.
We offer a high-performance laptop computer, options for wireless headset or external speaker, up to two 24” 2K monitors, and a mobile phone for business use.
Generous paid time off, offering various time off options to help employees maintain a work-life balance, such as vacation, paid sick leave, parental leave, paid jury leave, and more!
Comprehensive health, dental, vision and supplemental benefits packages that include life insurance, short- and long-term disability, to promote the health of our employees.
Remote-friendly, flexible working culture, where you can apply to work from several global locations.
A focus on continuous professional development through various training and education reimbursement programs.
A diverse and inclusive workplace where we all learn, grow, and achieve the greatest heights…together.
A surrounding team of mission-driven individuals who genuinely love what they do.
Equity incentives and company bonus programs; that way, we all share in the success of KLDiscovery.
Free, fun, interactive and incentivized global wellness program that promotes the wellbeing of our employees plus offers a wide range of perks and discounts!
Free Employee Assistance Program (EAP) because we all could use a little help and support every now and then.
401(k) with employer match, to help our employees achieve financial success.
KLD supports the communities where our employees live and offers a paid community service day for employees to volunteer with what resonates with them.
To keep our furry, 4-legged family members healthy, KLD employees can opt for Pet Insurance.
Who We Are
KLDiscovery provides technology-enabled services and software to help law firms, corporations, and government agencies solve complex data challenges. With offices in 26 locations across 17 countries, KLDiscovery is a global leader in delivering best-in-class data management, information governance, and eDiscovery solutions to support the litigation, regulatory compliance, and internal investigation needs of clients. Our Nebula Ecosystem provides powerful end-to-end eDiscovery and enterprise-grade information governance. Through its global Ontrack data recovery business, KLDiscovery delivers world-class data recovery, disaster recovery, email extraction and restoration, data destruction, and tape management.
We Provide Equal Employment Opportunity
At KLDiscovery we believe that inclusion and diversity make us stronger. We are committed to fostering an inclusive environment for all employees that enhances wellbeing and belonging. We welcome and celebrate individuals of all backgrounds, experiences, and perspectives.
We do not discriminate on the basis of race, color, religion, gender, pregnancy, gender identity, sexual orientation, national origin, age, disability, genetic information, veteran status, or any other protected status. We are happy to support you with any accommodation request at any stage in our hiring process.
Texas PI# A04094801
#LI-TF1
#LI-Remote
Auto-ApplyChief Information Security Officer (CISO)
Remote job
ABOUT ENTERPRISE MANAGEMENT: Enterprise Management Solutions, LLC. (Enterprise) is a full-spectrum administrative and operational management firm headquartered in Baltimore, Maryland. We provide contracted infrastructure support to independently governed organizations in sectors such as behavioral health, primary care, supportive housing, food service, commercial real estate, and nonprofit development.
Enterprise does not own or govern the organizations we serve. Instead, we operate as a trusted administrative services provider under formal contractual agreements, offering high-level back-office services that allow our clients to focus on mission execution and program delivery.
Our scope of service includes:
Comprehensive fiscal systems and multi-entity accounting
Human resource infrastructure and staff onboarding
Legal compliance and audit readiness
Technology integration and IT systems governance
Organizational growth planning and fiscal sustainability analysis
Federal and state grant compliance, budget monitoring, and reporting
Financial and operational performance dashboards
CEO- and executive-level strategy support
Our goal is to relieve mission-driven companies of administrative burden by overseeing financial and operational systems that allow leadership teams to focus on quality care and innovation.
DISCLOSURES:
The specific statements shown in each section of this are not intended to be all-inclusive. They represent typical elements and criteria considered necessary to perform the job successfully. The job's responsibilities/tasks may be modified and/or expanded over time. Company will inform the personnel member when changes in the respective job description are made.
COMPANY WEBSITE: *********************************
COMPANY PHONE NUMBER: **************
HUMAN RESOURCES PHONE NUMBER: ************** ext. 10
POSITION TITLE: Chief Information Security Officer (CISO)
ALTERNATE TITLE(S): Chief Cybersecurity Officer (CCSO), Chief Security Officer (CSO - Cybersecurity), Senior Cybersecurity Executive
COMPANY: Enterprise Management Solutions, LLC. (in support of all customer companies under contract)
DIVISION: Technology & Information Security
DEPARTMENT: n/a
UNIT: n/a
BENEFITS PACKAGE:
In addition to hourly wages, eligible employees may receive a comprehensive benefits package that includes:
Paid Time Off (PTO)
Family and Medical Leave
Health, Medical, and Dental Insurance Reimbursement or health insurance coverage, as available
Supplemental Health and Disability Insurance Options
Retirement Savings Plan
Professional Development Support and Continuing Education Opportunities
WORK SCHEDULE: Two days per week: Tuesday and Thursday, 8:00 AM - 5:00 PM (daily lunch break from 12:00 PM - 1:00 PM)
ACCOUNTABLE TO: Chief Executive Officer (COO, in absence of CEO)
ACCOUNTABLE FOR: Oversight of cybersecurity strategy, data protection, regulatory compliance, and the supervision of all information security systems, personnel, and vendors across all affiliated companies. This role is responsible for ensuring uninterrupted cybersecurity operations, incident response readiness, and cross-training protocols to protect critical client and company assets.
CLASSIFICATION: W-2 employee; part-time hourly
COMPENSATION RANGE: Ranges between $55.00 per hour to $90.00 per hour, and is commensurate with experience, expertise, verified credentials, and available company budget.
ANTICIPATED TRAVEL:
Up to 10% of the time (interoffice and site-based meetings)
WORKPLACE POLICY: This is a 100% in-office role at Baltimore HQ, two days per week. Remote work or telework is prohibited unless explicitly pre-approved in writing by the CEO.
SUMMARY OF POSITION RESPONSIBILITIES:
The Chief Information Security Officer (CISO) serves as the organization's highest-ranking cybersecurity executive, responsible for designing, implementing, and maintaining a resilient information security program that safeguards company and client systems against internal and external threats.
The CISO oversees all areas of cybersecurity including policy development, risk management, threat detection, incident response, and compliance with federal and state regulations (HIPAA, HITECH, GDPR, SOC2, PCI-DSS, NIST, and others as applicable).
This role also ensures that Enterprise delivers all contracted Information Security, IT Governance, and Cybersecurity Risk Management services to affiliated entities, protecting sensitive healthcare, housing, financial, and client records.
The CISO plays a critical role in aligning technology security with enterprise goals, while proactively mitigating risks across all operational areas.
SCHEDULED DUTIES AND RESPONSIBILITIES:
Cybersecurity Strategy & Leadership
Develop and execute a company-wide cybersecurity program aligned with business and client requirements.
Translate the CEO's strategic vision into measurable, risk-based security initiatives.
Conduct long-term security planning, including disaster recovery and business continuity.
Risk Management & Regulatory Compliance
Ensure strict compliance with HIPAA, HITECH, GDPR, SOC2, PCI-DSS, NIST, and state regulations.
Perform enterprise-wide risk assessments and vulnerability scans.
Maintain and update incident response, breach notification, and audit readiness protocols.
Threat Monitoring & Incident Response
Direct the Security Operations Center (SOC) or equivalent vendor-managed services.
Oversee intrusion detection, SIEM monitoring, log review, and malware defense.
Lead incident response, forensic investigation, and breach communication with executive leadership.
Identity, Access, and Data Security
Manage identity and access management systems, including MFA and privileged access controls.
Oversee endpoint, mobile device, and server security configurations.
Ensure encryption, secure backups, and data loss prevention across all platforms.
Vendor & Third-Party Oversight
Review vendor contracts, security certifications, and compliance attestations.
Establish standards for secure integration with external technology providers.
Lead vendor risk management and third-party security audits.
Internal Policies & Training
Develop internal cybersecurity policies, acceptable use guidelines, and SOPs.
Deliver quarterly staff training on phishing, ransomware, and cybersecurity awareness.
Conduct simulated incident drills and security tabletop exercises.
Collaboration & Executive Support
Advise the CEO and COO on cybersecurity risks and budget needs.
Partner with CFO, HR, and Operations Managers to ensure cross-department compliance.
Provide security briefings to the Board of Directors and client executives.
UNSCHEDULED DUTIES AND RESPONSIBILITIES:
Respond to emergent cybersecurity threats or system alerts.
Support investigations of insider threats, fraud, or data misuse.
Participate in interdepartmental workgroups to integrate new systems securely.
Maintain active knowledge of evolving threats, ransomware tactics, and industry best practices.
Lead recovery efforts in the event of a cyber-attack or natural disaster affecting IT infrastructure.
PHYSICAL DEMANDS:
Prolonged periods sitting at a desk and working on a computer.
Occasional lifting up to 25 pounds.
WORKING CONDITIONS:
Cross-functional collaboration with executives and technical staff.
100% in-office role at Baltimore HQ (two days per week, no remote or hybrid unless CEO approved).
Travel up to 10% may be required for audits, client meetings, or incident response.
Must be available during scheduled hours with flexibility for emergent needs.
COMPETENCIES AND SKILLS:
Visionary leadership with deep technical and cybersecurity acumen.
Expertise in risk management, incident response, and compliance frameworks.
Skilled in cloud security (AWS, Azure, Google Cloud), SaaS protection, and on-premises systems.
Strong command of cybersecurity frameworks: NIST CSF, ISO 27001, COBIT.
Familiarity with healthcare IT and HIPAA/HITECH security requirements.
Effective communicator able to brief executives and train staff.
Demonstrated ability to lead multidisciplinary teams and manage security vendors.
LEVEL OF EDUCATION / TRAINING / QUALIFICATIONS:
Master's degree in Cybersecurity, Computer Science, or Information Technology (required).
Certified Information Systems Security Professional (CISSP) in good standing (required).
Additional certifications (CISM, CISA, CCSP, CRISC) strongly preferred.
Minimum 8-10 years of progressive cybersecurity leadership experience, with at least 5 years in a senior or CISO role.
Experience overseeing security in healthcare, housing, financial, or government environments strongly preferred.
Demonstrated track record of regulatory compliance, successful incident response, and enterprise-level security program development.
Chief Information Security Officer (Veterans Affairs Business Area)
Remote job
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None
Public Trust/Other Required:
MBI (T2)
Job Family:
Cyber and IT Risk Management
Job Qualifications:
Skills:
Data Security, Federal Government, Security Standards
Certifications:
None
Experience:
15 + years of related experience
US Citizenship Required:
No
Job Description:
Join GDIT where your work will improve outcomes for our Veterans. You will support the Veterans Affairs Business Area within GDIT to ensure strict compliance of cloud hosting environments meet both GDIT security controls as well as Department of Veterans Affairs (VA). Together, we're building a secure future of managed services solutions that includes customer data in company-owned and company-controlled environment. GDIT's high-impact solutions improve the delivery of VA services to our Veterans and their families.
As GDIT's VA Business Area Chief Information Security Officer (CISO), you will lead a team of Cyber Security Engineers, System Engineers and Architects supporting current and future state of our cloud environments under a VA authority-to-operate (ATO). You will create and implement cyber security best practices and refine their strategies and approaches to meet long-term needs. You will also help to grow our business, supporting proposals and meeting with customers to strategize on best practices for both their Cyber Security and Data Privacy needs.
HOW YOU WILL MAKE AN IMPACT:
Develop and implement security and privacy solutions, best practices, controls and reporting mechanisms for the VA Business Area portfolio.
Coordinate all security and privacy activities across all the VA Business Area contracts; as well as track improvements and ensure minimized risk profiles, etc.
Serve as the single POC for GDIT corporate reporting and data calls within the Federal Health sector, coordinating corporate security standards.
Serve as advisor for Cyber Incidents and Incident Response affecting VA Business Area.
Champion Cyber and IT KPIs across the VA Business Area, working closely with FedHealth Risk team.
Lead and/or support solutions for cybersecurity aspects for proposals across the VA Business Area.
Serve as a trusted advisor to our VA customer and other CISO's across the Federal Health division
Collaborate and support security activities across the broader Federal Health division.
Lead and coordinate the activities of a team of security engineers and system administrators responsible for security on individual VA contracts. Create a communities of practice, ensure appropriate training to keep our teams up to date, create career paths, etc.
Prepare and provide various reports and technical cyber security reviews to senior management as requested.
Ensures compliance with relevant corporate and VA policies and standards.
WHAT YOU'LL NEED (required):
Bachelor's degree or equivalent.
15+ years related experience.
5+ years direct FISMA data security for Federal Agencies.
4+ years of direct experience supporting the cyber security controls of solutions into an AWS or Azure cloud environment for Government Contracts
CISSP or equivalent professional certification.
Experience managing a cyber-practice/cyber security program portfolio across multiple customer bases within the Federal government health sector (and preferably across Federal Civilian customers as well)
Experience leading cyber solutions for major government proposals / solicitations
Experience managing and developing a team of cyber professionals.
Demonstrable experience building and growing exceptional customer relationships.
Expertise with government Authorization to Operate (ATO) and Security Control Assessment (SCA) processes for traditional data centers and FedRAMP space
Strong technical understanding and abilities in both cyber security and data privacy
Experience managing the client interface at senior levels of an organization
Outstanding written and verbal communication skills with the ability to present to business leaders
Must be able to obtain a MBI (T2) and successfully pass a thorough a government background screening process requiring the completion of detailed forms and fingerprinting
WHAT WOUDL BE EVEN BETTER (preferred):
Current or previous Veterans Affairs experience
Recognition as a leader in the Federal cyber industry (i.e. speaking engagements, published articles, quotes on current cyber topics, etc.) is strongly preferred
Experience developing technical presentations and/or writing
WHY GDIT:
Work on a mission that matters-delivering outcomes for Veterans and their families.
Access the latest cloud and automation technologies in a modern engineering environment.
Enjoy flexible work options, continuous learning, and a strong culture of purpose and performance.
Be part of a collaborative team driving innovation in government IT.
The likely salary range for this position is $129,625 - $175,375. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
Less than 10%
Telecommuting Options:
Remote
Work Location:
Any Location / Remote
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee's date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Auto-ApplyChief Information Security Officer
Remote job
Company Credit Genie is a mobile-first financial wellness platform designed to help individuals take control of their financial future. We leverage artificial intelligence to provide personalized insights and are building a financial ecosystem by offering tools and services that provide instant access to cash, and building credit. Our goal is to empower every customer to achieve long-term financial stability.
Founded in 2019 by Ed Harycki, former Swift Capital Founder (acquired by PayPal in 2017). Backed by Khosla Ventures and led by industry pioneers from companies such as; PayPal, Square, and Cash App, we are well positioned to build the future of inclusive finance through cutting-edge technology and customer-centric solutions.
Overview
As Chief Information Security Officer (CISO), you will be the primary leader responsible for developing and implementing our information security strategy. You'll protect our systems, data, and customer trust by overseeing cybersecurity operations, ensuring compliance with regulatory standards, and mitigating risks in a dynamic fintech environment. This role demands a visionary leader with deep expertise in cybersecurity, preferably in fintech, and a passion for securing innovative financial products.
What you'll do
* Develop and execute a comprehensive cybersecurity strategy to protect our platform, customer data, and intellectual property.
* Ensure compliance with fintech and data privacy regulations, including GDPR, CCPA, PCI-DSS, and other relevant standards.
* Oversee the design, implementation, and monitoring of security controls for payment processing, lending platforms, and other financial products.
* Lead incident response, including managing and mitigating cybersecurity breaches, vulnerabilities, and regulatory inquiries.
* Collaborate with product, engineering, and compliance teams to embed security-by-design principles into new features and services.
* Build and maintain a robust security framework for credit and lending operations, ensuring protection against fraud and data breaches.
* Conduct risk assessments and implement mitigation strategies for emerging threats in the fintech landscape.
* Manage relationships with external security vendors, auditors, and regulatory bodies.
* Develop and lead a high-performing security team, fostering a culture of proactive risk management.
* Support international expansion by aligning security practices with global data protection and financial regulations.
* Stay ahead of cybersecurity trends, advising the executive team on evolving threats and technologies.
Who you are
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
* 10+ years of progressive experience in cybersecurity, with at least 5 years in a senior leadership role at a fintech or high-growth tech company.
* Deep expertise in securing credit and lending platforms, preferably in the fintech industry, with knowledge of fraud prevention, secure payment processing, and regulatory compliance (e.g., Truth in Lending Act, Fair Credit Reporting Act).
* Proven track record in designing and implementing security architectures for cloud-based systems, APIs, and financial applications.
* Strong understanding of data privacy, encryption, and consumer protection laws in a fintech context.
* Experience leading incident response, penetration testing, and vulnerability management programs.
* Exceptional communication skills, with the ability to explain complex security concepts to non-technical stakeholders, from engineers to board members.
* Strategic mindset with the ability to balance security rigor with business innovation in a fast-paced startup environment.
Nice to have
* Experience at a fintech company with exposure to payment processing, lending, or brokerage platforms.
* Familiarity with SOC 2, ISO 27001, or other cybersecurity certifications and frameworks.
* Knowledge of international cybersecurity regulations to support global operations.
* Experience building and scaling security teams in high-growth environments.
Benefits and Perks
Our goal is to provide a comprehensive offering of benefits and perks that promote better financial, mental, and physical wellness.
We believe working alongside each other in person is the best way to build a great product and foster a strong company culture. Our expectation is that employees are in the office five days a week, allowing for optimal collaboration, inclusivity, and productivity. At the same time, we understand that life happens and recognize the importance of flexibility. We are committed to supporting our employees when circumstances arise that require remote work or adjusted schedules. Our goal is to ensure everyone can effectively balance personal and professional responsibilities while maintaining our collaborative and productive environment.
Here are some highlights of our benefits and perks offerings, feel free to ask your recruiting partner for more details on our comprehensive offering for employees.
* 100% company-paid medical, dental, and vision coverage for you and your dependents on your first day of employment.
* Monthly fitness reimbursement up to $100 or a full membership to LifeTime Fitness
* 401(k) with a 3.5% match and immediate vesting
* Meal program for breakfast, lunch, and dinner
* Life and accidental insurance
* Flexible PTO
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one part of your total compensation and rewards package at Credit Genie. You may also be eligible to participate in the bonus and equity programs. You will also have access to comprehensive medical, vision, and dental coverage, a 401(k) retirement plan with company match, short & long term disability insurance, life insurance, and flexible PTO along with many other benefits and perks.
Credit Genie is a proud Equal Opportunity Employer where we welcome and celebrate differences. We are committed to providing a workspace that is safe and inclusive, where everyone feels supported, connected, and inspired to do their best work. If you require any accommodations to participate in our recruitment process, please inform us of your needs when we contact you to schedule an interview.
Senior Information Security Officer
Remote job
Hiring Range: $69,948 - $99,000 Annually Help improve the lives of North Dakota citizens by being by providing compliance, risk, and controls expertise to support various information security and compliance initiatives and activities to Support Team ND. North Dakota Information Technology Department (NDIT) is seeking a Senior Information Security Officer for our Cybersecurity division.
As a Senior Information Security Officer, you will:
* Provide support for Information Security programs, primarily for the Department of Health and Human Services, as well as other state agencies. Serve as primary security point of contact on all security-related matters to help increase the security posture and enhance the cybersecurity program.
* Perform information security control reviews or security audits within a variety of other environments and industries to assist the team. Maintain strong knowledge of NIST 800-series, along with other Federal cybersecurity governance frameworks (such as: CMS, IRS, PCI-DSS, HIPAA).
* Assist agency personnel to ensure cybersecurity compliance, including the coordination of artifact collection. Serve as NDIT's primary point of contact for auditors and assist in drafting responses to IT audit findings.
* Advise business and senior leadership on identified cybersecurity risks and provide recommendations to determine risk response. This which will include analyzing and advising on security controls for complex systems.
* Collaborate in the development of information security policies, standards, and education efforts.
* Design and present quarterly reports to agency leadership to support the value of the State's cybersecurity program, to include establishing strategic initiatives and goals.
The ideal candidate will be adept at working with complex information systems, focusing on protecting confidentiality, ensuring data integrity, and maintaining system availability. You should be inquisitive and committed to ongoing learning, while welcoming feedback. Strong communication and organizational skills are crucial, including the ability to manage time and priorities efficiently to meet organizational standards. You should also be skilled at creating effective working relationships, whether working independently or as part of a team.
Candidates for this position can live anywhere in the United States, but preference will be given to candidates living in North Dakota or a border community (Moorhead, MN, East Grand Forks, MN, etc). If selected candidate lives within a 50 miles radius of NDIT offices in Bismarck or Fargo, North Dakota they will work on site one day a week. Otherwise, this position will work remotely full time.
To be considered for this role, you must have:
A bachelor's degree in cyber science, computer information systems, or a related field, and have worked in a cybersecurity function for 1 year with experience which demonstrates your ability to architect and maintain security solutions.
Additional professional work experience may be substituted for the education requirement on a year for year basis.
About Team ND
"Far and away the best prize life offers is the chance to work hard at work worth doing." - Theodore Roosevelt
More than 7,500 talented, hard-working people across sixty-three agencies have come together as Team North Dakota. At Team ND, we are driven to succeed through gratitude, humility, curiosity and courage. Our purpose is to empower people, improve lives, and inspire success. Join us in being legendary.
Total Rewards: The State of North Dakota is committed to providing team members with a strong and competitive rewards package that support you, your health and your family.
Considering a new position on Team ND? How does your current position stack up? Use our Total Rewards Calculator to estimate.
Application Procedures
The answers given on this application are to be reflective of your work experiences. Any use or suspected use of AI during the application process may affect the outcome of the hiring decision.
Please make sure that your resume includes information to demonstrate how you meet the minimum qualifications as posted. Your work history will not be given credit if North Dakota Information Technology cannot determine that you meet the minimum qualifications.
All application material, including your resume, must be received on or before the closing date by 11:59 PM Central Standard Time (CST).
North Dakota Information Technology does not offer or provide sponsorships. Applicants must be legally authorized to work in the United States.
For more information or if you need an accommodation, please contact ************** or **************.
Equal Employment Opportunity
The State of North Dakota and this hiring agency do not discriminate on the basis of race, color, national origin, sex (including sexual orientation and gender identity), genetics, religion, age or disability in employment or the provisions of services and complies with the provisions of the North Dakota Human Rights Act.
As an employer, the State of North Dakota prohibits smoking in all places of state employment in accordance with N.D.C.C. § 23-12-10.
Director of Information Security
Remote job
Our Director of Information Security provides strategic leadership and vision for enterprise-wide security operations. This role oversees and matures the organization's operations security program, ensuring alignment with business objectives, regulatory requirements, and industry best practices. The Director partners with senior leadership, technology leaders, and business stakeholders to embed security into products, services, and culture.
This position reports to the Vice President of Information Security and leads a growing team (4-6 ICs) of security professionals across operational security, incident response, compliance, and governance.
Responsibilities
Strategic Leadership & Vision
Help define and execute the enterprise information security strategy, ensuring alignment with corporate objectives and customer trust.
Serve as an advisor to the various teams, technology leaders, and business stakeholders on emerging threats, risks, and security requirements.
Lead the evolution of security as a business enabler and differentiator, ensuring resilience, trust, and compliance are built into tools and operations
Team & Program Leadership
Manage, mentor, and scale a high-performing security team across security operations, incident response, and data security functions.
Establish clear career paths, KPIs, and success metrics to drive accountability, engagement, and professional growth.
Foster a culture of continuous improvement, innovation, and proactive risk management.
Operational Security & Incident Response
Oversee enterprise security operations, including SIEM, log correlation, endpoint security, threat hunting, and vulnerability management.
Direct incident response efforts, ensuring effective playbooks, rapid resolution, and post-incident learning.
Drive automation, orchestration, and AI/ML-enabled threat detection to increase efficiency and reduce response times.
Governance, Risk, & Compliance
Partner with the GRC Team with security compliance frameworks (e.g., SOC 2, ISO 27001, PCI-DSS, HIPAA, FedRAMP, etc.) and ensure continuous readiness for audits.
Develop and maintain enterprise security procedures, standards, and controls aligned to NIST, CIS, and OWASP frameworks.
Participate in third-party risk management, vendor security assessments, and business continuity planning.
Innovation & Emerging Technologies
Provide guidance on secure adoption of cloud, SaaS, and SASE platforms.
Champion responsible and secure use of emerging technologies (e.g., AI/ML, automation, zero trust, secure access).
Anticipate future risks and proactively shape organizational security posture.
Qualifications
Education/Experience
10+ years of progressive information security experience, including significant leadership responsibility.
5+ years leading security teams in enterprise environments.
Industry-recognized certifications strongly preferred (CISSP, CCISO, CISM, GSEC, GCIH, CEH, etc.).
Required Skills/Abilities
Proven success in building and maturing security programs that align with business strategy.
Strong knowledge of security technologies (firewalls, DLP, IDS/IPS, MDM, SIEM, EDR, etc.) and modern architectures (SaaS, SASE, Zero Trust).
Deep technical foundation across cloud/SaaS systems, network and endpoint security, cloud security, and secure configurations.
Familiarity with penetration testing, forensic practices, and threat modeling.
Strong executive communication skills with experience presenting to leadership, audit committees, and regulators.
Demonstrated ability to lead cross-functional initiatives and drive measurable risk reduction.
National Debt Relief Role Qualifications:
Computer competency and ability to work with a computer.
Prioritize multiple tasks and projects simultaneously.
Exceptional written and verbal communication skills.
Punctuality expected, ready to report to work on a consistent basis.
Attain and maintain high performance expectations on a monthly basis.
Work in a fast-paced, high-volume setting.
Use and navigate multiple computer systems with exceptional multi-tasking skills.
Remain calm and professional during difficult discussions.
Take constructive feedback.
Compensation Information Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for each position across the US. Within the range, individual pay is determined by work location, job-related skills, experience, and relevant education or training. This good faith pay range is provided in compliance with NYC law and the laws of other jurisdictions that may require a salary range in job postings. The salary for this position is $198,500 - $228,500. About National Debt Relief
National Debt Relief was founded in 2009 with the goal of helping an expanding number of consumers deal with overwhelming debt. We are one of the most-trusted and best-rated consumer debt relief providers in the United States. As a leading debt settlement organization, we have helped over 450,000 people settle over $10 billion of debt, while empowering them to lead a healthier financial lifestyle and feel free to live their best life. At National Debt Relief, we treat our clients like real people. Our purpose is to elevate, empower, and transform their lives.
Rated A+ by the Better Business Bureau, our goal is to help individuals and families get out of debt with the least possible cost through conducting financial consultations, educating the consumer and recommending the appropriate solution. We become our clients' number one advocate to help them reestablish financial stability as quickly as possible.
Benefits
National Debt Relief is a team-oriented environment full of rewards and growth opportunities for our employees. We are dedicated to our employee's success and growth within the company, through our employee mentorship and leadership programs.
Our extensive benefits package includes:
Generous Medical, Dental, and Vision Benefits
401(k) with Company Match
Paid Holidays, Volunteer Time Off, Sick Days, and Vacation
12 weeks Paid Parental Leave
Pre-tax Transit Benefits
No-Cost Life Insurance Benefits
Voluntary Benefits Options
ASPCA Pet Health Insurance Discount
Access to your earned wages at any time before payday
National Debt Relief is a certified Great Place to Work !
National Debt Relief is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or any other status protected by law.
For information about our Employee Privacy Policy, please see here
For information about our Applicant Terms, please see here
#LI-REMOTE
Auto-ApplyChief Clinical Officer
Remote job
About the company
At Covera, we're committed to ensuring high-quality healthcare is more than just a promise. That's why we're leading the way in the emerging science of quality, and connecting providers and payers in their shared quest to improve patient outcomes and care quality. By tackling this challenge, we have the ability to impact millions of lives by raising the standard of care nationwide.
Our initial focus is radiology, where an early and accurate diagnosis has a profound impact on the rest of a patient's care journey. Through our work, which uses clinically-validated science-based tools, we're helping doctors enhance their care, ensuring patients get the right diagnosis, and enabling the healthcare system to support quality improvement at scale.
Through our clinical intelligence platform, we have launched programs that help people access the most effective care and provide doctors with AI-powered quality insights and tools to enhance their care. Today, Covera is partnered with leading employers, payers and healthcare organizations across the US, including Walmart and Microsoft. And, with a pipeline representing over 25% of insured Americans, we are in the early stages of improving care quality for all patients across the globe.
About the role
The Chief Clinical Officer (CCO) will serve as Covera's senior clinical leader, positioned at the intersection of clinical practice, payer and employer quality programs, and AI product validation. The CCO will ensure the integrity, consistency, and impact of Covera's flagship initiatives, including Guide and Match, the Radiology Centers of Excellence program, and Protect AI, the company's AI oversight and quality assurance platform. This leader will oversee clinical standards and validation of AI findings, guide radiologist partners who review and provide feedback on diagnostic quality, and ensure that Covera's programs deliver measurable value across patients, providers, health plans, employers, and government payers. The CCO will also represent Covera's clinical leadership externally, reinforcing the company's position as the trusted partner in advancing diagnostic quality through AI-enabled innovation.
In this role, you will be expected to: Clinical Quality & Standards Oversight
Ensure that AI-identified errors and omissions are validated through rigorous clinical review by radiologists engaged with Covera.
Oversee onboarding, training, and monitoring of radiologist partners who validate findings and provide structured feedback to participating practices.
Implement systems for peer review, interpretive consistency, and ongoing case-based and aggregate feedback.
Maintain a limited level of personal reads/validations to reinforce credibility and hands-on expertise.
AI Validation & Clinical Integration
Lead clinical validation of new AI tools, ensuring they meet standards for diagnostic accuracy, reliability, and patient impact.
Partner with product, AI, and data science teams to integrate validated tools into Protect AI and payer/employer-facing programs.
Maintain clinical oversight of AI performance in production workflows, ensuring feedback loops to radiologists, practices, and product teams.
Clinical Program Leadership (Guide and Match & Protect AI)
Provide clinical governance for Guide and Match, ensuring participating practices consistently deliver high-quality diagnostic care.
Lead clinical oversight for Protect AI, ensuring AI tools and workflows operate under rigorous quality and safety standards.
Develop and oversee reporting frameworks that measure and communicate quality outcomes at both the practice level and across networks.
Continuously update clinical guidelines and quality standards to reflect emerging best practices, ensuring continuous improvement across both programs.
Cross-Functional Collaboration
Represent the clinical perspective in collaboration with product, AI, and operations leaders, influencing roadmap and program design.
Work closely with payer and employer partners, ensuring quality measures are aligned with their needs across government, health plan, and employer programs.
External Engagement & Market Representation
Serve as Covera's clinical ambassador in payer, provider, and employer discussions.
Represent Covera's clinical leadership at conferences, regulatory forums, and industry events.
Share results and case studies from Guide and Match and Protect AI to highlight Covera's impact on diagnostic quality improvement.
Talent & Culture Contribution
Play an active role in further building the Covera team by joining interview panels and contributing to cross-company projects after onboarding
Requirements:
M.D. or D.O. degree with at least 5+ years of clinical experience in radiology.
Experience in healthcare innovation (e.g., deploying AI tools) and payer/provider collaboration (not solely clinical practice).
Demonstrated leadership in quality oversight, clinical governance, or program development.
Experience validating and integrating AI or digital tools in healthcare.
Prior start-up or growth-stage company experience is strongly preferred.
Familiarity with radiology quality improvement programs (e.g., peer review/peer learning frameworks).
Strong communication, collaboration and presentation skills, with ability to bridge clinicians, product/AI teams, payers, and employers.
Established credibility within the radiology community and relationships across providers, health systems, or academic centers.
Passion for advancing diagnostic quality through clinically rigorous, AI-enabled healthcare innovation
AI at Covera
Covera uses AI to elevate how we think, build, and execute. Every person on our team is responsible for using AI to accelerate workflows, strengthen communication, and uncover insights that drive better outcomes. AI enables us to focus on the work that creates the most value for our internal teams, partners, and patients, and it supports our mission to improve clinical quality at scale.
Benefits
Comprehensive medical plans - choose from three plans, including one with 100% of premiums covered for you and your dependents
Vision & Dental
Flexible Time Off - take the time you need, when you need it
Covera Fridays - once a month, Covera takes a fully paid day off to unplug and recharge
401(k) Retirement Plan
Annual Professional Development Stipend to invest in courses, books, or any other professional development related activity
Annual Wellness stipend for fitness, mental health or other wellness expenses
The minimum and maximum base salary for this position ranges from $375,000 - $475,000+, in addition to a discretionary bonus and comprehensive benefits package. Final salary will be based on a number of factors including but not limited to, a candidate's qualifications, skills, competencies, experience, expertise and location. Final compensation decisions may occasionally fall outside of the posted range. Salary ranges are periodically reviewed and may be adjusted in response to market trends and company needs.
We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. Equal Opportunity is the Law, and Covera Health is proud to be an equal-opportunity workplace and affirmative action employer. If you have a specific need that requires accommodation, please let a member of the People Team know.
Auto-ApplyDirector, Information Security and Risk (Identity & Access Management)
Remote job
What Information Security and Risk contributes to Cardinal Health
Information Security and Risk develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure or destruction. This job family develops system back-up and disaster recovery plans. Information Technology also conducts incident response, threat management, vulnerability scanning, virus management and intrusion detection and completes risk assessments.
The
Director, Information Security and Risk (Identity & Access Management)
is responsible for leading the organization's Identity & Access Management (IAM) strategy, governance, and operations to ensure secure, efficient, and compliant access to technology resources. This role requires a leader with proven ability to execute large-scale enterprise IAM programs that directly impact how employees, contractors, and customers interact with Cardinal Health technology. Success in this role demands a balance between delivering a frictionless, user-friendly experience and maintaining the highest standards of security. The Director must also excel at building partnerships across the organization and collaborating on program delivery, while driving operational excellence and anticipating business risks associated with IAM changes.
Location - Ideally targeting individuals local to Central Ohio, but open to candidates located nationwide (fully remote). If living within commutable distance of our corporate HQ in Dublin, OH - the expectation would be to come in-office two or three days a month for team meetings.
Responsibilities
Act as a visionary in designing and executing multi-year IAM strategy that aligns with business goals and customer needs
Develop and oversee enterprise IAM policies, standards, and procedures, ensuring consistent enforcement across the organization.
Lead IAM initiatives including identity lifecycle management (provisioning, de-provisioning, role-based access, entitlement reviews).
Direct privileged access management (PAM) programs to safeguard critical systems and sensitive data.
Ensure compliance with internal policies and external regulatory requirements (e.g., SOX, HIPAA, GDPR, PCI-DSS) through strong access controls.
Execute enterprise IAM programs with significant business impact, ensuring seamless access for employees, contractors, and customers.
Balance user experience with security by designing IAM solutions that are simple, intuitive, and resilient.
Drive operational excellence by establishing repeatable processes, KPIs, and service delivery models for IAM functions.
Build strong partnerships across IT, Security, HR, and business units to align IAM delivery with organizational priorities.
Establish metrics and reporting mechanisms to monitor IAM effectiveness, operational performance, and program maturity for executive leadership.
Lead training and awareness programs related to IAM policies, secure access practices, and identity governance.
Qualifications
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field preferred.
Ideally targeting individuals with 12+ years of IT/security experience with at least 5 years in IAM leadership roles preferred.
Proven track record of executing enterprise IAM programs with measurable business impact.
Prior people leadership experience and demonstrated ability to manage operational IAM teams, highly preferred.
Expertise with IAM tools and platforms (e.g., Okta, SailPoint, CyberArk, Azure AD).
Strong understanding of relevant Regulatory and Compliance requirements (HIPAA, SOX, HITRUST CSF, etc.).
Strong understanding of authentication protocols (SAML, OAuth, OpenID Connect, Kerberos) and cloud IAM (AWS IAM, Azure RBAC, GCP IAM).
Certifications such as CISSP, CIAM, or CISM preferred.
Strong analytical, relationship management, and communication skills (both written and verbal).
Ability to collaborate across functions and influence stakeholders to achieve IAM program success.
What is expected of you and others at this level
Provides leadership to managers and experienced professional staff; may also manage front line supervisors
Manages an organizational budget
Develops and implements policies and procedures to achieve organizational goals
Assists in the development of functional strategy
Decisions have an extended impact on work processes, outcomes, and customers
Interacts with internal and/or external leaders, including senior management
Persuades others into agreement in sensitive situations while maintaining positive relationships
#LI-LP
#LI-Remote
Anticipated salary range: $135,400 - $228,910
Bonus eligible: Yes
Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with my FlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close: 12/25/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click
here
Auto-ApplySecurity Program Manager
Remote job
Oneleet is on a mission to revolutionize the industry. We make cybersecurity easy, effective, and painless through a comprehensive platform that helps companies build, manage, and monitor their cybersecurity programs.
Backed by Y Combinator (S22) and top-tier VCs, our founding team brings over a decade of penetration testing and cybersecurity experience. Join our remote-first crew of opinionated rebels building a category-defining company to fix a broken, fragmented industry.
Who we're looking for:
We value passionate self-starters with a growth mindset and a bias for action and personal accountability. If you love solving hard problems, thrive in ambiguity, and want to make a real impact, you'll fit right in.
We're especially drawn to:
Rebels with a cause - frustrated with the status quo and eager to disrupt it.
Opinionated (but not obstinate) builders - decisive yet collaborative, who help us move fast.
Clear communicators - who own their ideas and follow through.
Our mission is simple: make effective cybersecurity painless. We believe cybersecurity should empower, not burden. This belief unites our team and drives every decision we make.
If you're ready to challenge the status quo and help shape the future of cybersecurity, we'd love to meet you.
The Security Program Manager is part vCISO & part account manager. You will work with our customers from the start to asses their current security/compliance framework, provide guidance and recommendations for improvements, and work with clients to implement recommendations. You're passionate about security, and enjoy sharing your knowledge with not only our customers but your colleagues.
Key Responsibilities
Conduct initial consultation calls with new clients to assess their current security posture, infrastructure stack, compliance requirements and overall objectives.
Provide guidance and recommendations for improving client security posture
Develop high-level security programs consisting of technical, operational and administrative controls based on industry frameworks and client needs.
Collaborate with clients to customize and refine the security program to match their specific use cases.
Communicate with clients and stakeholders to ensure smooth and efficient security program creation
Liaise with auditors to ensure clients' security programs align with auditors' expectations
Maintain expertise across a range of security frameworks, control types, and technologies including NIST, SOC2, ISO27001, CMMC, AWS, Azure, GCP, Kubernetes, Docker, Terraform, and more.
Provide feedback to Oneleet's engineering team to inform development of integrations, solutions, and products that deliver on client needs.
Be highly technical, learn new technologies quickly, and translate security concepts into implementations.
Partner with internal teams to translate security programs into implementations consisting of policies, procedures, configurations and software integrations.
Requirements
3+ years in an information security role
Broad knowledge of security best practices, frameworks, control types, and relevant technologies.
Ability to understand client infrastructure and map security controls to meet compliance goals.
Strong analytical skills to evaluate environments and determine appropriate safeguards.
Excellent verbal and written communication skills.
Self-driven with the ability to work independently and move fast in a startup environment.
Willingness to go the extra mile to meet tight deadlines and deliver results.
Why Oneleet?
At Oneleet, you'll join a tight-knit team of rebels redefining the cybersecurity industry. We move fast, own our work, and challenge outdated models to make security effortless and effective for companies.
Here's what makes us special:
We value impact over titles, autonomy over micromanagement, and clarity over jargon.
You'll tackle meaningful, hard problems with real-world consequences.
You'll work with smart, kind, and ambitious teammates who lift each other up.
Perks & Benefits
Comprehensive health & welless benefits
Competitive comp & equity
Generous PTO, including floating holidays to honor what matters most to you
Flexible, remote work culture
Quarterly off-sites to cool places (Amsterdam, Italy, etc).
Remote-First & Global Hiring
We're a remote-first company and hire globally in regions where we can legally engage talent-either directly or via our employer-of-record (PEO) partner. If you're based outside the U.S., we'll explore the most compliant hiring arrangement for your location.
U.S. Hiring & E-Verify
For U.S.-based candidates, Oneleet participates in E-Verify to confirm employment eligibility, in accordance with federal regulations.
Auto-ApplySenior Information Security Risk Specialist (GRC)
Remote job
About Us
At SentinelOne, we're redefining cybersecurity by pushing the limits of what's possible-leveraging AI-powered, data-driven innovation to stay ahead of tomorrow's threats.
From building industry-leading products to cultivating an exceptional company culture, our core values guide everything we do. We're looking for passionate individuals who thrive in collaborative environments and are eager to drive impact. If you're excited about solving complex challenges in bold, innovative ways, we'd love to connect with you.
What are we looking for?
We are looking for a highly motivated, collaborative and experienced Senior InfoSec Risk Specialist with a security-focused mindset who can balance risk, business drivers and timelines. This position will be responsible for understanding and supporting the design of SentinelOne's organizational, procedural and technological security controls within the context of the security frameworks applicable to SentinelOne. In addition, you will be responsible for identifying and testing appropriate controls to ensure they are designed, implemented, and operating effectively to mitigate risk. The selected employee will help implement, automate, document and maintain controls while supporting and responding to inquiries from internal and external stakeholders. This individual must be self-directed and be able to work independently and collaboratively.
What will you do?
Support the planning and performance of IT risk-based security audits and projects, risk assessments, execution of fieldwork and communication to stakeholders.
Help in evaluating relevant global standards, compliance frameworks and regulations to analyze existing controls; identify areas for improvement; and design control growth.
Collaborate with process and control owners through the audit lifecycle for process documentation updates, testing coordination, remediation of identified deficiencies and advising on internal control enhancements or process changes, as appropriate.
Proactively manage audit findings, tracking and documentation of status updates obtained via action owners, and timely execution of remediation activities.
Participate in internal security and compliance programs and track recurring controls, such as SSAE 18 SOC 2, ISO 27001/27002.
Provide control consultative support to the business to assist in redesign efforts to improve the control environment and identify opportunities for control improvements with the objective of mitigating risk and improving compliance and operational performance.
Help support internal/external audits and evidence collection via a GRC tool.
Document new and update existing policies, procedures, standards and resources
Participate in Security awareness program, train personnel on data security and privacy-related processes and responsibilities.
Help support customer security reviews, RFPs and external security and privacy inquiries.
Participate in defining, collecting and tracking various Security Metrics.
What skills and experience should you bring?
5+ years of experience working in information security, risk or compliance.
Experience working with Security Controls across at least some of the following domains: Access Management, Encryption, Risk Management, Network Security, Configuration Management, Patch Management, Change Management, Awareness and Training, BC/DRP, etc.
Ability to perform internal audits with minimal direct supervision, exhibit professional audit judgment and have experience in a broad range of audit projects such as SSAE 16/18 SOC 2, ISO 27001/2, NIST.
Strong risk management experience, performing assessments and audits, designing controls, managing enterprise control frameworks, and prioritizing risk.
Strong project management skills and ability to manage a variety of projects simultaneously to completion within the agreed timelines.
Excellent collaboration and interpersonal skills. Must be able to communicate with all levels in the organization.
Ability to communicate effectively, in writing and verbally, to target audiences, including customers, partners, auditors, executive management, vendors, and peers.
Experience working with both technical and non-technical teams.
Ability and desire to understand the intent of requirements and provide effective recommendations.
Ability to prioritize in a highly dynamic work environment.
Our Preferred Qualifications:
Advanced degree in computer science, Information Technology, Information Security or related field.
Experience with, and strong understanding of common Security Compliance frameworks, controls, and best practices such as COSO, SOC 2, SOX ITGC, ISO 27001/27002, GDPR, PCI, NIST and other applicable regulatory compliance frameworks.
Relevant certifications (ISO 27001 LA/LI, CISA, CISM, CISSP, CRISC, etc.)
Ability to assess and pragmatically define scope and relevant controls.
Strong desire to learn and continuously develop and deepen technical skills.
Why us?
You will be joining a cutting-edge company where you will tackle extraordinary challenges and work with the very best in the industry.
Medical, Vision, Dental, 401(k), Commuter, Health and Dependent FSA
Unlimited PTO
Industry-leading gender-neutral parental leave
Paid Company Holidays
Paid Sick Time
Employee stock purchase program
Disability and life insurance
Employee assistance program
Gym membership reimbursement
Cell phone reimbursement
Numerous company-sponsored events, including regular happy hours and team-building events
This U.S. role has a base pay range that will vary based on the location of the candidate. For some locations, a different pay range may apply. If so, this range will be provided to you during the recruiting process. You can also reach out to the recruiter with any questions.
Base Salary Range$104,000-$138,000 USD
SentinelOne is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
SentinelOne participates in the E-Verify Program for all U.S. based roles.
Auto-ApplySenior Information Security Specialist-SECRET CLEARANCE REQUIRED
Remote job
Primary Responsibilities:
Execute and support the Risk Management Framework (RMF) lifecycle including system categorization, control selection, implementation, assessment, and authorization.
Develop, maintain, and validate System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, Contingency Plans (CPs), and related compliance documentation.
Conduct and lead vulnerability assessments, leveraging tools such as Nessus, ACAS, and Fortify to identify and prioritize remediation efforts.
Perform continuous monitoring of security controls and produce metrics, dashboards, and evidence in support of ATO renewals and sustainment.
Analyze and respond to security incidents, working with SOC personnel and SIEM tools to evaluate logs, investigate events, and contain potential threats.
Conduct internal audits and risk assessments to validate the effectiveness of implemented controls and identify compliance gaps.
Provide security guidance to engineering and development teams, ensuring adherence to cybersecurity standards in a DevSecOps environment.
Stay informed of evolving threats, vulnerabilities, and regulatory changes to proactively enhance security postures.
Coordinate with Security Control Assessors (SCAs), ISSOs, system owners, and federal stakeholders on audit readiness and policy compliance.
Draft and enforce cybersecurity policies, SOPs, and standards that support mission-critical systems across hybrid environments.
All other duties as assigned by management.
Qualifications
Bachelor's or Associate's degree in Computer Science, Math, Information Technology, Engineering, or related field. Five (5) years of directly relevant experience may substitute for two (2) years of formal education.
Minimum of five (5) years of experience in experience with vulnerability scanning tools and security assessment methodologies.
Minimum of five (5) years of experience with network security, firewall management, intrusion detection/prevention systems (IDS/IPS).
Minimum of (5) years of experience with Security Information and Event Management (SIEM).
Minimum of five (5) years of experience in the risk management framework.
Basic knowledge of the following: Active Directory, UNIX, RHEL, Windows, Relational Databases.
Previous support of federal government enterprise systems or DHS/DOD programs is strongly preferred.
Must have an active DoD Secret Clearance.
Auto-ApplyInformation Security Controls Analyst
Remote job
United Community is seeking an experienced Information Security Controls Analyst to serve as a subject matter expert in evaluating and strengthening our cybersecurity and technology controls. This role plays a critical part in assessing risk exposure, recommending control improvements, and ensuring alignment with regulatory standards and business risk tolerance. You'll collaborate with enterprise risk, compliance, and legal teams to provide visibility into our risk posture and drive meaningful change across the organization.
What You'll Do
* Review and document the adequacy of security and technology controls across business and IT environments.
* Evaluate control posture through interviews, documentation reviews, and workflow analysis.
* Recommend and support implementation of risk reduction strategies via policies, procedures, and technical controls.
* Partner with risk management and security leadership to align controls with organizational risk tolerance.
* Identify control strengths and weaknesses related to privacy, security, resiliency, and compliance.
* Document and advocate for control improvements that balance risk with operational efficiency.
* Support control development across testing, QA, and production environments.
* Present control effectiveness reports to senior risk leadership.
* Stay current on regulatory requirements, internal policies, and industry best practices.
Requirements For Success
Experience:
* 3+ years in cybersecurity or IT practitioner roles.
* 2+ years in IT risk or controls analysis.
* Practical experience with risk management and IT control frameworks.
Education: Bachelor's degree preferred in Information Assurance, Computer Science, Engineering, or a related technical field.
Required Skills:
* Strong understanding of risk frameworks (CRI, COSO, RMF, COBIT, NIST).
* Familiarity with regulatory standards (PCI, FFIEC, SOX, HIPAA, GDPR, CCPA, GLBA).
* Experience with CIS CSC, ISO 2700, or NIST CSF.
* Excellent written and verbal communication across all organizational levels.
* Strong organizational skills and ability to meet SLAs.
* Sound judgment and decision-making in complex scenarios.
* High integrity, trustworthiness, and adaptability.
Preferred Skills:
* Certifications such as CISSP, CISA, CRISC, or CISM.
* Technical experience with enterprise networks, applications, and directory services.
* Familiarity with enterprise GRC platforms.
Conditions of Employment
* Must be able to pass a criminal background & credit check
* This is a full-time, non-remote position
FLSA Status:
* Exempt
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state, or local protected class.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Pay Range
USD $49,972.00 - USD $76,958.00 /Yr.