Security architect jobs in Braintree Town, MA - 264 jobs
All
Security Architect
Security Engineer
Security System Engineer
Information Security Manager
Information Security Director
Senior Security Engineer
Cyber Security Engineer
Information Security Engineer
Senior Security Specialist
SaaS Security Architect & DevSecOps Lead
PTC Inc. 4.8
Security architect job in Boston, MA
A leading tech company seeks a Principal SaaS Security Engineer to enhance security measures for their cloud platform. The role demands over 8 years in security engineering, with expertise in AWS services and vulnerability management. This position involves leading securityarchitecture, incident response, and mentoring junior engineers in best practices. Ideal candidates should have a strong background in DevSecOps and a passion for building secure systems, contributing to a collaborative environment focused on innovation.
#J-18808-Ljbffr
$108k-140k yearly est. 6d ago
Looking for a job?
Let Zippia find it for you.
Principal Cloud Security Architect
Labelbox 4.3
Security architect job in Boston, MA
The Principal Cloud SecurityArchitect evaluates cloud architectures, identity models, permissions, and security controls across large-scale environments. This role focuses on identifying architectural risks, misconfigurations, and long‑term security design gaps.
What You'll Do
Assess cloud architectures (AWS, Azure, GCP) for security gaps
Review IAM configurations, network segmentation, and resource policies
Identify misconfigurations, privilege risks, and insecure patterns
Summarize architectural flaws and provide structured mitigation guidance
Validate alignment with security frameworks and best practices
Support recurring assessments of cloud environments and deployment patterns
What You Bring
Must-Have:
Deep experience in cloud securityarchitecture
Strong understanding of IAM, network design, and cloud service models
Ability to document complex architectures in clear, structured form
Nice-to-Have:
Experience with multi-cloud, zero‑trust, or high‑compliance environments
$40 - $80 an hour
#J-18808-Ljbffr
$40-80 hourly 6d ago
Senior Cloud Security Specialist
Publicis Sapient 4.7
Security architect job in Boston, MA
40 Water Street - 40 Water Street Boston, Massachusetts 02109 United States
Leveraging cybersecurity fundamentals, you will possess a strong understanding of cybersecurity principles, threat landscape, risk management and compliance requirements (such as GDPR, HIPPA, PCI DSS)
SecurityArchitecture Design: Proficiency in designing secure cloud architectures, including network security, identity and access management (IAM), data protection, encryption, and secure application development practices.
Network Security: Expertise in designing secure cloud network architectures including VPCs, virtual network segmentation, network security groups (NSGs), Cloud Firewalls, VPN gateways, IDS/IPS, and DDoS protection.
Data Security and Encryption: Knowledge of data protection techniques such as encryption, data masking, tokenization, and data loss prevention (DLP) Identity and Access Management (IAM)
Compliance and Governance: Understanding of regulatory compliance requirements and best practices for ensuring Cloud environments meet industry standards and regulatory mandates. This may include knowledge of Azure Policy, Azure Blueprints, GCP Security Command Center, AWS Compliance Center and other compliance assessment tools.
Experience with multiple cloud service providers (AWS, GCP, Azure) with deep knowledge in at least one major Cloud service provider
Fundamental understanding of security in cloud and how it differs from on-premise
Extensive hands-on experience in Terraform and CI/CD processes and an understanding of DevSecOps pipelines/workflows
Experience in working in a highly regulated environment such as banking, financial services or government (regional/network borders etc.)
Bachelor s degree in computer science, Information Systems or related course of study required or equivalent work experience. Related master s degree a plus
Security certifications in (CISSP, GIAC, Security+)
Additional Information
Benefits of Working Here
An inclusive workplace that promotes diversity and collaboration.
Access to ongoing learning and development opportunities.
Competitive compensation and benefits package.
Flexibility to support work-life balance.
Comprehensive health benefits for you and your family.
Generous paid leave and holidays.
Wellness program and employee assistance.
Pay Range: $160,000 - $215,000
The range shown represents a grouping of relevant ranges currently in use at Publicis Sapient. Actual range for this position may differ, depending on location and specific skillset required for the work itself.
As part of our dedication to an inclusive and diverse workforce, Publicis Sapient is committed to Equal Employment Opportunity without regard for race, color, national origin, ethnicity, gender, protected veteran status, disability, sexual orientation, gender identity, or religion. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at ***************************
Your information will be kept confidential according to EEO guidelines.
Company Description
Publicis Sapient is a digital transformation partner helping established organizations get to their future, digitally-enabled state, both in the way they work and the way they serve their customers. We help unlock value through a start-up mindset and modern methods, fusing strategy, consulting and customer experience with agile engineering and problem-solving creativity. United by our core values and our purpose of helping people thrive in the brave pursuit of next, our 20,000+ people in 53 offices around the world combine experience across technology, data sciences, consulting and customer obsession to accelerate our clients' businesses through designing the products and services their customers truly value.
Looking for the latest openings or want to get rewarded for recommending a peer?
#J-18808-Ljbffr
$160k-215k yearly 6d ago
Cloud-Native Java Engineer for Secure IAM SaaS
RSA Security USA LLC 4.7
Security architect job in Boston, MA
A leading security technology firm is looking for a Senior Java Engineer to design, develop, and maintain cloud-native SaaS solutions for their RSA ID Plus platform. Candidates should have over 5 years of experience in Java and cloud-native applications. This role emphasizes collaboration within a distributed team to deliver secure Identity and Access Management products. The position offers a competitive salary range of $90k to $195k along with comprehensive benefits including flexible paid time off and a 401(k) retirement plan.
#J-18808-Ljbffr
$90k-195k yearly 6d ago
Senior Cloud Security Engineer - Product Security
IBM 4.7
Security architect job in Lowell, MA
A leading software solutions company is seeking a Senior Product Security Engineer to enhance their product security function. In this role, you will collaborate closely with R&D teams to ensure security is integrated into the cloud offerings, including multi-cloud environments. Responsibilities include monitoring vulnerabilities, executing security assessments, and contributing to secure software architecture. Candidates should have extensive experience in security practices, particularly in cloud environments. This position offers a hybrid work arrangement within the United States.
#J-18808-Ljbffr
$77k-100k yearly est. 6d ago
Senior Remote Cloud Security Engineer (AWS)
Plan A Technologies, Inc.
Security architect job in Boston, MA
A leading technology firm is seeking an experienced Cybersecurity Engineer to implement and maintain cloud network security systems. The role includes daily monitoring of security alerts, incident response, and collaboration with engineering teams. Candidates must have a minimum of 4 years in cybersecurity engineering, proficiency in AWS, and familiarity with security technologies. This position offers a supportive team environment and flexibility in work location, as well as competitive benefits.
#J-18808-Ljbffr
$96k-134k yearly est. 2d ago
Security Engineer
Givzey, Inc.
Security architect job in Boston, MA
Security & IT Engineer
About the Role
We're looking for a hands‑on Security & IT Engineer to own and strengthen Givzey's security posture while managing our internal IT infrastructure. This is a hybrid role combining security engineering, cloud infrastructure management, and IT operations. You'll be responsible for everything from ensuring SOC 2 / ISO compliance and securing AWS environments to managing employee devices and implementing company‑wide security best practices.
This role is perfect for someone who can think strategically about risk and compliance while still getting into the weeds of configuration, automation, and incident response.
About Givzey:
Givzey is a Boston‑based, rapidly growing digital fundraising solutions company, built by fundraisers for nonprofit organizations.
Join a fast‑growing, mission‑driven team working across two innovative platforms: Givzey, the first donor commitment management platform revolutionizing nonprofit fundraising, and Version2.ai, a cutting‑edge AI platform helping individuals and organizations create their most authentic, effective digital presence. As an engineer at the intersection of philanthropy and artificial intelligence, you'll build scalable, high‑impact solutions that empower nonprofit fundraisers and redefine how people tell their stories online. We're a collaborative, agile team that values curiosity, autonomy, and purpose. Whether you're refining AI‑driven experiences or architecting tools for the future of giving, your work will help shape meaningful technology that makes a difference.
What You'll Do Security & Compliance
Own and evolve our information security program, including policies, controls, and procedures aligned with SOC 2, ISO 27001, and other frameworks.
Conduct regular security risk assessments and audits; maintain continuous compliance readiness.
Manage vulnerability scanning, penetration testing, and incident response processes.
Oversee access control, identity management, and data protection across all systems.
Partner with legal and operations teams to ensure vendor and data processing compliance.
Cloud Infrastructure SecuritySecure and manage AWS infrastructure (IAM, networking, encryption, logging, monitoring, etc.).
Implement security automation for configuration management, secrets management, and incident alerts.
Collaborate with engineering teams to embed security into CI/CD pipelines and software lifecycle.
IT Administration
Manage company devices (Macs) using MDM and endpoint protection tools.
Set up and maintain SSO, MFA, and access control across tools and services.
Handle onboarding/offboarding from a security and IT perspective.
Support internal IT operations and ensure systems run securely and smoothly.
Governance & Culture
Build a strong security culture through training, awareness, and best practices.
Stay current on emerging security threats and compliance standards.
What You'll Bring
5+ years of experience in IT, DevOps, or security engineering roles.
Hands‑on experience with AWS, IAM, and cloud security tools.
Strong familiarity with SOC 2, ISO 27001, and related compliance frameworks (TX‑RAMP).
Understanding of network security, identity & access management, and incident response.
Comfortable being both strategic and tactical - from writing policies to hardening infrastructure.
Bonus: experience with Pulumi
#J-18808-Ljbffr
$83k-113k yearly est. 4d ago
Information Security Engineer 3
WEX Inc. 4.8
Security architect job in Boston, MA
Information Security Engineer 3 page is loaded## Information Security Engineer 3locations: Portland, ME: Boston, MAtime type: Full timeposted on: Posted Todayjob requisition id: R20174****About the Team/Role****We're the Global Information Security Team at WEX, responsible for implementing and operating security technologies and processes throughout WEX. We partner closely with internal teams and customers to assure WEX operates in a secure and compliant manner. Our team holds itself to a high-standard and we collaborate closely with one another to ensure strong, reliable and effective relationships. We own our results and we take pride of ownership in everything we do. **We need help!** Changing the world isn't easy, and we have a lot of work ahead of us. From securing applications, data centers and cloud resources, we've got more work than we can handle and we're looking for great people to come along for the ride. We are looking for an application security engineer is responsible for ensuring the secure function of software security and familiarity with multiple general security practices and toolsets**How you'll make an impact** **Culturally, you're:*** A highly motivated security engineer who loves working on small, high performing teams that interface with the entire enterprise* A collaborative, solid communicator who works well with your team and stakeholders to drive projects from inception to completion* Someone who cares deeply for team results but is able to work independently to deliver high quality solutions for projects and operational tasks* Comfortable balancing the need to move fast with the realities of working in a highly regulated organization* Someone who thrives in situations where details and accuracy are vital* A skilled worker that has the motivation, expertise, and work ethic to operate independently across global time zones, and who is able to complete tasks and deliverables with minimal oversight* Work closely with Enterprise IT teams on securing Wex's infrastructure and applications* Able to mentor other engineers both technically and professionally**Technically, you:*** Engineer, implement, and monitor security measures to protect the enterprise* Configure and troubleshoot security infrastructure devices* Regularly review configurations and develop improvement plans* Develop technical solutions and new security tools to help mitigate security findings* Write comprehensive reports including assessment-based findings, outcomes and recommendations for security enhancement.* Have a general background in IT, Security, and supporting processes* Deep experience working with compliance and regulatory frameworks such as PCI-DSS, HIPAA/HITRUST, SOX, GDPR, NIST, etc.**Experience you'll bring*** Have 3-5 years of experience in Enterprise Information Security Engineering* Have 3-5 years of broad experience with security technologies such as NextGen AV (EDR), DLP, email security (SPF, DMARC, DKIM), web filtering, HSM, Key and Certificate management, or Identity and Access Management* Have a strong, practical understanding of modern cloud IT infrastructure, networking, and security engineering concepts* Are able to troubleshoot network and security issues within a complex environment* Have 3-5 years of experience in engineering solutions which meet security, compliance, and business needs* Can commit and deliver on very specific project/delivery timelines with minimal supervision* Are able work in an on-call rotation which may include some night and weekend shifts* Have excellent customer support skills, both written and verbal* Have 3-5 years of experience Linux and Unix operating systems* Have 3-5 years of experience with securing applications and enabling secure communication through HTTPS**It would be nice if you*** Have cloud experience with AWS and Azure* Experience working with AI/LLM Security* Experience working with Splunk* Experience working with CrowdStrike* Experience with automation technologies (SOAR) and writing code for automation* Experience working with Fortanix, Venafi, or similar Pay Range: $102,000.00 - $135,000.00WEX is a global commerce platform that helps businesses solve for operational complexities like employee benefits, managing and mobilizing fleets, and streamlining payments.With over 6,500 employees, we work with large and small companies in more than 200 countries and territories, and can tailor our services to meet the unique needs of their businesses.We hire people who share our passion for continuous innovation and client service that is unparalleled in the industry. Offering comprehensive and market competitive benefits, our offerings are designed to support your personal and professional well-being. If you're looking for a growing career - come be part of WEX today. To learn more about our employee benefits, please .WEX is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex, race, color, age, national origin, religion, sexual orientation, gender identity, protected veteran status, disability or other protected status. WEX promotes a drug-free workplace.Qualified individuals with a disability have the right to request a reasonable accommodation. If you require a reasonable accommodation as a result of your disability at any point in the job application process, please submit your request through our .This form is for accommodation requests only and cannot be used to inquire about the status of applications.
#J-18808-Ljbffr
A federal services provider located in Boston is seeking a Cyber Security Engineer to enhance software security for federal clients. The ideal candidate will possess a Bachelor's degree in a relevant field and experience with DevSecOps tools. Responsibilities include implementing security in software, maintaining security processes, and conducting assessments. This role promises to offer impactful career opportunities within a company that emphasizes employee ownership and diversity.
#J-18808-Ljbffr
360 IT Professionals is a Software Development Company based in Fremont, California that offers complete technology services in Mobile development, Web development, Cloud computing and IT staffing. Merging Information Technology skills in all its services and operations, the company caters to its globally positioned clients by providing dynamic feasible IT solutions. 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement.
Job Description
We are looking to fill multiple full time positions as Information SecurityArchitects in Cumberland RI.
Qualifications
A minimum of 5+ years of relevant security domain experience.
3+ years of hands on technical experience in network and perimeter security
A minimum of 3 years in an architecture role and be able to lead/step up as needed
Demonstrated expertise in integrating/developing security solutions in a 7x24 production environment
Prior experience in defining the technology strategy for a large, global organization, and the ability to influence and persuade peers and colleagues in other reporting structures
Strong Plus Skills:
Industry recognized certifications such as CISA, CISM, CISSP, or SANS GIAC are a plus
Virtualization Security experience is a strong plus (VMware ESX 6.x, Hytrust, Hypervisor, in-hypervisor malware control. Virtual NIC, NSX or equivalent.)
Knowledge of risk assessment methodologies, IT policies and standards
Knowledge of vulnerability identification tools, Qualys, Veracode, Qualys WAS.
Additional Information
In person interview is acceptable.
$104k-135k yearly est. 60d+ ago
Google Cloud Security Architect
Slalom 4.6
Security architect job in Boston, MA
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish securityarchitecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud securityarchitecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud securityarchitecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
$140k-203k yearly 21d ago
Director Information Security
Care New England Health System 4.4
Security architect job in Warwick, RI
The Director, Information Security holds primary responsibility for safeguarding the Care New England (CNE) computing environment. This includes securing systems across all CNE operating units, directing enterprise-wide cybersecurity strategy, and ensuring compliance with HIPAA, PCI, and all applicable federal, state, local, and industry regulations.
The Director serves as the Chief Information Security Officer (CISO) for CNE, providing leadership in risk assessment, incident response, regulatory compliance, and cybersecurity governance. The role oversees information security tools, policies, vulnerability assessments, and monitoring systems; responds to security threats; leads mitigation activities; and collaborates closely with IS teams, Audit/Compliance, HR, Finance, and Legal.
This leader develops and manages the Information Security program, directs security staff, sets security standards, leads incident management, evaluates emerging technologies, manages vendor relationships, and ensures organizational readiness through education, training, and participation in business continuity and disaster recovery planning.
Duties and Responsibilities:
Develop and maintain the enterprise Information Security Program.
Establish protection goals, objectives, and metrics aligned with organizational strategy.
Serve as the Chief Information Security Officer (CISO) for CNE.
Coordinate with the Chief Privacy Officer to ensure compliant reporting of security incidents.
Implement, manage, and maintain enterprise security systems and applications.
Lead vulnerability assessments and ensure timely remediation.
Oversee security incident response, forensic investigations, and threat mitigation efforts.
Examine emerging technologies and assess their security implications.
Lead ongoing risk assessment programs addressing information security and privacy.
Ensure compliance with HIPAA, PCI, and applicable state and federal regulations.
Develop and implement security policies, standards, guidelines, and procedures.
Coordinate with IS teams, Audit/Compliance, HR, Finance, and Legal to align security efforts.
Participate in disaster recovery and business continuity planning.
Lead security education and awareness initiatives for staff across CNE.
Manage security vendors responsible for operations, maintenance, and enhancements.
Ensure vendor service delivery aligns with organizational security requirements and policies.
Negotiate and manage contracts and service-level agreements with external partners.
Manage, mentor, and develop information security staff.
Promote professional growth and maintain awareness of industry trends.
Provide input on resource allocation and security budgeting.
Maintain 24-hour on-call availability to support critical operational needs.
Perform other job-related duties as assigned.
Requirements:
Bachelor's Degree Required (computer science, MIS or related field)
Minimum of 7-10 years of progressive experience in information security, Strong technical background in infrastructure, network security, firewalls, and cloud environments, Experience conducting forensic investigations and managing enterprise security products.
Security certifications required: CISSP, GIAC, SANS, or similar. Audit certification preferred: CISA.
Participation in national and regional security organizations preferred.
Deep knowledge of cybersecurity principles, threat landscapes, and protection technologies.
Strong working knowledge of enterprise infrastructure, network security, firewalls, and cloud platforms.
Expertise in vulnerability management, forensic investigation, risk assessment, and incident response.
Ability to develop enterprise-wide policies and governance frameworks.
Strong communication skills for engaging executive leadership and cross-functional stakeholders.
Exceptional organization, analytical, and decision-making abilities.
Ability to manage technical teams and develop staff.
Strong vendor management and contract negotiation skills.
Ability to maintain confidentiality and uphold ethical and regulatory standards
Additional Information:
Care New England Health System (CNE) and its member institutions, Butler Hospital, Women & Infants Hospital, Kent Hospital, VNA of Care New England, Integra, The Providence Center, and Care New England Medical Group, and our Wellness Center, are trusted organizations fueling the latest advances in medical research, attracting top specialty-trained doctors, and honing renowned services and innovative programs to engage in the important discussions people need to have about their health.
EEOC Statement: Care New England is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
Ethics Statement: Employee conducts himself/herself consistent with the ethical standards of the organization including, but not limited to hospital policy, mission, vision, and values.
Americans with Disability Act Statement: External and internal applicants, as well as position incumbents who become disabled must be able to perform the essential job-specific functions either unaided or with the assistance of a reasonable accommodation, to be determined by the organization on a case-by-case basis.
$129k-189k yearly est. 37d ago
Director, Information Security
Re-Krut Services
Security architect job in Boston, MA
Extensive knowledge of HIPAA and HITECH. Knowledge of and experience with Information Security frameworks such as HiTRUST, NIST, or ISO 27001. Bachelor's degree in information security, information assurance, information technology, computer science, or a related discipline.
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or related certification.
Five (5) years in an information security operations or management role.
Passion for the mission of Health Leads and strong commitment to Health Leads' core values: belief in collective strength and the power of shared work, constant and courageous learning, celebrating our victories and each other, and stepping up leaders in a common vision.
Experience with information security for cloud environments and/or software-as-a-service (SaaS) platforms.
Knowledge of security-related technologies and processes, including but not limited to: data loss prevention (DLP), identity and access management (IAM), endpoint security, vulnerability and configuration management, security information and event management (SIEM), incident response and digital forensics, disaster recovery/business continuity planning, network security (LAN/WAN).
Ability to communicate complex ideas and information both
verbally
and writing, in a clear, concise, and effective manner to technical and non-technical audiences including customers and colleagues.
Superior capabilities for partnering;
ability to be effective as both a team member and as a leader of teams in defining objectives, staying on task and reaching consensus;
soliciting participation, challenging ideas and summarizing accomplishments and planned actions.
Show integrity and ethical behavior; respect confidentiality, business ethics and organizational standards.
Ability to
formulate
the cost benefit of security initiatives in the context of
overall
business risk mitigation and the organization's operational objectives.
Ability to compare, contrast and
prioritize
among alternative approaches to meet those objectives.
$122k-182k yearly est. 20h ago
Systems Security Engineer
General Dynamics Mission Systems 4.9
Security architect job in Taunton, MA
Basic Qualifications
RRequires a Bachelor's degree in Systems Engineering, or a related Science, Engineering, Technology or Mathematics field. Also requires 5+ years of job-related experience, or a Master's degree plus 3 years of job-related experience. Agile experience preferred.
CLEARANCE REQUIREMENTS:
Department of Defense Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibilityrequirements for access to classified information. Due to the nature of work performed within our facilities, U.S.citizenship is required.
Responsibilities for this Position
We are seeking a Systems Security Engineer who has experience in the design and development of NSA-certified Cybersecurity devices.
Key Responsibilities:
Design and develop specifications for mission-critical NSA-certified Cybersecurity devices
Collaborate with software and validation engineering teams to deliver high-speed data solutions
Develop real-time multi-threaded Embedded System architecture using Model-based Systems Engineering (MBSE) tools and techniques
Analyze and maintain system security requirements throughout product development lifecycle
Conduct trade studies, perform functional analysis, and design system security.
Preferred Skills and Experiences:
NSA approved Cryptography/Encryption
Security requirements analysis
Real-Time multi-threaded Embedded System architecture and development
Model-based Systems Engineering (MBSE)
CISSP certification or similar
INCOSE ASEP, CSEP, or ESEP certification
We value candidates who possess:
Drive to expand knowledge and experience in designing complex systems
Ability to define project scope, schedule, and expected results
Initiative to complete assignments and ability to engage in technical direction and leadership
Our Commitment to You:
An exciting career path with opportunities for continuous learning and development
Research-oriented work with award-winning teams
Competitive benefits package
#CJ3
Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $124,397.00 - USD $138,003.00 /Yr. Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
$124.4k-138k yearly Auto-Apply 60d+ ago
Information Security Manager
Cannon Search
Security architect job in Boston, MA
Are you a Cybersecurity compliance expert ready to take the lead in a dynamic, high-impact role? Join a globally recognized firm where you'll play a key role in shaping and strengthening our cybersecurity strategy. This is your chance to make a difference in a fast-paced, professional environment that values innovation, collaboration, and technical excellence.
Why You'll Love This Role:
Drive Security Initiatives - Lead firmwide cybersecurity programs, ensuring compliance with ISO 27001 and other industry standards.
Be a Decision-Maker - Approve security risks, implement best practices, and enhance policies to safeguard critical systems.
Third-Party & Risk Management - Oversee vendor risk assessments, vulnerability management, and client security audits.
Lead & Mentor - Supervise a Compliance Analyst and provide strategic guidance across teams.
Innovate & Protect - Collaborate with IT leadership to integrate cutting-edge security solutions into firm operations.
What You Bring to the Table:
5+ years of cybersecurity experience in a complex IT environment.
Strong knowledge of security frameworks (ISO 27001, NIST, etc.).
Hands-on experience with security tools, compliance audits, and risk assessments.
Leadership experience with a passion for mentoring and developing security professionals.
Bachelor's degree in Cyber Security, Computer Science, or a related field. Security certifications (CISSP, CRISC, etc.) strongly preferred.
Offer includes:
Competitive salary: $145,000 - $170,000
Hybrid work environment
Excellent benefits package
A culture of excellence, diversity, and professional growth
Ready to step into a leadership role where your expertise will make a real impact? Apply today and be a key player in securing the future of a top international firm.
Apply to this post or email your resume directly to Dan Gilliam, email: ****************************
Tags: Cybersecurity, IT, ISO, Compliance, Security Manager
$145k-170k yearly Easy Apply 60d+ ago
Security Research Architect
Veracode 4.2
Security architect job in Burlington, MA
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
Skills & Requirements
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
$108k-142k yearly est. 60d+ ago
Manager, Information Security
New England College of Optometry 4.5
Security architect job in Boston, MA
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
* Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
* Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
* Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
* Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
* Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
* Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
* Oversee security awareness training programs for all employees to promote a culture of security consciousness.
* Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
* Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
* Work on "special projects" as assigned by the Chief Information Officer.
* Other duties as assigned.
Requirements
* Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
* Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
* Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
* Experience leading security incident response and forensic analysis.
* Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
* Knowledge of networking principles, including wireless networking.
* Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
* Experience working with Active Directory and Google Cloud Platform.
* Ability and willingness to learn new technologies.
Preferred Background/Skills
* Professional certifications such as CISSP, CISM, or relevant SANS certifications.
* Experience with Governance, Risk, and Compliance (GRC) tools and processes.
* Exceptional organizational skills, with the ability to prioritize projects and tasks.
* Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
* Ability to write reports and document steps for knowledge sharing.
* Ability to work efficiently and independently with minimal supervision.
* Excellent customer service and communications skills.
Education
* Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
* A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
* 3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
* Mental Health and Wellness benefits
* BCBS Dental
* Discounted vision services
* 13 paid holidays and generous paid time off for sick, vacation, and personal days
* Employer-paid life insurance, and short-term and long-term disability
* Voluntary Insurance: life, critical illness, hospital indemnity, accident,
* Voluntary Benefits: employee discounts and pet insurance
* 9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
* Qualified Public Service Loan Forgiveness Employer
$113k-135k yearly est. 40d ago
Manager, Information Security
The New England College 4.2
Security architect job in Boston, MA
Full-time Description
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
Oversee security awareness training programs for all employees to promote a culture of security consciousness.
Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
Work on "special projects" as assigned by the Chief Information Officer.
Other duties as assigned.
Requirements
Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
Experience leading security incident response and forensic analysis.
Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
Knowledge of networking principles, including wireless networking.
Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
Experience working with Active Directory and Google Cloud Platform.
Ability and willingness to learn new technologies.
Preferred Background/Skills
Professional certifications such as CISSP, CISM, or relevant SANS certifications.
Experience with Governance, Risk, and Compliance (GRC) tools and processes.
Exceptional organizational skills, with the ability to prioritize projects and tasks.
Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
Ability to write reports and document steps for knowledge sharing.
Ability to work efficiently and independently with minimal supervision.
Excellent customer service and communications skills.
Education
Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
Mental Health and Wellness benefits
BCBS Dental
Discounted vision services
13 paid holidays and generous paid time off for sick, vacation, and personal days
Employer-paid life insurance, and short-term and long-term disability
Voluntary Insurance: life, critical illness, hospital indemnity, accident,
Voluntary Benefits: employee discounts and pet insurance
9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
Qualified Public Service Loan Forgiveness Employer
$91k-113k yearly est. 39d ago
Lead Cloud Security Architect: IAM & Zero-Trust
Labelbox 4.3
Security architect job in Boston, MA
A leading cloud technology firm in Boston seeks a Principal Cloud SecurityArchitect to evaluate cloud architectures for security gaps. This role involves reviewing IAM configurations and network designs while identifying risks and misconfigurations in AWS, Azure, and GCP environments. Candidates should have extensive experience in cloud securityarchitecture and document complex systems effectively. The position offers competitive compensation at $40 - $80 an hour, providing an opportunity to influence robust security practices.
#J-18808-Ljbffr
$40-80 hourly 6d ago
Principal SaaS Security Engineer Boston, MA, USA Dev-Ops
PTC Inc. 4.8
Security architect job in Boston, MA
Hybrid## Principal SaaS Security EngineerBoston, MA, USAOur world is transforming, and PTC is leading the way.Our software brings the physical and digital worlds together, enabling companies to improve operations, create better products, and empower people in all aspects of their business.Our people make all the difference in our success. Today, we are a global team of nearly 7,000 and our main objective is to create opportunities for our team members to explore, learn, and grow - all while seeing their ideas come to life and celebrating the differences that make us who we are and the work we do possible.**Principal Security Engineer-SaaS**JR110938**Key Responsibilities*** **SecureArchitecture & Design** + Architect and implement security controls for multi-tenant SaaS environments for both commercial and US federal customers + Harden cloud infrastructure (AWS preferred) and enforce least-privilege IAM policies. + Integrate encryption and key management solutions for data at rest and in transit.* **Threat Detection & Incident Response** + Configure and monitor security tools like Wiz and Crowdstrike. Guide remediation efforts. + Develop and maintain SIEM rules and dashboards for real-time threat monitoring. + Lead incident response efforts, including root cause analysis and remediation.* **Vulnerability Management** + Own vulnerability scanning, prioritization, and remediation across services. + Tune automated scanning in CI/CD pipelines using tools like **Black Duck, or Checkmarx**.* **DevSecOps & Automation** + Build scripts and automation for security posture validation and drift detection.* **Collaboration & Leadership** + Partner with engineering teams to integrate security best practices early in development. + Mentor junior engineers and advocate for secure coding principles.**Required Qualifications*** 8+ years in security engineering, with at least 3 years in SaaS or cloud-native environments (DevSecOps).* Deep expertise in **AWS security services** (IAM, KMS, Security Hub, GuardDuty).* Strong background in **vulnerability management, SIEM tools (Splunk, Opensearch), and automation scripting** (Terraform, Ansible, Python).* Experience with **container security** and orchestration (Docker, Kubernetes).* Experience securing Linux deployments.**Nice-to-Have*** Working knowledge of **FedRAMP, NIST SP 800-53, or similar compliance processes**.* Relevant certifications: CISSP, CCSP, AWS Security Specialty.* Work on cutting-edge SaaS security challenges.* Influence architecture and security strategy at scale.* Collaborate with a team passionate about building secure, resilient systems.**Work Environment:**The candidate may be required to participate in an on-call rotation to respond to security incidents.The SecOps Engineer position will be a member of the Onshape Technical Operations team. This is a primarily US-based operations, site reliability, compliance, and security team. The team is part of Onshape Engineering and works very closely with other teams in engineering to deliver a reliable, secure service to our customers.PTC carefully considers a wide range of factors when determining compensation. The anticipated annual salary range for this position is between $118,000 - 165,000. The anticipated annual salary range encompasses both the base salary and the on-target incentive compensation that may be attained in this role. The salary range reflects a good-faith estimate of compensation at the time of posting.Actual compensation may vary based on a candidate's skills, qualifications, experience, and location. Eligible employees also have the opportunity to become a PTC shareholder through our employee share purchase program (ESPP) which allows for the purchase of discounted PTC stock. Certain roles may also be eligible for participation in our equity programs. Employees may be eligible for medical, dental and vision insurance, paid time off and sick leave, tuition reimbursement, 401(k) contributions and employer match, flexible spending accounts, life insurance, disability coverage and if you are an office-assigned employee, a generous commuter subsidy. All total rewards and benefits programs are subject to plan eligibility and other terms and conditions.For more information about PTC's comprehensive benefits, please visit our .Applications will be accepted on an on-going basis.At PTC, we believe in the power of diverse ideas and perspectives. As a global company that values and respects all identities, cultures, and perspectives, we strive to create an inclusive PTC for ALL through an environment where everyone feels like they belong and are empowered to bring their true, authentic selves to work. Proud to be an Equal Opportunity Employer, we welcome applicants from all backgrounds and hire without regard to race, national origin, religion, age, color, ethnicity, ancestry, marital status, sex (including pregnancy), sexual orientation, gender identity, gender expression, genetic information, disability, veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.PTC endeavors to make ptc.com/careers accessible to all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact PTC's Talent Acquisition team at *************************. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.Life at PTC is about more than working with today's most cutting-edge technologies to transform the physical world. It's about showing up as you are and working alongside some of today's most talented industry leaders to transform the world around you.We respect the privacy rights of individuals and are committed to handling Personal Information responsibly and in accordance with all applicable privacy and data protection laws. ."**Onshape** is a next-generation, global Software-as-a-Service (SaaS) product development platform that helps businesses of all sizes modernize and accelerate their design and manufacturing processes. The cloud-native platform is the only all-in-one system that combines robust computer-aided design (CAD) with powerful data management and collaboration tools. **Onshape** helps extended design teams work together faster from any location and helps executives make better decisions with real-time business analytics and unprecedented visibility into their company's operations.We are seeking a **Principal Security Engineer-SaaS** to lead the design, implementation, and continuous improvement of security for our cloud-native SaaS platform. This role is deeply technical and hands-on, focused on **threat detection, vulnerability management, securearchitecture, and SecOps integration**. Compliance knowledge (e.g., FedRAMP, NIST) is a plus but secondary to strong security engineering expertise.You can learn more about who we are, what we do, and what sets us apart by following us on social media. The #lifeat PTC experience is one that we're proud to share and it just keeps getting better.Top skills Active DirectoryCloud ComputingFirewallsEthical HackingIPsecNetworkingInformation Technology
#J-18808-Ljbffr
How much does a security architect earn in Braintree Town, MA?
The average security architect in Braintree Town, MA earns between $91,000 and $193,000 annually. This compares to the national average security architect range of $92,000 to $179,000.
Average security architect salary in Braintree Town, MA
$132,000
What are the biggest employers of Security Architects in Braintree Town, MA?
The biggest employers of Security Architects in Braintree Town, MA are: