Product Security Engineer
Cleveland, OH
We are looking for a Contract Product Security Engineer to support vulnerability management initiatives within a product security organization. This role is ideal for a security professional who enjoys hands-on analysis, structured problem-solving, and improving security processes through automation and collaboration. You will work closely with engineering and security teams to help identify, assess, and prioritize security risks across software components.
The focus of this project is vulnerability management through Software Bill of Materials (SBOM) analysis. The engineer will review and triage vulnerabilities identified by SBOM scanning tools, assess risk and severity, and support remediation efforts in partnership with cross-functional teams. The role also includes enhancing vulnerability management workflows through scripting and automation, as well as maintaining clear documentation to ensure traceability and compliance within a structured development environment.
What we offer you in USA
We honor the contract terms you prefer.
20 paid vacation days per year
40 working hours per week
Retirement Plan 401(K)
Medical, Dental, Vision Insurance Plan for you and your Family
100% On-Site position in Newton
Responsibilities
Review, analyze, and triage vulnerabilities from SBOM scanning tools
Assess severity and support risk-based prioritization of remediation
Collaborate with engineering, security, and product teams to drive resolution
Track vulnerability status for timely closure
Develop or use scripts/automation to improve vulnerability management
Maintain clear documentation of findings and actions
Requirements
Experience in product security
Proficiency in Python or other scripting languages
Strong analytical skills and attention to detail
Effective collaboration with cross-functional teams
Nice to Have
Experience with vulnerability management programs
Exposure to regulated industries
Familiarity with SBOM management tools (e.g., Dependency Track)
OCI Network Automation Software Intern - OVIP
Columbus, OH
This job code is utilized for the majority of our temporary hires. The individual is performing hourly job duties as defined under the Fair Labor Standards Act. US Veteran transitioning from active service or active-duty Military Spouse new to corporate experience preferred
Veterans and Military Spouses belong at Oracle
This is a place where your military experience and talent will help you thrive. Our culture of inclusion values the skills that veterans bring to our workforce and empowers you to use them to transform the world for the better. Get a head start on your civilian career today.
About the Oracle Veteran Internship Program (OVIP):
Oracle is proud to sponsor an internship and integration program that exposes transitioning military veterans and active-duty Military Spouses new to the corporate culture, provides hands-on job-skill training and experience, and offers enhanced professional and personal development. At Oracle, we are committed to the development and professional growth of our veterans and military spouses. Our paid internship program is specifically designed to aid military veterans, transitioning servicemembers and active-duty military spouses new to the corporate sector in their transition to a career in the private or public sector.
Veterans and Military Spouses accepted into our program will work closely with corporate leadership, military veteran coaches and HR professionals to help prepare for a successful transition. Interns will engage in on-the-job training and professional development in fields such as information technology, technical/systems consulting, technical support, facilities, finance, human resources, logistics, marketing, sales or developmental training in sales or for customer support (as available).
US Veteran transitioning from active service or Military Spouse new to corporate experience preferred
As an Intern on the Network Automation team, you will help design and develop tooling and infrastructure to manage a growing fleet of networking devices. You will be one of the engineers responsible for delivering a highly available, and secure fleet of critical OCI Networking infrastructure. Our team owns onboarding new generation network technologies, deployment tooling, patching, fleet monitoring and automation, and security and access controls. We work with many partner teams in OCI to ensure our networking is best in class.
**Responsibilities**
Education: B.S/M.S in Computer Science or related field
Skills: Java and/or Python programming languages
Experience: At least 1 year of experience in software development
US Veteran transitioning from active service or Military Spouse new to corporate experience preferred
About the Company:
For more than four decades, Oracle has delivered innovations that have helped build entire industries. We remain the gold standard as the world's first autonomous database and industry's broadest and deepest suite of AI-powered cloud applications. The following facts and figures highlight some of the many ways we continue to deliver innovations for our customers, partners, and communities. With annual revenue of US$57 billion in FY2025, Oracle is the world's largest EHR implementation, serving more than 9.5 million beneficiaries spanning the United States, Europe, and the Asia Pacific region; has 5 million registered members of Oracle's customer and developer communities; and 469 independent user communities in 97 countries representing more than 1 million members.
Additional Information:
Hourly wage is $30 per hour. This is a 40 hour per week position
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from $19.62 to $38.32 per hour; from: $40,800 to $79,700 per annum.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC0
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Information System Security Officer
Dayton, OH
Information System Security OfficerJob Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: NoneType of Travel: None* * *
The Opportunity:
CACI is seeking a skilled and experienced Information Systems Security Officer (ISSO) to join our team at Wright Patterson Air Force Base in Ohio. This critical role will be responsible for implementing and maintaining robust cybersecurity measures to protect Air Force information systems. The ideal candidate will have a strong background in DoD cybersecurity protocols, risk management, and cloud-based security tools. As an ISSO, you will play a vital role in ensuring the integrity, confidentiality, and availability of sensitive information while supporting the mission-critical operations onsite at Wright Patterson AFB. If you are passionate about cybersecurity and ready to contribute to national defense in a dynamic environment, we encourage you to apply for this challenging and rewarding position.
Responsibilities:
Create and implement Air Force security policies, procedures, and controls to protect information systems.
Conduct risk assessments and develop risk management plans to identify and mitigate vulnerabilities.
Configure cloud-based security tools to monitor networks, systems, and user activity for security breaches, analyze threats, and review security and audit logs.
Develop and perform continuous monitoring techniques and procedures.
Review and evaluate STIG and static code analysis scans for compliance and vulnerabilities.
Provide security guidance to technical and software development teams throughout the software development lifecycle (SDLC).
Ensure software, hardware, and user access controls comply with security configuration guidelines.
Report incidents or vulnerabilities and initiate counter measures and actions to restore cybersecurity posture.
Qualifications:
Required:
Bachelor's degree in a related field or 6 years' experience.
Knowledgeable of DoDI 8500.01 (Cyber Security), 8510.01 (Risk Management Framework for Air Force Information Technology), AFI 17-101(Risk Management Framework for Air Force Information Technology), and NIST SP 800-53 Security and Privacy Controls.
Active DoD 8140 IAM Level II certification (CASP+, CCNP Security, CISA, CISSP (or Associate), CCSP, GCED, or GCIH).
Strong knowledge of IT security principles, network monitoring, operating systems, and security tools.
Strong customer service, interpersonal, and communication skills (written and verbal).
Good organizational, time management, analytical, and problem-solving skills.
Must be able to work as part of a team and individually, meeting tight deadlines.
Candidates must be U.S. Citizens and have the ability to obtain a secret clearance investigation in a timely manner.
Desired:
Knowledgeable with Enterprise Mission Assurance Support Service (eMASS) and associated artifacts and Plan of Actions & Milestone (POA&M) requirements.
Knowledgeable about ZeroTrust tools and techniques including Identity, Credential, and Access Management (ICAM) efforts.
Ability to review and analyze for consistency, congruency, and in-depth due diligence.
Experience with Cloud environments and Cloud security tools.
Experience in software development environments including DevSecOps and tools such as the Atlassian suite (Jira, Confluence, etc).
Experience with security control evidence development.
Familiarity with Configuration Management and Configuration Control Boards.
-
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy.
Your potential is limitless. So is ours.
Learn more about CACI here.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$75,200-$158,100
CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Auto-ApplyEntry Level Cyber Security Analyst
Dayton, OH
":"As an Entry Level Cyber Security Analyst, you will become a part of an elite team of individuals committed to the security of Customer information and the Company's intellectual property. You will manage the various security tools to identify and evaluate complex business and technology risks.
You must also be able to communicate your findings and recommendations for management.
You will work with teams across the organization including partnering with IT and Software Development on security related matters.
If you are an innovative problem solver in technology who enjoys working in a team environment, this is the position for you! #LI-DNI","job_category":"Information Technology","job_state":"OH","job_title":"Entry Level Cyber Security Analyst","date":"2025-11-22","zip":"45430","position_type":"Full-Time","salary_max":"0","salary_min":"0","requirements":"Bachelor's degree, certificate, or boot camp in CIS, IT, or Cyber Security related fields a plus~^~Linux and Windows operating systems experience and knowledge required~^~Excellent oral and written communication skills~^~Industry standard certifications a plus","training":"","benefits":"Our associates receive medical, dental, vision, and life insurance.
We also offer company contributions to your HSA, 6% match on 401(k), and a work\/life balance with paid time off.
At our Dayton office, you can take advantage of our great training programs and facility amenities, including an onsite dining facility offering complimentary breakfast and lunch, a fitness center, and an onsite medical center.
We also offer a wide variety of sports and social leagues to participate in after work, along with volunteering initiatives through our Associate Foundation.
Reynolds and Reynolds promotes a healthy lifestyle by providing a non-smoking environment.
Reynolds and Reynolds is an equal opportunity employer.
","
Information Systems Security Officer (ISSO) III
Dayton, OH
Full Part/Time: Full time Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required:
None
Job Family:
Cyber and IT Risk Management
Job Qualifications:
Skills:
Information Security, Information Security Management, Information System Security
Certifications:
None
Experience:
5 + years of related experience
US Citizenship Required:
Yes
Job Description:
The Information Systems Security Officer (ISSO) II is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO. The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and, in many organizations, is assigned responsibility for the day-to-day security operations of a system.
This will include physical and environmental protection, personnel security, incident handling, and security training and awareness. It will be required to work in close coordination with the ISSM and ISO in monitoring the information system(s) and its environment of operation to include developing and updating the authorization documentation, implementing configuration management across authorization boundaries. This will include assessing the security impact of those changes and making recommendation to the ISSM. The primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Performance shall include:
* Assist the ISSM in meeting their duties and responsibilities.
* Prepare, review, and update authorization packages.
* Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media.
* Notify ISSM when changes occur that might affect the authorization determination of the information system(s).
* Conduct periodic reviews of information systems to ensure compliance with the security authorization package.
* Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change.
* Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly.
* Ensure all IS security-related documentation is current and accessible to properly authorized individuals.
* Ensure audit records are collected, reviewed, and documented (to include any anomalies)
* Attend required technical and security training (e.g., operating system, networking, security management) relative to assigned duties.
* Execute the cyber security portion of the self-inspection, to include security coordination and review of all system assessment plans.
* Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them.
* Prepare reports on the status of security safeguards applied to computer systems.
* Perform ISSO duties in support of in-house and external customers.
* Conduct continuous monitoring activities for authorization boundaries under your preview.
* Assist Department of Defense, National Agency and Contractor organizations with the development of assessment and authorization (A&A) efforts.
Experience:
* 5+ years related experience.
* 2+ years SAP experience required.
* Prior performance in roles such as System, Network Administrator or ISSO.
Education:
* Bachelor's degree OR Associate's degree in a related area + 2 years' experience OR equivalent experience (4 years)
Certifications:
* IAT Level II ( Security+ CE, CCNA Security, etc) or IAM Level II - within 6 months of hire
Clearance Required to Start:
* TS/SCI required
* Must be able to Attain - TS/SCI with CI Polygraph
#AirforceSAPOpportunities
The likely salary range for this position is $92,735 - $125,465. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Scheduled Weekly Hours:
40
Travel Required:
10-25%
Telecommuting Options:
Onsite
Work Location:
USA OH Dayton
Additional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Join our Talent Community to stay up to date on our career opportunities and events at
gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Senior Offensive Security Engineer, Red Team
Cincinnati, OH
Information Technology at Procter & Gamble is where business, innovation and technology integrate to build a competitive advantage for P&G. Our mission is clear -- we deliver IT to help P&G win with the over 5 billion consumers we serve worldwide. Our IT professionals are diverse business leaders who apply IT expertise to deliver innovative, tech-focused business models and capabilities for our 65 iconic, trusted brands.
From Day 1, you'll be trusted to dive right in, take the lead, use your initiative, and build billion-dollar brands that help make everyday activities easier and make the world a better place! Our company offers purposeful work that will take your career places you never envisioned, in creative workspaces where innovation thrives and where your technical expertise is recognized and rewarded.
The Opportunity
Are you a person who is passionate about breaking applications, devices, services and/or processes to help protect them against the world's most advanced cyber security adversaries?
The Information Security Protect organization at P&G is responsible for providing a realistic depiction of threat actor behaviors and scenarios during simulated exercises. We drive improvements to applications and systems, as well as detection and response capabilities through regular testing of security controls across the enterprise.
Responsibilities:
+ Lead end-to-end red team operations aligned to priority threat actors: scenario design, ROE, pre-briefs, execution, and hot-wash/AAR.
+ Support purple-team engagements with DFIR/SOC and Detection Engineering to convert TTPs into durable detections, runbooks, and response improvements with measurable outcomes.
+ Orchestrate assumed-breach campaigns emphasizing evasion and control bypass (EDR/AV, email/web security, identity/conditional access, network segmentation, cloud guardrails).
+ Perform campaign/TTP research, develop internal PoCs/tooling (e.g., tradecraft to exercise specific controls, lightweight payloads), and steward OPSEC.
+ Produce executive-ready risk narratives and technical reporting (ATT&CK mapping, artifacts, evidence handling) and brief senior leadership.
+ Mentor junior engineers; set standards for craft quality, methodology, and safety.
+ Coordinate multi-party/third-party exercises; manage risk, deconflict with production, and ensure stakeholder alignment.
+ Contribute to operational expansion by researching, prototyping, and developing novel capabilities for offensive use.
+ Contribute to program maturity: metrics/KPIs, roadmap, methodology standardization, control validation cadence, and integration with vulnerability management.
Job Qualifications
Required:
+ BA or BS degree in Information Security, Cyber Security, Computer Science, or related field (OR 7+ years of relevant experience required in lieu of a degree).
+ 5+ years running offensive or emulation operations in large/complex environments, with demonstrated impact on detections/response.
+ Expertise across 2+ domains: enterprise/web/mobile apps; identity; cloud (AWS/GCP/Azure); network/endpoint; IoT/OT; or directory services.
+ Proven ability to bypass preventative/detective controls and reach mission objectives while maintaining safety and ROE.
+ Strong engineering skills (Python, PowerShell, GO, C++, Web Frameworks); comfort with low-level concepts a plus) and familiarity with C2 tradecraft.
+ Deep command of MITRE ATT&CK and threat-informed defense; history partnering with DFIR/SOC and Detection Engineering.
+ Excellent executive and technical communication.
+ Ability to work in Cincinnati, Ohio based office 3 days per week.
Preferred:
+ Leadership of purple-team campaigns and incident-driven emulations; closed-loop improvements with measurable KPI movement.
+ Building program metrics/KPIs, standardizing reporting, and integrating with risk governance.
+ Threat-intel integration: actor/campaign analysis, hypothesis generation, and prioritization tied to business impact.
+ Identity and cloud attack paths (SSO, MFA, OAuth, PAM; AWS/GCP/Azure control planes) with hardening collaboration across platform/IDAM teams.
+ Coordinating large third-party exercises and setting complex ROE.
Pay Range: $110,000 - $165,000
Compensation for roles at P&G varies depending on a wide array of equal opportunity factors including but not limited to the specific office location, role, degree/credentials, relevant skills, and level of experience. At P&G compensation decisions are dependent on the facts and circumstances of each case. Total rewards at P&G include salary + bonus (if applicable) + benefits. Your recruiter may be able to share more about our total rewards offerings and the specific salary range for the relevant location(s) during the hiring process.
Our company is committed to providing equal opportunities in employment. We value diversity and do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Immigration Sponsorship is not available for this role. For more information regarding who is eligible for hire at P&G along with other work authorization FAQ's, please click HERE (******************************************************* .
P&G participates in e-verify as required by law.
Qualified individuals will not be disadvantaged based on being unemployed.
We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.
Job Schedule
Full time
Job Number
R000138781
Job Segmentation
Experienced Professionals
Starting Pay / Salary Range
$110,000.00 - $165,000.00 / year
Information System Security Officer (ISSO)
Wright-Patterson Air Force Base, OH
Company: HII's Mission Technologies division Required Travel: 0 - 10% Employment Type: Full Time/Salaried/Exempt Anticipated Salary Range: $72,181.00 - $100,000.00 Security Clearance: TS/SCI Level of Experience: Mid This opportunity resides with Warfare Systems (WS), a business group within HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.
HII works within our nation's intelligence and cyber operations communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse engineering, software and hardware development uniquely enable us to support sensitive missions for the U.S. military and federal agency partners.
Meet HII's Mission Technologies Division
Our team of more than 7,000 professionals worldwide delivers all-domain expertise and advanced technologies in service of mission partners across the globe. Mission Technologies is leading the next evolution of national defense - the data evolution - by accelerating a breadth of national security solutions for government and commercial customers. Our capabilities range from C5ISR, AI and Big Data, cyber operations and synthetic training environments to fleet sustainment, environmental remediation and the largest family of unmanned underwater vehicles in every class. Find the role that's right for you. Apply today. We look forward to meeting you.
To learn more about Mission Technologies, click here for a short video: ***************************
Job Description
As the Information Systems Security Officer (ISSO) the individual works closely with the Information Systems Security Manager (ISSM) proposing, coordinating, implementing and enforcing information system security policies, standards and methodologies. Implementing operating systems and network devices security configuration in accordance with approved Security Technical Implementation Guides (STIGs). Collaborate with team members to define and implement cybersecurity requirements for managed systems and software. Conduct security assessments of Risk Management Framework (RMF) controls implemented for assigned systems. Identify corrective actions and mitigation strategies to achieve and sustain RMF compliance.
Job Duties Include: Performing vulnerability assessments using the Assured Compliance Assessment Solution (ACAS), Security Technical Implementation Guide (STIG), and the Security Content Automation Protocol (SCAP). Performing security control continuous monitoring, security audits, risk analysis and developing mitigation strategies for DoD information systems.
Essential Job Responsibilities
Assist with all activities associated with the assessment and authorization (A&A) of all hosted computing environments. Perform cybersecurity site audits to verify architecture analysis, cybersecurity requirements and controls, verify mitigation actions, witness cybersecurity testing and evaluation and to assist the ISSM with the final approval for Authority to Operate (ATO) and/or Authority to Connect (ATC). Interface with end users to discuss IT, data management and collaboration tools understanding and benefits. Ensures software, hardware and firmware complies with appropriate security configuration guidelines. Coordinates changes or modifications with the ISSM and SCAR/SCA. Initiates protective or corrective measures, in coordination with the ISSM. Reports security incidents or vulnerabilities to the ISSM.
Minimum Qualifications
* 2 years relevant experience with Bachelors in related field; 0 years experience with Masters in related field; or High School Diploma or equivalent and 6 years relevant experience.
* Experience planning and implementing network layouts of varying classifications in SCIF/SAPF spaces.
* Ability to coordinate and plan IT requirements across several Enterprise, MAJCOM, and agency partners.
* Familiarity with ICD/ICS 705 Standards as they pertain to networks.
* DoD 8570 (Sec+ or applicable) IAT level II cert required
* Active TS/SCI clearance with ability to gain SAP/SAR
Preferred Requirements
Experience working as a COMSEC responsible Officer or familiarity handling and safeguarding COMSEC
Physical Requirements
May require working in an office or laboratory environment. Capable of climbing ladders and tolerating confined spaces and extreme temperature variances.
The listed salary range for this role is intended as a good faith estimate based on the role's location, expectations, and responsibilities. When extending an offer, HII's Mission Technologies division takes a variety of factors into consideration which include, but are not limited to, the role's function and a candidate's education or training, work experience, and key skills.
Together we are working to ensure a future where everyone can be free and thrive.
All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.
Do You Need Assistance?
If you need a reasonable accommodation for any part of the employment process, please send an e-mail to ************************** and let us know the nature of your request and your contact information. Reasonable accommodations are considered on a case-by-case basis. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call ************** for assistance. Press #3 for HII Mission Technologies.
Network Security Architect
Columbus, OH
Network Security Architect - (04W0S) Description At Bath & Body Works, everyone belongs. We are committed to creating a culture of belonging focused on delivering exceptional fragrances and experiences to our customers. We focus on recruiting, retaining, and advancing top talent.
In addition, we work to improve our communities and our planet to help the world live more fully.
The Network Security Architect ensures the design and implementation of secure network solutions across on-premises, cloud, and hybrid environments.
This role will ensure IT security guidelines are coordinated across network infrastructure-including firewalls, WAFs, VPNs, DNS, ASGs/NSGs, SASE, and Zero Trust components-while serving as a strategic advisor in cross-functional projects and architecture review spanning business operations and omni-channel initiatives.
The architect will collaborate with Cybersecurity, Infrastructure, Networking, Software/Web Development, and Incident Response teams to protect the organization against evolving threats, support business agility, and maintain compliance with regulatory frameworks.
ResponsibilitiesDesign and assist with implementation of secure network architectures across enterprise environments, incorporating Zero Trust, micro-segmentation, and modern security frameworks (e.
g.
, NIST, PCI-DSS, SOX).
Advise on security architecture across all technology projects, participating in project planning sessions and architecture reviews to ensure security is integrated from the design phase.
Evaluate, recommend, and assist in deployment of network security technologies to enhance visibility, control, and threat protection.
Develop, maintain, and support testing network security policies, diagrams, standards, and documentation to ensure clarity and compliance across teams.
Validate data classification and review, design, assess data flow architecture.
Partner with software engineering and web development teams to embed security into all network layers.
Identify potential threats and associated protections, countermeasures and compensating controls associated with the initiative objectives and affected assets.
Ensure data classification is identified and that appropriate controls are documented.
Support audits and regulatory compliance by aligning network security strategies with business objectives and frameworks.
Conduct threat modeling, vulnerability assessments, and testing to identify and mitigate risks.
Review and approve configurations for network components including firewalls, VPN gateways, load balancers, SIEMs, and encryption tools.
Mentor and guide junior engineers, contributing to career development and leveling discussions.
Monitor global security developments and assess their impact on network security posture, especially in the retail sector.
Engage as needed and based on technical expertise to support security incidents and breaches for all hands on deck situations.
Qualifications 8+ years of experience in network security architecture, engineering, or administration in an enterprise environment.
Advanced knowledge of network security design principles for firewalls, WAFs, VPNs, DNS, ZTNA, IDS/IPS, DLP, SWG, segmentation, and cloud security controls (ASGs/NSGs).
Proficiency with security frameworks (NIST, ISO 17799, ITIL, CMMC, PCI-DSS, SOX, HIPAA, GDPR, CCPA, GLBA).
Experience with SIEM, security orchestration/automation, DLP, network forensics, and cloud security (SaaS, IaaS, PaaS).
Advanced understanding of network protocols, authentication, and continuous integration/deployment pipelines.
Familiarity with scripting and/or query languages (KQL) a plus.
Effective communication abilities, adept at simplifying intricate technical ideas for both technical and non-technical customers.
Ability to articulate and define network security strategy and roadmaps.
Relevant certifications (e.
g.
, CISSP, CCSP, GSEC, GDSA, Network+, Palo Alto Networks, Cisco, SANS/GIAC) EducationBachelor's degree or equivalent experience in engineering, computer science, cybersecurity, or related field Core CompetenciesLead with Curiosity & HumilityBuild High Performing Teams for Today & TomorrowInfluence & Inspire with Vision & PurposeObserve, Engage & ConnectStrive to Achieve Operational ExcellenceDeliver Business ResultsBenefitsBath & Body Works associates are the heart of our business.
That's why we're proud to offer benefits that empower you to Dream Bigger & Live Brighter.
Benefits for eligible associates include: Robust medical, pharmacy, dental and vision coverage.
Plus, access to our onsite wellness center and pharmacy located at the Columbus, OH home office.
401k with company match and Associate Stock Purchase with discount No-cost mental health and wellbeing support through our Employee Assistance Program (EAP) Opportunity for paid time off and paid parental leave.
Plus, access to family and lifestyle programs including a family building benefit, childcare discounts, and home, auto and pet insurance.
Tuition reimbursement and scholarship opportunities for post-secondary education programs40% merchandise discount and gratis that encourages you to come back to your senses!Visit bbwbenefits.
com for more details.
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job.
They are not intended to be an exhaustive list of all responsibilities, duties and skills required.
We will consider for employment all qualified applicants, including those with arrest records, conviction records, or other criminal histories, in a manner consistent with the requirements of any applicable state and local laws.
Please see links: Los Angeles Fair Chance In Hiring Ordinance, Philadelphia Fair Chance Law, San Francisco Fair Chance Ordinance.
We are an equal opportunity action employer.
We do not make employment decisions based on an individual's race, color, religion, gender, gender identity, national origin, citizenship, age, disability, sexual orientation, marital status, pregnancy, genetic information, protected veteran status or any other legally protected status, and we comply with all laws concerning nondiscriminatory employment practices.
We are committed to providing reasonable accommodations for associates and job applicants with disabilities.
Our management team is dedicated to ensuring fulfillment of this policy with respect to recruitment, hiring, placement, promotion, transfer, training, compensation, benefits, associate activities and general treatment during employment.
We only hire individuals authorized for employment in the United States.
Application window will close when all role(s) are filled.
Primary Location: United States-Ohio-ColumbusWork Locations: L Brands Home Office.
Three Limited Parkway Columbus 43230Job: IT SecurityOrganization: BBW Home OfficeSchedule: RegularShift: StandardEmployee Status: Individual ContributorJob Type: Full-time Job Level: Day JobJob Posting: Dec 11, 2025, 8:13:00 PMEmployee Referral Bonus: 2,500.
00 US Dollar (USD) Pay Transparency Locations: Refer to careers.
bathandbodyworks.
com for required wage information Refer a friend for this job Tell us about a friend who might be interested in this job.
All privacy rights will be protected.
Refer a friend
Auto-ApplyOffensive Security Engineer, Assessments (Web3)
Columbus, OH
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior security engineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Mainframe Security Engineer
Columbus, OH
Mainframe Security EngineerRemote - United StatesJR012476 **Requirements:** + U.S. Citizenship is required. + Must pass a Federal Background Check. **Key Responsibilities:** + Administer security for RACF, ACF2, and Top Secret logon IDs, datasets, and resource rules.
+ Provision user access in response to ServiceNow tickets within defined SLAs.
+ Monitor system security policies and investigate violations/incidents.
+ Perform and review daily, weekly, and monthly audit reports.
+ Liaise with business units and technical support teams.
+ Prepare ad hoc reports and deliver presentations for customer support.
+ Ensure adherence to security standards across the environment.
+ Provide 24×7 on-call support as required.
+ Utilize Vanguard and/or IBM zSecure security products.
+ iSeries security knowledge is a plus.
+ Manage and lead large projects or tasks as needed.
+ Project management skills are highly desired.
**Technical Skills:**
+ Proficient in TSO, JCL, IBM Utilities, JES2, and ISPF.
+ Experience with REXX or other programming languages is desired.
+ CICS security administration experience preferred.
+ Experience with Vanguard and/or IBM zSecure security products is desired.
+ Familiarity with IAM (Identity Access Management), MFA (Multi-Factor Authentication), and PAM (Privileged Access Management) is desired.
+ Strong PC skills, including Microsoft Outlook, Word, Excel, and PowerPoint.
**General Knowledge:**
+ z/OS experience is highly desired.
+ Knowledge of other mainframe security products is a plus.
**Personal Skills:**
+ Strong written and verbal communication skills.
+ Excellent organizational skills with the ability to manage multiple concurrent projects and work as part of a global team.
+ Ability to work independently and take initiative.
+ Strong analytical and problem-solving skills.
+ Effective team player who can work independently in a fast-paced environment.
+ Self-starter, detail-oriented, and able to multitask.
**Education & Certifications:**
+ Bachelor's or Master's degree preferred.
+ CISSP, CISA, CISM, or ITIL certification is a plus.
**Why Ensono?**
Ensono is a place to make better happen - for our clients and for your career. You can do great things through innovation or collaboration, by learning or volunteering, or to promote diversity and inclusion. You can do great things for your own health or for a healthier planet. Whatever it means to you to do great things we want Ensono to be the place you can do it.
We are a client-facing business, but we do encourage clients to allow us to work remotely most of the time so if you are not required to be on a client site, you can choose to work from home or in our Ensono offices.
Some of our benefits include:
+ Unlimited Paid Days Off
+ Three health plan options through Blue Cross Blue Shield
+ 401k with company match
+ Eligibility for dental, vision, short and long-term disability, life and AD&D coverage, and flexible spending accounts
+ Paid Maternity Leave, Paternity Leave, and Sabbatical Leave
+ Education Reimbursement, Student Loan Assistance or 529 College Funding
+ Enhanced fertility coverage
+ Wellness program
+ Depending on location, ability to take Flexible work schedule
+ Advantage of fitness centers
As of the date of this posting, a good faith estimate of the current pay scale for this role is **$90,000 to $135,000** annually based on a full-time schedule. Please note that placement in the range may vary based on numerous factors including but not limited to skills, experience, internal equity, and business needs. In addition to base salary, other compensation programs, depending on eligibility, include an annual bonus plan based on company and individual performance and an equity grant under our Associate Equity Appreciation Program.
Ensono is an Equal Opportunity/Affirmative Action employer. We are committed to providing equal employment to our Associates and building a diverse and inclusive workforce. All qualified applicants will be considered without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, or other legally protected basis, in accordance with applicable law.
Pay transparency nondiscrimination statement/posting OFCCP's pay transparency policy can be found on OFCCP's website (*********************************************************************************************** .
If you need accommodation at any point during the application or interview process, please let your recruiter know or email ****************************** .
JR012476
Security Engineer - Airlock
Columbus, OH
Job Title: Security Engineer - Cloud & Endpoint Security
Pay Rate: $50/hr - $85/hr
Duration: 2/10/2025 - 12/31/2025 (Temp-to-Hire)
Contract Type: W2 (must be authorized to work in the US; no sponsorships or C2C)
Job Overview
Our Cloud and Endpoint Security team is looking for a Security Engineer to drive the deployment and management of an allowlisting/reverse proxy solution (Airlock). This engineer will collaborate with cross-functional teams to ensure integration with existing infrastructure, refine security policies, and contribute to the enhancement of the organization's cybersecurity posture. The role involves hands-on configuration, monitoring, and ongoing maintenance of security solutions, while remaining adaptable to changing threats and technologies.
Key Responsibilities
Allowlisting & Reverse Proxy Deployment: Lead the deployment and configuration of Airlock, ensuring seamless integration with current systems and networks.
Policy Development: Define and implement allowlisting policies to enhance application security, access control, and threat detection.
Incident Response Collaboration: Work closely with the incident response team to optimize alerting and logging capabilities, ensuring swift detection and remediation of potential security incidents.
Security Strategy & Best Practices: Assist in shaping the broader cybersecurity strategy, aligning it with business objectives and recognized frameworks (e.g., NIST, MITRE, ISO 27001).
Automation & Reporting: Identify opportunities to automate configurations, streamline reporting processes, and enhance visibility into system performance.
Monitoring & Analysis: Track solution performance and review security logs for emerging threats or anomalies; implement proactive measures where necessary.
Research & Continuous Improvement: Stay informed about the latest cybersecurity threats and trends, applying relevant findings to enhance Airlock's configurations.
Documentation & Maintenance: Support the development of incident response plans, secure access protocols, and maintain thorough documentation of all configurations and processes.
Qualifications
Minimum Requirements
Bachelor's Degree in a related field or equivalent work experience.
3+ years of experience in cybersecurity, IT, or related roles.
1+ years of hands-on experience deploying or managing application allowlisting or reverse proxy solutions.
1+ years of experience with security frameworks (e.g., NIST, MITRE, ISO 27001).
Proficiency with Windows and Linux environments, including command-line configurations.
Preferred Skills
Experience using Airlock or similar allowlisting tools.
Familiarity with scripting/automation (Python, PowerShell, Bash) for configuration and reporting.
Industry certifications (e.g., Sec+, CCSP, GIAC).
Strong analytical and problem-solving abilities, especially in process development and root cause analysis.
Additional Information
Temp-to-Hire: This is a W2 contract position with potential to convert to a full-time role, contingent on performance and business needs.
Work Arrangements: Local candidates are preferred; remote candidates will be considered if necessary.
Team Environment: The Cloud & Endpoint Security team collaborates with multiple departments, playing a crucial part in establishing security best practices and ensuring incident response readiness.
Lead Security Engineer - GCP
Columbus, OH
JobID: 210683473 JobSchedule: Full time JobShift: : As a Cloud Security Engineer at JPMorgan Chase within the Cybersecurity & Technology Controls (CTC) group, your primary responsibility will be to ensure that Public Cloud is adopted in a secure and compliant manner. You will play an important role in identifying and managing risk related issues and actions with respective technology. You will have an eye for detail and an ability to see the big picture across security issues.
Job responsibilities
* Lead the execution and continuous improvement of information risk and control strategies to secure public cloud assets.
* Conduct and oversee risk-based assessments of technology controls for cloud services, platforms, and architecture.
* Advise and guide business technology teams on firm control requirements and best practices across diverse cloud architectures.
* Review and provide feedback on infrastructure-as-code for cloud platform development, ensuring alignment with security standards.
* Develop and maintain documentation, and contribute to agile processes supporting security initiatives.
* Collaborate with CTC teams to ensure seamless integration with security operations, threat intelligence, IAM, and network security.
* Mentor junior engineers and contribute to knowledge sharing within the team.
Required qualifications, capabilities, and skills
* Formal training or certification on security engineering concepts and 5+ years applied experience.
* Strong analytical, problem-solving, and communication skills.
* Experience planning, designing, building and implementing enterprise level security engineering products and solutions in a public cloud environment (i.e. AWS, GCP, Azure)
* Experience working in cross-functional teams and managing multiple priorities.
Preferred qualifications, capabilities, and skills
* Advanced understanding of public cloud security concepts and technologies.
* Hands-on experience with cloud engineering, architecture, and infrastructure-as-code (Terraform, etc.).
* Familiarity with DevOps, CI/CD, and agile methodologies.
* Experience mentoring or training junior staff.
Auto-ApplyStaff Product Security Engineer
Cincinnati, OH
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at *******************
**Job Function:**
R&D Product Development
**Job Sub** **Function:**
R&D Software/Systems Engineering
**Job Category:**
Scientific/Technology
**All Job Posting Locations:**
Cincinnati, Ohio, United States of America, Santa Clara, California, United States of America
**:**
**About Surgery**
Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.
Are you passionate about improving and expanding the possibilities of MedTech surgery? Ready to join a team that's reimagining how we heal? Our MedTech Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.
Your unique talents will help patients on their journey to wellness. Learn more at *******************/medtech .
**We are searching for the best talent for a Staff Product Security Engineer position, to be located in Santa Clara, CA or Cincinnati, OH.**
**Job Description:**
The Staff Product Security Engineer will be a key member of the Capital R&D organization, make vital contributions to the New Product Development (NPD) pipeline and transform patient care through innovation. They are accountable for leading our NPD teams and creating a strategy to implement cybersecurity into the design and development of product hardware and software for use in cutting edge medical devices and associated capital equipment
**You will be responsible for:**
+ Identify threats and vulnerabilities to patient safety and product integrity, assess current security controls and determine potential impact of a threat and the risk level associated with threat/vulnerability pairs.
+ Drive architecture, requirements, and design to ensure that decisions incorporate security considerations.
+ Advise embedded system security software to ensure system hardening and secure coding practices.
+ Support all stakeholders on patch management, vulnerability handling, and SBOM scanning
+ Document designs and specifications per design control processes and conform to Industry Standards for Medical Device Software (IEC 62304)
**Qualifications / Requirements:**
**Education:**
+ Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity or related degree
**Experience and Skills**
+ 6+ years' experience (or 4+ with M.S.) establishing security architecture or implementing security solutions in consumer products or medical devices
+ 3+ experience in a software engineering or software architectural role in a New Product Development (NPD) environment
+ Proven experience with threat modeling and risk assessments for connected products or medical devices
+ Ability to work autonomously and proactively seek out security opportunities within the different surgical robotics teams
+ Ability to think big picture and have attention to detail - aligning strategic objectives with tactical implementation.
+ Proven experience with electrical and embedded software design
+ Experience developing software for embedded Real-Time Operating Systems (RTOS)
+ Experience developing embedded software systems using Modern C++ (preferably standards 17+)
+ A results and performance driven demeanor with strong sense of accountability
+ Understanding of penetration testing, vulnerability scanning, and/or other general security testing principles
**Preferred Skills & Experience:**
+ Experience with FDA, data governance, and privacy standards (HIPAA, ISO 27001, UL 2900)
+ Work experience with Systems Engineering activities: requirements management and development, risk management, and verification
+ Strong collaboration, proven technical leadership capabilities, and conflict resolution skills
+ A security certification from an accredited body is preferred and may be considered in lieu of a portion of required years of experience
+ Experience working with secure boot, Trusted Platform Module (TPM), Data Distribution System (DDS), and QNX
**Other Requirements:**
+ Ability to travel up to 10% domestic US and Internationally
The anticipated base pay range for this position is $105,000- $169,050.
California Bay Area - The anticipated base pay range for this position is $141,000 - $227,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
This position is eligible to participate in the Company's long-term incentive program.
Employees are eligible for the following time off benefits:
+ Vacation - up to 120 hours per calendar year
+ Sick time - up to 40 hours per calendar year
+ Holiday pay, including Floating Holidays - up to 13 days per calendar year
+ Work, Personal and Family Time - up to 40 hours per calendar year
Additional information can be found through the link below.
For additional general information on Company benefits, please go to: - *********************************************
This job posting is anticipated to close on 7/22/25. The Company may however extend this time-period, in which case the posting will remain available on *************************** to accept additional applications.
Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
_Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation,_ **_external applicants please contact us via_** **_*******************/contact-us/careers_** **_. internal employees contact AskGS to be directed to your accommodation resource._**
+ \#RADSW
+ \#Li-Hybrid
**Required Skills:**
**Preferred Skills:**
PwC - Japanese Business Network (JBN) - 2026 and 2027 Internships, application via RippleMatch
Cincinnati, OH
This role is with PwC. PwC uses RippleMatch to find top talent.
Apply Now
Submit your application directly through PwC using the link below. Applying to your school/university site will not count as an official application!
Application Deadline
Applications will be reviewed as they are received. For most of our opportunities, we recruit on a rolling basis. This means that when our roles open, we accept applications on an ongoing basis by location and close them as offers are accepted and positions are filled. Visit pwc.to/us-application-deadlines to view deadline information.
Eligibility
Graduation date: Graduate between December 2026 and August 2027
Assessment Required: You must complete an assessment to be considered for these roles. Expect an email with instructions shortly after applying.
Visa Sponsorship: Review eligibility on our PwC entry-level visa sponsorship site before applying
Internship timing: Internship opportunities require full-time availability (minimum 40 hours per week) during standard business hours Monday-Friday. We do not recommend being enrolled in classes.
Winter/Spring Internships: January - March or April
Summer Internships: June - August
Examples of the skills, knowledge, and experiences you need
To lead and deliver value at this level, you'll need to:
Appreciate diverse perspectives, needs, and feelings of others.
Adopt habits to sustain high performance and develop your potential.
Actively listen, ask questions to check understanding, and clearly express ideas.
Seek, reflect, act on, and give feedback.
Gather information from a range of sources to analyze facts and discern patterns.
Commit to understanding how the business works and building commercial awareness.
Learn and apply professional and technical standards (e.g. refer to specific PwC tax and audit guidance), uphold the Firm's code of conduct and independence requirements.
How can I learn more and connect with PwC?
Click here to learn more about our career areas. If you have questions, use our US Careers Recruiter Map to find and connect with your recruiter!
Auto-ApplyApplications Security Architect
New Bremen, OH
: Crown Equipment Corporation is a leading innovator in world-class forklift and material handling equipment and technology. As one of the world's largest lift truck manufacturers, we are committed to providing the customer with the safest, most efficient and ergonomic lift truck possible to lower their total cost of ownership.
Job Posting External
Primary Responsibilities
* Define security architecture standards and blueprints for web, mobile, cloud, and Application Programming Interface (API)-based applications.
* Review design documents and perform architecture risk assessments for new and existing applications.
* Collaborate with DevOps, Engineering, and Infrastructure teams to ensure architectures align with secure design principles.
* Integrate automated security testing/scanning tools (Static Application Security Testing (SAST), Software Composition Analysis (SCA)) into Continuous Integration (CI) or Continuous Delivery (CD) pipelines.
* Define and enforce secure coding standards and practices across development teams.
* Provide training and guidance to developers on secure development principles and vulnerability prevention.
* Conduct threat modeling and attack surface reviews for high-risk or critical applications.
* Identify potential security flaws and recommend mitigations early in development process.
* Track and communicate technical risk to product managers, developers, and leadership teams.
* Develop and maintain application security policies, baselines, and architecture frameworks.
* Ensure application security practices align with regulations including General Data Protection Regulation (GDPR) and Payment Card Industry Data Security Standard (PCI-DSS).
* Support audit and compliance initiatives by providing documentation and evidence of secure development practices.
Minimum Qualifications
* Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related field is required, along with 2-4 years related experience. Non-degree considered if 12+ years of related experience along with a high school diploma or GED
Preferred Qualifications
* 5+ years in cybersecurity with at least 3 years in application security or secure software development experience.
* Secure Software Development Life Cycle (SDLC) in development. Deep knowledge of Open Web Application Security Project (OWASP) Top 10, National Institute of Standards and Technology (NIST), and secure coding frameworks.
* Experience with Securing Secrets and Service Accounts.
* Experience with Web Application Firewall (WAF) implementation/support.
* Familiarity with Identity and Access Management and cloud security practices (AWS, Azure).
* Certified Information Systems Security Professional (CISSP), Certified Secure Software Lifecycle Professional (CISSP), Certified Ethical Hacker (CEH) certified.
* Familiarity with container security (Docker, Kubernetes).
* Experience in Threat Modeling.
* Understanding of authentication protocols (Open Authorization (OAuth) and Security Assertion Markup Language (SAML)).
* Experience with DEVSECOPStools and container security tools.
Work Authorization:
Crown will only employ those who are legally authorized to work in the United States. This is not a position for which sponsorship will be provided. Individuals with temporary visas or who need sponsorship for work authorization now or in the future, are not eligible for hire.
No agency calls please.
Compensation and Benefits:
Crown offers an excellent wage and benefits package for full-time employees including Health/Dental/Vision/Prescription Drug Plan, Flexible Benefits Plan, 401K Retirement Savings Plan, Life and Disability Benefits, Paid Parental Leave, Paid Holidays, Paid Vacation, Tuition Reimbursement, and much more.
EOE Veterans/Disabilities
Nearest Major Market: Lima
Nearest Secondary Market: Findlay
Job Segment: Cloud, Testing, Architecture, Developer, Forklift, Technology, Engineering, Manufacturing
Senior Security Engineer
Akron, OH
Full Time 40 Hours/Week Monday - Friday, 8:00am - 4:30pm Remote On-Call Rotation The Sr Security Engineer is an integral part of the Cybersecurity program. This position will be responsible for maturing the Risk Management, and Incident response areas. This will be accomplished by conducting risk assessment of third parties, systems & equipment being placed on the network and cloud systems. Incident Response duties include organizing table top exercise and working with other staff on remediation of gaps identified. Day to day this position will interface with staff at all levels of the organization.
Responsibilities:
* Assists with the implementation, execution and continuous improvement of the Information Security Program including but not limited to: Policy and Document Maintenance, Risk Assessment, Security Controls and Technical Oversight.
* Maintains information security policies, procedures, and standards.
* Conducts periodic risk analysis and risk management assessments.
* Develops and coordinates application security reviews and is responsible for vulnerability and incident management.
* Responsible for evaluation, selection, and implementation of information security tools.
* Ability to problem solve/remediate in a highly complex and matrixed environment.
* Ability to successfully work in a fast-paced environment with a variety of personalities and work styles.
* Ability to successfully work well under pressure with tight deadlines and with a sense of urgency.
* Possess excellent written, oral, and active listening skills.
* Other duties as required.
Other information:
Technical Expertise
* Experience in HIPAA, HITECH, PCI, NIST, and other frameworks is required.
* Experience in securing information system technologies is required.
* Experience with both Technical Security Engineer and Governance, Risk and Compliance (GRC) is strongly preferred.
* Experience working with all levels within an organization is required.
* Experience in healthcare is preferred.
* Proficiency in MS Office [Outlook, Excel, Word] or similar software is required.
* In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
* Experience with an organization's privacy and security due diligence efforts when entering into third party relationships or M&A activities a plus.
* Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix
* Knowledge of applications, databases, middleware to address security threats against the same.
* Proficient in preparation of reports, dashboards and documentation
* Excellent communication and leadership skills
* Ability to handle high pressure situations with key stakeholders
* Good Analytical skills, Problem solving and Interpersonal skills
* Ability to adapt and thrive in a dynamic work environment. Exceptional organization skills, ability to work independently as well as part of a team, and demonstrated experience in taking initiative and following up on tasks.
* Proficiency in MS Office [Outlook, Excel, Word, Visio, and SharePoint] or similar software is required.
Education and Experience
* Education: Bachelor degree in related field is required.
* Security Certification Required: CEH, CISSP, GCIH, GSEC, or similar level security certification
* 2-3 years leadership/ supervisory experience preferred
Full Time
FTE: 1.000000
Staff Product Security Engineer
Cincinnati, OH
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at *******************
Job Function:
R&D Product Development
Job Sub Function:
R&D Software/Systems Engineering
Job Category:
Scientific/Technology
All Job Posting Locations:
Cincinnati, Ohio, United States of America, Santa Clara, California, United States of America
:
About Surgery
Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.
Are you passionate about improving and expanding the possibilities of MedTech surgery? Ready to join a team that's reimagining how we heal? Our MedTech Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.
Your unique talents will help patients on their journey to wellness. Learn more at *******************/medtech.
We are searching for the best talent for a Staff Product Security Engineer position, to be located in Santa Clara, CA or Cincinnati, OH.
Job Description:
The Staff Product Security Engineer will be a key member of the Capital R&D organization, make vital contributions to the New Product Development (NPD) pipeline and transform patient care through innovation. They are accountable for leading our NPD teams and creating a strategy to implement cybersecurity into the design and development of product hardware and software for use in cutting edge medical devices and associated capital equipment
You will be responsible for:
Identify threats and vulnerabilities to patient safety and product integrity, assess current security controls and determine potential impact of a threat and the risk level associated with threat/vulnerability pairs.
Drive architecture, requirements, and design to ensure that decisions incorporate security considerations.
Advise embedded system security software to ensure system hardening and secure coding practices.
Support all stakeholders on patch management, vulnerability handling, and SBOM scanning
Document designs and specifications per design control processes and conform to Industry Standards for Medical Device Software (IEC 62304)
Qualifications / Requirements:
Education:
Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity or related degree
Experience and Skills
6+ years' experience (or 4+ with M.S.) establishing security architecture or implementing security solutions in consumer products or medical devices
3+ experience in a software engineering or software architectural role in a New Product Development (NPD) environment
Proven experience with threat modeling and risk assessments for connected products or medical devices
Ability to work autonomously and proactively seek out security opportunities within the different surgical robotics teams
Ability to think big picture and have attention to detail - aligning strategic objectives with tactical implementation.
Proven experience with electrical and embedded software design
Experience developing software for embedded Real-Time Operating Systems (RTOS)
Experience developing embedded software systems using Modern C++ (preferably standards 17+)
A results and performance driven demeanor with strong sense of accountability
Understanding of penetration testing, vulnerability scanning, and/or other general security testing principles
Preferred Skills & Experience:
Experience with FDA, data governance, and privacy standards (HIPAA, ISO 27001, UL 2900)
Work experience with Systems Engineering activities: requirements management and development, risk management, and verification
Strong collaboration, proven technical leadership capabilities, and conflict resolution skills
A security certification from an accredited body is preferred and may be considered in lieu of a portion of required years of experience
Experience working with secure boot, Trusted Platform Module (TPM), Data Distribution System (DDS), and QNX
Other Requirements:
Ability to travel up to 10% domestic US and Internationally
The anticipated base pay range for this position is $105,000- $169,050.
California Bay Area - The anticipated base pay range for this position is $141,000 - $227,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
This position is eligible to participate in the Company's long-term incentive program.
Employees are eligible for the following time off benefits:
Vacation - up to 120 hours per calendar year
Sick time - up to 40 hours per calendar year
Holiday pay, including Floating Holidays - up to 13 days per calendar year
Work, Personal and Family Time - up to 40 hours per calendar year
Additional information can be found through the link below.
For additional general information on Company benefits, please go to: - *********************************************
This job posting is anticipated to close on 7/22/25. The Company may however extend this time-period, in which case the posting will remain available on *************************** to accept additional applications.
Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, external applicants please contact us via
*******************/contact-us/careers
. internal employees contact AskGS to be directed to your accommodation resource.
#RADSW
#Li-Hybrid
Required Skills:
Preferred Skills:
Auto-ApplyStaff Product Security Engineer
Cincinnati, OH
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at *******************
Job Function:
R&D Product Development
Job Sub Function:
R&D Software/Systems Engineering
Job Category:
Scientific/Technology
All Job Posting Locations:
Cincinnati, Ohio, United States of America, Santa Clara, California, United States of America
:
About Surgery
Fueled by innovation at the intersection of biology and technology, we're developing the next generation of smarter, less invasive, more personalized treatments.
Are you passionate about improving and expanding the possibilities of MedTech surgery? Ready to join a team that's reimagining how we heal? Our MedTech Surgery team will give you the chance to deliver surgical technologies and solutions to surgeons and healthcare professionals around the world. Your contributions will help effectively treat some of the world's most prevalent conditions such as obesity, cardiovascular disease and cancer. Patients are waiting.
Your unique talents will help patients on their journey to wellness. Learn more at *******************/medtech.
We are searching for the best talent for a Staff Product Security Engineer position, to be located in Santa Clara, CA or Cincinnati, OH.
Job Description:
The Staff Product Security Engineer will be a key member of the Capital R&D organization, make vital contributions to the New Product Development (NPD) pipeline and transform patient care through innovation. They are accountable for leading our NPD teams and creating a strategy to implement cybersecurity into the design and development of product hardware and software for use in cutting edge medical devices and associated capital equipment
You will be responsible for:
Identify threats and vulnerabilities to patient safety and product integrity, assess current security controls and determine potential impact of a threat and the risk level associated with threat/vulnerability pairs.
Drive architecture, requirements, and design to ensure that decisions incorporate security considerations.
Advise embedded system security software to ensure system hardening and secure coding practices.
Support all stakeholders on patch management, vulnerability handling, and SBOM scanning
Document designs and specifications per design control processes and conform to Industry Standards for Medical Device Software (IEC 62304)
Qualifications / Requirements:
Education:
Bachelor's degree in Computer Science, Computer Engineering, Cybersecurity or related degree
Experience and Skills
6+ years' experience (or 4+ with M.S.) establishing security architecture or implementing security solutions in consumer products or medical devices
3+ experience in a software engineering or software architectural role in a New Product Development (NPD) environment
Proven experience with threat modeling and risk assessments for connected products or medical devices
Ability to work autonomously and proactively seek out security opportunities within the different surgical robotics teams
Ability to think big picture and have attention to detail - aligning strategic objectives with tactical implementation.
Proven experience with electrical and embedded software design
Experience developing software for embedded Real-Time Operating Systems (RTOS)
Experience developing embedded software systems using Modern C++ (preferably standards 17+)
A results and performance driven demeanor with strong sense of accountability
Understanding of penetration testing, vulnerability scanning, and/or other general security testing principles
Preferred Skills & Experience:
Experience with FDA, data governance, and privacy standards (HIPAA, ISO 27001, UL 2900)
Work experience with Systems Engineering activities: requirements management and development, risk management, and verification
Strong collaboration, proven technical leadership capabilities, and conflict resolution skills
A security certification from an accredited body is preferred and may be considered in lieu of a portion of required years of experience
Experience working with secure boot, Trusted Platform Module (TPM), Data Distribution System (DDS), and QNX
Other Requirements:
Ability to travel up to 10% domestic US and Internationally
The anticipated base pay range for this position is $105,000- $169,050.
California Bay Area - The anticipated base pay range for this position is $141,000 - $227,000.
The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis.
Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance.
Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)).
This position is eligible to participate in the Company's long-term incentive program.
Employees are eligible for the following time off benefits:
Vacation - up to 120 hours per calendar year
Sick time - up to 40 hours per calendar year
Holiday pay, including Floating Holidays - up to 13 days per calendar year
Work, Personal and Family Time - up to 40 hours per calendar year
Additional information can be found through the link below.
For additional general information on Company benefits, please go to: - *********************************************
This job posting is anticipated to close on 7/22/25. The Company may however extend this time-period, in which case the posting will remain available on *************************** to accept additional applications.
Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
Johnson & Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, external applicants please contact us via
*******************/contact-us/careers
. internal employees contact AskGS to be directed to your accommodation resource.
#RADSW
#Li-Hybrid
Required Skills:
Preferred Skills:
Auto-ApplyCloud Security Engineer
Ohio
Cloud Security Engineer - (23000FK6) Description The Cloud Security Engineer (CSE) should be hands-on in all aspects of Azure security including implementing security controls and threat protection, manage identity and access management, defining organizational structure and policies, using Azure technologies in order to provide data protection, configuring network security defenses, collecting and analyzing Azure logs, managing incident responses, and an understanding of regulatory concerns.
As a Cloud Security Engineer you design and implement a secure end-to-end infrastructure on Azure in a hybrid cloud setup.
Essential FunctionsMonitor security events daily, performing investigations and working with appropriate team members, business teams and Technology teams to develop solutions that address critical security concerns Maintain and improve the security posture of the Azure platform, identifying, and remediating vulnerabilities by using a variety of security tools.
Provide cyber security expertise in the analysis, assessment, development, and evaluation of security solutions and architectures to secure applications, operating systems, databases, and networks.
Implement and configure security controls and policies, manage access to data, and monitor threats to ensure that apps, containers, infrastructure, and networks are protected.
Implementing threat protection and responding to security incident escalations.
Automate security controls, data, and processes to provide better metrics and operational support using security-as-code.
Configure access within a cloud solution environment using the defense-in-depth principle Configure network security including in a hybrid context with traditional network centric controls Ensure data protection Manage operations within a cloud solution environment such as operations tasks, using cloud native tools, like Log Analytics, Azure Monitor and Azure Security Center or other monitoring tooling.
Support our cloud engineers to implement security best-practices and enable secure development and release processes.
Deep understanding of configuring security policies and securing applications and data.
Required For All JobsPerforms other duties as assigned.
Complies with all policies and standards.
For specific duties and responsibilities, refer to documentation provided by the department during orientation.
Must abide by all requirements to safely and securely maintain Protected Health Information (PHI) for our patients.
Annual training, the UH Code of Conduct and UH policies and procedures are in place to address appropriate use of PHI in the workplace.
Qualifications QualificationsEducationBachelor's Degree in Information Technology, Computer Science, or a related field Required Work Experience5+ years IT security experience Required and 3+ years building and maintaining secure azure cloud solution and tools (Azure Monitor, Log Analytics, Azure Security Center) Required Knowledge, Skills, & Abilities Understand agile and DevOps concepts in a security context such as “trust but verify”, central vs decentral controls, make agile teams as autonomous as possible while ensuring the teams adhere to the NonFunctional-Requirements.
A deep understanding of networking, e.
g.
IP subnetting, Network Security Groups, routing, Azure Firewall, ExpressRoute, load balancer, DNS.
Strong familiarity with cloud capabilities and products and services for Azure, e.
g.
Azure Active Directory, Privileged Identity Management, VMs, Container Registry, Azure Kubernetes Services (AKS), Data Services, KeyVault.
Have the intrinsic quality to want to continuously improve and do better Hands-on and can-do mentality Feeling of ownership Good communication and presentation skills Team player Able to express ideas effectively in individual and group situations.
Able to execute a task in a good manner and with good results with limited supervision Strong skills in scripting and automation, Infrastructure-as-Code and using CI/CD concepts.
Experience with pipeline tooling for automated deployments and applying security controls.
Experience with Experience with infrastructure orchestration tools such as Terraform and other cloud-specific infrastructure automation tools (Azure Resource Manager, Google Cloud Deployment Manager) to automate the creation of staging, testing and production environments.
Work experience from large, international companies and have dealt with or worked for global service providers.
Licenses and CertificationsCertified Information System Security Professional (CISSP) Preferred Certified Ethical Hacker (CEH) Preferred Additional Licenses and Certifications Microsoft Azure Security related certifications Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Information Protection Administrator Associate, or Microsoft Certified: Security Operations Analyst Associate) Preferred Certified Cloud Security Professional (CCSP) Preferred Certificate of Cloud Security Knowledge (CCSK) Preferred Global Information Assurance Certification (GIAC) Preferred Physical DemandsStanding Occasionally Walking Occasionally Sitting Constantly Lifting Rarely 20 lbs Carrying Rarely 20 lbs Pushing Rarely 20 lbs Pulling Rarely 20 lbs Climbing Rarely 20 lbs Balancing Rarely Stooping Rarely Kneeling Rarely Crouching Rarely Crawling Rarely Reaching Rarely Handling Occasionally Grasping Occasionally Feeling Rarely Talking Constantly Hearing Constantly Repetitive Motions Frequently Eye/Hand/Foot Coordination Frequently Primary Location: United States-Ohio-Shaker_HeightsWork Locations: 3605 Warrensville Center Road 3605 Warrensville Center Road Shaker Heights 44122Job: Information TechnologyOrganization: UHHS_Information_TechnologySchedule: Full-time Employee Status: Regular - ShiftDaysJob Type: StandardJob Level: ProfessionalTravel: NoRemote Work: YesJob Posting: Nov 14, 2025, 1:58:20 PM
Auto-ApplyInformation System Security Officer (ISSO)
Dayton, OH
Required Travel: 0 - 10% Employment Type: Full Time/Salaried/Exempt Anticipated Salary Range: $72,181.00 - $100,000.00 Security Clearance: TS/SCI Level of Experience: Mid This opportunity resides with Warfare Systems (WS), a business group within HII's Mission Technologies division. Warfare Systems comprises cyber and mission IT; electronic warfare; and C5ISR systems.
HII works within our nation's intelligence and cyber operations communities to defend our interests in cyberspace and anticipate emerging threats. Our capabilities in cybersecurity, network architecture, reverse engineering, software and hardware development uniquely enable us to support sensitive missions for the U.S. military and federal agency partners.
Meet HII's Mission Technologies Division
Our team of more than 7,000 professionals worldwide delivers all-domain expertise and advanced technologies in service of mission partners across the globe. Mission Technologies is leading the next evolution of national defense - the data evolution - by accelerating a breadth of national security solutions for government and commercial customers. Our capabilities range from C5ISR, AI and Big Data, cyber operations and synthetic training environments to fleet sustainment, environmental remediation and the largest family of unmanned underwater vehicles in every class. Find the role that's right for you. Apply today. We look forward to meeting you.
To learn more about Mission Technologies, click here for a short video: ***************************
Job Description
As the Information Systems Security Officer (ISSO) the individual works closely with the Information Systems Security Manager (ISSM) proposing, coordinating, implementing and enforcing information system security policies, standards and methodologies. Implementing operating systems and network devices security configuration in accordance with approved Security Technical Implementation Guides (STIGs). Collaborate with team members to define and implement cybersecurity requirements for managed systems and software. Conduct security assessments of Risk Management Framework (RMF) controls implemented for assigned systems. Identify corrective actions and mitigation strategies to achieve and sustain RMF compliance.
Job Duties Include: Performing vulnerability assessments using the Assured Compliance Assessment Solution (ACAS), Security Technical Implementation Guide (STIG), and the Security Content Automation Protocol (SCAP). Performing security control continuous monitoring, security audits, risk analysis and developing mitigation strategies for DoD information systems.
Essential Job Responsibilities
Assist with all activities associated with the assessment and authorization (A&A) of all hosted computing environments. Perform cybersecurity site audits to verify architecture analysis, cybersecurity requirements and controls, verify mitigation actions, witness cybersecurity testing and evaluation and to assist the ISSM with the final approval for Authority to Operate (ATO) and/or Authority to Connect (ATC). Interface with end users to discuss IT, data management and collaboration tools understanding and benefits. Ensures software, hardware and firmware complies with appropriate security configuration guidelines. Coordinates changes or modifications with the ISSM and SCAR/SCA. Initiates protective or corrective measures, in coordination with the ISSM. Reports security incidents or vulnerabilities to the ISSM.
Minimum Qualifications
+ 2 years relevant experience with Bachelors in related field; 0 years experience with Masters in related field; or High School Diploma or equivalent and 6 years relevant experience.
+ Experience planning and implementing network layouts of varying classifications in SCIF/SAPF spaces.
+ Ability to coordinate and plan IT requirements across several Enterprise, MAJCOM, and agency partners.
+ Familiarity with ICD/ICS 705 Standards as they pertain to networks.
+ DoD 8570 (Sec+ or applicable) IAT level II cert required
+ Active TS/SCI clearance with ability to gain SAP/SAR
Preferred Requirements
Experience working as a COMSEC responsible Officer or familiarity handling and safeguarding COMSEC
Physical Requirements
May require working in an office or laboratory environment. Capable of climbing ladders and tolerating confined spaces and extreme temperature variances.
The listed salary range for this role is intended as a good faith estimate based on the role's location, expectations, and responsibilities. When extending an offer, HII's Mission Technologies division takes a variety of factors into consideration which include, but are not limited to, the role's function and a candidate's education or training, work experience, and key skills.
Together we are working to ensure a future where everyone can be free and thrive.
All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, physical or mental disability, age, or veteran status or any other basis protected by federal, state, or local law.
Do You Need Assistance?
If you need a reasonable accommodation for any part of the employment process, please send an e-mail to ************************** and let us know the nature of your request and your contact information. Reasonable accommodations are considered on a case-by-case basis. Please note that only those inquiries concerning a request for reasonable accommodation will be responded to from this email address. Additionally, you may also call ************** for assistance. Press #3 for HII Mission Technologies.