Security Architect Engineer
Security architect job in Malvern, PA
At Customers Bank, we believe in working hard, working smart, working together to deliver memorable customer experiences and having fun. Our vision, mission, and values guide us along our path to achieve excellence. Passion, attitude, creativity, integrity, alignment, and execution are cornerstones of our behaviors. They define who we are as an organization and as individuals. Everyone is encouraged to have personal development plans. By doing so, our team members are on their way to achieve their highest potential and be successful in their personal and professional lives.
This role is ONSITE in our Malvern, PA office Monday through Thursday with Friday remote.
Must be eligible to work in the U.S. without requiring sponsorship now or in the future.
Who is Customers Bank?
Founded in 2009, Customers Bank is a super-community bank with over $22 billion in assets. We believe in dedicated personal service for the businesses, professionals, individuals, and families we work with.
We get you further, faster.
Focused on you: We provide every customer with a single point of contact. A dedicated team member who's committed to meeting your needs today and tomorrow.
On the leading edge: We're innovating with the latest tools and technology so we can react to market conditions quicker and help you get ahead.
Proven reliability: We always ground our innovation in our deep experience and strong financial foundation, so we're a partner you can trust.
What you'll do:
* Cloud Security Architecture: Design, implement, and maintain secure architectures for cloud platforms (Azure, AWS, or others), ensuring alignment with security policies and regulatory requirements.
* Security Tools Configuration: Configure, maintain, and optimize security tools including CNAPP, CASB, SIEM, endpoint detection, vulnerability scanners, and cloud-native security controls.
* Defender & CASB Oversight: Manage and tune Microsoft Defender and Defender for Cloud Apps (CASB) to detect, prevent, and remediate threats across cloud environments, SaaS platforms, and endpoints.
* Security Baseline Compliance: Review and ensure that environments and resources consistently follow security baselines and frameworks such as CIS, NIST, and FFIEC.
* Secure Design & Guidance: Partner with infrastructure, DevOps, and application teams to provide security requirements and guidance for cloud projects and deployments.
* Documentation & Reporting: Maintain architecture diagrams, configuration documentation, and compliance reporting to support audits and regulatory exams.
* Incident Response Support: Provide expertise in responding to cloud-related security incidents and collaborate on remediation efforts.
* Continuous Improvement: Evaluate emerging cloud security tools and best practices to enhance protection and operational efficiency.
* API platform monitoring: Assist architecture team implement API monitoring platform. This includes API inventory and related data monitoring
* Perform monitoring: Provide metrics (KPIs and KRIs) supporting appropriate security monitoring and underlying processes.
What do you need?
* Must-Haves
* 5+ years' experience in security engineering, architecture, or operations, with at least 2 years in cloud security.
* Strong knowledge of cloud platforms (Azure, AWS, or GCP), including native security tools and services.
* Experience reviewing and managing network security configurations.
* Hands-on experience with configuring and maintaining security tools (SIEM, EDR, vulnerability management, IAM, cloud security posture management).
* Solid understanding of networking protocols, routing, and hybrid cloud connectivity.
* Bachelor's degree in Information Security, Computer Science, or related field, or equivalent work experience.
Key Skills
* Strong troubleshooting and analytical skills.
* Ability to balance security needs with business requirements.
* Excellent communication skills, with the ability to translate technical findings into clear, actionable recommendations.
* Proficiency in Microsoft Office applications for reporting and documentation.
* Nice-to-Haves
* Cloud security certifications such as AZ-500 (Azure Security Engineer), AWS Security Specialty, CCSP, or CISSP.
* Experience with Splunk, CrowdStrike, Tenable, Active Directory, and cloud-native logging/monitoring tools.
* Knowledge of DevSecOps practices and integrating security into CI/CD pipelines.
* Banking or financial services industry experience.
Customers Bank is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
We also provide "reasonable accommodations", upon request, to qualified individuals with disabilities, in accordance with the Americans with Disabilities Act and applicable state and local laws.
Diversity Statement:
At Customers Bank, we believe in working smart, working together, and having fun while delivering innovative solutions and memorable experiences for our customers. We are committed to the continual advancement of a culture which reflects the value we place on diversity, equity, and inclusion. We honor the diverse experiences, perspectives, and identities of our team members, and we recognize that it is their passion, creativity, and integrity that drives our success. Step into your future with us! Let's take on tomorrow.
Auto-ApplyDir - IAM Cloud Product - Information Security
Security architect job in Conshohocken, PA
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
JOB PROFILE SUMMARY:
The Director, IAM Cloud Product is responsible for leading the strategy, design, and delivery of cloud-native Identity & Access Management (IAM) capabilities across all service models-SaaS, IaaS, and PaaS-and cloud providers. This role drives the development of scalable, policy-driven IAM solutions that enable dynamic, just-in-time access to cloud resources, applications, and services.
As a key contributor to the enterprise's digital transformation and cloud adoption strategy, the Director ensures IAM capabilities are embedded into cloud-native architectures, DevOps workflows, and CI/CD pipelines. They partner with cloud engineering, cybersecurity, application development, and infrastructure teams to deliver secure, frictionless identity services that support agility, compliance, and innovation.
The Director leads a cross-functional team of product managers, architects, and engineers, and is accountable for defining the IAM cloud product roadmap, aligning with enterprise priorities, and delivering measurable outcomes. This role also evaluates emerging technologies, manages vendor relationships, and ensures IAM solutions meet regulatory and policy requirements.Our employee experience is a strategic priority for our company. Our leaders are accountable for leading with purpose, fairness, and equity. They are responsible for building and developing diverse teams, maintaining a safe and inclusive environment, setting clear priorities, and holding self and team accountable for executing with excellence.
PRIMARY DUTIES AND RESPONSIBILITIES:
Lead the strategy, design, and delivery of cloud-native IAM capabilities across SaaS, IaaS, and PaaS service models and providers, ensuring scalability, security, and alignment with enterprise architecture.
Enable dynamic, just-in-time access to cloud resources through policy-driven controls, automation, and integration with enterprise identity platforms.
Define and maintain the IAM cloud product roadmap, aligning with digital transformation, cloud adoption, and enterprise security strategies.
Integrate IAM capabilities into cloud-native architectures, including support for federated identity, workload identity, secrets management, and entitlement management.
Partner with cloud engineering, DevOps, and application development teams to embed IAM into CI/CD pipelines and cloud application development workflows.
Evaluate and select IAM tools and platforms that support multi-cloud environments, including AWS, Azure, GCP, and SaaS ecosystems.
Ensure IAM solutions meet regulatory, compliance, and policy requirements, including alignment with frameworks such as NIST, ISO 27001, and internal control standards.
Manage vendor relationships and product lifecycle activities, including licensing, renewals, feature adoption, and roadmap alignment.
Lead cross-functional teams of product managers, architects, and engineers to deliver IAM capabilities that support agility, innovation, and secure access.
Define and track product KPIs and success metrics, ensuring IAM cloud products deliver measurable business and security outcomes.
Contribute to enterprise IAM strategy, bringing deep expertise in cloud identity, access governance, and secure service integration.
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit **************************************
Full time Salary Range*$156,300 - 241,010
*This Salary Range reflects a National Average for this job. The actual range may vary based on your locale. Ranges in Colorado/California/Washington/New York/Hawaii/Vermont/Minnesota/Massachusetts/Illinois State-specific locations may be up to 10% lower than the minimum salary range, and 12% higher than the maximum salary range.
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call ************ or email ****************. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
.
Affiliated Companies:Affiliated Companies: AmerisourceBergen Services Corporation
Auto-ApplySenior Information Security Analyst
Security architect job in Audubon, PA
At Globus Medical, we move with a sense of urgency to deliver innovations that improve the quality of life of patients with musculoskeletal disorders. Our team is inspired by the needs of these patients, and the surgeons and healthcare providers who treat them. We embrace a culture of exceptional response by partnering with researchers and educators to transform clinical insights into tangible solutions. Our solutions improve the techniques and outcomes of surgery so patients can resume their lives as quickly as possible.
Position Summary:
We are seeking a seasoned Information Security Engineer with 10+ years of experience to lead and enhance our cybersecurity infrastructure, threat detection capabilities, and incident response processes. This role will drive strategic initiatives, mentor junior analysts, and collaborate across departments to ensure a resilient and secure enterprise environment. The ideal candidate will possess deep technical expertise, a proactive mindset, and a strong understanding of modern threat landscapes and security frameworks.
Essential Functions:
* Architect and implement scalable security solutions across cloud and on-prem environments.
* Lead threat detection, incident response, and forensic investigations.
* Develop and maintain security automation scripts and playbooks.
* Oversee vulnerability management lifecycle and remediation strategies.
* Collaborate with DevOps, IT, and business units to embed security into operations and development pipelines.
* Conduct red/blue team exercises and tabletop simulations.
* Evaluate and integrate new security technologies and platforms.
* Support compliance initiatives (ISO 27001, NIST, SOC 2) and audit readiness.
* Produce reporting on risk posture, threat trends, and mitigation efforts.
* Mentor junior security staff and contribute to team development.
* Adheres to the letter and spirit of the company Code of Conduct, the AdvaMed Code, MedTech Code, and all other company policies.
* Ensures Compliance with applicable governmental laws, rules, and regulations, both in the United States and internationally, by completing introductory and annual training and maintaining knowledge of compliance as it applies to your role
* Represents the company in a professional manner and uphold the highest standards of ethical business practices and socially responsible conduct in all interactions with other employees, customers, suppliers, and other third parties
Reasonable accommodations may be made to enable individuals with disabilities to perform these essential functions.
Qualifications:
* Education: Education: Bachelor's or Master's in Computer Science, Information Security, or related field.
* Certifications: CISSP, OSCP, GCIH, AWS/Azure Security, or equivalent.
* Technical Skills:
* Advanced proficiency with SIEM, EDR, SOAR, and vulnerability management tools.
* Strong scripting skills (Python, PowerShell, Bash).
* Deep understanding of cloud security (AWS, Azure, GCP).
* Familiarity with DevSecOps and CI/CD security integration.
* Experience with zero trust architecture and identity management.
* Competencies
* Action Oriented: Tackles challenges with energy; takes quick, decisive action and seizes opportunities.
* Problem Solving: Applies strong analytical skills to proactively identify and resolve issues.
* Approachability: Builds rapport easily; listens well, puts others at ease, and addresses concerns early.
* Composure: Stays calm under pressure, handles stress effectively, and remains steady during crises.
* Technical Learning: Quickly learns emerging technologies and independently develops new skills through strong internal drive
Physical Demands:
The physical demands listed here are representative of those that must be met by and employee to successfully perform the essential functions of this job.
* Required to sit; climb or balance; and stoop, kneel, crouch or crawl
* Required to regularly lift and/or move up to 10 pounds, and occasionally lift and/or move up to 25 pounds
* Required to possess specific visons abilities, including: close vision, distance vision, color vision, peripheral vision, depth perception and capacity to adjust focus
Our Values:
Our Life Moves Us philosophy is built on four values: Passionate About Innovation, Customer Focused, Teamwork, and Driven.
* Passionate about Innovation: Improving patient care by delivering advanced technology to our customers is at the core of what we do. We are passionate in our role in improving the lives of patients by continuously developing better solutions.
* Customer Focused: We listen to our customers' needs and respond with a sense of urgency.
* Teamwork: Working together, anything is possible. We value every person on our team and treat each other with respect. We are accountable to one another and support each other. Together, we make each other stronger.
* Driven: We pursue our mission with energy and passion. We are nimble, results-oriented and decisive. We overcome obstacles that arise in our quest to deliver solutions that will improve the lives of our customers and patients.
Equal Employment Opportunity:
Globus Medical is an equal opportunity employer. All applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, age, disability, marital status, pregnancy, national origin or citizenship. We are committed to a diverse workforce. We value all employees' talents and support an environment that is inclusive and respectful.
Other Duties:
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
Information Systems Security
Security architect job in King of Prussia, PA
Experience protocols, such as SAML 2.0, OAuth 2.0, etc.
Experience Internet protocols
Experience with cryptography, and PKI
Additional Information
All your information will be kept confidential according to EEO guidelines.
Information Security Engineer
Security architect job in King of Prussia, PA
**Job Number:** JO-2510-11111 **Employee Group:** Regular **Shift:** Day **Travel:** 0% **Site Name:** Remote **Is Remote Eligible:** Yes **Pay:** $75,300.00 - $127,900.00 per year Share (*********************************************************************** ||Email this job
At Radial, our employees are the forefront of ecommerce, bringing beloved brands to consumers through our fulfillment and technology solutions. We are fueling the future of retail, which means you are, too. When you work for Radial, you join a global community of changemakers, where the work is critical, and the culture is fun. We depend on our workforce to overcome real-world challenges every day and encourage you to carve your own career path while shaping our future together. We currently have an exciting opening for an **Information Security Engineer** .
Radial is the pre-eminent B2C eCommerce fulfillment solutions provider powering some of the world's best customer experiences,specializing in tailored, scalable eCommerce fulfillment solutions for mid-market and enterprise brands. Click Here to Learn More About Radial (************************
**Role Summary:**
The Information Security Engineer is responsible for implementing and maintaining Radial's security architecture, including procedures, to ensure the security and compliance of Radial's infrastructure and services. This involves collaborating with various stakeholders across the organization to identify security risks, deploy effective solutions, and ensure compliance with relevant regulations and standards.
**Responsibilities:**
+ Assist in the design and implementation of security controls to address risks in the environment. This includes, but not limited to, the configuration and management of Web Application Firewalls, IDS/IPS, SIEM, NextGen AV, Application Security, and Vulnerability Management.
+ Identify and mitigate vulnerabilities within the network, system, and application environment.
+ Assist in creating appropriate disaster recovery documentation for security controls.
+ Troubleshooting of issues and testing across multiple platforms and applications.
+ Triage and drive vulnerability issues to a thorough, immediate, and effective conclusion.
+ Respond to security incidents in a timely manner and conduct root cause analysis, implementing corrective actions to prevent future occurrences.
+ Review security requirements at relevant phases for both technical and operational perspective for new and existing projects.
+ Identifies, implements, and monitors best practices for information security architecture.
+ Assist with the documentation and review of policies, procedures, and standards.
+ Interfaces with user community and assists with IT risk and security needs.
+ Ensures that the user community understands and adheres to necessary procedures.
+ Create security architecture diagrams, standards, and procedures as appropriate.
+ Performs other duties as required.
**Qualifications:**
+ In-depth understanding of common operating systems, networking technologies, application security, and cloud architecture.
+ Excellent aptitude for IT Risk & Compliance concepts and methodologies.
+ Hands-on cybersecurity troubleshooting experience.
+ Demonstrated knowledge and understanding of information technology industry trends and emerging technologies and an ability to relate them to the company and its objectives.
+ Familiar with IT policies, laws, standards and frameworks applicable to the specific technical role.
+ Experience managing vulnerability management platforms.
+ Working Technical knowledge of CIS baseline standards and enforcement.
+ Hands-on experience implementing and maintaining Proofpoint or equivalent email security tools.
+ In-Depth knowledge of application and cloud-based security.
+ Hands-on experience managing End point security products.
+ Deep understanding of Active Directory.
+ Working technical knowledge of Identity and access management.
+ Working knowledge of ticketing and change management software.
**Minimum Experience and Education**
+ 5+ years of hands-on experience in an internal or third-party IT information security engineering role is preferred.
+ Bachelor's Degree or equivalent experience is preferred.
+ Relevant industry Security certification preferred.
**Travel:**
+ This position is remote.
+ Travel is not required.
**Benefits**
+ Opportunities to develop and explore career advancement
+ Competitive benefits package including medical, dental, vision, paid life insurance and disability, employer HSA funding
+ Family planning coverage, including Fertility & Adoption benefits
+ 401K matching after 6 months with immediate vesting
+ Generous PTO
+ Educational assistance and more!
Radial is an Equal Opportunity Employer and does not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, disability, veteran status, marital status, or based on an individual's status in any other group or class protected by applicable federal, state or local law.
Radial is committed to ensuring that its online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact us by emailing *********************** . We will work to assist disabled job seekers whose disability prevents them from being able to apply online.
Want to join an organization with an inclusive work culture? No need to look any further. Apply now!
Click Here for All Open Jobs at Radial (************************************************
Access this link to review our privacy notice:Radial, Inc. Privacy Notice for Candidates | Radial (**********************************************************************
Would you like to apply to this job?
Apply for the Information Security Engineer position
Radial is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
Radial is committed to ensuring that its online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact us by emailing *********************** . We will work to assist disabled job seekers whose disability prevents them from being able to apply online.
Application Security Engineer
Security architect job in Conshohocken, PA
As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions.
Job Description
Are you looking for your next opportunity?
Sompo has a unique opportunity for an Application Security Engineer in our Information Security team.
Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers.
Our business, your impact, our opportunity:
What you'll be doing:
* Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations.
* Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection.
* Maintain a strong familiarity with:
* Sompo's full stack of security technologies and common application architectures
regulatory requirements for security and privacy technologies.
* The various Sompo teams who are non-technical subject matter experts on those regulations.
* Industry-standard approaches for aligning development, operations, and security.
* Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls.
* Application security review (development lifecycle, technology selection)
* Application security testing and instrumentation (production operations)
* Support of security tooling and automation
What you'll bring:
* Minimum of 5 years of experience in information security.
* Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages.
* Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria.
* Strong understanding of:
* HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight.
* Development and direct work experience with:
* Languages for automation, especially Python and Powershell, Query tools.
* Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis.
* Packet captures for low level network troubleshooting
* Application development building blocks, Web application security components
* Native security controls in the Microsoft stack (OS, Office, Edge)
* Ability to write ad hoc queries using one or more of the following:
* Splunk, Powershell, Regular expressions, SQL, XPATH
* Ability to write practical audience-relevant documentation related to troubleshooting.
* B.S. in Computer Science or Software Engineering
Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience.
At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees.
Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance.
We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs:
* Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
* Pharmacy benefits with mail order options
* Dental benefits including orthodontia benefits for adults and children
* Vision benefits
* Health Care & Dependent Care Flexible Spending Accounts
* Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
* Company-paid Disability benefits with very competitive salary continuation payments
* 401(k) Retirement Savings Plan with competitive employer contributions
* Competitive paid-time-off programs, including company-paid holidays
* Competitive Parental Leave Benefits & Adoption Assistance program
* Employee Assistance Program
* Tax-Free Commuter Benefit
* Tuition Reimbursement & Professional Qualification benefits
In today's world, what do we stand for?
Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo.
Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.
Auto-ApplyCloud Security Engineer
Security architect job in Conshohocken, PA
Hamilton Lane is looking to expand our team to satisfy the needs of our growing client base. Hamilton Lane is built on collaboration, teamwork and integrity. Our employees pursue excellence and always strive to do the right thing. We invest in our employees, clients and partner relationships, as well as, in the technology and resources necessary to remain competitive, working in a competitive environment that inspires innovation.
What we do:
As a recognized leader in providing Private Markets Solutions to clients across the globe, we manage approximately $140.9 billion in discretionary assets and have oversight of an additional $845.3 in non-discretionary assets as of June 30, 2025.
The Opportunity:
As Senior Associate, Cloud Security Engineer, you will contribute to the design, execution, and maturity of security controls across the firm's cloud environments. This role combines technical leadership in cloud architecture and security operations with strategic input to the organization's security program and compliance initiatives.
Your responsibilities will be to:
* Design and implement security controls for cloud services and infrastructure.
* Develop, update, and enforce security standards, policies, and automated processes.
* Lead efforts in threat modeling, vulnerability management, incident investigation, and remediation for cloud and hybrid environments.
* Collaborate with developers, operations, compliance, and technology teams to integrate security into projects and daily activities.
* Monitor cloud environments for security risks, provide recommendations, and respond to incidents.
* Advise and contribute to security program initiatives such as policy updates, training, risk evaluation, and reporting.
Your background will include:
* Bachelor's degree in a relevant technical discipline.
* 3+ years of experience in cloud security engineering and information security, ideally in financial services.
* Demonstrated knowledge of cloud platforms and security technologies.
* Experience with regulatory frameworks for financial services.
* Proven skill in scripting, automation, and modern deployment models.
* Excellent analytical, documentation, and communication abilities.
* Recognized cloud and security certifications a plus.
* Experience in security program development within a regulated environment.
* Prior exposure to financial industry operations.
Benefits:
At Hamilton Lane, our benefits philosophy is simple: to provide our employees with a competitive suite of benefits and services to help navigate through the complexities and challenges of working, living, raising a family, and eventually retiring.
To do this, Hamilton Lane offers the following benefits:
Enhancing Your Physical and Emotional Health
Employees have access to healthcare coverage, mental health resources, health & fitness reimbursement program, and Wellness Rewards Program.
Developing Your Career
Tuition and certification reimbursement programs are available, along with continual education and development trainings for you to grow with Hamilton Lane.
Supporting Your Family & Community
For our communities, Hamilton Lane provides paid time off to volunteer and compensates for referring qualified candidates that join our team.
For growing family, we offer an adoption reimbursement program, paid time off for new parents and newlyweds, and provide travel support for nursing parents.
Safeguarding Your Financial Wellbeing
Hamilton Lane contributes to retirement programs and offers an employee stock purchasing plan.
We offer a competitive salary, annual discretionary bonus and a comprehensive benefits package which includes: Medical, Prescription, Dental, Paid Time Off, 401k plan, Life and Disability Insurances, Tuition Reimbursement, Employee Stock Purchase Program, Health Club Reimbursement and Flexible Spending Accounts.
Hamilton Lane is an affirmative action-equal opportunity employer. All qualified applicants will be considered for employment without regard to their race, color, creed, religion, sex, pregnancy, national origin, ancestry, citizenship status, age, marital or partnership status, sexual orientation, gender identity or expression, disability, genetic predisposition, veteran or military status, status as a victim of domestic violence, a sex offense or stalking, or any other classification prohibited by applicable law.
If you need a reasonable accommodation to complete your application, please contact Human Resources at *******************************.
Hamilton Lane is not accepting unsolicited assistance from search firms for this employment opportunity. Please, no phone calls or emails. All resumes submitted by search firms to any employee at Hamilton Lane via-email, the Internet or in any form and/or method without a valid written search agreement in place for this position will be deemed the sole property of Hamilton Lane. No fee shall be paid in the event the candidate is hired by Hamilton Lane as a result of the referral or through other means.
Auto-ApplySystems Engineer - Cyber Security
Security architect job in Reading, PA
Summary Statement: You will be working with a team of experts to resolve issues and create new security infrastructure based on current market trends. What you will be doing: As a Penske Systems Engineer - Cyber Security you will maintain network, server and workstation firewall protection and provide network and application scanning, security logging, and intrusion detection capabilities. You will provide security reviews and define security models for new systems based on current trends and developments. You will also collaborate with different teams within the IT department to discuss, analyze or resolve usability issues and work on projects to update or create new security infrastructures.
Major Responsibilities:
* Ensure associates follow security standards through oversight of the set-up of a user's security access, administer network security access and monitor the associate's use of data systems to safeguard company information
* Provide security reviews and define security models for new systems
* Analyze and recommend security products based on their performance
* Audit access to mission critical applications and to maintain compliance documentation for SOX and PCI
* Analyze and review annual SOX and other compliance reports
* Collaborate with different teams within the IT department to discuss, analyze, or resolve usability issues
* Work on 1-3 mid to large-scale projects concurrently, assigned from department and group senior leadership
* Mentor Security Administrators and Offshore Contractors
* Define, implement, communicate and update security architecture for multiple computing platforms, operating systems, data networks, applications, and client software
* Develop, implement, communicate, and update security policies and procedures for hardware, software, and network infrastructure
* Develop, implement, and maintain tools for effective security administration and monitoring compliance IT security policies and procedures as well as detection of attempted security breaches and intrusion
* Develop, test, and update disaster recovery plans to ensure that plans achieve desired results in protecting company assets and plans meet corporate risk and business resumption goals
* Develop training material to be used to develop awareness within corporation of security policies, procedures, best practices and other issues as needed
* Detailed understanding of Cloud Security fundamentals, including cryptography and the shared responsibility model
* Other projects as assigned
Qualifications:
* Bachelor's degree or equivalent experience required, advanced degrees or certifications preferred
* Minimum of 3+ years' experience
* A background in auditing is also desirable
* Knowledge of current state of the art security products is required
* Firewall software/hardware
* Proxy Filtering
* Centralized Log configuration and analysis
* IDS/IPS configuration and analysis.
* SSO Infrastructure
* Network Vulnerability Scanning
* Advanced User Authentication Structures
* OS Hardening and Security
* Application vulnerability scanning
* Networking TCP/IP and packet capture applications
* Endpoint Protection solutions
* Encryption Technology
* Good documentation and presentation skills are also necessary for this position
* Familiarity with disaster recovery planning and test execution
* Regular, predictable, full attendance is an essential function of the job
* Willingness to travel as necessary, work the required schedule, work at the specific location required, complete Penske employment application, submit to a background investigation (to include past employment, education, and criminal history) and drug screening are required
Physical Requirements:
* The physical and mental demands described here are representative of those that must be met by an associate to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
* The associate will be required to read; communicate verbally and/or in written form; remember and analyze certain information; and remember and understand certain instructions or guidelines.
* While performing the duties of this job, the associate may be required to stand, walk, and sit. The associate is frequently required to use hands to touch, handle, and feel, and to reach with hands and arms. The associate must be able to occasionally lift and/or move up to 25lbs/12kg.
* Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception and the ability to adjust focus.
Penske is an Equal Opportunity Employer
About Penske Truck Leasing/Transportation Solutions
Penske Truck Leasing/Transportation Solutions is a premier global transportation provider that delivers essential and innovative transportation, logistics and technology services to help companies and people move forward. With headquarters in Reading, PA, Penske and its associates are driven by a dedication to excellence and a commitment to customer success. Visit Go Penske to learn more.
Job Category: Information Technology
Job Function: Software Engineering
Job Family: Information Technology
Address: 100 Gundy Drive
Primary Location: US-PA-Reading
Employer: Penske Truck Leasing Co., L.P.
Req ID: 2510735
Physical Security Engineer
Security architect job in King of Prussia, PA
Due to continued growth, ENERCON's Nuclear Services Design Instrumentation and Controls Group has immediate openings for Physical Security Technicians/Engineers to join our team. In this dynamic role, you'll forge powerful relationships with both internal teams and external clients, especially in the cutting-edge field of Physical Security, while leading engineering efforts to deliver innovative solutions. You'll drive project success by solving complex technical challenges, ensuring top-quality results, and guiding your team to exceed customer expectations with every step! This role can be located in the following locations:
King of Prussia, PA
Crane Clean Energy Center - Middletown, PA
Remote in Palo, IA
Palisades - Covert, MI
Birmingham, AL
Naperville, IL (Suburb of Chicago)
Kennesaw, GA (Suburb of Atlanta)
This role can be Full Time, Part Time, or LTLB (Contract).
Responsibilities
Imagine a day where you're at the forefront of collaboration, working with engineering teams and clients to deliver cutting-edge solutions in Physical Security. You lead technical discussions, resolve challenges, and ensure designs meet all requirements. Your guidance keeps projects on track while you research improvements, propose innovations, and provide key updates to senior management-making a real impact and strengthening vital relationships every step of the way.
Relationship Building & Client Interaction: Work interactively with internal engineering and external clients to develop strong relationships, particularly in Physical Security. Ability to interface with site physical security management and engineering stakeholders
Engineering Support & Technical Leadership: Provide direct engineering support to project engineering staff to ensure design products satisfy customer expectations, contract requirements, and regulatory requirements. Provide technical leadership and support to engineering staff. Guide and review deliverables, review progress, and update senior management, as needed
Issue Resolution & Quality Assurance: Facilitate resolution of inter-disciplinary and cross-disciplinary technical and quality issues. Research and assess best practices, proposing methods and improvements
Project Planning & Execution: Plan and direct the timely execution of assigned engineering activities. Work with the Project Engineer (PE), engineering supervision, and project management to provide timely updates of progress, challenges, and implementation
#LI-MB1
Qualifications
A minimum of 3 years of relevant design engineering and or technician experience is required for this role
Bachelor's Degree in engineering field is preferred, HS Diploma/GED and equivalent relevant experience is required
Experience with AIM or NSMART security platforms is highly preferred
Experience in the design, installation, and testing of large scale (complete systems) digital control and computer monitoring system upgrades at power plants preferred
Types of upgrades include replacement of Turbine/Generator Control Systems with DCS platforms, process computer, and cybersecurity systems
Nuclear plant design experience and/or field experience working for a nuclear QA Program preferred
Must be proficient with MS Word, Excel, Visio, Access and PowerPoint
Good verbal and written communication skills and the ability to comprehend and convey detailed technical data
Knowledge of Physical Security related principles, standards, and regulations
An ability to perform walkdowns across multiple areas at a nuclear power plant and to provide feedback to the engineers on deviations from plant equipment when compared with plant drawings (i.e. as-built walkdowns)
Demonstrated leadership ability to manage multiple tasks and projects and ability to work effectively with all levels of staff and management
Excellent verbal and written communication skills including demonstrated ability to present to clients
Ability to travel to client sites for meetings and walkdowns, approximately 30% of the time
Senior level should be familiar with the Standard Design Process and Digital Engineering Guide
Pay Range USD $85,000.00 - USD $165,000.00 /Yr. Additional Information
About ENERCON:
At Enercon Services, Inc. (ENERCON), we're driven by our people-and we're proud to offer rewarding careers in a culture of excellence. We provide a comprehensive benefits package and professional development opportunities that support your long-term growth.
What We Offer:
Enjoy full benefits for you and your dependents starting day one, no waiting period
Flexible work arrangements, including hybrid and alternative schedules
401(k) with employer matching
Tuition reimbursement
Professional Engineer (PE) license support and incentives
Want to see the full picture? Click HERE to see our Comprehensive Benefits
Salary Range Information:
If a salary range is listed, it reflects the typical range for this full-time position based on the role, level, and location. Individual compensation within the range will be determined by factors such as work location, relevant experience, job-related skills, and education or training.
Eligibility to Work:
Candidates must be legally eligible to work in the US without requiring current or future sponsorship.
Ability to pass a pre-employment and random drug and alcohol screenings, ENERCON and client specific background checks, and annual motor vehicle record (MVR) according to company and client policies.
Equal Opportunity Employer:
ENERCON does not discriminate in employment opportunities or practices based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by law.
Connect with Us: *************** | LinkedIn
Auto-ApplyCloud Security Engineer - Application Database Administrator
Security architect job in Malvern, PA
Provides expert level technical support designing, implementing, and maintaining data center networks and security infrastructure. Identifies, resolves, or escalates hardware or software issues. The ideal candidate has deep expertise in database technologies, particularly Amazon Aurora PostgreSQL. The candidate will be responsible for designing, tuning, and optimizing Aurora PostgreSQL clusters to support high-performance, scalable, and secure data solutions across our cloud-native platforms.
Global Risk and Security (GR&S) at Vanguard enables business strategy, protects client and Vanguard interests (e.g., assets and data), and stewards a strong risk culture. Our teams leverage enterprise-wide insights, deep expertise, and trusted advice so that across Vanguard leaders and crew drive faster, stronger, risk-informed decisions.
Within GR&S, the Enterprise Security and Fraud (ES&F) sub-division is responsible for the global protection of Vanguard crew, property, data, and client assets. We are the trusted advisors that protect the pride of Vanguard with state-of-the-art security and fraud capabilities. We are a world-class destination of highly engaged, passionate, and diverse talent expected to continuously learn and develop in an ever-changing security landscape
Cloud Security Engineer - Application Database Administrator:
* Plans and implements new security technologies and major releases for the most critical enterprise-wide IT cloud platform projects. Designs, implements, and deploys cloud security systems to support and meet business needs. Identifies, recommends, and implements opportunities for improvement and performance issue solutions.
* Provides expert level technical support and ensures reliable operation of cloud production. Diagnoses and troubleshoots the most complex security issues for cloud computing systems. Contributes to the implementation of leading security technologies in infrastructure to improve its overall performance. Maintains comprehensive technical knowledge of software and infrastructure platforms.
* Develops auditing methodologies and architecture to manage and protect data in cloud computing environments.
* Elevates code into the development, test, and production environments on schedule. Provides follow up production support. Submits change control requests and documents.
* Learns and understands client area business functions and requirements. Determines the appropriate technical tool to address the client's business needs.
* Trains and mentors more junior staff on processes and technologies. Troubleshoots and resolves the most complex issues elevated from staff. Provides guidance and consultation as required. Updates, writes, and maintains documentation for the department.
* Administers system activities. Writes the technical portion of assigned deliverables. Performs systems analysis, including system requirements analysis and definition, and logical design.
* Provides expert level DBA services and performs physical database design and development for critical business applications and databases with the largest numbers of interfaces and users.
* Develops and maintains database logs and bug lists. Understands the business requirements for applications and implements supporting database technical capabilities.
* Performs database administration for mainframe and server databases. Performs day to day monitoring and optimizing, and provides developer support for creation of databases, tables, and indexes. Builds backup and recovery jobs.
* Conducts performance analysis of applications and database management systems. Identifies opportunities for continuous quality improvement of technical standards, processes, and technologies. Utilizes logical models to ensure efficient and reliable database performance.
* Reviews application designs for compliance with production acceptance requirements. Ensures backup, recovery, security, reliability, and performance of the systems. Develops and maintains policies and procedures for ensuring the security and integrity of a database.
* Trains and mentors staff. Resolves the most complex issues elevated from staff with less experience.
* Tests and evaluates IT vendor products.
* Participates in special projects and performs other duties as assigned.
* Design and implement Aurora PostgreSQL clusters tailored for high availability and performance.
* Perform advanced database tuning, including query optimization, indexing strategies, and memory management.
* Monitor and troubleshoot performance issues using AWS native tools such as CloudWatch, Performance Insights, and Secrets Manager.
* Collaborate with data engineering and application teams to align database performance with business requirements.
* Implement best practices for schema design, data ingestion, and transformation pipelines.
* Configure vector indexes and metadata structures for advanced querying and knowledge base integration.
* Automate database operations using AWS Lambda, Step Functions, and CI/CD pipelines.
* Ensure compliance with data governance, security, and privacy standards.
* Participates in special projects and performs other duties as assigned.
What it takes:
* Minimum of eight years related work experience in database administration, data modeling, business systems analyst, development, or related work experience
* Undergraduate degree in a related field or the equivalent combination of training and experience.
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.
About Vanguard
At Vanguard, we don't just have a mission-we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.
Auto-ApplyIT Security Engineer
Security architect job in Plymouth Meeting, PA
Harmony Biosciences is recruiting for an IT Security Engineer in our Plymouth Meeting, PA location. This role is an operational and hands-on role to design, configure, maintain and manage Harmony Bioscience's Cyber Security programs, Including coordinating the Information Security solutions, strategic planning, and budgetary aspects of Harmony Biosciences' global information security program.
**Seeking local candidates only**
Responsibilities include but are not limited to:
Manage security projects and provide expert guidance on security matters for other IT projects; design, coordinate, and oversee security testing procedures to verify the security of systems, networks, and applications, and manage the remediation of identified risks.
Coordinate, measure, and report on the technical aspects of security project management; maintain a knowledgebase comprising a technical reference library and operational documentation for new security controls & services.
Partner with Governance, Risk, & Compliance leaders to ensure that identified risks, vulnerabilities, and threats are mitigated within company risk tolerance in a timely manner.
Work with the IT Infrastructure team to ensure that security is factored into the evaluation, selection, installation, and configuration of hardware, applications, and other information system components.
Work with the CIO, IT, and business stakeholders to define metrics and reporting strategies that effectively communicate successes and progress of the security program.
Work with the CIO, IT, and business stakeholders to manage table top exercises.
Work as a liaison with cybersecurity and IT vendors and the legal and purchasing departments to establish mutually acceptable contracts and service-level agreements.
Continuously improve the global security program and security projects that address identified risks and business security requirements, including Data Privacy and follow laws such as GDPR, HIPAA, etc
Act as an empowered representative of Harmony's IT Security team during IT planning initiatives to ensure that security measures are incorporated into strategic IT plans.
Aid in the review and update of documentation for Harmony's security policies and procedures.
Actively participate in developing the goals, strategy, and methodologies of Harmony's cyber program in alignment with the overall Information Security program strategy.
Research, evaluate, implement, and manage applications, services, and controls for use by Harmony within the security architecture.
Assist with the deployment and upkeep of the information security department's website content as part of the IT intranet site.
Assist setting up cloud applications, services, networks, and servers as required.
List compliance tasks against accepted security controls by partnering with the Compliance team.
Organize stakeholder meetings and program reviews to collect feedback and directional guidance.
Strategize and define data security controls, risks, mitigation based on data classification and socialize and align with the business.
Create, update, and impart security training content on a quarterly basis to Harmony company employees as well as external contractors.
Align with the CIO and deliver on policies pertaining to Pen tests, Governance, managing vulnerabilities.
Partner with the legal team to initiate and manage vendor contracts for Security related vendors.
Qualifications:
High School Diploma required; Bachelor's degree strongly preferred, focus in information technology or related field
8+ years of relevant experience within the IT security space
Deep knowledge and understanding of Microsoft Entra, Microsoft Exchange, Microsoft Purview, Microsoft Identity and Security Architecture is required
Knowledge of Mimecast, Sophos Central, Rapid7 & KnowBe4 a Plus
Cybersecurity Certification such as CISSP, CCSP or CISM a Plus
Experience with Data Privacy a Plus
Strong written and verbal communication skills
Physical demands and work environment:
Travel is estimated to be 5% of the time for this position.
While performing the duties of this job, the noise level in the work environment is usually quiet.
While performing the duties of this job, the noise level in the work environment can vary from relatively quiet (office) to moderate (manufacturing). Hearing protection will be required at times.
Specific vision abilities required by this job include: Close vision.
Manual dexterity required to use computers, tablets, and cell phone.
Continuous sitting for prolonged periods.
What can Harmony offer you?
Medical, Vision and Dental benefits the first of the month following start date
Generous paid time off and Company designated Holidays
Company paid Disability benefits and Life Insurance coverage
401(k) Retirement Savings Plan
Paid Parental leave
Employee Stock Purchase Plan (ESPP)
Company sponsored wellness programs
Professional development initiatives and continuous learning opportunities
A certified Great Place to Work for seven consecutive years based on our positive, values-based company culture
Want to see our latest job opportunities? Follow us on LinkedIn !
Harmony Biosciences is a pharmaceutical company headquartered in Plymouth Meeting, PA. The company was established in October 2017 with a vision to provide novel treatment options for people living with rare, neurological disorders who have unmet medical needs. For more information on Harmony Biosciences, visit **************************
Harmony Biosciences is an Equal Opportunity, e-Verify Employer. All qualified applicants will receive equal consideration for employment without regard to race, color, national origin, religion, sex, pregnancy, marital status, sexual orientation, gender identity/expression, age, disability, genetic information, military service, covered/protected veteran status or any other federal, state or local protected class.
Recruitment agencies please note: Harmony Biosciences will only accept applications from agencies/business partners that have been invited to work on a specific role. Candidate Resumes/CV's submitted without permission or directly to Hiring Managers will be considered unsolicited and no fee will be payable. Thank you for your cooperation.
#LI-Hybrid
Auto-ApplySenior Information Security Analyst - Cloud/SaaS
Security architect job in Souderton, PA
Univest Financial Corporation (UVSP), has approximately $7.9 billion in assets and $5.4 billion in assets under management and supervision (as of June, 2025). Headquartered in Souderton, Pa. and founded in 1876, the Corporation and its subsidiaries provide a full-range of financial solutions for individuals, businesses, municipalities and nonprofit organizations in the Mid-Atlantic Region. For nearly 150 years, Univest has stayed true to our philanthropic spirit and the strength of our Committed to Local giving program is one of the things that differentiates us. In 2024, Univest donated $2.1 million to our local nonprofits and our employees volunteered more than 16,000 hours.
We are seeking a Senior Information Security Analyst to join our Souderton based Information Security Team.
Responsibilities
Ensure and continuously improve the confidentiality, integrity, and availability of corporate and customer data in alignment with the company's information security program.
Perform real-time monitoring, detection, and analysis of security events from multiple data sources on a daily basis.
Identify anomalous network traffic, monitor login activity, search for indicators of compromise, and respond appropriately to detected events.
Actively monitor and evaluate emerging threat intelligence from internal and external sources, recommending and implementing preventive and detective measures.
Participate in all phases of the incident response process, including identification, containment, eradication, recovery, and reporting.
Support information security risk assessments and reviews for new or prospective cloud and SaaS technology acquisitions.
Prepare and present evidence for internal and external audits, and assist with remediation of identified gaps.
Collaborate with IT to remediate vulnerabilities and strengthen overall security posture.
Maintain and grow professional knowledge by attending training sessions, webinars, conferences, and earning continuing professional education credits.
Comply with all laws and regulations that apply to the position, including the Univest Code of Conduct
Perform additional duties as required
Qualifications
10+ years of progressive, hands-on experience in information security support roles.
5+ years of direct experience securing and monitoring cloud and SaaS providers, ideally within a financial services environment.
Proven ability to configure, monitor, and manage security controls for Azure, M365, and AWS environments.
Skilled in the use of diverse network and endpoint security monitoring, alerting, and investigative tools across multiple platforms.
Advanced understanding of internet routing and application protocols, with strong emphasis on TCP/IP.
Effective written and verbal communication skills with the ability to explain complex technical and security concepts to non-technical audiences.
Excellent analytical, investigative, and problem-solving skills.
Demonstrated ability to work independently, collaborate across teams, and serve as a technical subject-matter expert to help guide security initiatives.
Highly self-motivated, with a track record of taking on increasing levels of responsibility.
Bachelor's degree in an information technology-related field preferred; relevant industry certifications (CISSP, Azure Security Engineer Associate, AWS Certified Security) a plus.
Wage Range:
The salary for this position ranges from $100,000 - 130,000
Benefits Overview:
Univest offer's a comprehensive benefits package that includes:
* Health Insurance: Medical, dental and vision coverage (single or family; begins the first of the month following start date)
* Retirement Plan: Participation in 401(k) plan with up to a 3% employer match after 6 months of employment
* Paid Time Off (PTO): 20 days annually (prorated your first year)
* Short Term Disability: 10 days annually of sick time with a doctors note (prorated your first year)
* Holiday Time Off: 11 paid holidays
* We offer company paid life insurance: as well as other supplemental insurances
* Tuition reimbursement
* Employee Wellness programs: including fitness club discounts and fitness tracker discounts/ annual reimbursement
* Discounts: on loan products
* Professional development trainings
Click here for Benefit Information
#Univest
#LI-Hybrid
#INDUF
An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Auto-ApplyOffensive Security Engineer II
Security architect job in Conshohocken, PA
About Us At Finance of America, we help homeowners unlock the joy that comes from realizing the full potential of their retirement. Many people have significant wealth tied up in their homes and want to use it meaningfully in their next chapter. Our unique range of reverse mortgages allow homeowners 55+ to access that wealth while maintaining control over their home and financial future. With options tailored to their unique goals, we provide the financial flexibility they need to move forward with confidence.
Finance of America is guided by five values: We are customer obsessed, they are why we exist. We raise the bar. We take extreme ownership. We practice genuine collaboration. And we unleash our excellence. Together we are actualizing our vision to be the most beloved brand for homeowners in their next chapter.
To learn more about us, visit ************************
Purpose of Role
Responsible for application security testing, adversary simulation, and cloud security research with a strong emphasis on adaptability and security. Researches new threat scenarios and works alongside the blue teams to validate defenses.
Key Responsibilities and Expectations
* Conducts penetration tests and threat simulations across applications, infrastructure, and cloud environments (AWS and Azure).
* Performs application security reviews, including secure code review and SAST/DAST configuration in CI/CD pipelines.
* Supports red and purple team exercises, using tactics aligned with the MITRE ATT&CK framework, to measure and improve SOC readiness.
* Researches and tests emerging threats, vulnerabilities, and exploitation techniques, including those targeting cloud and AI/ML applications.
* Partners with development, cloud, and SOC teams to communicate risks and recommend practical remediation strategies.
* Creates or adapts custom offensive tools and scripts to support testing scenarios.
* Documents and clearly communicates technical findings to both technical and non-technical audiences.
* Conducts security research and attends trainings, conferences, and capture-the-flag (CTF) events.
* Performs other duties as assigned.
Reports To
* Director, Vulnerability Management and Discovery
Qualifications - Experience/Skills/Competencies
* Minimum 3 years of experience in offensive security, penetration testing, or application security.
* Proficiency in web application security testing (e.g., OWASP Top 10, business logic flaws, authentication/authorization bypasses).
* Familiarity with cloud security testing in AWS (IAM, S3, EC2, Lambda, etc.); exposure to Azure strongly preferred.
* Knowledge of AI/ML application security testing, including risks such as prompt injection, data poisoning, and model extraction preferred.
* Scripting proficiency in Python (preferred), PowerShell, or Bash.
* Strong understanding of operating systems (Linux, Windows, MacOS) and networking protocols.
* Experience with CI/CD pipeline security integration (e.g., Azure DevOps, GitHub Actions).
* Exposure to adversary simulation tooling (e.g., C2 frameworks like Cobalt Strike, Sliver, Mythic).
* Familiarity with the MITRE ATT&CK framework and its application to offensive testing.
* Certifications such as OSCP, OSWE, OSEP, GXPN, or CRTO preferred.
* Prior experience collaborating with SOC and IR teams in purple team exercises.
* Strong written and verbal communication skills, with the ability to explain technical findings clearly to developers, engineers, and non-technical stakeholders.
* Ability to exercise judgment when policies or precedents are incomplete or not well-defined.
* Self-motivated, driven, and passionate about cybersecurity, with a continuous learning mindset.
Qualifications - Education - Required
* Bachelor's Degree or comparable qualifications
Qualifications - Education - Field(s)/Profession(s)
* Computer Science, Cybersecurity, or related field.
Compensation
The base salary range for this position is ($85,300 - $142,100) inclusive of all geographical differences in the labor market. The base salary for the position will be determined based on factors such as the candidate's work location, skills, education, and experience. In addition to those factors, we believe in the importance of pay equity and consider the internal equity of our current team members in determining any final offer. We offer a competitive benefits package including health, dental, vision, life insurance, paid time-off benefits, flexible spending account, 401(k) with employer match, and ESPP.
Additional Information
The application deadline for this job opportunity is 11/3/2025.
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified.
Finance of America is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, sex (including pregnancy), sexual orientation, religion, creed, age, national origin, physical or mental disability, gender identity and/or expression, marital status, veteran status or other characteristics protected by law.
Senior Security Analyst
Security architect job in Berwyn, PA
Envestnet is seeking a Senior Security Analyst to join our Enterprise Security team. This is a hybrid role, with in-office work required at our Berwyn, PA office location.
Envestnet is transforming the way financial advice is delivered through its connected technology, advanced insights, and asset management solutions - backed by industry-leading service and support. Since 1999, Envestnet has served the wealth management industry and today supports trillions in platform assets, serving over a hundred thousand financial advisors. The vast majority of the nation's leading banks, the largest wealth management and brokerage firms, and over 500 of the largest RIAs rely on Envestnet's wealth management platform and solutions to drive business growth, boost productivity, and deliver better financial outcomes for their clients.
Envestnet's Strategy:
Deliver the industry-leading wealth management platform, powered by advanced data and insights
Leverage our scale and efficiencies to serve our clients' needs comprehensively
Enable financial advisors to deliver more holistic advice - reflecting a more complete view of their clients' financial lives, and in a more connected environment
For more information, please visit ******************
Job Summary:
We are seeking a highly skilled and experienced Senior Security Analyst to join Envestnet's Cyber Defense Team. This role will report into the Director of Security Operations. In this pivotal role, you will be entrusted with safeguarding our organization's assets through leading incident response, conducting thorough security triage and analysis, Vulnerability assessment, Threat Hunting, Security response Automation and continuously enhancing our overall security framework. As a vital member of our team, you will contribute significantly to the development and maintenance of our Security Operations Center (SOC) processes and procedures.
The ideal candidate will possess extensive experience in cybersecurity, exceptional analytical skills, and a demonstrated ability to effectively manage and resolve intricate security incidents. This position is fundamental to our mission of fortifying our security posture and ensuring the protection of our critical assets.
Job Responsibilities:
Lead and manage all stages of the incident response lifecycle, which includes detection, analysis, containment, eradication, recovery, and post-incident review. Prepare comprehensive incident reports and effectively communicate findings to both technical and non-technical stakeholders.
Perform in-depth analysis of security events, alerts, and logs from various tools such as SIEM, EDR, IDS/IPS, and firewalls to identify and investigate potential threats. Update and implement incident response playbooks and procedures to ensure the efficient and effective handling of security incidents. Streamline and automate detection and prevention processes to enable rapid response, consistent triage, and swift root cause analysis and recovery.
Contribute to the development and fine-tuning of the EDR platform, automating incident triage and response tasks using SOAR to create state-of-the-art detection capabilities. Ensure alignment of security operations and detection platforms with industry-standard frameworks such as MITRE ATT&CK and NIST CSF.
Manage the relationship with the MDR vendor, tracking performance against SLAs and key performance indicators (KPIs). Conduct regular reviews of reports, incident trends, and feedback from internal teams.
Conduct vulnerability assessments and gap analyses to determine security weaknesses in systems, applications, and networks. Collaborate with workload owners and cross-functional teams to coordinate remediation activities.
Engage in proactive threat and vulnerability searches, leveraging threat intelligence and Envestnet's network knowledge. Collaborate with the offensive security team on Breach and Attack Simulation (BAS) platform exercises. Automate repetitive searches using various tools, monitor threat actor tactics, and manage simulated cyber-attacks based on prioritized threats.
Participate in the evaluation, selection, and implementation of new security technologies and solutions.
Assist in writing best practice procedures for services such as incident analysis, incident response coordination, security audits or assessments, certificate authority, log analysis and diagnostics, and host vulnerability scanning. Implement end-point security using EDR, EPM, and AV tools.
Adherence to and application of Envestnet legal, compliance, risk, business continuity and administrative policy within the role and department(s) including the timely completion of training & awareness, affirmations and testing as requested.
As part of the responsibilities for this role, you will understand and readily support Envestnet's established corporate business practices, policies, internal controls and procedures designed to create value or minimize risk
Required Qualifications:
Bachelor's degree in computer science, Information Security, or a related field (or equivalent practical experience).
8+ years of cybersecurity experience, specializing in Security Operations and Incident Response.
Relevant industry certifications in Incident Response and Forensics related certificates areas, such as GIAC (GCIH, GCFA, GCFE), CISSP, or CEH is highly desirable.
Excellent communication skills, both written and verbal, with the ability to convey technical information clearly.
Expertise in incident handling, threat hunting, digital forensics, malware analysis, SOAR, operating systems, network security, purple teaming, and emerging security intelligence.
Skilled in using tools like CrowdStrike EDR, Breach & Attack Simulation platforms, NDR, Splunk Enterprise Security, and IDP/ITDR.
Comprehensive understanding of network protocols, Windows and Linux operating systems, and security architectures.
Capable of working independently or within a team in high-pressure environments.
Knowledgeable about the MITRE ATT&CK framework.
Process-oriented with strong analytical and decision-making skills.
Effective team player with excellent interpersonal abilities.
Familiarity with cloud security (AWS, Azure, GCP) is advantageous.
Envestnet:
Be a member of an innovative and industry leading financial technology and solutions company
Competitive Compensation/Total Reward Packages that include:
Health Benefits (Health/Dental/Vision)
Paid Time Off (PTO) & Volunteer Time Off (VTO)
401K - Company Match
Annual Bonus Incentives
Parental Stipend
Tuition Reimbursement
Student Debt Program
Charitable Match
Wellness Program
Envestnet is an Equal Opportunity Employer.
#LI-AQ1
Auto-ApplyCyber Information Assurance Analyst
Security architect job in Parkesburg, PA
APPLICATION INSTRUCTIONS: * CURRENT PENN STATE EMPLOYEE (faculty, staff, technical service, or student), please login to Workday to complete the internal application process. Please do not apply here, apply internally through Workday. * CURRENT PENN STATE STUDENT (not employed previously at the university) and seeking employment with Penn State, please login to Workday to complete the student application process. Please do not apply here, apply internally through Workday.
* If you are NOT a current employee or student, please click "Apply" and complete the application process for external applicants.
Approval of remote and hybrid work is not guaranteed regardless of work location. For additional information on remote work at Penn State, see Notice to Out of State Applicants.
POSITION SPECIFICS
We are searching for an experienced Information Systems Security Manager (ISSM) to join our Cybersecurity Division at the Applied Research Laboratory (ARL) at Penn State. Information Technology Services provides ARL's administrative and research computing environments and capabilities, delivering secure, responsive, efficient, effective, and compliant IT services and operations to meet the demanding needs of ARL's leading edge research.
This position will have a focus on the unclassified space, overseeing and owning the unclassified information security program, including implementing our various compliance requirements like the Cybersecurity Maturity Model Certification (CMMC). This ISSM will however operate within and support both unclassified and collateral spaces, backing up fellow ISSM's and enforcing commonalities between environments where possible. They will be responsible for developing and maintaining policy and security documentation, providing cybersecurity recommendations for system, network, and application design, leading information system risk assessments, assist in leading incident response actions, setting standards for continuous monitoring processes such as auditing or vulnerability assessments, and ensuring cybersecurity requirements are effectively and efficiently communicated to operational and researcher team leadership to ensure integration into their respective team processes.
ARL is an authorized DoD SkillBridge partner and welcomes all transitioning military members to apply.
You will:
* Develop, validate, submit, and maintain information system security plans, certification and authorization packages, and plans of action and milestones in support of compliance requirements
* Oversee development and implementation of risk assessments against information systems in all phases of their lifecycles
* Provide cybersecurity recommendations for system, network, and application design
* Monitor and assist in the assessment and review of current and new systems and networks to ensure compliance with current cybersecurity policies, concepts, and measures
* Develop training material related to compliance and audit requirements to assist employees in individual compliance/audits as applicable
* Assist in technical requirements such as; vulnerability scanning, review of security/event logs, network analysis, and incident response on an as-needed basis
Required skills/experience areas include:
* Current eligibility for access to classified information at the Top-Secret level or higher and may be subject to a government background investigation to upgrade clearance eligibility, if required
* Assessment and Authorization experience of systems and networks using CMMC and RMF
* NIST/ISO standards (eg. NIST SP 800-53 and NIST SP 800-171), Department of Defense directives, DISA STIG, and regulatory requirements
* Strong technical background, with significant experience using multiple operating systems to include Windows and Linux
* Policy, procedure, plan of action and milestone, risk assessment and security plan development with experience of continuous monitoring for compliance with said documentation
* System functions, security policies, technical security safeguards, and operational security measures
* The ability to certify and maintain information security related certifications
(eg. Security+, CISSP, and any other required certifications)
* Excellent communications, analytical and problem-solving skills
* Efficient organizational, multitasking, and time management abilities
Preferred skills/experience areas include:
* A Bachelor's degree in Information Security, Information Technology, or Computer Science
* Management or leadership experience in IT and information security space
* Vulnerability scanning and mitigation utilizing Nessus, Retina, GFI Languard, or similar tool
* Experience with networking fundamentals including various concepts, tools, and administrative functions
* Working knowledge of container image security and experience overseeing security for containerized environments (docker, podman, etc)
* SEIM management or use for analysis, such as Splunk, ELK, or AlienVault
* VMWare and management of Virtual Machines
* Training material development
Your working location will be located in State College, PA in a hybrid on-site/work from home format. Questions related to flexible work should be directed to the hiring manager during the interview process. This position will require periodic travel to remote locations.
MINIMUM EDUCATION, WORK EXPERIENCE & REQUIRED CERTIFICATIONS
If filled as Cyber Information Assurance Analyst - Principal Professional, this position requires:
Master's Degree
8+ years of relevant experience; or an equivalent combination of education and experience accepted
Required Certifications:
None
If filled as Cyber Information Assurance Analyst - Senior Professional, this position requires:
Bachelor's Degree
6+ years of relevant experience; or an equivalent combination of education and experience accepted
Required Certifications:
None
ARL's purpose is to research and develop innovative solutions to challenging scientific, engineering, and technology problems in support of the Navy, the Department of Defense (DoD), and the Intel Community (IC).
FOR FURTHER INFORMATION on ARL, visit our web site at ****************
BACKGROUND CHECKS/CLEARANCES
Employment with the University will require successful completion of background check(s) in accordance with University policies.
All positions at ARL require candidates to possess the ability to obtain a government security clearance; you will be notified during the interview process if this position is subject to a government background investigation. You must be a U.S. citizen to apply. Employment with the ARL will require successful completion of a pre-employment drug screen.
SALARY & BENEFITS
The salary range for this position, including all possible grades, is $86,300.00 - $145,700.00.THE PROPOSED SALARY RANGE MAY BE IMPACTED BY GEOGRAPHIC DIFFERENTIAL
Salary Structure - Information on Penn State's salary structure
Penn State provides a competitive benefits package for full-time employees designed to support both personal and professional well-being. In addition to comprehensive medical, dental, and vision coverage, employees enjoy robust retirement plans and substantial paid time off which includes holidays, vacation and sick time. One of the standout benefits is the generous 75% tuition discount, available to employees as well as eligible spouses and children. For more detailed information, please visit our Benefits Page.
CAMPUS SECURITY CRIME STATISTICS
Pursuant to the Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act and the Pennsylvania Act of 1988, Penn State publishes a combined Annual Security and Annual Fire Safety Report (ASR). The ASR includes crime statistics and institutional policies concerning campus security, such as those concerning alcohol and drug use, crime prevention, the reporting of crimes, sexual assault, and other matters. The ASR is available for review here.
EEO IS THE LAW
Penn State is an equal opportunity employer and is committed to providing employment opportunities to all qualified applicants without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. If you are unable to use our online application process due to an impairment or disability, please contact ************.
Federal Contractors Labor Law Poster
PA State Labor Law Poster
Penn State Policies
Copyright Information
Hotlines
Auto-ApplySubstation Engineer - Physical
Security architect job in Conshohocken, PA
** **Work with Us. Change the World.** At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world's most complex challenges and build legacies for future generations.
There has never been a better time to be at AECOM. With accelerating infrastructure investment worldwide, our services are in great demand. We invite you to bring your bold ideas and big dreams and become part of a global team of over 50,000 planners, designers, engineers, scientists, digital innovators, program and construction managers and other professionals delivering projects that create a positive and tangible impact around the world.
We're one global team driven by our common purpose to deliver a better world. Join us.
**Job Description**
**AECOM** has a position available for a **Substation Engineer** with a **specialization in physical substation design** .
**This position can be based out of any AECOM office located in Dallas, TX; Arlington, VA; Austin, TX; Baltimore, MD; Bloomfield, NJ; Boston, MA; Burlington, NJ; Charlotte, NC; Chicago, IL; Cleveland, OH; Conshohocken, PA.**
**This position is hybrid.**
The focus of your experience must be in the power delivery industry and be associated with electrical engineering with respect to the design of utility scale substation design.
The responsibilities for the position include, but may not be limited to:
* Performs specific and limited portions of a broader assignment of an experienced engineer.
* Gathers and correlates basic engineering data using established and well-defined procedures.
* Works on detailed or routine engineering assignments involving calculations and relatively simple tests.
* Proposes approach to solve new problems encountered.
* Identifies discrepancies in results.
* Provides guidance to entry level engineers.
* Performs work in accordance with agreed upon budget and schedule with moderate supervision.
**Qualifications**
Minimum Requirements:
+ Bachelor's degree in electrical engineering and 2 years of relevant experience or demonstrated equivalency of experience and/or education
+ Experience with high voltage substation design
+ EIT Certification
+ Proficient in use of AutoCAD and/or Bentley Microstation
Preferred Qualifications:
+ Professional engineering license or ability to obtain one within 2 years of hire.
+ Knowledge of construction practices and constructability
+ Experience with proposal writing and project estimating.
+ Working knowledge of scheduling and project controls processes.
+ Superior Verbal & Written Communications
+ Driven for Results, Decision Quality, Priority Setting, Planning, Conflict Management, Informing, Listening, Dealing with Ambiguity, and Customer Focus.
+ Good knowledge of the industry and technology trends specific to substations.
+ Familiar with applicable codes and standards (IEEE, ANSI, NESC).
+ Working knowledge of MS Office (Word, Excel, etc.) a must.
+ Effective verbal communication and technical writing skills.
+ Ability to pay close attention to detail and check the quality of own and others' work.
+ Ability to use sound engineering judgment.
+ Ability to manage time and workload effectively, which includes planning, organizing, and prioritizing with attention to details.
+ Strong familiarity with the NEC and National Electrical Safety Code
**Additional Information**
+ Relocation assistance is not available for this role
+ Sponsorship for US Employment Authorization is not available for this position.
Offered compensation will be based on location and individual qualifications. The expected range is $70,000.00 - $110,000.00.
**About AECOM**
AECOM is proud to offer comprehensive benefits to meet the diverse needs of our employees. Depending on your employment status, AECOM benefits may include medical, dental, vision, life, AD&D, disability benefits, paid time off, leaves of absences, voluntary benefits, perks, flexible work options, well-being resources, employee assistance program, business travel insurance, service recognition awards, retirement savings plan, and employee stock purchase plan.
AECOM is the global infrastructure leader, committed to delivering a better world. As a trusted professional services firm powered by deep technical abilities, we solve our clients' complex challenges in water, environment, energy, transportation and buildings. Our teams partner with public- and private-sector clients to create innovative, sustainable and resilient solutions throughout the project lifecycle - from advisory, planning, design and engineering to program and construction management. AECOM is a Fortune 500 firm that had revenue of $16.1 billion in fiscal year 2024. Learn more at aecom.com.
**What makes AECOM a great place to work**
You will be part of a global team that champions your growth and career ambitions. Work on groundbreaking projects - both in your local community and on a global scale - that are transforming our industry and shaping the future. With cutting-edge technology and a network of experts, you'll have the resources to make a real impact. Our award-winning training and development programs are designed to expand your technical expertise and leadership skills, helping you build the career you've always envisioned. Here, you'll find a welcoming workplace built on respect, collaboration and community-where you have the freedom to grow in a world of opportunity.
As an Equal Opportunity Employer, we believe in your potential and are here to help you achieve it. All your information will be kept confidential according to EEO guidelines.
**ReqID:** J10130808
**Business Line:** Energy
**Business Group:** DCS
**Strategic Business Unit:** East
**Career Area:** Engineering
**Work Location Model:** Hybrid
**Compensation:** USD 70000 - USD 110000 - yearly
Sr Security System Specialist - Pottstown, PA
Security architect job in Pottstown, PA
ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you have the required skill set, education requirements, and experience, please click the submit button and follow the next steps.
Unless specifically stated otherwise, this role is "On-Site" at the location detailed in the job post.
As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose: accelerating the transition to a carbon-free future. We have been the leader in clean energy production for more than a decade, and we are cultivating a workplace where our employees can grow, thrive, and contribute.
Our culture and employee experience make it clear: We are powered by passion and purpose. Together, we're creating healthier communities and a cleaner planet, and our people are the driving force behind our success. At Constellation, you can build a fulfilling career with opportunities to learn, grow and make an impact. By doing our best work and meeting new challenges, we can accomplish great things and help fight climate change. Join us to lead the clean energy future.
Total Rewards
Constellation offers a wide range of benefits and rewards to help our employees thrive professionally and personally. We provide competitive compensation and benefits that support both employees and their families, helping them prepare for the future. In addition to highly competitive salaries, we offer a bonus program, 401(k) with company match, employee stock purchase program; comprehensive medical, dental and vision benefits, including a robust wellness program; paid time off for vacation, holidays, and sick days; and much more.
Expected salary range of $108,900 to $121,000, varies based on experience, along with comprehensive benefits package that includes bonus and 401(k).
Primary Purpose of Position
Security Technologies Program goal is to Improve, Maintain and Create New processes for Security Effectiveness in Equipment Reliability, Maintenance, Innovation and Life Cycle Management in a Cost-Effective Manner while developing the next generation of Security Technology Leaders. Thie role provides operational technical insights to stakeholders regarding Security system solutions being deployed within the fleet environment. Must possess ability to monitor, maintain and lead fundamental Security system operations, initiatives, and projects.
Primary Duties and Accountabilities
Lead projects, planning, maintenance, and operations. Consults with leadership, project teams, support teams and end users to support availability and perform feasibility analysis on potential changes related to Security systems. Provide technical expertise for maintaining performance and reliability of security performance indicators and business plan goals.
Work closely with peers to develop future improvement plans, resource requirements, migrations strategies, and project schedules. Understand other technologies and service offerings and their impact to regulatory requirements.
Performance of evaluation, testing, lab, and mockup solutions as needed. Serve as a resource in assigned daily support and deployments to Security disciplines and ensure solutions meet business requirements and performance indicators. Responsible for operating and maintaining solutions at the component level, including hands-on configuration, troubleshooting and restoration of Security systems.
Provide feedback to Security Leadership for risks identified during business impact analysis, site risk assessments and disaster recovery planning.
Maintain and Mentor technical knowledge and business acumen within the Security discipline.
Perform other job assignments and duties as directed by management or pursuant to company policy, including but not limited to emergency response, departmental coverage, call outs, and support of outage activities in positions outside the department.
Additional Qualifications/Responsibilities
Minimum Qualifications
Bachelor's degree and 5 years of related experience OR
Current or previous Senior Reactor Operator (SRO) license with 5 years of related experience OR
Associates with 7 years of related experience OR
High school diploma/GED with 9 years of related experience
Maintain minimum access requirements or unescorted access requirements, as applicable, and favorable medical examination and/or testing in accordance with position duties
Preferred Qualifications
Certification in area of expertise
Project Management
Security Tech knowledge
Security Knowledge
IT
Associate Information Security Analyst - Biomedical Security
Security architect job in Tredyffrin, PA
Responsibilities One of the nation's largest and most respected providers of hospital and healthcare services, Universal Health Services, Inc. (NYSE: UHS) has built an impressive record of achievement and performance. Growing steadily since its inception into an esteemed Fortune 300 corporation, annual revenues were $15.8 billion in 2024. During the year, UHS was again recognized as one of the World's Most Admired Companies by Fortune; and listed in Forbes ranking of America's Largest Public Companies. Headquartered in King of Prussia, PA, UHS has approximately 99,000 employees and continues to grow through its subsidiaries. Operating acute care hospitals, behavioral health facilities, outpatient facilities and ambulatory care access points, an insurance offering, a physician network and various related services located all over the U.S. States, Washington, D.C., Puerto Rico and the United Kingdom. ***********
The Corporate Information Services Department is seeking a dynamic and talented Associate Information Security Analyst - Biomedical Security.
As a member of the Cybersecurity team, the Associate Information Security Analyst - Biomedical Security supports and assists with the implementation and maintenance of UHS applications or systems intended to protect the confidentiality, integrity and availability of UHS and affiliates Information Services assets. The candidate will be focused on identifying and managing security vulnerabilities in biomedical and clinical technology systems, including connected medical devices and IoT/OT infrastructure. Monitors the resolution of maintenance or enhancement issues assigned by the UHS Customer Support Center or more senior members of the Cybersecurity Team. Implements modifications to existing applications that will effectively accomplish desired objectives, with guidance from more senior team members. Provides technical support to UHS entities as needed. Meets deadlines and ensures continued progress toward assignment completion. Shares experience with other members of team.
Key Responsibilities include:
System Implementation:
* Regularly meets with users, vendors, and IS staff to develop/modify system specifications.
* Assists with the implementations of security solutions and prepares the appropriate documentation.
* Researches and resolves technical security-related tickets.
* Adheres to appropriate UHS Project Management standards.
* Ensures strict adherence to work plans, reporting all serious deviations to management.
* Assists with the training of users in operating procedures for security solutions.
System Maintenance/Support:
* Researches and resolves tickets including major security solution implementations and upgrades.
* Lead or support vulnerability management efforts for biomedical and IoT/OT devices.
* Assists with Patch Management Remediation.
* Assists with Vendor and Third Party Risk Management.
* Adheres to UHS Service Level and Change Management Policies.
* Provides on-call support as scheduled.
* Establishes and maintains regular communications with user community.
Administration and Oversight:
* Maintains Service Excellence principles.
* Prepares and submits status reports to supervisor as required.
* Keeps management well informed of activities, needs, problems.
Qualifications
Position Requirements:
* This position requires a Bachelor's degree in Computer Science or Information Systems, with a concentration in cybersecurity highly preferred. No working experience is required.
* Up to one year of Information Technology or Systems experience would enhance the skills and abilities necessary to perform this job. An Associate's Degree in Computer Science or Information Systems, with a concentration in cybersecurity highly preferred AND one year of relevant Information Technology or Systems experience may be considered in lieu of the Bachelor's degree.
* Basic understanding of the following or similar information security technologies:
* Active Directory
* Intrusion detection/prevention systems (IDS/IPS)
* Web filtering
* Vulnerability scanners/remediation
* Encryption technologies for data at rest and data in transit
* Mobile device and removable media protection or management systems
* Forensic analysis
* Security Information and Event Management (SIEM) systems
* Common Vulnerabilities and Exposures (CVE) databases
* Anti-Virus
* Device Control
* Basic knowledge of information security best practice standards or frameworks.
* Basic knowledge of general IS standards and quality methods and metrics.
* Basic knowledge of project management methods.
* Basic knowledge of security vulnerability management.
* Basic knowledge of security penetration testing and ethical hacking best practices.
* Knowledge of medical device protocols and systems (e.g., HL7, DICOM, PACS, infusion pumps, patient monitors) is a plus.
* Has a general familiarity with business practices, concepts and terminology sufficient to support the security applications or systems and communicate effectively with colleagues.
* Able to prioritize multiple tasks and be details oriented.
* Excellent communication, interpersonal and project management skills
This opportunity provides the following:
* Challenging and rewarding work environment
* Growth and development opportunities within UHS and its subsidiaries
* Competitive Compensation
* Excellent Medical, Dental, Vision and Prescription Drug Plan
* 401k plan with company match
* Generous Paid Time Off
* UHS is a registered trademark of UHS of Delaware, Inc., the management company for Universal Health Services, Inc. and a wholly-owned subsidiary of Universal Health Services, Inc. Universal Health Services, Inc. is a holding company and operates through its subsidiaries including its management company, UHS of Delaware, Inc. All healthcare and management operations are conducted by subsidiaries of Universal Health Services, Inc. To the extent any reference to "UHS or UHS facilities" on this website including any statements, articles or other publications contained herein relates to our healthcare or management operations it is referring to Universal Health Services' subsidiaries including UHS of Delaware. Further, the terms "we," "us," "our" or "the company" in such context similarly refer to the operations of Universal Health Services' subsidiaries including UHS of Delaware. Any employment referenced in this website is not with Universal Health Services, Inc. but solely with one of its subsidiaries including but not limited to UHS of Delaware, Inc.
UHS is not accepting unsolicited assistance from search firms for this employment opportunity. Please, no phone calls or emails. All resumes submitted by search firms to any employee at UHS via-email, the Internet or in any form and/or method without a valid written search agreement in place for this position will be deemed the sole property of UHS. No fee will be paid in the event the candidate is hired by UHS as a result of the referral or through other means.
EEO Statement
All UHS subsidiaries are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates. UHS subsidiaries are equal opportunity employers and as such, openly support and fully commit to recruitment, selection, placement, promotion and compensation of individuals without regard to race, color, religion, age, sex (including pregnancy, gender identity, and sexual orientation), genetic information, national origin, disability status, protected veteran status or any other characteristic protected by federal, state or local laws.
We believe that diversity and inclusion among our teammates is critical to our success.
Notice
At UHS and all our subsidiaries, our Human Resources departments and recruiters are here to help prospective candidates by matching skillset and experience with the best possible career path at UHS and our subsidiaries. We take pride in creating a highly efficient and best in class candidate experience. During the recruitment process, no recruiter or employee will request financial or personal information (Social Security Number, credit card or bank information, etc.) from you via email. The recruiters will not email you from a public webmail client like Hotmail, Gmail, Yahoo Mail, etc. If you are suspicious of a job posting or job-related email mentioning UHS or its subsidiaries, let us know by contacting us at: ************************* or **************.
Senior Information Security Analyst
Security architect job in Audubon, PA
At Globus Medical, we move with a sense of urgency to deliver innovations that improve the quality of life of patients with musculoskeletal disorders. Our team is inspired by the needs of these patients, and the surgeons and healthcare providers who treat them. We embrace a culture of exceptional response by partnering with researchers and educators to transform clinical insights into tangible solutions. Our solutions improve the techniques and outcomes of surgery so patients can resume their lives as quickly as possible.
Position Summary:
We are seeking a seasoned Information Security Engineer with 10+ years of experience to lead and enhance our cybersecurity infrastructure, threat detection capabilities, and incident response processes. This role will drive strategic initiatives, mentor junior analysts, and collaborate across departments to ensure a resilient and secure enterprise environment. The ideal candidate will possess deep technical expertise, a proactive mindset, and a strong understanding of modern threat landscapes and security frameworks.
Essential Functions:
Architect and implement scalable security solutions across cloud and on-prem environments.
Lead threat detection, incident response, and forensic investigations.
Develop and maintain security automation scripts and playbooks.
Oversee vulnerability management lifecycle and remediation strategies.
Collaborate with DevOps, IT, and business units to embed security into operations and development pipelines.
Conduct red/blue team exercises and tabletop simulations.
Evaluate and integrate new security technologies and platforms.
Support compliance initiatives (ISO 27001, NIST, SOC 2) and audit readiness.
Produce reporting on risk posture, threat trends, and mitigation efforts.
Mentor junior security staff and contribute to team development.
Adheres to the letter and spirit of the company Code of Conduct, the AdvaMed Code, MedTech Code, and all other company policies.
Ensures Compliance with applicable governmental laws, rules, and regulations, both in the United States and internationally, by completing introductory and annual training and maintaining knowledge of compliance as it applies to your role
Represents the company in a professional manner and uphold the highest standards of ethical business practices and socially responsible conduct in all interactions with other employees, customers, suppliers, and other third parties
Reasonable accommodations may be made to enable individuals with disabilities to perform these essential functions.
Qualifications:
Education: Education: Bachelor's or Master's in Computer Science, Information Security, or related field.
Certifications: CISSP, OSCP, GCIH, AWS/Azure Security, or equivalent.
Technical Skills:
Advanced proficiency with SIEM, EDR, SOAR, and vulnerability management tools.
Strong scripting skills (Python, PowerShell, Bash).
Deep understanding of cloud security (AWS, Azure, GCP).
Familiarity with DevSecOps and CI/CD security integration.
Experience with zero trust architecture and identity management.
Competencies
Action Oriented: Tackles challenges with energy; takes quick, decisive action and seizes opportunities.
Problem Solving: Applies strong analytical skills to proactively identify and resolve issues.
Approachability: Builds rapport easily; listens well, puts others at ease, and addresses concerns early.
Composure: Stays calm under pressure, handles stress effectively, and remains steady during crises.
Technical Learning: Quickly learns emerging technologies and independently develops new skills through strong internal drive
Physical Demands:
The physical demands listed here are representative of those that must be met by and employee to successfully perform the essential functions of this job.
Required to sit; climb or balance; and stoop, kneel, crouch or crawl
Required to regularly lift and/or move up to 10 pounds, and occasionally lift and/or move up to 25 pounds
Required to possess specific visons abilities, including: close vision, distance vision, color vision, peripheral vision, depth perception and capacity to adjust focus
Our Values:
Our Life Moves Us philosophy is built on four values: Passionate About Innovation, Customer Focused, Teamwork, and Driven.
Passionate about Innovation: Improving patient care by delivering advanced technology to our customers is at the core of what we do. We are passionate in our role in improving the lives of patients by continuously developing better solutions.
Customer Focused: We listen to our customers' needs and respond with a sense of urgency.
Teamwork: Working together, anything is possible. We value every person on our team and treat each other with respect. We are accountable to one another and support each other. Together, we make each other stronger.
Driven: We pursue our mission with energy and passion. We are nimble, results-oriented and decisive. We overcome obstacles that arise in our quest to deliver solutions that will improve the lives of our customers and patients.
Equal Employment Opportunity:
Globus Medical is an equal opportunity employer. All applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, age, disability, marital status, pregnancy, national origin or citizenship. We are committed to a diverse workforce. We value all employees' talents and support an environment that is inclusive and respectful.
Other Duties:
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
Auto-ApplyAnalyst III - Information Security
Security architect job in Conshohocken, PA
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
Job Description for IAM Hygiene Analyst III role
This role is responsible for supporting the Execution and Improvement of IAM operations across the enterprise, specifically within the IAM Hygiene space. This role will assist with continuously detecting, remediating, and preventing identity-related risks by maintaining accurate, minimal, and secure identity data, access configurations, and authentication mechanisms, as well as assisting with other IAM Governance related functions where needed. The Analyst II will be responsible to generate possible hygiene actions (hypotheses), using approved Cencora tooling, to proactively identify and escalate potential identity-related control gaps, data integrity issues, process deficiencies, and other hygiene concerns; collaborate with stakeholders to validate gaps, evaluate root causes and drive timely remediation.
This role is key to creating and maintaining a mature IAM Hygiene function to ensure access is controlled, organized, and following the concept of “least privilege”. The ideal candidate will have hands-on experience remediating identity and access related risks.
This role works closely with more senior IAM analysts, engineers, and business stakeholders to ensure secure and efficient access to systems and data. The Analyst II also supports the development of IAM procedures, participates in user support and troubleshooting, and contributes to continuous improvement efforts. They are expected to demonstrate learning agility, attention to detail, and a strong commitment to operational excellence and user experience.
Primary Duties and Responsibilities:
Identify and take appropriate actions around unused or stale accounts.
Identify and take appropriate actions around unused or stale accounts.
Ensure Policies and Control Standards are being followed and work toward training, awareness, and resolution where gaps are identified.
Monitor and analyze identity-related activities to identify and remediate risky accounts, authorizations, and configurations, ensuring compliance with policies.
Assist in the development and maintenance of comprehensive processes for identity threat detection and response, including the creation of runbooks and workflows.
Collaborate with cross-functional teams to evaluate and align on identity analytics tools and data structures to enhance IAM capabilities.
Develop and track key performance indicators (KPIs) and key risk indicators (KRIs) for IAM hygiene, providing insights and recommendations to improve identity management practices.
Support the establishment of a culture of continuous improvement by leveraging incident learnings to refine IAM processes and protocols.
Ensure Policies and Control Standards are being followed and work toward training, awareness, and resolution where gaps are identified.
Qualifications:
4+ years of experience IAM or related field
1+ years in an IAM Hygiene or IAM Governance role
Bachelors degree or equivalent experience
Skills and Knowledge:
Behavioral:
Strong understanding of IAM concepts, practices, and technologies including Least Privilege, Privileged Access Management (PAM), Identity Lifecycle management and access controls
Familiarity with SailPoint
Familiarity with Axonius (preferred)
Familiarity with NIST framework
Strong analytical and problem-solving skills, with the ability to interpret data and make informed decisions.
Ability to operate independently and within a team structure
Effective communication and collaboration skills
Strong time management, with ability to multi-task and shift from task to task effectively in a fast-paced environment.
Technical Skills:
IAM Lifecycle and Access provisioning
Authentication Support (MFA and SSO)
IAM Policy and Standards (NIST, ISO 27001, HITRUST)
IT Risk and Compliance Awareness
Root Cause Analysis and Incident Support
Reporting and Documentation
Threat Monitoring and Alert Response
Tools Knowledge:
IAM Platforms (e.g., SailPoint, Saviynt, Okta, Ping Identity)
Directory Services (Active Directory, Azure AD)
ITSM Tools (e.g., ServiceNow)
Security Tools (SIEM, EDR, SOAR)
Programming/Scripting (e.g., Python, PowerShell, SQL)
Microsoft Office Suite
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit **************************************
Full time Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call ************ or email ****************. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated CompaniesAffiliated Companies: AmerisourceBergen Services Corporation
Auto-Apply