Senior Security Engineer
Security architect job in Boston, MA
Senior Security Engineer (US)
New York & Boston candidates: Office-based
Other listed states: Remote employees considered
Contract: Full-time, Hybrid / Flexible | 35-hour week
Salary: $175,000 base + 15% bonus
Overview
We are seeking a hands-on, senior security engineer to proactively strengthen our security posture across cloud-native and hybrid environments. This highly technical, strategic role will lead security platform integration, governance, threat detection, and mentoring, while influencing security-first practices across the organisation.
Key Responsibilities
Security Architecture & Engineering
Lead integration and optimisation of Zscaler, Wiz (EDR/CSPM/CNAPP), and endpoint protection (EDR/XDR) to maximise prevention, detection, and response.
Develop detection rules and manage analytics in Microsoft Sentinel and Wiz.
Conduct proactive threat hunting, posture management, and remediation validation.
Administer Zscaler Internet Access (ZIA), including policy tuning, SSL inspection, forwarding profiles, and authentication flows.
Troubleshoot traffic flows and collaborate with DevOps, IT, and R&D to integrate security into CI/CD pipelines and infrastructure-as-code.
Compliance, Audit & Governance
Ensure compliance with NIST SP 800-53, NIST SP 800-171, SOC 2, ISO/IEC 27001:2022, and client-specific requirements.
Lead audits, penetration testing, and maintain continuous audit readiness.
Security Operations & Incident Response
Develop, tune, and manage detection rules and playbooks across Wiz, Zscaler, and other platforms aligned with MITRE ATT&CK.
Hunt threats, triage alerts, and lead incident investigations.
Manage advanced email security with Microsoft Defender for Office 365.
Drive automation and orchestration initiatives to improve operational efficiency.
Stakeholder Engagement & Leadership
Act as a technical advisor on Zero Trust, cloud security, and operations.
Mentor junior staff and foster a security-first culture.
Communicate complex security concepts clearly to technical and non-technical stakeholders, including senior leadership.
Mandatory Platform Expertise
GitGuardian
CyberHaven
Wiz Advanced & Defend
Zscaler
Email Security (various platforms)
Education & Preferred Certifications
Master's degree in Information Security, Computer Science, or related field.
GIAC certifications: GCIA, GCED, GCIH, GDAT, GDSA, GMON
Microsoft Cloud Security certifications: AZ-500, AZ-305, SC-300
Cloud Security Engineer
Security architect job in Merrimack, NH
Immediate need for a talented Cloud Security Engineer. This is a 12 months contract opportunity with long-term potential and is located in Westlake, TX/ Merrimack, NH(Onsite). Please review the job description below and contact me ASAP if you are interested.
Job Diva ID: 25-95092
Pay Range: $70 - $75 /hour. Employee benefits include, but are not limited to, health insurance (medical, dental, vision), 401(k) plan, and paid sick leave (depending on work location).
Key Responsibilities:
Designing, scaling, and deploying various cloud security controls and services
Building processes and workflows along with a consolidated and collaborative integration of IaaS, SaaS, and PaaS cloud services
Ensuring seamless user experience with advanced security and compliance of our cloud infrastructure
Maintaining and containing business risk as it pertains to the Azure cloud infrastructure
Working across teams and Business Units to define requirements and deliver solutions
Building comprehensive security controls to enforce policy
Supporting business unit technologists deploying to the public cloud
Key Requirements and Technology Experience:
Key skills; Azure Policy Exp
Azure Security Services - Security Center, Key Vault, Log Analytics
Identity and Access Management Exp
Prior Software Engineering background, any language is fine but someone coming from a Sys Admin/Devops background won't be the right fit here.
6-9 years of experience in IT infrastructure, security, compliance
A strong understanding of Azure services and security capabilities
Solid hands-on experience with at least two of the following:
Engineering/operational support of cloud account configuration in AWS or Azure
Software Development, Linux Systems Administration, Data Networking
Hands-on configuration of CI/CD pipelines for cloud-native deployments
Very strong with scripting languages, including integration with CSP APIs; python preferred
Azure Networking
Identity and Access Management - RBAC
Azure Policies
Azure Security Services - Security Center, Key Vault, Log Analytics
Azure ARM/PowerShell
Ability to work with application and security teams to promote a secure posture in the cloud
You can mentor and train other team members to work effectively in the cloud
You are a self-starter who can independently by reading technical documentation
Advanced Azure Certifications
Our client is a leading financial Industry, and we are currently interviewing to fill this and other similar contract positions. If you are interested in this position, please apply online for immediate consideration
Pyramid Consulting, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, colour, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.
By applying to our jobs, you agree to receive calls, AI-generated calls, text messages, or emails from Pyramid Consulting, Inc. and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here.
Information Security Analyst and Engineer
Security architect job in Boston, MA
ABOUT OUR CLIENT
Our Client is a leader in energy management and power trading, leveraging cutting-edge platforms to deliver secure and resilient operations. With a strong focus on protecting systems, data, and intellectual property, they are committed to building a world-class information security program that supports business growth while staying ahead of emerging cyber threats.
ABOUT THE ROLE
The Information Security Analyst and Engineer will play a key role in safeguarding mission-critical systems, ensuring compliance, and advancing the organization's security maturity. This hybrid role blends hands-on security engineering with proactive monitoring, incident response, and program improvement. The position will collaborate with consultants, managed service providers (MSPs), and internal stakeholders to realize a highly effective security strategy. Reporting directly to the Director of Information Security, the role also provides occasional support to the Infrastructure team with basic system administration and help desk duties.
RESPONSIBILITIES
Develop and implement processes and technologies to enhance the security program and protect business platforms
Monitor security systems and analyze alerts, logs, and reports
Analyze vulnerability reports and track remediation across teams and systems
Provide metrics to evaluate security program effectiveness
Support security training and awareness programs, including phishing campaigns and in-person sessions
Research emerging IT security trends, attack techniques, and defensive measures
Assist in designing secure architectures across applications and infrastructure
Support internal and external risk assessments, vendor reviews, and security audits
Analyze penetration test results and drive remediation
Contribute to security roadmaps and maturity assessments
Safeguard IT assets and intellectual property by recommending best practices and solutions
Participate in incident response planning, investigations, and compliance reviews
Enhance data loss prevention technologies and processes
Respond rapidly to incidents, conduct root cause analysis, and recommend mitigations
Support business continuity and disaster recovery planning and testing
Validate MSP-delivered security solutions to ensure alignment with standards
Use automation to improve efficiency and effectiveness of security processes
Maintain and improve information security policies and ensure compliance
QUALIFICATIONS
Bachelor's degree in Computer Science, Information Security, or a related technical field
3-5 years of IT security experience, with hands-on implementation and analysis
Proficiency with EDR or SIEM solutions for configuration and investigations
Competency with firewalls, email gateways, internet filters, and VPNs
Strong background in network security, protocols, and best practices
Understanding of operating system, network, and application security concepts
Familiarity with the NIST Cybersecurity Framework
Working knowledge of network and data center operations
Experience with hybrid, public cloud (Azure preferred), and SaaS environments
Strong analytical, troubleshooting, and problem-solving skills
Excellent communication skills and attention to detail
Adaptability and eagerness to learn new technologies in a collaborative environment
PREFERRED QUALIFICATIONS
Experience in the energy or financial services industries
Familiarity with regulatory compliance frameworks such as NERC CIP or SOX
Relevant certifications such as CISSP, CompTIA, or GIAC
Experience in Agile and DevSecOps environments
Scripting knowledge in PowerShell and/or Python
Staff AI Security Architect
Security architect job in Boston, MA
Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format. Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care.
By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare.
**What We're Looking For**
As a Staff AI Security Architect at Datavant, you will lead the design, evolution, and adoption of secure by design principles across our AI and Machine Learning (ML) systems. This role sits at the intersection of AI innovation and security architecture. You will define and operationalize AI security strategy, embed security into the AI/ML development lifecycle, and partner deeply with data science, engineering, product, legal, and compliance teams to ensure our AI systems are secure, trustworthy, and scalable.
**What You Will Do**
+ Establish AI security architectural standards, design patterns, and best practices adopted across engineering teams.
+ Architect and advise on secure end-to-end AI systems, including data pipelines, model training, evaluation, deployment, runtime monitoring, and agentic workflows.
+ Lead threat modeling, architecture reviews, and risk assessments for AI-driven products, including LLMs, agent frameworks, and multi-agent systems.
+ Define and evolve a comprehensive AI/ML secure development lifecycle integrated into existing SDLC practices.
+ Develop reference architectures, documentation, and reusable security components to accelerate secure AI adoption.
+ Collaborate with legal, privacy, compliance, and responsible AI stakeholders to align security controls with regulatory and ethical requirements.
+ Act as a trusted advisor to senior leadership on AI security risks, trade-offs, and long-term strategy.
**What You Need to Succeed**
+ 8+ years of experience in security architecture, application security, or product security, with meaningful focus on AI/ML systems.
+ Hands-on experience securing AI/ML or LLM-based systems, including familiarity with modern AI architectures and agentic workflows.
+ Strong understanding of AI threat models, including adversarial ML, prompt injection, data poisoning, model theft, and abuse scenarios.
+ Proven ability to design and influence security architectures for large-scale, distributed systems.
+ Strong communication skills with the ability to translate complex technical concepts to both technical and non-technical stakeholders.
+ Have a strong understanding of security controls, both those that exist in audit standards as well as practical controls that can help reduce risk and increase safety.
**What Helps You Stand Out**
+ Hands-on experience building, testing, or tinkering with agentic AI workflows, with an understanding of the security risks they introduce.
+ Experience securing AI/ML workloads in Databricks, with a deep understanding of its platform-specific security risks.
+ You have experience with security in healthcare or other highly regulated space. Examples: HIPAA, HITRUST, SOC 2, PCI, FedRamp experience from an operational response standpoint.
We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status.
At Datavant our total rewards strategy powers a high-growth, high-performance, health technology company that rewards our employees for transforming health care through creating industry-defining data logistics products and services.
The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job.
The estimated total cash compensation range for this role is:
$224,000-$280,000 USD
To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and/or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and/or religion.
This job is not eligible for employment sponsorship.
Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here (************************************************** . Know Your Rights (*********************************************************************** , explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay.
At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren't even able to see whether you've responded.) Responding is entirely optional and will not affect your application or hiring process in any way.
Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please request it here, (************************************************************** Id=**********48790029&layout Id=**********48795462) by selecting the 'Interview Accommodation Request' category. You will need your requisition ID when submitting your request, you can find instructions for locating it here (******************************************************************************************************* . Requests for reasonable accommodations will be reviewed on a case-by-case basis.
For more information about how we collect and use your data, please review our Privacy Policy (**************************************** .
Lead Security Architect (Director level, individual contributor)
Security architect job in Boston, MA
At Manulife, we are changing the way we unlock value and secure the enterprise through technology and we want you to be part of it! We are growing our cybersecurity program with the vision to deliver quality applications using AI that add value to our customers, faster and securely, at scale. The customer is at the focus of everything we do, and millions of end users rely on our products daily. We are building a state-of-the-art cybersecurity program to better protect the firm's critical assets.
As a **Lead Security Architect** , you'll be responsible for designing, developing, and implementing robust security strategies and solutions to protect Manulife's digital assets from advanced cyber threats. In this **hub-and-spoke model** , you will report to the Chief Security Architect and will be the dedicated security architecture lead for a specific business unit, ensuring alignment with the global security framework while addressing the unique needs of the segment. You will play a crucial role in shaping our global security posture and ensuring security is a foundational element of our technology and business initiatives.
**Office location: Toronto - Canada (ideal) or Boston - USA.**
**Work arrangement: Hybrid (3 days in office, 2 days from Home); Remote working option is not available.**
**Travel Flexibility:** **Willingness and ability to travel within Canada and USA to support business operations and stakeholder engagement.**
**Position Responsibilities:**
+ **Architectural Design** : Lead the design and development of robust security frameworks, standards, and best practices for global systems, data, and networks. This includes creating reference architectures and implementation patterns for security solutions.
+ **Strategic Planning** : Translate business, technology, and threat drivers into practical security roadmaps. You'll ensure our security strategy is aligned with broader organizational goals.
+ **Financial Analysis** : Conduct financial evaluations of security technologies, including quantifying purchasing and licensing options, estimating labor costs, and calculating the total cost of ownership (TCO), return on investment (ROI), or payback period.
+ **Project Management** : Draft project plans for security service and technology deployments and coordinate with stakeholders across the organization to ensure successful implementation.
+ **Collaboration & Integration** : Work closely with various teams across Manulife's business and IT units-including enterprise architecture, development, and risk management-to seamlessly integrate security throughout the entire project lifecycle.
+ **Risk Management** : Conduct comprehensive risk assessments to identify vulnerabilities and define necessary controls. Partner with global information risk management teams to prioritize and mitigate risks effectively.
+ **Security Evaluation** : Continuously evaluate the security of new and emerging technologies and potential solutions. You will stay ahead of the curve on cybersecurity trends to recommend and implement innovative solutions.
+ **Mentorship & Communication** : Act as a security subject matter expert, coaching and mentoring development teams. You will also communicate complex security standards and strategies to both technical staff and senior management with clarity and influence.
+ **AI Security:** Design and implement security frameworks for Machine Learning (ML), Generative AI (GenAI), and Agentic AI systems. Evaluate AI-powered security tools and integrate artificial intelligence capabilities into security operations and threat detection.
+ **Domain-Specific Accountabilities:**
+ **Application Security** : Assess solution architectures for compliance with security standards, define secure service interfaces, and provide guidance to application security engineers on threat modelling and secure software development methodologies.
+ **Cloud Security** : Provide deep expertise in securing multi-cloud computing environments (SaaS, IaaS, PaaS), with a strong focus on platforms like **Microsoft Azure** and **AWS** .
**Required Qualifications:**
+ To succeed in this role, a candidate must have a strong blend of technical expertise, professional experience, and interpersonal skills.
+ **Education & Certifications** **:**
+ Bachelor's or master's degree in computer science, information systems, cybersecurity, or a related field.
+ Relevant industry certifications such as **CISSP (Certified Information Systems Security Professional)** or **CCSP (Certified Cloud Security Professional)** are required.
+ **Experience** **:**
+ At least 10 years of experience specifically in senior information security architecture roles, with demonstrated progression in responsibility and complexity.
+ Proven experience in the financial services industry, with understanding of regulatory requirements, compliance frameworks, and industry-specific security challenges.
+ Experience in using architecture methodologies such as **SABSA, Zachman, and/or TOGAF.**
+ Direct, hands-on experience or strong working knowledge of managing security infrastructure-e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM, and log management technology.
+ Verifiable experience reviewing application code for security vulnerabilities.
+ Experience securing CI/CD pipelines.
+ Direct, hands-on experience or a strong working knowledge of vulnerability management tools.
+ Documented experience and a strong working knowledge of the methodologies to conduct threat-modelling exercises on new applications and services.
+ Experience designing the deployment of applications and infrastructure into public cloud services.
+ Direct experience designing IAM technologies and services, including Active Directory, Lightweight Directory Access Protocol (LDAP), and Amazon Web Service (AWS) IAM.
+ Extensive knowledge of full-stack IT infrastructure, including:
+ Applications
+ Databases
+ Operating systems-Windows, Unix, and Linux
+ Hypervisors
+ IP networks-WAN and LAN
+ Storage networks-Fibre Channel, iSCSI, and NAS
+ Backup networks and media
+ Containers/Kubernetes
+ **Soft Skills** :
+ **Communication** : Excellent verbal and written communication skills are crucial for articulating complex technical concepts and influencing stakeholders at all levels. You must be able to translate complex security matters into business terms that are easily understood by colleagues and senior management.
+ **Problem-Solving** : Strong analytical, problem-solving, and decision-making abilities.
+ **Collaboration** : The capacity to balance competing priorities and maintain a collaborative and positive attitude.
+ **Travel Flexibility:** Willingness and ability to travel within Canada and USA to support business operations and stakeholder engagement
**Preferred Qualifications:**
+ Experience from large complex environment is highly preferred but not a must.
+ Experience from large financial Org's is a definite plus but not a must.
**When you join our team:**
+ We'll empower you to learn and grow the career you want.
+ We'll recognize and support you in a flexible environment where well-being and inclusion are more than just words.
+ As part of our global team, we'll support you in shaping the future you want to see.
**Acerca de Manulife y John Hancock**
Manulife Financial Corporation es un importante proveedor internacional de servicios financieros que ayuda a las personas a tomar decisiones de una manera más fácil y a vivir mejor. Para obtener más información acerca de nosotros, visite *********************** .
**Manulife es un empleador que ofrece igualdad de oportunidades**
En Manulife/John Hancock, valoramos nuestra diversidad. Nos esforzamos por atraer, formar y retener una fuerza laboral tan diversa como los clientes a los que prestamos servicios, y para fomentar un entorno laboral inclusivo en el que se aprovechen las fortalezas de las culturas y las personas. Estamos comprometidos con la equidad en las contrataciones, la retención de talento, el ascenso y la remuneración, y administramos todas nuestras prácticas y programas sin discriminación por motivos de raza, ascendencia, lugar de origen, color, origen étnico, ciudadanÃa, religión o creencias religiosas, credo, sexo (incluyendo el embarazo y las afecciones relacionadas con este), orientación sexual, caracterÃsticas genéticas, condición de veterano, identidad de género, expresión de género, edad, estado civil, estatus familiar, discapacidad, o cualquier otro aspecto protegido por la ley vigente.
Nuestra prioridad es eliminar las barreras para garantizar la igualdad de acceso al empleo. Un representante de Recursos Humanos trabajará con los solicitantes que requieran una adaptación razonable durante el proceso de solicitud. Toda la información que se haya compartido durante el proceso de solicitud de adaptación se almacenará y utilizará de manera congruente con las leyes y las polÃticas de Manulife/John Hancock correspondientes. Para solicitar una adaptación razonable en el proceso de solicitud, envÃenos un mensaje a ************************ .
**Referenced Salary Location**
Toronto, Ontario
**Modalidades de Trabajo**
HÃbrido
**Salary range is expected to be between**
$132,900.00 CAD - $182,900.00 CAD.
Si se está postulando para este puesto fuera de la ubicación principal, póngase en contacto con ************************ para conocer el rango salarial de su ubicación. El salario real variará según las condiciones locales del mercado, la geografÃa y los factores relacionados con el trabajo pertinentes, como conocimiento, habilidades, calificaciones, experiencia y educación/capacitación. Los empleados también tienen la oportunidad de participar en programas de incentivos y obtener una compensación de incentivos vinculada al desempeño comercial e individual.
Manulife ofrece a los empleados aptos una amplia variedad de beneficios personalizables, entre ellos, beneficios de salud, odontológicos, de salud mental, oftalmológicos, por discapacidad a corto y a largo plazo, cobertura de seguro de vida y por muerte accidental y desmembramiento, adopción/subrogación y bienestar, y planes de asistencia al empleado/familiar. También ofrecemos a los empleados admisibles varios planes de ahorro para la jubilación (incluidos planes de pensiones y un plan mundial de propiedad de acciones con contribuciones equivalentes del empleador) y recursos de asesoramiento y educación financiera. Nuestro generoso programa de tiempo libre remunerado en Canadá incluye feriados, vacaciones, dÃas personales y dÃas por enfermedad, y ofrecemos la gama completa de ausencia laboral reglamentaria. Si se está postulando para este puesto en los EE. UU., póngase en contacto con ************************ para obtener más información sobre las disposiciones relativas al tiempo libre remunerado especÃficas de EE. UU.
Easy ApplyPrincipal Cloud Security Architect
Security architect job in Boston, MA
Role OverviewThe Principal Cloud Security Architect evaluates cloud architectures, identity models, permissions, and security controls across large-scale environments. This role focuses on identifying architectural risks, misconfigurations, and long-term security design gaps.
What You'll Do- Assess cloud architectures (AWS, Azure, GCP) for security gaps - Review IAM configurations, network segmentation, and resource policies - Identify misconfigurations, privilege risks, and insecure patterns - Summarize architectural flaws and provide structured mitigation guidance - Validate alignment with security frameworks and best practices - Support recurring assessments of cloud environments and deployment patterns What You BringMust-Have:- Deep experience in cloud security architecture - Strong understanding of IAM, network design, and cloud service models - Ability to document complex architectures in clear, structured form Nice-to-Have:- Experience with multi-cloud, zero-trust, or high-compliance environments
Auto-ApplyMultiple permanent positions_Certified Security Architect_w2
Security architect job in Cumberland, RI
We are from US IT Solutions, an ISO Certified, E-Verify, WMBE Certified organization established in 2005 in CA. Our company is serving various State, Local and County Departments for over 10 years. USITSOL has been helping clients innovate across all phases of the application lifecycle for over a decade. Some of our prestigious clients are State of CA, State of OR, State of FL, State of NC, State of GA, State of CO, State of VA, State of AR, State of MI, State of OH, State of IL, State of MO, State of MS, California State University, Sacramento Area Sanitation Department, SMUD, Sound Transit, LA Superior Courts, District of Columbia, UMAS, University of Central Florida and Hennepin County and many more.
Job Description
We are looking to fill multiple full time positions as Information Security Architects in Cumberland RI.
Qualifications
A minimum of 5+ years of relevant security domain experience.
• 3+ years of hands on technical experience in network and perimeter security
• A minimum of 3 years in an architecture role and be able to lead/step up as needed
• Demonstrated expertise in integrating/developing security solutions in a 7x24 production environment
• Prior experience in defining the technology strategy for a large, global organization, and the ability to influence and persuade peers and colleagues in other reporting structures
• Strong Plus Skills:
o Industry recognized certifications such as CISA, CISM, CISSP, or SANS GIAC are a plus
o Virtualization Security experience is a strong plus (VMware ESX 6.x, Hytrust, Hypervisor, in-hypervisor malware control. Virtual NIC, NSX or equivalent.)
o Knowledge of risk assessment methodologies, IT policies and standards
o Knowledge of vulnerability identification tools, Qualys, Veracode, Qualys WAS.
Additional Information
In person interview is acceptable.
Multiple permanent positions_Certified Security Architect_w2
Security architect job in Cumberland, RI
360 IT Professionals is a Software Development Company based in Fremont, California that offers complete technology services in Mobile development, Web development, Cloud computing and IT staffing. Merging Information Technology skills in all its services and operations, the company caters to its globally positioned clients by providing dynamic feasible IT solutions. 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement.
Job Description
We are looking to fill multiple full time positions as Information Security Architects in Cumberland RI.
Qualifications
A minimum of 5+ years of relevant security domain experience.
3+ years of hands on technical experience in network and perimeter security
A minimum of 3 years in an architecture role and be able to lead/step up as needed
Demonstrated expertise in integrating/developing security solutions in a 7x24 production environment
Prior experience in defining the technology strategy for a large, global organization, and the ability to influence and persuade peers and colleagues in other reporting structures
Strong Plus Skills:
Industry recognized certifications such as CISA, CISM, CISSP, or SANS GIAC are a plus
Virtualization Security experience is a strong plus (VMware ESX 6.x, Hytrust, Hypervisor, in-hypervisor malware control. Virtual NIC, NSX or equivalent.)
Knowledge of risk assessment methodologies, IT policies and standards
Knowledge of vulnerability identification tools, Qualys, Veracode, Qualys WAS.
Additional Information
In person interview is acceptable.
Systems Security Engineer
Security architect job in Dedham, MA
Basic Qualifications
Requires a Bachelor's degree in Systems Engineering, or a related Science, Engineering, Technology or Mathematics field. Also requires 5+ years of job-related experience, or a Master's degree plus 3 years of job-related experience. Agile experience preferred.
CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required.
Responsibilities for this Position
We are seeking a Systems Security Engineer who has experience in the design and development of NSA-certified Cybersecurity devices.
Key Responsibilities:
Design and develop specifications for mission-critical NSA-certified Cybersecurity devices
Collaborate with software and validation engineering teams to deliver high-speed data solutions
Develop real-time multi-threaded Embedded System architecture using Model-based Systems Engineering (MBSE) tools and techniques
Analyze and maintain system security requirements throughout product development lifecycle
Conduct trade studies, perform functional analysis, and design system security.
Preferred Skills and Experiences:
NSA approved Cryptography/Encryption
Security requirements analysis
Real-Time multi-threaded Embedded System architecture and development
Model-based Systems Engineering (MBSE)
CISSP certification or similar
INCOSE ASEP, CSEP, or ESEP certification
We value candidates who possess:
Drive to expand knowledge and experience in designing complex systems
Ability to define project scope, schedule, and expected results
Initiative to complete assignments and ability to engage in technical direction and leadership
Our Commitment to You:
An exciting career path with opportunities for continuous learning and development
Research-oriented work with award-winning teams
Competitive benefits package
***Please note you will be onsite 100%.
Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $121,192.00 - USD $131,000.00 /Yr. Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Auto-ApplyGoogle Cloud Security Architect
Security architect job in Boston, MA
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
Director, Information Security
Security architect job in Boston, MA
Extensive knowledge of HIPAA and HITECH. Knowledge of and experience with Information Security frameworks such as HiTRUST, NIST, or ISO 27001. Bachelor's degree in information security, information assurance, information technology, computer science, or a related discipline.
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or related certification.
Five (5) years in an information security operations or management role.
Passion for the mission of Health Leads and strong commitment to Health Leads' core values: belief in collective strength and the power of shared work, constant and courageous learning, celebrating our victories and each other, and stepping up leaders in a common vision.
Experience with information security for cloud environments and/or software-as-a-service (SaaS) platforms.
Knowledge of security-related technologies and processes, including but not limited to: data loss prevention (DLP), identity and access management (IAM), endpoint security, vulnerability and configuration management, security information and event management (SIEM), incident response and digital forensics, disaster recovery/business continuity planning, network security (LAN/WAN).
Ability to communicate complex ideas and information both
verbally
and writing, in a clear, concise, and effective manner to technical and non-technical audiences including customers and colleagues.
Superior capabilities for partnering;
ability to be effective as both a team member and as a leader of teams in defining objectives, staying on task and reaching consensus;
soliciting participation, challenging ideas and summarizing accomplishments and planned actions.
Show integrity and ethical behavior; respect confidentiality, business ethics and organizational standards.
Ability to
formulate
the cost benefit of security initiatives in the context of
overall
business risk mitigation and the organization's operational objectives.
Ability to compare, contrast and
prioritize
among alternative approaches to meet those objectives.
Information Security Manager
Security architect job in Boston, MA
Are you a Cybersecurity compliance expert ready to take the lead in a dynamic, high-impact role? Join a globally recognized firm where you'll play a key role in shaping and strengthening our cybersecurity strategy. This is your chance to make a difference in a fast-paced, professional environment that values innovation, collaboration, and technical excellence.
Why You'll Love This Role:
Drive Security Initiatives - Lead firmwide cybersecurity programs, ensuring compliance with ISO 27001 and other industry standards.
Be a Decision-Maker - Approve security risks, implement best practices, and enhance policies to safeguard critical systems.
Third-Party & Risk Management - Oversee vendor risk assessments, vulnerability management, and client security audits.
Lead & Mentor - Supervise a Compliance Analyst and provide strategic guidance across teams.
Innovate & Protect - Collaborate with IT leadership to integrate cutting-edge security solutions into firm operations.
What You Bring to the Table:
5+ years of cybersecurity experience in a complex IT environment.
Strong knowledge of security frameworks (ISO 27001, NIST, etc.).
Hands-on experience with security tools, compliance audits, and risk assessments.
Leadership experience with a passion for mentoring and developing security professionals.
Bachelor's degree in Cyber Security, Computer Science, or a related field. Security certifications (CISSP, CRISC, etc.) strongly preferred.
Offer includes:
Competitive salary: $145,000 - $170,000
Hybrid work environment
Excellent benefits package
A culture of excellence, diversity, and professional growth
Ready to step into a leadership role where your expertise will make a real impact? Apply today and be a key player in securing the future of a top international firm.
Apply to this post or email your resume directly to Dan Gilliam, email: ****************************
Tags: Cybersecurity, IT, ISO, Compliance, Security Manager
Easy ApplyCloud Security Architect
Security architect job in Boston, MA
A cloud security architect must be conversant with a breadth of technologies used to protect data, workloads, and systems within cloud platforms.
Responsibilities of a cloud security architect include:
Designing and implementing cloud security strategies and policies that meet an organization's specific needs.
Ensuring the security of cloud-based data and applications against unauthorized access, theft, and other threats.
Conducting regular security assessments and audits to identify vulnerabilities and develop plans to address them.
Collaborating with other IT professionals, including network engineers, developers, security team, and operational team to integrate cloud security measures into existing systems and processes.
Staying up to date on the latest cloud security technologies, trends, and best practices.
Reviewing and understanding remediation options from application vulnerability monitoring and assessment tooling.
Skills sought in a cloud security architect:
Strong analytical and problem-solving skills, with an ability to think strategically and tactically about complex cloud security issues.
Excellent communication skills, including communicating complex technical concepts to non-technical stakeholders.
The ability to work independently but collaborate closely and effectively with developers and other IT professionals at project start and critical project junctures.
The ability to manage multiple projects and priorities and meet deadlines in a fast-paced environment.
Attention to detail and a commitment to quality work.
Requirements for a cloud security architect are:
A bachelor's or master's degree in computer science, information technology, or a related field.
More than 7 years of cloud security experience, focusing on designing and implementing secure cloud computing solutions.
A strong understanding of cloud computing technologies, including Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS).
Knowledge of security frameworks such as ISO 27001, NIST Cybersecurity Framework, and CIS Controls.
Familiarity with cloud security platforms like Microsoft Azure, Amazon Web Services, and Google Cloud Platform.
Certifications such as Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), or Certified Cloud Architect (CCA) are preferred.
Desirable experience for a cloud security architect include:
Identity Access Management and Identity Provider technologies and features
Authentication and authorization strategies; SSO
DevSecOps practices and testing as part of CICD pipeline workflows
Key and secrets management services
Networking and security best practices using VPC/VNet/Subnet deployment
Kubernetes technology including network policy management
Experience with private link / endpoint strategies
We are an equal-opportunity employer and do not discriminate because of race, color, religion, sex, national origin, ancestry, marital status, veteran status, age, disability, sexual orientation or gender identity or expression or any other legally protected category. InterSystems is an E-Verify Employer in the United States.
InterSystems is providing a current good faith estimate of the anticipated base salary range for this position depending on a variety of factors including experience, education, skills, and performance.
Other compensation may include a discretionary annual variable target incentive.
The company also provides generous employee benefits including:
Medical, vision, and dental insurance
Short-term and long-term disability, and life insurance
401(k) Profit Sharing Contribution
Paid Time Off and Holidays
Parental Leave
Tuition reimbursement
The estimated base compensatation range for this role is:$149,000-$181,000 USD
About InterSystems
InterSystems, a creative data technology provider, delivers a unified foundation for next-generation applications for healthcare, finance, manufacturing, and supply chain customers in more than 80 countries. Our data platforms solve interoperability, speed, and scalability problems for large organizations around the globe to unlock the power of data and allow people to perceive data in imaginative ways. Established in 1978, InterSystems is committed to excellence through its 24×7 support for customers and partners around the world. Privately held and headquartered in Boston, Massachusetts, InterSystems has 38 offices in 28 countries worldwide. For more information, please visit InterSystems.com.
Auto-ApplyPhysical Security Systems Engineer
Security architect job in Wilmington, MA
Overview
Join Allied Universal Technology Services, a global leader in transforming the security industry. We integrate advanced technology - video surveillance, electronic access control, alarm monitoring and augmented solutions with physical security to help people feel safe. Whether you're an installation technician, service technician, engineer, or project manager, you'll discover rewarding opportunities to grow your career as part of a valued team.
Apply today and be phenomenal-build a meaningful career while protecting what matters most through innovative security technology.
Job Description
Allied Universal is looking to hire a Solution Engineer. The Solution Engineer creates all post-sale security systems design, engineering, value engineering, and documentation. The position is part of the Solutions Engineering department, which is responsible for translating, expanding, finalizing, and documenting pre-sales proposals and technical designs produced by Sales and Solutions Architecture in pre-sale systems architecting and quoting. This position works closely with Sales, Solutions Architecture, Operations, and external customers as required.
The primary work products for the Solution Engineer are security system and construction technical drawings, including custom installation drawings and instructions, network design diagrams, riser diagrams, typical installation diagrams, point-to-point system schedules, door hardware schedules, document redlining, functional narratives describing systems operations, and as-built documentation.
RESPONSIBILITIES:
Creates and updates comprehensive post-sale engineering packages illustrating device locations, IDF/MDF room layouts, SOC/GSOC layouts, console designs, installation diagrams, riser diagrams, network designs, etc.
Creates and updates performance-based and product-based specifications
Creates and updates pre-fabrication submittal packages as specified by architects and engineers for their approval prior to installation
Develops and maintains as-built record documentation over the life cycle of various projects and follow-on MAC work
Utilizes and contributes to a comprehensive library of standard post-sale engineering documents, templates, and standards, as well as project-specific and customer-specific submittals
Ensures effective value engineering by assuring technical compliance while at the same time reducing Allied Universal Technology Services costs whenever possible
Reviews AUTS proposals both pre-sale and post-sale to scrutinize selected products for applicability and specification compliance
Collaborates with AUTS's product suppliers to ensure the desired functionality of selected products.
Consistently applies AUTS's standards for installation
Contributes to AUTS internal guidelines for Solutions Engineering engagement and post-sale systems engineering
QUALIFICATIONS (MUST HAVES):
A minimum of five (5) years of experience in electronic security systems design / engineering
In-depth knowledge of security system design best practices and product applicability, including products like:
Video surveillance and related technologies (Analog, IP, Codecs, VMS)
Access control and related technologies (card access, biometrics, PIV, FIPS-201, HSPD-12, various processor panels, electric locking hardware, etc.)
Physical intrusion detection (Bosch, DMP, etc.)
Software House, Lenel, Amag, Brivo, Genetec, and Avigilon systems architectures
Computer software skills to include: AutoCAD and associated rendering applications, MS Office, Acrobat Writer, and Visio
Ability to read and understand complex architectural and engineering drawings
Working knowledge of AC and DC circuitry, voltage drop calculations, and wire sizing
Ability to collaborate with diverse teams of technical designers and engineers
Ability to simultaneously work on multiple large, complex projects
Good written and verbal communication skills
Strong analytical decision-making capabilities
Self-motivated with the ability to influence others
PREFERRED QUALIFICATION (NICE TO HAVES):
Manufacture certifications
PMP/PSP certifications
A bachelor's or associate's degree in electrical engineering or equivalent is considered a plus
Ability to plan, size, and design enterprise-class IT network and storage solutions, including products like:
Virtualization technologies such as VMware vSphere and View
Data-center networking technologies such as Cisco Nexus
Storage Area Network technologies such as NetApp or EMC
Load balancing / firewalling technologies such as Cisco ACE or Cisco ASA
Data-center protocols such as Fibre Channel, NFS, IP, iSCSI, DCE
Physical Security Information Management (PSIM)
BENEFITS:
Salary: $80,000 - 115,000 / annually
Medical, dental, vision, retirement plan, basic life, AD&D, and disability insurance
Eight paid holidays annually, five sick days, and four personal days
Vacation time offered at an accrual rate of 3.08 hours biweekly. Unused vacation is only paid out where required by law
#LI-EL1
Closing
Allied Universal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. For more information: ***********
If you have difficulty using the online system and require an alternate method to apply or require an accommodation, please contact our local Human Resources department. To find an office near you, please visit: ***********/offices.
Requisition ID
2025-1495451
Physical Security Systems Engineer
Security architect job in Wilmington, MA
Join Allied Universal Technology Services, a global leader in transforming the security industry. We integrate advanced technology - video surveillance, electronic access control, alarm monitoring and augmented solutions with physical security to help people feel safe. Whether you're an installation technician, service technician, engineer, or project manager, you'll discover rewarding opportunities to grow your career as part of a valued team.
Apply today and be phenomenal-build a meaningful career while protecting what matters most through innovative security technology.
Job Description
Allied Universal is looking to hire a Solution Engineer. The Solution Engineer creates all post-sale security systems design, engineering, value engineering, and documentation. The position is part of the Solutions Engineering department, which is responsible for translating, expanding, finalizing, and documenting pre-sales proposals and technical designs produced by Sales and Solutions Architecture in pre-sale systems architecting and quoting. This position works closely with Sales, Solutions Architecture, Operations, and external customers as required.
The primary work products for the Solution Engineer are security system and construction technical drawings, including custom installation drawings and instructions, network design diagrams, riser diagrams, typical installation diagrams, point-to-point system schedules, door hardware schedules, document redlining, functional narratives describing systems operations, and as-built documentation.
RESPONSIBILITIES:
Creates and updates comprehensive post-sale engineering packages illustrating device locations, IDF/MDF room layouts, SOC/GSOC layouts, console designs, installation diagrams, riser diagrams, network designs, etc.
Creates and updates performance-based and product-based specifications
Creates and updates pre-fabrication submittal packages as specified by architects and engineers for their approval prior to installation
Develops and maintains as-built record documentation over the life cycle of various projects and follow-on MAC work
Utilizes and contributes to a comprehensive library of standard post-sale engineering documents, templates, and standards, as well as project-specific and customer-specific submittals
Ensures effective value engineering by assuring technical compliance while at the same time reducing Allied Universal Technology Services costs whenever possible
Reviews AUTS proposals both pre-sale and post-sale to scrutinize selected products for applicability and specification compliance
Collaborates with AUTS's product suppliers to ensure the desired functionality of selected products.
Consistently applies AUTS's standards for installation
Contributes to AUTS internal guidelines for Solutions Engineering engagement and post-sale systems engineering
QUALIFICATIONS (MUST HAVES):
A minimum of five (5) years of experience in electronic security systems design / engineering
In-depth knowledge of security system design best practices and product applicability, including products like:
Video surveillance and related technologies (Analog, IP, Codecs, VMS)
Access control and related technologies (card access, biometrics, PIV, FIPS-201, HSPD-12, various processor panels, electric locking hardware, etc.)
Physical intrusion detection (Bosch, DMP, etc.)
Software House, Lenel, Amag, Brivo, Genetec, and Avigilon systems architectures
Computer software skills to include: AutoCAD and associated rendering applications, MS Office, Acrobat Writer, and Visio
Ability to read and understand complex architectural and engineering drawings
Working knowledge of AC and DC circuitry, voltage drop calculations, and wire sizing
Ability to collaborate with diverse teams of technical designers and engineers
Ability to simultaneously work on multiple large, complex projects
Good written and verbal communication skills
Strong analytical decision-making capabilities
Self-motivated with the ability to influence others
PREFERRED QUALIFICATION (NICE TO HAVES):
Manufacture certifications
PMP/PSP certifications
A bachelor's or associate's degree in electrical engineering or equivalent is considered a plus
Ability to plan, size, and design enterprise-class IT network and storage solutions, including products like:
Virtualization technologies such as VMware vSphere and View
Data-center networking technologies such as Cisco Nexus
Storage Area Network technologies such as NetApp or EMC
Load balancing / firewalling technologies such as Cisco ACE or Cisco ASA
Data-center protocols such as Fibre Channel, NFS, IP, iSCSI, DCE
Physical Security Information Management (PSIM)
BENEFITS:
Salary: $80,000 - 115,000 / annually
Medical, dental, vision, retirement plan, basic life, AD&D, and disability insurance
Eight paid holidays annually, five sick days, and four personal days
Vacation time offered at an accrual rate of 3.08 hours biweekly. Unused vacation is only paid out where required by law
#LI-EL1
Closing
Allied Universal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. For more information: ***********
If you have difficulty using the online system and require an alternate method to apply or require an accommodation, please contact our local Human Resources department. To find an office near you, please visit: ***********/offices.
Requisition ID 2025-1495451
Auto-ApplySecurity Research Architect
Security architect job in Burlington, MA
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
Skills & Requirements
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
Manager, Information Security
Security architect job in Boston, MA
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
* Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
* Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
* Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
* Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
* Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
* Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
* Oversee security awareness training programs for all employees to promote a culture of security consciousness.
* Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
* Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
* Work on "special projects" as assigned by the Chief Information Officer.
* Other duties as assigned.
Requirements
* Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
* Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
* Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
* Experience leading security incident response and forensic analysis.
* Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
* Knowledge of networking principles, including wireless networking.
* Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
* Experience working with Active Directory and Google Cloud Platform.
* Ability and willingness to learn new technologies.
Preferred Background/Skills
* Professional certifications such as CISSP, CISM, or relevant SANS certifications.
* Experience with Governance, Risk, and Compliance (GRC) tools and processes.
* Exceptional organizational skills, with the ability to prioritize projects and tasks.
* Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
* Ability to write reports and document steps for knowledge sharing.
* Ability to work efficiently and independently with minimal supervision.
* Excellent customer service and communications skills.
Education
* Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
* A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
* 3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
* Mental Health and Wellness benefits
* BCBS Dental
* Discounted vision services
* 13 paid holidays and generous paid time off for sick, vacation, and personal days
* Employer-paid life insurance, and short-term and long-term disability
* Voluntary Insurance: life, critical illness, hospital indemnity, accident,
* Voluntary Benefits: employee discounts and pet insurance
* 9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
* Qualified Public Service Loan Forgiveness Employer
Manager, Information Security
Security architect job in Boston, MA
Full-time Description
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
Oversee security awareness training programs for all employees to promote a culture of security consciousness.
Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
Work on "special projects" as assigned by the Chief Information Officer.
Other duties as assigned.
Requirements
Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
Experience leading security incident response and forensic analysis.
Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
Knowledge of networking principles, including wireless networking.
Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
Experience working with Active Directory and Google Cloud Platform.
Ability and willingness to learn new technologies.
Preferred Background/Skills
Professional certifications such as CISSP, CISM, or relevant SANS certifications.
Experience with Governance, Risk, and Compliance (GRC) tools and processes.
Exceptional organizational skills, with the ability to prioritize projects and tasks.
Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
Ability to write reports and document steps for knowledge sharing.
Ability to work efficiently and independently with minimal supervision.
Excellent customer service and communications skills.
Education
Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
Mental Health and Wellness benefits
BCBS Dental
Discounted vision services
13 paid holidays and generous paid time off for sick, vacation, and personal days
Employer-paid life insurance, and short-term and long-term disability
Voluntary Insurance: life, critical illness, hospital indemnity, accident,
Voluntary Benefits: employee discounts and pet insurance
9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
Qualified Public Service Loan Forgiveness Employer
Systems Security Engineer
Security architect job in Dedham, MA
Basic Qualifications
CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required.
Responsibilities for this Position
We are seeking a Systems Security Engineer who has experience in the design and development of NSA-certified Cybersecurity devices.
Key Responsibilities:
Design and develop specifications for mission-critical NSA-certified Cybersecurity devices
Collaborate with software and validation engineering teams to deliver high-speed data solutions
Develop real-time multi-threaded Embedded System architecture using Model-based Systems Engineering (MBSE) tools and techniques
Analyze and maintain system security requirements throughout product development lifecycle
Conduct trade studies, perform functional analysis, and design system security.
Preferred Skills and Experiences:
NSA approved Cryptography/Encryption
Security requirements analysis
Real-Time multi-threaded Embedded System architecture and development
Model-based Systems Engineering (MBSE)
CISSP certification or similar
INCOSE ASEP, CSEP, or ESEP certification
We value candidates who possess:
Drive to expand knowledge and experience in designing complex systems
Ability to define project scope, schedule, and expected results
Initiative to complete assignments and ability to engage in technical direction and leadership
Our Commitment to You:
An exciting career path with opportunities for continuous learning and development
Research-oriented work with award-winning teams
Competitive benefits package
Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $107,529.00 - USD $114,000.00 /Yr. Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Auto-ApplyDirector, Information Security
Security architect job in Boston, MA
Extensive knowledge of HIPAA and HITECH.
Knowledge of and experience with Information Security frameworks such as HiTRUST, NIST, or ISO 27001.
Bachelor's degree in information security, information assurance, information technology, computer science, or a related discipline.
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or related certification.
Five (5) years in an information security operations or management role.
Passion for the mission of Health Leads and strong commitment to Health Leads' core values: belief in collective strength and the power of shared work, constant and courageous learning, celebrating our victories and each other, and stepping up leaders in a common vision.
Experience with information security for cloud environments and/or software-as-a-service (SaaS) platforms.
Knowledge of security-related technologies and processes, including but not limited to: data loss prevention (DLP), identity and access management (IAM), endpoint security, vulnerability and configuration management, security information and event management (SIEM), incident response and digital forensics, disaster recovery/business continuity planning, network security (LAN/WAN).
Ability to communicate complex ideas and information both verbally and writing, in a clear, concise, and effective manner to technical and non-technical audiences including customers and colleagues.
Superior capabilities for partnering; ability to be effective as both a team member and as a leader of teams in defining objectives, staying on task and reaching consensus; soliciting participation, challenging ideas and summarizing accomplishments and planned actions.
Show integrity and ethical behavior; respect confidentiality, business ethics and organizational standards.
Ability to formulate the cost benefit of security initiatives in the context of overall business risk mitigation and the organization's operational objectives. Ability to compare, contrast and prioritize among alternative approaches to meet those objectives.