Security Engineer
Security architect job in Cary, NC
We are seeking a skilled Security Engineer with strong Networking and Compliance experience to join our team in Millennia. This position is required to reside in the vicinity of our Durham, NC Data Center. In this role, you will be crucial in maintaining the integrity and security of our network systems, ensuring privacy and security controls within processes, assets, and data flow within our healthcare-focused environment
Responsibilities:
· Maintain and manage all processes systems supporting Millennia's security posture.
· Monitor, manage, and implement security infrastructure to support organizational needs
· Monitor logs and alerts to identify incidents. Perform and or document Root Cause Analysis and remediation on Security Incidents.
· Monitor network performance and troubleshoot issues and Security Incidents.
· Plan, manage, and execute system upgrades and weekly patches to all endpoints.
· Develop and enforce security policies to protect sensitive patient data.
· Conduct regular system audits and vulnerability assessments.
· Provide technical support for network-related issues to staff and clients.
· Maintain documentation of network configurations and procedures.
· Stay updated on industry trends and emerging technologies
· Collaborate with IT teams to integrate new technologies into existing systems.
· Provide hand-on support to our offices and data center.
Qualifications:
· Strong knowledge of network and security administration, controls, protocols, and best practices.
· Experience with SOC2 or HITRUST, and HIPAA Security and Privacy Rule.
· Proven experience as a Network Administrator or similar role.
· Proficiency in configuring firewalls, routers, and switches, encryption protocols, and certificates.
· Familiarity with cybersecurity principles and incident response strategies.
· Excellent problem-solving skills and attention to detail.
· Exceptional communication skills and ability to work independently and collaboratively in a team-oriented environment.
· Experience with cloud computing platforms (AWS, Azure) is a plus.
Relevant certifications (e.g., CCNA, CompTIA Security+) are preferred
SAP Security Analyst/Admin
Security architect job in Raleigh, NC
Direct Hire
REMOTE but must reside within 3 hours of Raleigh
US Citizens, Green Card, Perm Resident (no sponsorship)
This primarily remote role involves SAP Security Administration tasks of planning, coordination, execution, and production support. Currently on ECC, and should be moving to S4 Hana in the next couple years. The candidate needs to possess a complete understanding of industry practices regarding application principles, concepts, practices, and standards. The candidate will interact with senior internal and external personnel on significant matters often requiring coordination between organizations.
Qualifications/Requirements:
• Bachelor's degree with 5+ years of professional SAP technical experience
• Minimum 5 years of experience in SAP Security
• Experience with SAP NetWeaver, ABAP, and related technologies
• Knowledge of database management systems (MS SQL Server)
• Legal authorization to work in the U.S. (no visa sponsorship).
• Experience with GRC Access Control 10.x minimum (with 12.0 preferred).
• Strong communication and collaboration skills to work effectively with cross-functional teams.
Preferred Qualifications:
• Experience with SAP ECC HANA and MSSQL databases.
• Some knowledge of SAP Basis (doesn't have to be current or hands on, just enough to interface with our outsourced Basis vendor).
• Experience with HANA/FIORI Security.
• Strong problem-solving, analytical, and communication skills.
• Familiarity with cross-functional team dynamics.
• Ability to work independently and with global teams.
Infrastructure Security Architect
Security architect job in Vass, NC
The SouthState story is one of steady growth, deep community roots, and an unwavering commitment to helping our customers move forward. Since our beginnings in the 1930s to becoming a trusted financial partner across the South and beyond - we are known for combining personal relationships with forward-thinking solutions.
We are committed to helping our team members find their success while maintaining the integrity of our values: building trust, fostering lasting relationships and pursuing excellence. At SouthState, individual contributions are recognized, potential is cultivated and team members are inspired to achieve their greater purpose. Your future begins here!
SUMMARY/OBJECTIVES
The Infrastructure Security Architect is responsible for providing guidance on developing secure and resilient infrastructure architectures in regulated financial institutions. This position involves designing and maintaining layered infrastructure and security frameworks following NIST SP 800-53 and NIST SP 800-100, and integrating security and resiliency measures across compute, network, virtualization, cloud, storage, and backup environments, as well as throughout the systems development life cycle. The architect ensures that administrative, technical, and physical controls are implemented to maintain the confidentiality, integrity, and availability of customer information as required by FDIC/Interagency Guidelines, while supporting system availability and performance.
This role is responsible for the design and security oversight of secure on-premises and cloud infrastructure, specifically within Microsoft Azure. Key technologies oversight includes Palo Alto next-generation firewalls, VMware NSX, CyberArk PKI/certificate management, Cisco ASA remote-access VPN, Zerto disaster-recovery orchestration, and Cohesity backup/recovery platforms. The security architect leads cross-functional teams, establishes policies, standards, and procedures, provides mentorship to engineers, and works in close collaboration with business executives to ensure infrastructure and security projects align with organizational objectives and comply with regulatory requirements.
ESSENTIAL FUNCTIONS
Develop and maintain robust infrastructure and security architectures that integrate compute, network, storage, and virtualization with layered security controls, following NIST guidance.
Design and manage macro and micro segmentation across data centers and hybrid clouds, leveraging VMware NSX distributed firewalling for micro segmentation, encryption, and centralized policy.
Architect secure Azure and hybrid environments, demonstrating expertise in designing cloud and hybrid solutions across compute, network, storage, monitoring, and security.
Deployment of Palo Alto firewalls, including design, configuration, security oversight, and troubleshooting.
Implement CyberArk certificate management to secure machine identities and integrate CyberArk solutions.
Provide secure remote access using Cisco ASA and AnyConnect, ensuring policy-based access and multifactor authentication.
Conduct risk assessments, develop infrastructure and security plans, and ensure controls meet regulatory requirements (NIST, FDIC, GLBA, PCI, Sarbanes-Oxley Act (SOX)).
Lead cross-functional architecture reviews, mentor engineers, and coordinate with networking, infrastructure, development, and operations teams.
Coordinate with vendors (Microsoft Azure, Palo Alto, VMware, CyberArk, Cisco, Zerto, Cohesity, etc…) for support and integration; communicate priorities to executives and stakeholders.
Ensure strict compliance with the Bank's policies and procedures, code of conduct, and regulatory guidelines.
Assist other employees by interacting with them through healthy and positive interactions.
Continuously update skills by participating in professional training and conferences.
Security implementation for Infrastructure as Code (IaC): Develop and maintain automation scripts using Terraform, ARM templates, to ensure efficient cloud deployments.
Hybrid Cloud & Integration: Architect hybrid cloud solutions integrating on-premises systems with Azure services like Azure Files, ExpressRoute, and VPN Gateway.
Emerging Technologies: Stay up to date with advancements in AI, ML, Open Banking APIs, and Blockchain to explore innovative banking solutions.
All other tasks, responsibilities, or duties, as directed by management.
Reasonable accommodation(s) may be made to enable individuals with disabilities to perform the essential functions.
COMPETENCIES
Technical Leadership: Upholds industry best practices and standards; maintains awareness of advancements in technology; formulates effective troubleshooting methodologies; exhibits comprehensive understanding of system and security architecture, as well as extensive expertise in cloud computing, virtualization, and cybersecurity.
Innovation & Problem Solving: Staying aware of technological trends and applying creative thinking; uses analytical thinking and strategic alignment to overcome challenges.
Business Acumen & Communication: Translates technical concepts into business terms; collaborates with business leaders to identify opportunities; communicates effectively and establishes clear vision.
Regulatory & Risk Awareness: Understands and applies NIST and FDIC/GLBA requirements to align infrastructure and security architecture with compliance mandates.
Mentorship & Delegation: Delegates tasks effectively, empowers team members, and mentors' junior staff.
Excellent communication and people skills.
Must be able to remain composed under pressure and respond to customer and coworker concerns regularly upholding the IT Vision and Mission statements.
Ability to use the computer efficiently and the capacity to learn new software programs as they are rolled out by the Bank.
Must possess basic English language skills to write and speak clearly, and effectively with coworkers, customers, and senior leaders.
Must be well-organized, accurate, and attentive to detail.
Qualifications, Education, AND CERTIFICATION Requirements
Education: Bachelor's degree in computer science, Information Systems, Cybersecurity, Engineering, or a related field ; Master's degree preferred.
Experience: 8+ years of progressive experience in infrastructure and security architecture and design, preferably in financial services or other regulated industries.
Demonstrated experience designing secure and resilient architectures for Azure and hybrid cloud environments.
Experience with Palo Alto firewalls (PCNSE-level), VMware NSX micro segmentation, CyberArk certificate management, Cisco ASA/AnyConnect remote-access VPN, Zerto replication, and Cohesity data-protection platforms.
Experience designing and operating network segmentation strategies, virtualization and compute infrastructure, firewall policies, encryption solutions, and certificate management.
Demonstrated expertise in leading cross-functional teams, overseeing project management initiatives, and effectively communicating with executive stakeholders.
Deep understanding of NIST SP 800-53, NIST SP 800-100, and FFIEC/FDIC guidelines.
Strong knowledge of network protocols, routing, switching, virtualization, containers, zero-trust architecture, compute infrastructure, and identity management.
Experience with automation tools and scripting (PowerShell, Python, Terraform/Ansible) for infrastructure as code and security policy automation.
Familiarity with DevSecOps, CI/CD pipelines, vulnerability management, and SIEM integration.
Certifications: Candidates should hold or be working toward some of the following certifications:
Microsoft Certified: Azure Solutions Architect Expert
VMware Certified Design Expert (VCDX)
Palo Alto Networks Certified Network Security Engineer (PCNSE)
CyberArk Sentry or Guardian Certifications
Cisco Certified Network Associate (CCNA) Security
Other relevant certifications: CISSP, CISM, CCSP, CISA, or other global security credentials.
TRAINING REQUIREMENTS/CLASSES
On the job training and any additional training as needed.
Required annual compliance training.
Workday Learning as assigned by manager for technical and leadership training.
New Employee Orientation as well as continual update of processes of banking systems.
PHYSICAL DEMANDS
Must be able to sit for extended periods of time.
Must be able to effectively access and interpret information on computer screens, documents, and reports.
WORK ENVIRONMENT
This position is located in a cubicle environment that may be loud throughout the day. Telecommuting roles no matter if hybrid or 100% full time telecommuting must have a secure home office environment that is free from background noise and distractions. They must also have a reliable private internet connection that is not supplied by use of cellular data (hot spot). Cable or fiber connections are preferred. Requirements are subject to change, as new systems and technology is delivered. Travel may be to come to meetings as needed.
In accordance with Colorado law: Colorado pay for this position is anticipated to be between $148,907.00 - $237,865.00 , actual offers to be determined based on applicant's skills, experience and education.While the anticipated deadline for the job posting is 12-20-2025, we encourage you to submit your application as we may still consider qualified candidates beyond this date.
Benefits | SouthState Careers
Equal Opportunity Employer, including disabled/veterans.
Auto-ApplySecurity Architect ( Cloud )
Security architect job in Raleigh, NC
We provide creative and technology services and solutions in the areas of web design, customized web applications, IT Staffing and e-commerce solutions, Mobile App development and much more services to organizations in the All over the world.
With well defined and documented processes and practices, we ensure successful implementation of all our projects. Our teams are highly trained in best practices of web and application developments and are managed by certified project managers who ensure highest levels of process control and management
Job Description
Security Architect
Locations: Raleigh, NC
Full Time
Travel Required:
Up to 10% or 1 day a week
Work with IBM Cloud PaaS Offering Management on defining security roadmap
Engage with clients as sponsor users to implement new security capabilities
Architect technical security requirements for external compliance certifications
Participate and enforce IBM PSIRT, IBM CSIRT, and IBM Secure Engineering processes
Provide security technical guidance to Bluemix services and SaaS offerings that run on top of Bluemix PaaS
Create external facing collateral for use by client facing teams and clients
Participate in IBM Cloud Security interlocks
Present in client facing/external conferences e.g., Interconnect etc.
Support Bluemix sales by presenting to clients (on the phone, F2F)
Mentor security team members
You will work with the best of the teams in Cloud Dev, Cloud Security, Cloud Offering Management, Cloud Sales. You will be outgoing, team player, willing to mentor and lead team members, must have great sense of humor. You will have demonstrated communication skills, experience with working with customers and be able to bring customer requirements back to the team. Your extensive experience in security and compliance audit is of great advantage.
This is a high performing, leading edge team that offers exciting opportunities in Cloud security. If you have it in you, then you are at the right place. Apply below immediately.
Required Technical and Professional Expertise:
At least 8 years of experience in technical security architecture and design skills
At least 5 years of experience in External customer facing experience and skills
At least 3 years experience in Compliance Standards
Preferred Technical and Professional Experience:
At least 3 years of experience in Cloud Security and compliance standards.
Certified Information Systems Security Professional (CISSP) certification is preferred
Additional Information
All your inform
ation will be kept confidential according to EEO guidelines.
Enterprise Security Architect
Security architect job in Durham, NC
Who We Are At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow. We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:
* We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners.
* We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders.
* We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future.
* We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work.
Who You'll Work With
The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles.
About The Role
The Enterprise Security Architect will help to lead the design, implementation, and oversight of secure systems and architectures across our organization. This role is critical to embedding security into enterprise processes, aligning with industry standards, and building a scalable security foundation. The ideal candidate will bring deep technical expertise, strong communication skills, and the ability to work independently or collaboratively to drive security initiatives and foster a security-first culture.
Responsibilities
* Design, document, and maintain secure architecture patterns, diagrams, and reference architectures to guide security implementations across the organization.
* Conduct comprehensive security reviews of applications, systems, and networks, identifying vulnerabilities and recommending secure design strategies.
* Perform threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate mitigating controls.
* Partner with enterprise and line-of-business architects to integrate security seamlessly into designs and processes.
* Translate complex technical security concepts into clear, actionable insights for C-level executives, business leaders, non-technical stakeholders, and technical engineering teams.
* Recommend mitigating controls, security tools, and remediation strategies to address security gaps and minimize risk.
* Stay current on security threats, vulnerabilities, and technologies to enhance the organization's security posture.
* Promote a security-first culture by mentoring technical teams, educating stakeholders, and embedding security best practices into organizational workflows.
Skills and Qualifications
* 7+ years of hands-on experience in infrastructure, systems, networks, applications, or cloud security.
* 5+ years of enterprise architecture experience required.
* Ability to create and review diagrams using tools such as Visio or Lucidchart.
* Familiarity with secure architecture patterns, reference architectures, and frameworks.
* Expertise in SaaS, PaaS, and IaaS environments, including platforms like AWS, Azure, M365, and Salesforce.
* Experience working with various identity and access management (IAM) solutions such as CyberArk, Okta, Ping Identity, Entra ID/Azure AD, and other tools supporting SSO, MFA, and PAM.
* Familiarity with tools like Jira, Confluence, and ServiceNow for workflow management and documentation.
* Expertise in threat modeling, vulnerability management, and risk assessments.
* Working knowledge of regulatory requirements and compliance standards such as NYDFS, CCPA, GLBA, PCI-DSS, HIPAA, SOX, and GDPR.
* Relevant certifications such as CISSP, CCSP, or equivalent.
* Ability to work independently or collaboratively in a team-oriented environment.
* Bachelor's degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles.
Technical Skills
* Familiarity with protocols such as SAML, OAuth, OIDC, FIDO, PKI, JWT, LDAP, and Kerberos.
* Strong knowledge of common network protocols, including TCP/IP, HTTP/HTTPS, DNS, SMTP, SNMP, SSH, and VPN technologies.
* Expertise in encryption technologies (e.g., TLS, AES, RSA) and key management practices (e.g., KMS, HSM, PKI).
* Familiarity with firewalls, IDS/IPS, WAF, VPN, Routers, Switches, Load Balancers, Zero-Trust, microsegmentation, and SD-WAN security solutions, CASB, Proxy, SSE.
* Experience with SIEM tools such as Splunk, QRadar, or ArcSight and logging/monitoring best practices.
* Knowledge of Docker, Kubernetes, EKS, ECS, and OCP, including their security considerations.
* Proficiency in integrating security into DevOps pipelines with tools such as Jenkins, GitHub, Artifactory, Terraform, and Vault.
Common Security and Architecture Frameworks
* Security Frameworks:
* NIST Cybersecurity Framework (CSF)
* ISO 27001 and 27002
* CSA CCM (Cloud Controls Matrix)
* CIS Controls
* Architecture Frameworks:
* SABSA (Sherwood Applied Business Security Architecture)
* TOGAF (The Open Group Architecture Framework)
* AWS Well-Architected Framework
Preferred Certifications
* TOGAF (The Open Group Architecture Framework)
* SABSA Foundation or Practitioner
* CISSP-ISSAP (Concentration in Security Architecture)
* Certified Cloud Security Professional (CCSP)
* GIAC Security Architecture (GDSA)
* AWS Certified Solutions Architect - Associate or Professional
* AWS Certified Security - Specialty
* Microsoft Certified: Azure Solutions Architect Expert
Soft Skills
* Strong analytical and problem-solving abilities.
* Excellent interpersonal and collaboration skills.
* Strong organizational and time management skills.
* Adaptability and a commitment to continuous learning of new technologies and methodologies.
* Attention to detail and dedication to delivering high-quality results.
* High level of integrity and ethical conduct.
Industry-Specific Experience
* Experience in financial services, insurance, or other regulated environments.
* Proven ability to design and implement security controls that align with industry regulations and standards.
* Experience conducting security assessments and audits in regulated industries.
* Familiarity with industry-specific threats and vulnerabilities to tailor security solutions.
Compensation
The actual compensation offered will ultimately be dependent on multiple factors, which may include the candidate's geographic location, skills, experience and other qualifications.
In addition, the position is eligible for a discretionary bonus in accordance with the terms of the applicable incentive plan.
Corebridge also offers a range of competitive benefits as part of the total compensation package, as detailed below.
Work Location
This position is based in Corebridge Financial's Houston, TX or Durham, NC office and is subject to our hybrid working policy, which gives colleagues the benefits of working both in an office and remotely.
#LI-SAFG #LI-CW1 #LI-Hybrid
Why Corebridge?
At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive.
Benefit Offerings Include:
* Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
* Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
* Employee Assistance Program: Confidential counseling services and resources are available to all employees.
* Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
* Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
* Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.
Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy.
We are an Equal Opportunity Employer
Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives.
Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to ******************************************. Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law.
We will consider for employment qualified applicants with criminal histories, consistent with applicable law.
To learn more please visit: ***************************
Functional Area:
IT - Information Technology
Estimated Travel Percentage (%): Up to 25%
Relocation Provided: No
American General Life Insurance Company
Auto-ApplyDirector Business Information Security Officer
Security architect job in Raleigh, NC
Surescripts serves the nation through simpler, trusted health intelligence sharing, in order to increase patient safety, lower costs and ensure quality care. We deliver insights at critical points of care for better decisions - from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between providers.
Job Summary:
The Director Business Information Security Officer (BISO) reports to the VP, Chief Information Security Officer (CISO) and acts as the primary liaison between Surescripts business units and the Information Security team. The BISO is responsible for understanding the unique business needs and risks of the organization and aligning them with security strategies and initiatives. The BISO plays a critical role in ensuring new products are launched with information security requirements embedded that align with company and information security policies and standards.
The BISO will aid in the development, implementation and awareness of information security policies, manage risk, and ensure compliance with regulatory requirements. The BISO plays a crucial role in fostering a culture of security awareness and ensures that security measures are integrated into business processes. The BISO will be responsible for day-to-day operations to support and augment the CISO's overall responsibilities. The BISO plays a key leadership role in supporting the business and external customers. The BISO ensures business decisions are not obstructed by cybersecurity but instead are made using sound security principles and supporting corporate security policies and plans.
Responsibilities:
* Serve as a trusted advisor to the business on information security matters.
* Work closely with Information Security leadership overseeing Identity and Access Management, Fraud and Crisis Management, merger and acquisition activities and any new business initiatives.
* Keep abreast of current activity within the IAM and Fraud and Crisis teams and partner with team members for success.
* Foster strong, collaborative relationships with internal business partners and external entities to maintain a strong network.
* Enforce and influence strong security culture set forth by the CISO, ensuring uniformity across business units and employees.
* Advise organization on enterprise-wide process and technology security recommendations.
* Proactively gather and share pertinent information to effectively lead/engage in daily information security operations.
* Lead the development and execution of crisis management plans and procedures.
* Collaborate with external health care technology vendors, pharmacy partners, law enforcement, governmental entities and / and IT teams to ensure secure e-prescribing processes are being followed.
* Assist with creating the Information Security department budget, monitoring expenditures, and ensuring alignment with the overall department budget.
* Review customer contracts for appropriate information security language and requirements in partnership with Commercial Legal and Procurement.
* Hold security leadership and teams accountable to consistently learn and share advanced knowledge and practices that promote excellence with the information security teams.
* Maintain an up-to-date level of knowledge relating to security threats, vulnerabilities, and mitigations set forth to reduce the corporate attack surface.
* Lead security projects and ensure they are delivered on time and within budget.
* Proactively identify and remove complexity and obstacles that hinder efficient security controls enterprise wide.
* Stay abreast of new laws, regulations, and standards, and assess their impact to the business.
* Perform security due diligence for mergers, acquisitions, divestitures, and any new business initiatives.
* Serve as the CISO representative when the CISO is not available, including making decisions usually made by the CISO.
Qualifications:
Basic Requirements:
* Bachelor's degree in business administration, information assurance, or related technical field
* 10+ years of related, progressive experience in cybersecurity management with at least 8+ years in an operationally focused security practitioner role.
* 5+ years' experience working with business leadership and with fiscal responsibilities.
* 3+ years' experience working with product and/or data teams to ensure that security is woven into each product based on company policies and standards.
* 3+ years of experience handling tough conversations with customers.
* 3+ years of people management/leadership experience.
* Strong written and verbal communication skills across all levels of the organization.
* Driven to build a strong, cohesive team and positive enterprise-wide security culture.
* Proven high integrity, trustworthiness and confidence, and ability to represent the company and security leadership with the highest level of professionalism.
* Ability to effectively manage stress in a constantly changing environment.
* Strategic vision and ability to successfully collaborate with and influence others.
* Strong project management and organizational skills.
* Proven experience with National Institute of Technology (NIST) standards or California Consumer Privacy Act (CCPA) or Health Information Portability and Accountability Act (HIPAA) or HITRUST or SOC2
* Demonstrated understanding and comprehension of a wide range of cybersecurity solutions.
Preferred Qualifications:
* Master's or other advanced degree (MBA, information assurance, computer science, etc.)
* 8+ years of related security systems administration.
* Relevant certification/s such as CISSP, CISM, CRISC, CISA, or similar.
* Experience with agile methodology and ability to negotiate to get work prioritized.
* Experience using AI for business improvements.
* Experience in a similar role with large, complex organization/s.
* Experience in the healthcare industry.
Travel: Within the U.S. as needed for meetings etc.
#LI-HYBRID
Surescripts embraces flexibility through its Flexible Hybrid Work model for most positions. This model allows employees to work virtually while still utilizing our offices as collaboration centers. With alignment and agreement from your leadership, you can come and go from the office as needed.
To be considered for employment, applicants must have a valid U.S. work authorization allowing work without restrictions with Surecripts in the U.S. At this time, we are unable to provide support or provide sponsorship for immigration benefits such as work visas. Additionally, we do not participate in academic training programs or work-study programs through an academic institution that require employer endorsement of F-1/CPT or F-1/STEM.
What You're Like
You're technical. Analytical. Imaginative. Maybe you're building your own crypto-mining rig-or not. Either way, your mind works to anticipate vulnerabilities and protect the company and its information against those vulnerabilities. You do the right thing because it's the right thing without seeking to point fingers or brag. And of course, you're always willing to keep learning.
What We're Like
We're a team of friendly folks who do serious work. Our best work is done by rising to the occasion under stress, but we keep each other cool under pressure. We're a tight team but we also look for ways to partner across the business. Our style is casual and laid back, but we shoulder our responsibility to protect patient data from sophisticated adversaries, which sometimes means delivering a difficult truth.
What the Work is Like
Our challenge is to protect our customers' data and our company. This requires anomaly analysis, risk reviews, pen testing of our controls, red-teaming and tabletops, policy and procedure work, documentation, and audits. We also engineer and maintain our security products and tools. It's not always a typical 9-to-5 gig, of course, but then again, you work in information security, so you already know that.
Why Wait? Apply Now
We're a midsize company. This means you're not just another employee ID number. Here, you can build real relationships and feel supported by truly awesome people with diverse backgrounds and talents in an innovative and collaborative work culture. We strive to create an environment where you can be yourself, share your ideas and work your way. We offer opportunities for employee development, as well as competitive compensation packages and extensive benefits.
At Surescripts, base pay is one part of our Total Rewards Package (which may also include bonus, benefits etc.) and is determined within a range. The base pay range for this position is $199,900 - $244,300 per year. Your base pay may vary within or outside of this range depending on a number of factors, including (but not limited to) your qualifications, skills, experience, and location.
Benefits include, but are not limited to, comprehensive healthcare (including infertility coverage), generous paid time off including paid childbirth and parental leave and mental health days, pet insurance, and 401(k) with company match and immediate vesting. To learn more, review the Keep You and Yours Healthy, Balancing Work and Life, and Where Talent Takes Shape links under the Better Benefits. Better Work. Better Life section of our careers site.
Physical and Mental Requirements
While performing duties of this job, an employee may be required to perform any, or all of the following: attend meetings in and out of the office, travel, communicate effectively (both orally and in writing), and be able to effectively use computers and other electronic and standard office equipment with, or without, a reasonable accommodation. Additionally, this job requires certain mental demands, including the ability to use judgement, withstand moderate amounts of stress and maintain attention to detail with, or without, a reasonable accommodation.
Surescripts is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate on the basis of race, color, religion, age, national origin, ancestry, disability, medical condition, marital status, pregnancy, genetic information, gender, sexual orientation, parental status, gender identity, gender expression, veteran status, or any other status protected under federal, state, or local law.
Auto-ApplySecurity Engineer
Security architect job in Raleigh, NC
Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. To apply, click "Apply to Job" online on this web page.
**Required Skills:**
Security Engineer Responsibilities:
1. Build tools that enable connectivity to our infrastructure only from Meta owned and managed devices.
2. Build machine attestation and secure certificate storage solutions to enable strong client trust.
3. Deploy systems that help mitigate security risks by understanding and controlling what software is allowed to execute on our client devices.
4. Develop, validate, and enforce our client security policies.
5. Build and deploy tools and automation that proactively detect and respond to security risks and threats to internal corporate services.
6. Advise and collaborate with other teams.
7. Telecommuting from anywhere in the U.S. allowed.
**Minimum Qualifications:**
Minimum Qualifications:
8. Requires Bachelor's Degree (or foreign equivalent) in Computer Science, Engineering or a related field and 1 year of experience in the job offered or a computer-related occupation
9. Requires 12 months of experience involving the following:
10. PHP, Golang, Python, C/C++, Rush, or Ruby
11. Designing and deploying security infrastructure such as PKI, key management, and certificate management
12. Endpoint Security & Management
13. Certificate Lifecycle
14. Devices & OS hardening and security policies
15. Identity & Access Management (Authentication & Authorization, SSO)
16. Network Security and
17. Programming and Code Review
**Public Compensation:**
$178,041/year to $200,200/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Information Security (Guardium)
Security architect job in Raleigh, NC
Ask IT Consulting Inc. visualizes itself as a leader in IT services and staffing in coming years. With strong dedication and commitment of our employees, we would surpass all our competitors establishing the wider channel of media marketing building a better connection with clients.
Job Description
Hi,
This is Sumit with Ask ITC Inc. which is backed by a $500 million Microtek group company, provides an industry leading blend of technology, business consulting, and outsourcing services. Ask IT is a minority-owed enterprise; it has been founded on providing the highest quality possible and on the devotion to customer satisfaction.
Position : Information Security (Guardium)
Location : Raleigh NC
Duration 12 + Months
Short Description: The NCDOT IT Information Security Office (ISO) requires a senior information security professional, specializing in database vulnerability and threat management (VTM) utilizing and administrating IBM Guardium.
Complete Description :* The NCDOT IT Information Security Office (ISO) requires a senior information security professional, specializing in database vulnerability and threat management (VTM) and monitoring for all NCDOT IT database systems. A majority of this resource's responsibilities will be vulnerability tool administration, setup and scheduling, vulnerability assessment and risk ranking for critical IT database systems. This resource should possess senior technical skillsets as well as senior soft skills as this resource will lead database VTM efforts and strategy for the agency. This resource should possess senior skillsets in preparing reports and presentations to senior management on the status, rate of improvement and overall efficacy of database VTM and monitoring efforts across an enterprise. This resource must have experience administrating, utilizing and designing implementations of IBM Guardium on mainframe DB2 and distributed systems.
Thanks and Regards,
Sumit Gupta
Technical Recruiter | ASK IT Consulting Inc.
Women Owned Minority Certified Enterprise
Address: # 33 Peachtree Court Holtsville, NY 11742
Phone: *************** Ext- 4401
Fax: ***************
E: sumit.guptaaskitc.com|W: **************
Engineer, Information Security and Risk
Security architect job in Raleigh, NC
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Security Engineer - IAM
Security architect job in Raleigh, NC
If you are motivated and believe in the credit union philosophy of "People Helping People," join our team!
The Security Engineer - IAM is a mid-level role responsible for enhancing and evolving SECU's IAM practices, processes, and solutions.
This individual will serve as a key technical resource, providing operational support, management, implementation, and strategic development of IAM solutions, including Privileged Access Management (PAM), Single Sign-On (SSO), Identity Governance and Administration (IGA), Multi-Factor Authentication (MFA), Active Directory (AD), Customer Identity and Access Management (CIAM), and other IAM technologies.
The engineer will provide input and have some responsibility with designing and optimizing IAM frameworks, driving automation, and ensuring alignment with security best practices and compliance requirements.
Additionally, they will actively collaborate with cross-functional teams, mentor junior engineers, and work closely with key stakeholders to strengthen the adoption of IAM controls and solutions while contributing to the overall cybersecurity strategy.
Responsibilities:
(30%) Perform operational support and maintenance of technical security solutions to enhance SECU's security posture.
(20%) Assist in the configuration and tuning of security tools and integrations with enterprise controls and tools.
(20%) Participate in identification of service quality, documentation, and operational efficiency and improvement opportunities.
(10%) Participate in on-call rotation and serve as a resource for technical support of information security technologies.
(10%) Mentor and collaborate with junior engineers.
(10%) Pursue and maintain additional skills and certifications commensurate with the role to remain current on advancing cyber security trends.
Responsibilities will include participation in special assignments and cross-functional initiatives as required.
Required Education & Experience (Knowledge, Skills, & Abilities):
Candidate must live in North Carolina or contiguous state.
Bachelors degree in Computer Science, Information Technology, Cyber Security, or related field.
Additional 2 years of relevant experience can be considered in lieu of degree.
Minimum 2 year of experience in related field.
General IAM Solutions
Experience supporting one or more IAM solutions such as PAM, SSO, Directory Services, IGA, CIAM, and MFA
Understanding of IAM Concepts
Demonstrated experience and understanding of core IAM principles, such as authentication, authorization, provisioning, and access control.
Demonstrated experience and understanding of identity lifecycle management (creation, modification, and deletion of user accounts).
Basic Programming/Scripting Skills
Ability to leverage and understand scripting languages such as Python, PowerShell, or Bash for automating tasks.
User and Role Management
Experience in managing user accounts, groups, roles, and permissions within an IAM system.
Security Awareness
Understanding of security principles, including least privilege, segregation of duties, and access reviews.
Incident Response and Troubleshooting
Ability to investigate and resolve access-related issues and incidents.
Experience with IAM-related logs and monitoring tools for diagnosing and fixing issues.
Ability to identify discrepancies or potential security risks in access control settings.
Communication Skills
Ability to document processes, policies, and procedures clearly and concisely.
Skills in communicating technical concepts to non-technical stakeholders.
Preferred Education & Experience (Knowledge, Skills, & Abilities):
Bachelors degree in Computer Science, Information Technology, Cyber Security, or related field.
Preferred 2-5 direct years of experience.
Ability to manage role-based access control (RBAC) policies.
Experience working in cross-functional teams, including IT, security, and compliance.
Ability to collaborate with stakeholders to understand access requirements and implement them effectively.
Experience working within a DevOps environment.
Professional certifications such as: CISSP, CISA, CISM, GIAC, CGEIT, CRISC, OSCE, or other relevant industry certification and/or desire to obtain such certifications.
Work Environment & Physical Requirements:
*Note: “Working Conditions” or “ADA” - open to other language
Computer for prolonged periods
SECU provides equal employment opportunity to all qualified persons regardless of race, color, religion, age, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or other classification protected by law.
Disclaimer
State Employees' Credit Union reserves the right to fill this role at a higher/lower level based on business need.
Auto-ApplySr. Security Analyst
Security architect job in Durham, NC
Procom is a leading provider of professional IT services and staffing to businesses and governments in Canada. With revenues over $500 million, the Branham Group has recognized Procom as the 3rd largest professional services firm in Canada and is now the largest “Canadian-Owned” IT staffing/consulting company.
Procom's areas of staffing expertise include:
• Application Development
• Project Management
• Quality Assurance
• Business/Systems Analysis
• Datawarehouse & Business Intelligence
• Infrastructure & Network Services
• Risk Management & Compliance
• Business Continuity & Disaster Recovery
• Security & Privacy
Specialties• Contract Staffing (Staff Augmentation)
• Permanent Placement (Staff Augmentation)
• ICAP (Contractor Payroll)
• Flextrack (Vendor Management System)
Job Description
Sr. Security Analyst
On behalf of our client, Procom Services is searching for a Sr. Security Analyst for a contract opportunity in Durham, NC.
Sr. Security Analyst Job Details
Responsible for user account administration in a multi-platform environment and ensure that administration procedures are aligned with overall Information Security policies and standards. Assist in the development of access controls to safeguard customer systems against accidental or unauthorized modification, destruction or disclosure.
Maintain user access to securable customer system resources (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange) performing tasks such as: creation / configuration of user logon Ids and updating access control lists, access provisioning and access removals and access terminations.
Perform detailed analysis of access requests/processes and provide recommendations for improvement to senior team members and Information Security management.
Educate information / resource owners in the implementation of necessary information security controls.
Perform standard and non-standard processing of security authorization requests.
Work with resource owners to determine appropriate security policies for securable customer resources.
Provide on-call support for after-hours system access issues and troubleshoot system access problems and failures.
Report suspected information security misuse to manager or director.
Assist resource owners and IT staff in understanding and responding to security access exceptions.
Sr. Security Analyst Mandatory Skills
- Bachelor's degree in Computer Science.
- 2 years of security administration experience, or related technical system administration experience.
- In lieu of degree 5 years of security administration experience.
- Familiarity with audit and risk-related methodologies; such as COBIT and HIPAA.
- Systems administration experience within other aspects of IT
- Demonstrated security administration experience on two or more platforms (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange)
- Demonstrated experience working with a managed services organization.
- Demonstrated experience working with a request ticketing system, such as Triole.
- Strong analytical and problem-solving skills.
- Ability to present and discuss technical information to users with varying technical expertise.
- Proven ability to work under stress in emergencies. Flexibility to handle pressure from many directions simultaneously.
- Must be detail-oriented with a high level of accuracy.
- Excellent written and verbal communication skills.
- Demonstrated ability to develop and maintain collaborative working relationships across multiple teams.
- Strong customer focus and the ability to manage customer expectations.
- Must have strong team-oriented interpersonal skills and the ability to effectively interface with a wide variety of people.
- Demonstrated commitment to continuous process improvement.
- CISSP, CISA, or other security / audit / field related certifications a plus
Sr. Security Analyst Start Date
ASAP
Sr. Security Analyst Assignment Length
7+ months
Additional Information
All your information will be kept confidential according to EEO guidelines. Please send your resume in
Word
format only.
Security Engineer
Security architect job in Raleigh, NC
Piper Companies is seeking a Security Engineer to support an industry leader in technology. This position will be hybrid in Raleigh, NC. The Security Engineer will focus on proactively identifying cyber threats and securing scalable cloud solutions. Responsibilities of the Security Engineer include:
* Proactively hunt for cyber threats across on-premises and cloud environments (AWS and Azure).
* Focus on securing cloud solutions for multiple clients utilizing Azure, GCP, or AWS solutions.
* Utilize Splunk for advanced log analysis, threat detection, and incident response.
* Document all threat findings in ticketing systems and oversee remediation efforts to closure.
Qualifications for the Security Engineer include:
* Bachelor's degree in Computer Science, Engineering, or related field.
* Hands-on experience with AWS and Azure cloud platforms, AWS Security Hub or Azure Security for cloud solutions.
* Strong knowledge of MITRE ATT&CK, threat intelligence, cyber kill chain, and PEAK Threat Hunting Framework (or similar).
Compensation for the Security Engineer include:
* Salary Range: $115,000-135,000
* Comprehensive Benefits: Cigna Medical, Dental, Vision, 401K, PTO, Sick Leave if required by law, and Holidays
This job opens for applications on 11/25/2025. Applications for this job will be accepted for at least 30 days from the posting date.
Keywords: route, switch, networking, AWS, security, Splunk, Azure, Sentinel, defender, cloud, SIEM, logs, monitoring, incident, vulnerability, SOC, security operations, cloudtrail, alerts, triage, threat, threat hunt, hacking, vulnerabilities, risk, assessment
#LI-CC2 #HYBRID
Security Engineer, Level III
Security architect job in Durham, NC
This individual will be responsible for providing tier III support for a Managed Service Security Provider (MSSP). The successful candidate will be an integral member of the security engineering team and will need to be fully cognizant of state-of-the-art network, firewall, and other security technologies, products and solutions as well as industry best practice with regard to the design, implementation and deployment of next generations security devices.
This individual should have hands-on experience configuring, installing and managing Fortigate, Cisco ASA, Checkpoint, SonicWall or Blue Coat security devices. This person must be able to communicate, and document instructions effectively with Tier 1 and 2 support teams. Excellent customer service skills and written communication are required.
This position is located in Durham, NC.
Qualifications:
A Bachelors or Master's degree preferably in Computer Engineering/Networking, international equivalent, or equivalent experience
Minimum of 5 years of experience designing, implementing and deploying next generation firewalls based on Information Security Best Practices
Hands on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc
Minimum of 7 years experience in networking, troubleshooting, and analysis tools
Expert understanding and working knowledge of TCP/IP, access-control lists, VLANs, VPNs, firewalls, and dynamic routing protocols such as BGP, OSPF and EIGRP
Evaluates and recommends solutions for highly complex security systems according to industry best practices to safeguard internal information systems and databases
Excellent communication skills and experience working collaboratively in cross-functional teams.
On-call Duties
Ability to travel as needed, approximately 1-3 times a quarter. Can be both domestic and global travel.
Desired:
Vender Certification, preferably Fortinet/Cisco/Blue Coat
Security Certifications: CCNA, CCNP-Security
The ability to define security requirements and subsequently reviews complex systems to determine if they have been designed to comply with established standards
The ability to conduct research and inform management of appropriate developments in firewall, IDPS, WCF, DLP, Application Control and VPN and secure networking technologies and products
Compensation:
A competitive package consisting of a base salary, and full company benefits
Company information
We help nations, governments and businesses around the world defend themselves against cybercrime, reduce their risk in the connected world, comply with regulation, and transform their operations. We do this using our unique set of solutions, systems, experience and processes - often collecting and analyzing huge volumes of data. We employ over 4,000 people across 18 countries in the Americas, APAC, UK and EMEA
Chief Information Security Officer
Security architect job in Raleigh, NC
The Security & Compliance Unit (S&C) within the Office of Information Technology (OIT) oversees the cybersecurity of the University's systems and data in a manner consistent with industry best practices and the University's IT compliance and IT risk management obligations. S&C develops and ensures compliance with cybersecurity policies/regulations/procedures, supports and oversees implementation of strategic information security initiatives, provides operational security services, and provides campus-wide vendor risk and license management. S&C is also the functional lead for the university's identity and access management program.
S&C's overall responsibilities include the following:
* Development/maintenance of the university's cybersecurity strategic plan and roadmap
* Implementation of strategic cybersecurity initiatives
* Operational security services
* Coordination of IT resilience efforts and change management processes
* Manage the University wide operational cybersecurity services
* Establish, review, and enforce university-wide IT and cybersecurity policies, standards, and procedures, while also ensuring compliance with federal/state regulations and contractual obligations.
* Campus-wide IT vendor risk and license management
Wolfpack Perks and Benefits
As a Pack member, you belong here, and can enjoy exclusive perks designed to enhance your personal and professional well-being. As you consider this opportunity, we encourage you to review our Employee Value Proposition and learn more about what makes NC State the best place to learn and work for everyone.
What we offer:
* Medical, Dental, and Vision
* Flexible Spending Account
* Retirement Programs
* Disability Plans
* Life Insurance
* Accident Plan
* Paid Time Off and Other Leave Programs
* 12 Holidays Each Year
* Tuition and Academic Assistance
* And so much more!
Attain Work-life balance with our Childcare benefits, Wellness & Recreation Membership, and Wellness Programs that aim to build a thriving wolfpack community.
Disclaimer: Perks and Benefit eligibility is based on Part-Time or Full-Time Employment status. Eligibility and Employer Sponsored Plans can be found within each of the links offered.
Essential Job Duties
The Chief Information Security Officer (CISO) reports to the Vice Chancellor for Information Technology and Chief Information Officer (CIO) and leads the Security and Compliance Unit (S&C) in the Office of Information Technology (OIT). The CISO is a member of the OIT Leadership Cabinet and works closely with senior administration, academic leaders, and the campus community to optimize the security posture of the university.
The CISO is responsible for developing, implementing and maintaining the university's comprehensive cybersecurity program that ensures the confidentiality, integrity, and availability of university data and technology resources. This program utilizes industry best practices and employs a range of policy, procedural, and technological controls to manage risk to NC State University's information assets. The CISO leads a cybersecurity program that harnesses collaborations and campus-wide resources, promotes effective cybersecurity governance, advises senior leadership on strategic cybersecurity direction and resource investments, and develops policies to effectively manage IT and cybersecurity risks. The CISO is responsible for managing the S&C portfolio within its operating budget of over $5 million as well as overseeing VRLM's maintenance and negotiation of licenses totaling over $12 million.
List of Primary Responsibilities:
Leadership, Training and Collaboration (40%)
* Provide leadership and oversight of activities and services related to the S&C unit. The current structure is comprised of:
* Cybersecurity Operations (Director and 9 staff including Security Operations Center):
* Secure Computing
* Data Protection
* Intrusion Detection/Prevention
* Logging, Monitoring, Alerting
* Multi Factor Authentication Solutions
* Network Security Monitoring
* Password Vault Management
* SIEM (Security Information & Event Management) Operations
* Endpoint Security: Endpoint Detection and Response, Antivirus
* SSL Certificate Management
* Vulnerability Scanning and Pen Testing
* Web Application Security Testing
* General Security Consultation, Security Architecture and Review
* Security Incident Response and Investigation
* Digital Forensics
* Security Incident & Response
* Security Operations Center (Manager and 3 staff)
* Information Security, Risk and Assurance (Director and 7 staff):
* Security Consulting and Education
* Data Management
* IT Risk Management
* Security Awareness and Training
* Security Liaison Team Program Management
* Identity and Access Management
* Security Policy and Compliance
* Access Reviews
* Internal & External OIT Audit Coordination
* Litigation Holds/eDiscovery and Records Retention
* Research Data Security Consultation & Evaluation
* Security Compliance Program Development, Management and Continuous Assessment
* Security Policy, Regulations, Rules, and SOP Development
* Vendor Risk & License Management (Associate Director & 2 staff)
* License Asset Management
* Analyzes campus needs, interests and directions, and then tailors the software licensing program to meet those needs
* Lead enterprise license coordination
* Collaborates with UNC-System Office on university system-wide software licenses
* Manages OIT licensing maintenance reviews and renewals
* Manage the software inventory management system
* Manage the software distribution to stakeholders
* License Risk Assessment
* Click-wrap Agreement Risk Assessment
* Non-Negotiable Hard Copy License Review
* IT Purchase Compliance Management
* Manage the review process to ensure that IT purchases comply with university, State and Federal regulations and/or guidelines.
* Manage the SAS Grant Administration
* Ensure ongoing collaboration with OIT units, colleges, administrative units and key constituents such as data stewards, data trustees, the Office of General Counsel, Internal Audit, and Emergency Management & Mission Continuity regarding overall cybersecurity requirements.
* Provides regular updates to the VCIT/CIO and other University leaders regarding cybersecurity matters, including ongoing program reporting and incident reporting.
* Serve as co-chair of the Research Controlled Unclassified Information (CUI) Security Compliance Committee and Guest/Affiliate Steering Team.
* Serve on a number of committees as a member or in an advisory capacity (e.g., Strategic IT Committee (SITC), Campus IT Directors, Enterprise Risk Management Advisory Team, Data Steward Committee, Data Governance Council, etc.).
* Serve on the UNC Information Security Council and establish collaboration and partnerships with the colleges/universities in the UNC system.
* Facilitate NC State's annual self assessments with the UNC security framework and policy requirements
* Be an active participant in the appropriate national organizations such as EDUCAUSE and be involved with collaboration and engagement in security initiatives.
* Provide leadership to the Cybersecurity Awareness Team and ensure functionality of the Cybersecurity Liaisons program to assist with maintaining a secure university landscape and resulting project priorities.
* Lead the development of the annual presentation to the University Board of Trustees regarding the university's security threat and risk landscape
Strategic Practice and Policy (35%)
* Provide executive responsibility and expert oversight for strategies, plans, policies, processes and operations that safeguard the security of technology systems and university information, regardless of format or medium (electronic, paper, etc.).
* Lead the continuous enhancement of a 3-5 year university cybersecurity strategic plan and roadmap that addresses needed resources (people, processes, technology) for a secure university environment and is prioritized using a developed risk management process.
* Engage with university leaders to communicate vision and drive information security programs and concepts into all business processes and programs. Partners with executive leadership in achieving successful delivery of the following functional areas of Security: Governance and Policy, IT Risk Management, Compliance Management, Identity and Access Management, Endpoint Security, Security Operations, Vulnerability Management, Security Training and Awareness, Application Security, Cybersecurity Assessments and Testing, Cybersecurity Analytics and Cybersecurity Portfolio Management.
* Manage the university's information security governance processes and provide leadership to the Information Security Advisory Group
Security Operations, Risk Management and Compliance (25%)
* Collaborate with university leadership to develop and foster a culture supporting a high-level of cybersecurity and compliance in university activities, while ensuring actions are appropriately measured against university philosophies, attitudes, and its research and education missions. Provide leadership and guidance for the secure use of Artificial Intelligence (AI).
* Work closely with the research community in exploring new and novel approaches to cybersecurity within networking, data management systems, software development, federation and identity management, and other research instruments and platforms.
* Develop and maintain strategic external relationships and partnerships to support and improve cybersecurity and compliance.
Other Responsibilities
* Other duties as assigned.
Qualifications
Minimum Education and Experience
* Requires a relevant post-baccalaureate degree with a minimum of three (3) years or greater of related professional experience, or a relevant undergraduate degree and a minimum of five (5) years or greater of relevant experience may be substituted for the advanced degree, or equivalent professional training in a closely related field and level of leadership.
Other Required Qualifications
Required Leadership Skills
* Clear demonstration of balancing the business, technical, compliance and cultural risks to help make decisions that support the university mission and improve success.
* Relevant experience in a senior cybersecurity information and technology leadership position (Chief Information Security Officer or Deputy Chief Information Security Officer or other key leadership experience in Cyber related leadership) managing and supporting a staff of professionals dedicated to cybersecurity, or the ability to address ways in which current experience is relevant.
* Proven leadership, communication, presentation and problem solving skills.
* Proven ability to enhance and/or implement an enterprise-wide information security education and awareness program.
* Excellent written and verbal communication skills and high level of personal integrity
* Innovative thinking and leadership with an ability to lead and motivate cross-functional, interdisciplinary teams.
Required Technical Skills
* Demonstrated experience in overseeing the establishment, implementation, and management of an established information security program.
* In-depth knowledge of cybersecurity principles, information auditing principles, cybersecurity policy and compliance and IT risk management.
* Knowledge of common information security management frameworks, such as ISO/IEC 27001, NIST Cybersecurity Framework and 800-series, CIS Controls, etc..
* Broad understanding of IT and cybersecurity related compliance obligations such as FERPA, GLBA, HIPAA, PCI, DFARS/CMMC and federal/state records retention requirements.
* A broad understanding of all IT service functions, such as technical security, network engineering, application development, server administration, database administration, user account administration, identity and access management, endpoint device management and academic support.
Preferred Qualifications
* A minimum of eight (8) years of full-time experience in information security management and leadership
* Experience in academia, with experience at a Research 1 university a plus
* Possess the relationship skills, cultural awareness, and organizational prowess required to work effectively in a University setting
* Professional Security Certification from at least one of the currently acceptable information security such as:
* Certified Information Systems Security Professional (CISSP)
* Systems Security Certified Practitioner (SSCP)
* Certified Information Security Manager (CISM)
Required License(s) or Certification(s)
N/A
Valid NC Driver's License required No Commercial Driver's License required No
Security Architect ( Cloud )
Security architect job in Raleigh, NC
We provide creative and technology services and solutions in the areas of web design, customized web applications, IT Staffing and e-commerce solutions, Mobile App development and much more services to organizations in the All over the world.
With well defined and documented processes and practices, we ensure successful implementation of all our projects. Our teams are highly trained in best practices of web and application developments and are managed by certified project managers who ensure highest levels of process control and management
Job Description
Security Architect
Locations: Raleigh, NC
Full Time
Travel Required: Up to 10% or 1 day a week
Work with IBM Cloud PaaS Offering Management on defining security roadmap
Engage with clients as sponsor users to implement new security capabilities
Architect technical security requirements for external compliance certifications
Participate and enforce IBM PSIRT, IBM CSIRT, and IBM Secure Engineering processes
Provide security technical guidance to Bluemix services and SaaS offerings that run on top of Bluemix PaaS
Create external facing collateral for use by client facing teams and clients
Participate in IBM Cloud Security interlocks
Present in client facing/external conferences e.g., Interconnect etc.
Support Bluemix sales by presenting to clients (on the phone, F2F)
Mentor security team members
You will work with the best of the teams in Cloud Dev, Cloud Security, Cloud Offering Management, Cloud Sales. You will be outgoing, team player, willing to mentor and lead team members, must have great sense of humor. You will have demonstrated communication skills, experience with working with customers and be able to bring customer requirements back to the team. Your extensive experience in security and compliance audit is of great advantage.
This is a high performing, leading edge team that offers exciting opportunities in Cloud security. If you have it in you, then you are at the right place. Apply below immediately.
Required Technical and Professional Expertise:
At least 8 years of experience in technical security architecture and design skills
At least 5 years of experience in External customer facing experience and skills
At least 3 years experience in Compliance Standards
Preferred Technical and Professional Experience:
At least 3 years of experience in Cloud Security and compliance standards.
Certified Information Systems Security Professional (CISSP) certification is preferred
Additional Information
All your inform ation will be kept confidential according to EEO guidelines.
Engineer, Information Security and Risk
Security architect job in Raleigh, NC
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Sr. Security Analyst
Security architect job in Durham, NC
Procom is a leading provider of professional IT services and staffing to businesses and governments in Canada. With revenues over $500 million, the Branham Group has recognized Procom as the 3rd largest professional services firm in Canada and is now the largest “Canadian-Owned” IT staffing/consulting company.
Procom's areas of staffing expertise include:
• Application Development
• Project Management
• Quality Assurance
• Business/Systems Analysis
• Datawarehouse & Business Intelligence
• Infrastructure & Network Services
• Risk Management & Compliance
• Business Continuity & Disaster Recovery
• Security & Privacy
Specialties• Contract Staffing (Staff Augmentation)
• Permanent Placement (Staff Augmentation)
• ICAP (Contractor Payroll)
• Flextrack (Vendor Management System)
Job Description
Sr. Security Analyst
On behalf of our client, Procom Services is searching for a Sr. Security Analyst for a contract opportunity in Durham, NC.
Sr. Security Analyst Job Details
Responsible for user account administration in a multi-platform environment and ensure that administration procedures are aligned with overall Information Security policies and standards. Assist in the development of access controls to safeguard customer systems against accidental or unauthorized modification, destruction or disclosure.
Maintain user access to securable customer system resources (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange) performing tasks such as: creation / configuration of user logon Ids and updating access control lists, access provisioning and access removals and access terminations.
Perform detailed analysis of access requests/processes and provide recommendations for improvement to senior team members and Information Security management.
Educate information / resource owners in the implementation of necessary information security controls.
Perform standard and non-standard processing of security authorization requests.
Work with resource owners to determine appropriate security policies for securable customer resources.
Provide on-call support for after-hours system access issues and troubleshoot system access problems and failures.
Report suspected information security misuse to manager or director.
Assist resource owners and IT staff in understanding and responding to security access exceptions.
Sr. Security Analyst Mandatory Skills
- Bachelor's degree in Computer Science.
- 2 years of security administration experience, or related technical system administration experience.
- In lieu of degree 5 years of security administration experience.
- Familiarity with audit and risk-related methodologies; such as COBIT and HIPAA.
- Systems administration experience within other aspects of IT
- Demonstrated security administration experience on two or more platforms (UNIX, OS390 Mainframe, iSeries, Windows / Active Directory, Outlook Exchange)
- Demonstrated experience working with a managed services organization.
- Demonstrated experience working with a request ticketing system, such as Triole.
- Strong analytical and problem-solving skills.
- Ability to present and discuss technical information to users with varying technical expertise.
- Proven ability to work under stress in emergencies. Flexibility to handle pressure from many directions simultaneously.
- Must be detail-oriented with a high level of accuracy.
- Excellent written and verbal communication skills.
- Demonstrated ability to develop and maintain collaborative working relationships across multiple teams.
- Strong customer focus and the ability to manage customer expectations.
- Must have strong team-oriented interpersonal skills and the ability to effectively interface with a wide variety of people.
- Demonstrated commitment to continuous process improvement.
- CISSP, CISA, or other security / audit / field related certifications a plus
Sr. Security Analyst Start Date
ASAP
Sr. Security Analyst Assignment Length
7+ months
Additional Information
All your information will be kept confidential according to EEO guidelines. Please send your resume in Word format only.
Cloud Security Engineer
Security architect job in Raleigh, NC
Piper Companies is looking for a Cloud Security Engineer to join a top-tier global technology firm based in Raleigh, North Carolina. This hybrid role requires in-office presence three days per week. The ideal candidate will have extensive experience in uncovering and neutralizing advanced cyber threats across diverse environments.
Responsibilities of the Cloud Security Engineer Include::
* Threat Discovery: Conduct proactive investigations to uncover advanced persistent threats (APTs), malware, and insider risks across endpoints, networks, and cloud platforms.
* Data Analysis: Examine telemetry, log files, and behavioral indicators using tools such as SIEM, EDR, and XDR.
* Anomaly Detection: Spot irregularities and stealthy attack patterns that bypass conventional security systems.
* Rule Development: Build and refine detection logic using languages and frameworks like Sigma, YARA, Splunk SPL, and KQL.
* Automation: Write custom scripts and queries to streamline threat hunting and incident response processes.
* Tool Integration: Connect and optimize threat hunting tools within SIEM, EDR, and SOAR ecosystems
Qualifications for the Cloud Security Engineer:
* 4+ years of hands-on experience in threat hunting or cyber defense.
* Strong familiarity with cloud platforms, particularly AWS and Azure.
* Advanced proficiency with Splunk, including SPL query development.
* Solid understanding of the MITRE ATT&CK framework and its application in threat detection.
* Experience integrating security tools and automating workflows.
Compensation & Benefits:
* Salary range: $100,000 - $135,000 annually
* Comprehensive benefits including medical, dental, vision, 401(k), paid time off, and legally mandated sick leave
This position opens for applications on November 17, 2025. Submissions will be accepted for a minimum of 30 days from the posting date.
Keywords: Cloud Security Engineer, Threat Detection, Splunk SPL, Hybrid Security Role
#LI-AR2
#LI-HYBRID
Engineer, Information Security and Risk
Security architect job in Raleigh, NC
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Cloud Security Engineer
Security architect job in Raleigh, NC
Piper Companies is seeking a Cloud Security Engineer for a world-leading technology organization in the RTP, NC or Fulton, MD area. The Threat Hunter will have a strong background in threat hunting, Splunk, and cloud security, with hands-on experience in scripting and log analysis. This role is hybrid onsite (Tuesdays and Thursdays) in either Raleigh NC or Fulton, MD.
Responsibilities for the Cloud Security Engineer include:
* Proactively hunt for cyber threats across on-premises and cloud environments (AWS and Azure)
* Utilize Splunk for advanced log analysis, threat detection, and incident response
* Analyze indicators of compromise (IOCs) and adversary tactics, techniques, and procedures (TTPs)
* Document threat findings in ticketing systems and oversee remediation efforts to closure
* Develop and implement threat hunting methodologies and playbooks
* Collaborate closely with SOC, Incident Response, and IT teams
* Provide actionable recommendations to improve threat detection and response
* Produce detailed reports on findings, actions taken, and remediation status
Requirements for the Cloud Security Engineer include:
* 5+ years of professional threat hunting experience in enterprise environments
* Splunk Certification (e.g., Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin)
* Strong scripting skills, especially in Splunk SPL query language
* Hands-on experience with AWS and Azure cloud platforms
* Proficiency in Python or PowerShell
* Familiarity with MITRE ATT&CK, cyber kill chain, and PEAK Threat Hunting Framework
* Experience with SIEM, EDR, and network security monitoring tools
* Must be eligible to work in the United States
* Ability to work onsite in RTP, NC or Fulton, MD on Tuesdays and Thursdays
Compensation for the Cloud Security Engineer:
* $125,000-$132,000 annually
* Full comprehensive benefits package including medical, dental, vision, 401(k), PTO, and sick leave as required by law
* This job opens for applications on November 7th, 2025. Applications will be accepted for at least 30 days from the posting date.
Keywords: Threat Hunter, Splunk, SIEM, Incident Response, Cloud Security, AWS, Azure, Python, PowerShell, MITRE ATT&CK, Cyber Threats, Hybrid Role, RTP, Fulton
#LI-HYBRID
#LI-HC1C