Information Security Engineer - Applications
Security architect job in Oak Brook, IL
In this role, you will work closely with IT teams to secure our applications throughout the development lifecycle. You'll help build a secure-by-design culture, drive security automation, and protect our systems against evolving threats. This position reports to the Manager of Information Security.
ESSENTIAL JOB FUNCTIONS:
Work with the Information Security Team to improve security for the company by configuring and administering security systems and tools
Monitor and respond to security events using SIEM and SOAR tools
Investigate security incidents to determine root cause and remediation tactics
Help automate security monitoring and remediation processes
Prepare and analyze security incident data and metrics for periodic reporting
Collaborate on vulnerability management, remediation, and penetration testing efforts
Implement and manage SAST, DAST, and Burp Suite across GitHub CI/CD pipelines and development workflows
Champion secure coding practices based on OWASP Top 10 and SSDF guidelines
Help secure cloud environments (Azure, AWS) and container-based deployments
Conduct regular security assessments to ensure alignment with SSDLC standards
After-hours configuration changes and on-call support required
MINIMUM QUALIFICATIONS:
Bachelor's degree in Computer Science, Information Systems (or related degree), or equivalent experience.
3+ years of experience in Application or Information Security
Strong understanding of SSDLC, NIST SSDF, and DevSecOps principles.
Experience with SAST/DAST tools (e.g., GitHub Advanced Security, BURP).
Solid knowledge of OWASP Top 10 and secure coding best practices.
Proficiency in GitHub for code review, pipeline security, and automation.
Hands-on with scripting (Python, PowerShell, Bash) and API security.
Experience in Azure and AWS cloud security, containers, and infrastructure-as-code.
Familiarity with SIEM/SOAR platforms and incident response workflows.
Experience with Windows, MacOS, and Linux operating systems
Proficient in Microsoft Office applications such as Microsoft Outlook, Word, Excel, PowerPoint, and SharePoint
** This is a full-time, W2 position with Hub Group - We are NOT able to provide sponsorship at this time **
Salary:
$95,000-150,000/year
+ bonus eligibility
**
This is an estimated range based on the circumstances at the time of posting, however, may change based on a combination of factors, including but not limited to skills, experience, education, market factors, geographical location, budget, and demand**
Benefits
We offer a comprehensive benefits plan including:
Medical
Dental
Vision
Flexible Spending Account (FSA)
Employee Assistance Program (EAP)
Life & AD&D Insurance
Disability
Paid Time Off
Paid Holidays
BEWARE OF FRAUD!
Hub Group has become aware of online recruiting related scams in which individuals who are not affiliated with or authorized by Hub Group are using Hub Group's name in fraudulent emails, job postings, or social media messages. In light of these scams, please bear the following in mind
Hub Group will never solicit money or credit card information in connection with a Hub Group job application.
Hub Group does not communicate with candidates via online chatrooms such as Signal or Discord using email accounts such as Gmail or Hotmail.
Hub Group job postings are posted on our career site: ********************************
About Us
Hub Group is the premier, customer-centric supply chain company offering comprehensive transportation and logistics management solutions. Keeping our customers' needs in focus, Hub Group designs, continually optimizes and applies industry-leading technology to our customers' supply chains for better service, greater efficiency and total visibility. As an award-winning, publicly traded company (NASDAQ: HUBG) with $4 billion in revenue, our 6,000 employees and drivers across the globe are always in pursuit of "The Way Ahead" - a commitment to service, integrity and innovation. We believe the way you do something is just as important as what you do. For more information, visit ****************
Sr. Information Security Engineer - AI
Security architect job in Rosemont, IL
Job Title: Senior Information Security Engineer - AI
Primary Location: Rosemont, IL - Hybrid, 3 days onsite
Direct Hire
TalentFish is casting a line for a Senior Information Security Engineer - AI/Artificial Intelligence. This is a Direct Hire role based in Rosemont, IL with a hybrid schedule (3 days onsite) with our premier client.
This is a new, exciting position within an awarded top Chicago employer organization where you'll contribute to the organization's Responsible Artificial Intelligence governance by assessing the security, integrity, and risks associated with the use of AI models and technologies. This role is hands-on and works closely with multi-disciplinary teams to evaluate AI use cases and maintain AI security frameworks and standards.
What You Bring to the Role (Ideal Experience)
• Bachelor's degree in Computer Science, Mathematics, or related field
• 5+ years of total professional experience, including security, data security, or control validation experience
• 2-3 years of practical, hands-on experience working with Artificial Intelligence technologies; working directly with AI models or ML systems
• Ability to evaluate AI model risks, including bias, data exposure, data leakage, and model poisoning
• Data processing or analytics skills are a plus
What You'll Do (Skills Used in This Position)
• Lead security assessments for AI models, including Large Language Models (LLMs), Natural Language Models (NLMs), and Small Language Models (SLMs)
• Participate in review committees to assess AI use cases for value, complexity, feasibility, risk, compliance, and strategic alignment
• Review AI architecture and usage within internal and third-party solutions to ensure adherence to AI security frameworks and regulatory requirements
• Support development and maintenance of AI security standards, frameworks, and governance models
• Provide education on AI security best practices, emerging risks, and mitigation strategies
• Perform additional related responsibilities as required
Compensation Information
The expected salary range for this position is $120,000 - $150,000 per year, depending on experience and qualifications. This role also qualifies for comprehensive benefits such as health insurance, 401(k), and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations.
This role requires authorization to work in the U.S. without current or future visa sponsorship.
All offers are contingent upon the completion of a background check, which may include but is not limited to reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client's background check policies and applicable laws.
TalentFish is an employee-owned company pioneering a new realm in talent acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses on providing the best employee, consultant, and client experience possible.
At TalentFish we are an Equal Opportunity Employer; we embrace and encourage diversity!
DevOps Security Engineer
Security architect job in Chicago, IL
We are looking for a Developer Security professional with strong expertise in DevOps and Cloud Computing. In this role, you will design, develop, and implement secure, scalable software solutions across the full Secure Software Development Life Cycle (SDLC) - from conception to deployment. Familiarity with CI/CD pipelines is essential, and experience with Kubernetes is a plus.
Responsibilities
Design and develop Terraform scripts for infrastructure automation.
Automate cloud deployments and ensure secure configurations.
Install and configure products on Kubernetes clusters.
Develop and unit test software components following best practices.
Collaborate with business partners to translate requirements into technical solutions.
Work closely with architects and enterprise framework teams to deliver optimal solutions.
Ensure non-functional requirements (security, performance, scalability, maintainability, usability, reliability) are met.
Maintain code quality standards and perform appropriate testing.
Qualifications
8+ years of experience in software development and security.
Strong knowledge of cloud deployments and Terraform.
Familiarity with middleware technologies (WebLogic, Tomcat, JBoss).
Experience with Spring Boot and Agile development methodologies.
Proficiency in CI/CD pipelines and GIT-based source control.
Solid understanding of the secure software development lifecycle.
Experience with Kubernetes, React, and Docker.
Knowledge of web technologies and application servers.
Skills
Terraform
Kubernetes
Cloud Deployment
Middleware (WebLogic, Tomcat, JBoss)
Spring Boot
CI/CD pipelines
GIT-based source control
Rate: $75-95/HR
Security Engineer
Security architect job in Chicago, IL
About Us
Founded in 2014, we offer the industry's first and only cloud-based, fully-customizable, end-to-end software solution to automate securities-based lending from origination through the life of the loan. By combining thought leadership in suitability and risk management with industry-leading education and the latest technology, Supernova enables advisors to deliver holistic, goals-based advice and to help their clients achieve financial wellness. We partner with the industry's largest banks, most prominent insurance companies and leading online brokerages to democratize access to securities-based lending and better the entire financial ecosystem.
Why Join Supernova?
At Supernova Technology, we believe that the best results come from a team that is passionate, driven, and supported in all aspects of their professional lives. Here, you'll work alongside talented and innovative individuals who are committed to driving the future of securities-based lending technology. We foster a culture of collaboration, continuous learning, and growth, where each person's contributions make a real impact.
Job Overview
We are seeking a highly motivated and detail-oriented Security Engineer to help secure our securities-backed lending SaaS platform. The successful candidate will focus primarily on application security, secure SDLC, and application vulnerability management, while also assisting with the execution and implementation of broader information security initiatives. You'll partner with engineering, SRE/DevOps, and business teams to embed security into our build and delivery processes, support risk reduction across cloud and endpoint surfaces, and drive measurable remediation outcomes in a regulated financial-services environment.
RESPONSIBILITIES:
Perform hands-on web/API penetration tests, validate scanner findings, and provide clear PoCs, impact statements, and prioritized remediation aligned with OWASP.
Integrate and tune SAST, DAST, SCA, container, and secret-detection tools in CI/CD; define pass/fail gates and PR checklists.
Conduct lightweight threat modeling and security design reviews for new features such as authentication, session management, and secrets handling.
Manage the full application vulnerability lifecycle (discover → prioritize → fix → retest → close) with SLAs and metrics.
Assist in hardening AWS and ECS/Docker workloads (IAM roles, network segmentation, image policies, logging/monitoring) and support patch hygiene across cloud, container, and endpoints.
Participate in incident response, including exploit reproduction, log analysis, impact assessment, and lessons learned.
Provide evidence for audits (ISO 27001, SOC 2, NIST SSDF), maintain policies and developer guidance, and support vendor/security evaluations.
Translate findings into developer-ready tickets, publish secure-coding guidance, and partner with engineering to streamline secure delivery.
Prototype automation, explore AI/LLM-assisted workflows to improve triage and code review, and share improvements across teams.
Contribute to organization-wide cybersecurity training and awareness efforts.
QUALIFICATIONS:
Bachelor's degree in security engineering, information assurance, or related field.
2-3 years of experience in security or software engineering (internships, labs, or open-source count), preferably in regulated industries.
Strong knowledge of web/API security issues (auth, session management, injections, SSRF, CSRF, access control) and common cloud/web misconfigurations.
Experience with SDLC security tools (SAST/DAST/SCA/secret detection/container scanning), CI/CD workflows, and Git.
Scripting or coding skills (Python or JavaScript/TypeScript) and ability to read backend code.
Familiarity with AWS security basics (IAM least privilege, KMS, logging/monitoring, security groups) and Docker/ECS runtime considerations.
Clear communication skills with the ability to translate risk into actionable remediation.
Experience using AI/LLM-assisted tools for triage, documentation, or code review preferred.
Exposure to WAF/CDN tuning, API protection, and risk-based remediation SLAs/metrics preferred.
Familiarity with frameworks like OWASP ASVS/SAMM, NIST SSDF, ISO 27001, SOC 2, PCI DSS preferred.
Relevant security certifications preferred.
Our Employee Benefits
At Supernova Technology, we provide a robust benefits package to support the health and well-being of our employees. Our offerings include:
Medical, Dental, and Vision Insurance: Multiple plans with coverage for employees and dependents.
HSA and FSA Accounts: Tax-advantaged accounts for health and dependent care expenses.
Life and Disability Insurance: Employer-paid basic coverage with options for additional voluntary coverage.
Compensation: $95,000 - $130,000
Retirement Savings: 401(k) plan with employer contributions.
Employee Assistance Program (EAP): Confidential support services, including free therapy sessions.
Paid Time Off: Flexible PTO policies.
Additional Perks: Commuter benefits, pet insurance, continuing education assistance, and more.
Note: Actual salary at the time of hire may vary and may be above or below the range based on various factors, including but not limited to, the candidate's relevant qualifications, skills and experience, and the location where this position may be filled.
Our Core Values
Our core values drive everything we do. At Supernova, we...
Form, execute, and communicate new ideas that add value to our employees and customers
Strive through obstacles and failures
Follow-through on promises or commitments to others, accept responsibility, and answer for actions & decisions
Listen to, understand, and support our employees and customers
Act with speed, positive attitude, and flexibility
Exceed expectations and surpass ourselves every day; we embrace a sense of pride and never stop growing
Join us and make an impact while growing your career at Supernova.
Sr. Security Engineer - Red Team
Security architect job in Chicago, IL
About the Company:
A Leading Financial Service Client is looking to hire a strong Security Engineer who can lead Red team exercises against a hybrid environment using threat intelligence and the MITRE Telecommunication&CK Framework.
Responsibilities:
Approx 8 years' experience with industry standard Red Team testing tools (Cobalt Strike, Mythic C2, Rubeus, Bloodhound, Covenant, etc.) or the ability to demonstrate equivalent knowledge.
Expert understanding of how an Advanced Persistent Threat could compromise a financial institution without using phishing.
Expert understanding of Red Team concepts, tools, and automation strategies.
Expert understanding of MITRE Telecommunication&CK framework tactics, techniques, and procedures.
Expert understanding of measuring and rating vulnerabilities based on principal characteristics of a vulnerability.
Expert understanding of Windows and Linux system hardening concepts and techniques.
Senior Manager, Information Security Office (ISO) Consultant
Security architect job in Chicago, IL
Senior Manager, Information Security Office (ISO) Consultant At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
Responsibilities:
The Senior Lead ISO Consultant will provide cyber security architecture advisory support needed to build the Technology & Business capabilities on a novel Modern platform, that will enable customer set-up, use, and management of a Capital One Credit Card, including Data Product. In this role, the responsibilities will include:
Act as a central Information Security point of contact for the Global Payment Networks line of business
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Collaborating with enterprise cyber teams and tech architects in defining and driving the cyber architecture strategy and guiding principles for the architecting and designing of the modern platforms.
Support security architecture and implementation needs for technology modernization efforts
Overseeing all cyber related dependencies across the multiple components being built for the modernization effort.
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad-hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Support the team on collectively mapping technologies to a standardized framework in order to identify and execute on best practices in risk reduction through the configuration of cybersecurity tools and platforms.
Support the development, modification, and use of capability, risk, or threat classification frameworks and standardization methodologies to facilitate the conduct of correlative capability, maturity, and effectiveness evaluations.
Support data validation and communications on the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.
About You:
You have a desire to work in a very fast moving, forward leaning, and modern computing environment
You have a deep passion for Securing modern computing platforms
You have a strong desire to continually learn about new technologies
You possess strong conceptual thinking and communication skills
You are able to work well under minimal supervision
You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors
You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality
You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 6 years of experience working in cybersecurity or information technology
At least 5 years of experience providing guidance and oversight of cyber security concepts
At least 5 years of experience performing cyber security risk assessments or cyber security architecture reviews
At least 4 years of experience with cloud security
Preferred Qualifications:
Bachelor's Degree
7+ years of experience in securing a public cloud environment (AWS, GCP, Azure)
6+ years of cyber security advisory and technology consulting experience
6+ years of experience in Cyber Risk Management
3+ years of experience on cryptography, HSMs and similar systems
Knowledge of HPNS, ATM, Mainframe technologies and other payment networks infrastructure technologies
Experience in security integration for Mergers and Acquisitions
Experience with PCI and Payment Network Compliance.
Professional certifications AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
Chicago, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical
McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical
New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Lead Information Security Architect
Security architect job in Chicago, IL
Job Description
Act as a senior technical advisor to the organization partnering with cross-functional teams to define information security requirements for enterprise information technology systems and internally developed applications. Proactively define security requirements for assigned applications, whether purchased or developed in-house.
Essential Responsibilities
Analyze various technology environments such as on-prem, cloud, SaaS to detect critical security deficiencies and recommend solutions for improvement. Advise various teams such as Information Security and Information Technology as well as collaborate cross-functionally to develop solutions that ensure compliance with security requirements, best practices, applicable state and federal laws, company procedures, and policies
Develop an implementation plan for enterprise security architecture based on business requirements and varying strategies for project-driven or product-driven delivery teams. Advise various teams such as Information Security and Information Technology teams as well as collaborate cross-functionally to implement solutions
Conduct detailed threat modeling and security testing of enterprise systems and their interactions to resolve problems cost effectively and enable business objectives
Ensure secure development lifecycle of applications including design, implementation, testing and maintenance of simple to highly complex computer programs and subsystems. Conduct secure code review to ensure compliance with security requirements, best practices, applicable state and federal laws, company procedures, and policies
Education
Preferred - 4 Year Bachelors Degree in Computer Science or Related
Preferred - Graduate Degree in Computer Science or Related
Years of Experience
Minimum - 5 Years Information Technology or Related
Minimum - 5 Years Information Security, Application Security, or Related
In Lieu of Education
8 Years Information Security or Related
License/Certifications/Training
Preferred: CISSP
Compensation & Benefits:
Typical hiring range: $119,400 - $204,600 Annually. Actual compensation will be determined using factors such as experience, skills & knowledge.
Additional Compensation: Annual performance bonus
Benefits: Alliant provides a benefits package including health care, vision, dental, and 401k with employer match.
Additional Benefits:
Work from home up to 3 days a week
Paid parental leave
Employee discount programs
Time off including paid personal and sick days
11 paid holidays
Education reimbursement
*Note that eligibility and cost of benefits can vary depending on the number of regularly scheduled hours, and job status such as regular full-time, regular part-time, or temporary employment.
Adhere to and ensure compliance of all business transactions with policy and process of the Bank Secrecy Act. Ensures compliance with all applicable state and federal laws, company procedures and policies. Maintains integrity and ethics in all actions and conversations with or regarding credit union members and their accounts; complies with Privacy Act directives.
The responsibilities listed do not contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice.
Principal, Security Architect
Security architect job in Chicago, IL
Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
Title : Principal Security Architect
Description
Guides the development, specification and communication of application or infrastructure architectures used by multiple business or application systems.
Provides extensive, in-depth, technical consultation to the clients, partners, and IT Management to develop plans and directions to assure the integration of corporate business area requirements.
Acts as cybersecurity expert for cloud migration projects/programs
Thoroughly understands decision process issues of technology choice, such as design, data security, client server communication, etc.
Partner with Management in the building of new and on-going vendor relationships
Evaluates and selects from existing and emerging technologies those options best fitting business/project needs
Promotes sharing of expertise through consulting, presentations, and documentations, etc.
Experienced, functional expert with technical and/or business knowledge and functional expertise
Carries out complex initiatives involving multiple disciplines and/or ambiguous projects
Displays a balanced, cross-functional perspective, liaising with the business to help improve efficiency, effectiveness, and productivity
Strategic in developing, implementing, and administering programs within functional areas
Provides guidance to team members, fostering an environment that encourages employee participation, teamwork, and communication
Qualifications
Bachelor's degree in computer science or a related discipline and experience in information security, or an equivalent combination of education and work experience.
Deep knowledge of application or infrastructure systems architecture, usually having experience with multiple system technologies.
Excellent consultative and communication skills, and the ability to work effectively with client, partner, and IT management and staff.
Seven years of experience in the Information Security role. Three years of experience with cloud and/or technologies
CISSP, CSSP, CCNP/CCIE Security, or Cloud security certification preferred
Strong collaboration skills and a analytical ability
Requirements/Responsibilities-
In-depth knowledge of various cybersecurity frameworks, standards, and SSDLC
Hands on experience working with IPS/IDS, Network load balancer, next generation firewalls, Z-Scaler, and networking technologies
Experience in securing the cloud networking and hybrid configurations
Experience working with teams that handle infrastructure components including Storage systems, database technologies, directory services, and virtualization
Experience working with Microsoft Azure, AWS, hybrid, and multi-cloud systems
Knowledge of network architecture concepts including topology, protocols, and components
Experience working with tools related to Privilege access management, Threat hunting, data protection, encryption, Authentication/Authorization, Vulnerability management systems, Cloud Security Posture Management.
Knowledge related to WAF, App Proxy, and CDN
Knowledge of network traffic analysis methods
In-depth understanding related to SEIM and strong experience related to Microsoft Defender, Entra, KQL, APIM, endpoint protection, scripting, CoPilot
Ability to establish security patterns related to cloud/ hybrid architecture and work with various tech teams to assist with the implementation as needed
Very good understanding of zero-trust architecture and working experience with relevant tools/technologies
Knowledge related AI/ML, DevSecOps, CI/CD Pipeline, IaC, and relevant tools
Very good understanding of concepts related to docker, container, serverless computing, and Kubernetes
Must be able to represent the team in technical discussions and drive towards deliverables with minimal guidance
Salary Range:
$137,400 - 233,600 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us:
As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation
Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at *****************.
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Auto-ApplyPrincipal Cloud Security Architect
Security architect job in Chicago, IL
Role OverviewThe Principal Cloud Security Architect evaluates cloud architectures, identity models, permissions, and security controls across large-scale environments. This role focuses on identifying architectural risks, misconfigurations, and long-term security design gaps.
What You'll Do- Assess cloud architectures (AWS, Azure, GCP) for security gaps - Review IAM configurations, network segmentation, and resource policies - Identify misconfigurations, privilege risks, and insecure patterns - Summarize architectural flaws and provide structured mitigation guidance - Validate alignment with security frameworks and best practices - Support recurring assessments of cloud environments and deployment patterns What You BringMust-Have:- Deep experience in cloud security architecture - Strong understanding of IAM, network design, and cloud service models - Ability to document complex architectures in clear, structured form Nice-to-Have:- Experience with multi-cloud, zero-trust, or high-compliance environments
Auto-ApplyLead Security Architect
Security architect job in Chicago, IL
Job Description
At accentedge, we are committed to delivering cutting-edge digital transformation and cybersecurity solutions for some of the most complex industries, including healthcare. Based in Chicago, we are dedicated to protecting sensitive data, preventing cyber threats, and helping organizations evolve securely in an increasingly digital world. We are looking for a highly skilled Lead Security Architect to join our growing team.
Requirements
Key Responsibilities:
•Strategic Leadership: Design and lead the implementation of a comprehensive security assessment strategy using our industry leading methodolog, covering all layers of security across the hospital's infrastructure.
•Execution of Security Assessments: Develop and manage a detailed plan for testing network, application, and endpoint security, ensuring that all critical areas are assessed within our hospital and healthcare projects.
•Regulatory Compliance: Ensure that assessment methodologies and strategies are in full compliance with healthcare-specific regulatory frameworks, such as HIPAA, HITRUST, and NIST CSF.
•Risk Mitigation: Guide and collaborate with the technical team to identify and mitigate security risks, addressing vulnerabilities before they can be exploited.
•Technical Oversight: Provide direction and mentorship to a cross-functional team of cybersecurity professionals, ensuring that all security assessments and solutions are executed effectively and efficiently.
•Continuous Improvement: Recommend ongoing improvements to the security architecture, adapting to emerging threats and new technologies to strengthen our clients' cybersecurity posture.
Qualifications:
•Experience: 7+ years of experience in cybersecurity architecture, with a strong focus on healthcare security or other highly regulated industries.
•Expertise: Extensive knowledge of healthcare cybersecurity principles and experience applying these within complex environments like hospital systems.
•Certifications: Industry-recognized certifications such as CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or TOGAF (The Open Group Architecture Framework) are required.
•Technical Skills: Proven expertise in designing and executing security strategies for networks, applications, and endpoints in compliance with regulatory frameworks.
•Regulatory Knowledge: In-depth knowledge of healthcare security standards, including HIPAA, HITRUST, NIST CSF, and other relevant regulations.
•Leadership & Collaboration: Experience leading technical teams and working collaboratively across departments to deliver comprehensive security solutions.
•Problem Solving: Strong analytical and problem-solving skills, with the ability to design innovative solutions for complex security challenges.
Benefits
Why Join accentedge?:
•Be part of a fast-growing, innovative company in the heart of Chicago, with projects across the healthcare and cybersecurity landscapes.
•Work alongside a talented and dedicated team, leveraging cutting-edge technologies to build secure and resilient infrastructures for our clients.
•Competitive salary and benefits package, including healthcare, retirement plans, and professional development opportunities.
•A dynamic, collaborative environment where your leadership and expertise will directly impact the security strategies of major healthcare organizations.
Equal Opportunity Employer:
accentedge is an equal opportunity employer, committed to fostering an inclusive environment where everyone can thrive.
Sr Principal AI Security Architect
Security architect job in Chicago, IL
About Northern Trust:
Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
As artificial intelligence transforms the financial services sector, the need for robust and forward-looking security architecture has never been more critical. We are seeking a Principal AI Security Architect to lead the secure design, integration, and governance of AI systems across the enterprise.
This role is responsible for defining AI security strategies that span internal LLM deployments, Microsoft Copilot, and managed third-party AI platforms provided by SaaS providers and other counterparties. You will drive architecture, risk governance, and security enforcement for AI adoption across the organization-balancing innovation with regulatory, operational, and reputational risk.
The successful candidate will serve as a trusted advisor to Security & Technology Leadership, internal governance boards, and senior business stakeholders to ensure AI is adopted securely, accountably, and in alignment with industry-leading standards.
Key Responsibilities
Enterprise AI Security Architecture
- Define and enforce enterprise-wide AI security architecture patterns across:
- First-party AI/LLM deployments
- Microsoft Copilot and GitHub Copilot
- Azure OpenAI and plugin architectures
- Third-party managed AI platforms (e.g., Workday, ServiceNow, Solytics, and other integrated AI services)
- Ensure AI systems and plugins are securely integrated with Microsoft 365, Entra ID, Defender suite, Purview, and Azure services.
- Architect Model Context Protocol (MCP) patterns for safe containerized deployments:
- Secure pod-to-pod communication via microsegmentation
- API gateway authentication and rate limiting
- Container image integrity validation
- Grounding data access policy enforcement
- Centralized monitoring and logging for auditability
AI Governance & Risk Management
- Develop and maintain enterprise-wide AI security policy frameworks
- Partner with Data Protection, Legal, Procurement, and Business Units
- Design and implement policy-as-code and workflow-based governance controls
Threat Modeling, Detection & Mitigation
- Build and maintain AI-specific threat models
- Design AI-aware detection and response strategies
- Support red teaming, abuse case development, and adversarial testing
Integration with Microsoft and Third-Party Ecosystems
- Enable seamless and secure integration of Microsoft and third-party AI platforms
- Ensure data classification and DLP enforcement using Microsoft Purview
- Ensure AI interactions respect network boundaries
Controls Alignment & Regulatory Compliance
- Map AI-specific controls to CRI v2.1, NIST AI RMF, and OWASP Top 10 for LLMs
- Enforce end-to-end controls across the AI lifecycle
- Implement controls to protect confidentiality, integrity, and availability
Executive Influence & Cross-Functional Leadership
- Act as a recognized authority on AI security
- Advise Security Leadership, Technology Leadership, and governance boards
- Present AI security strategy and posture to stakeholders
- Mentor security architects, engineers, and data scientists
Qualifications
Required:
- 10+ years in enterprise security architecture or engineering
- Expertise in Microsoft security ecosystem
- Strong scripting and query experience with PowerShell, KQL
- Experience securing AI pipelines and plugin-based architectures
- Proven leadership in AI-specific threat modeling and risk treatment
- Familiarity with model lifecycle governance
- Regulatory alignment: CRI v2.1, NIST AI RMF, OWASP LLM Top 10, FFIEC, GDPR, Basel III
Desired:
- Experience with a Global Systemically Important Bank (G-SIB)
- Experience with Solytics, Snowflake integrations, or other third-party platforms
- Knowledge of shadow principal, token abuse, and adversary tactics
- Recognition as an industry expert
Salary Range:
$164,600 - 288,000 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us:
As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation
Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at *****************.
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Auto-ApplySenior Architect, Identity & Security
Security architect job in Chicago, IL
Are you ready to make an impact?
West Monroe is seeking a Senior Architect, Identity & Security to lead cross-functional teams in the design, remediation, and modernization of complex identity and cloud infrastructure solutions. This role focuses on securing and transforming critical IT environments for a diverse portfolio of clients, helping them navigate complex Active Directory modernizations, cloud identity migrations, and security hardening initiatives. This opportunity provides technical leadership in transforming complex IT environments across key industry verticals, including Healthcare, Financial Services, Private Equity, and High Tech. While the scope spans hybrid and cloud identity, the work is particularly grounded in Active Directory as a core Tier 0 platform, with strong Microsoft Entra ID expertise to design and operate modern hybrid identity patterns.
Responsibilities:
Partner with consultants and client leadership to architect, build, and deploy secure and modern Active Directory and Microsoft Entra ID solutions.
Assess current-state identity environments and processes, interview stakeholders, define critical requirements, and present practical solution strategies and roadmaps to client executives.
Lead the technical design of future-state Active Directory (AD DS) and Entra ID architectures, including privileged access management (PAM) design, tiered administrative access models (e.g., Microsoft's Enterprise Access Model (EAM), and identity consolidation strategies.
Establish and enforce identity architecture standards, best practices, and governance to deliver secure, compliant, and consistent solutions aligned with industry benchmarks (e.g., CIS and Microsoft baselines).
Lead security assessment and remediation planning, including consolidating findings from tools (e.g., Purple Knight, Maester, CIS Benchmark-based configuration assessments (e.g., CIS-CAT)) to create and manage prioritized, risk-based remediation backlogs.
Provide expert technical oversight for security remediation initiatives, such as hardening domain controllers, remediating privileged access, resolving Entra Connect sync issues, and restricting legacy protocols.
Develop detailed implementation plans, migration strategies, and remediation backlogs (e.g., in Smartsheet or similar project management tools) for AD restructuring, AD consolidation, identity synchronization, and legacy decommissioning.
Establish and manage engagement-level governance, quality, and risk, including defining quantitative success criteria, RACI, and clear communications to both technical and executive stakeholders.
Support key decision-making on project direction, including technology selections, team workstreams, and delivery methodologies.
Mentor junior consultants on technical best practices, solution design, and client engagement.
Assist business development efforts through proposals, pre-sales technical discovery, and client presentations.
Qualifications:
Bachelor's degree in a relevant field preferred, or equivalent experience required.
Prior experience in consulting preferred.
8-12+ years of experience in IT architecture, engineering, and/or security with a deep focus on identity solutions.
Expert-level knowledge of Active Directory Domain Services (AD DS) design, security, and administration, including: domain/forest architecture, sites/replication, DNS, Group Policy (GPO) management, DC virtualization safeguards, and forest recovery principles.
Strong experience with Microsoft Entra ID (formerly Azure AD), including Entra Connect, Conditional Access, modern authentication methods, and Privileged Identity Management (PIM).
Proven experience leading identity migrations (including on-premises to cloud, cross-forest restructurings, and Tenant-to-Tenant (cross-tenant) consolidations), AD remediations, and/or consolidation projects.
Experience designing and implementing hybrid authentication patterns between AD DS and Microsoft Entra ID, including pass-through authentication (PTA), Seamless SSO, Cloud Kerberos Trust, and phishing-resistant authentication methods.
Proficiency in designing and implementing enterprise Privileged Access Management (PAM) solutions (including typical platforms like CyberArk, Delinea, or similar) and tiered administrative access models (e.g., Tier 0/1/2, Microsoft's Enterprise Access Model (EAM)).
Hands-on experience with Active Directory and Microsoft Entra ID security assessment and testing tools (e.g., Purple Knight, PingCastle, Maester, Microsoft Defender for Identity or similar AD threat detection platforms) and hardening methodologies (e.g., CIS Benchmarks and Microsoft security baselines).
Proficiency with AD security hardening techniques such as KRBTGT password rotations, restricting NTLM, Group Policy object (GPO) cleanup, Local Administrator Password Solution (LAPS), implementing resource-based Kerberos constrained delegation (RBKCD), and configuring LDAP signing.
Familiarity with migration and directory protection tools (e.g., Quest On-Demand Migration) and identity-driven application dependencies.
Strong communication (written and verbal), presentation, client management, and team leadership skills.
Willingness to travel for out-of-town client engagements.
Nice to have:
Familiarity with compliance standards (e.g., NIST, HIPAA, ISO).
Advanced scripting for automation and analysis (e.g., PowerShell).
Knowledge of Infrastructure as Code (Terraform) and DevSecOps practices.
Familiarity with application dependency and network flow mapping tools (e.g., Device42, Faddom) used to discover AD-integrated application dependencies and support migration planning or micro segmentation boundaries.
Familiarity with Active Directory resilience and recovery tooling (e.g., Semperis, ADEngine) is a plus.
Experience migrating from on-premises Active Directory Certificate Services (AD CS) to cloud-native PKI solutions is a plus.
Familiarity with enterprise Identity Governance and Administration (IGA) platforms (e.g., SailPoint, Saviynt) to manage and improve periodic access certifications (e.g., moving from spreadsheets to a tool) and run detective Segregation of Duties (SoD) reports.
Experience automating identity lifecycles by replacing nightly batch files from a Human Resources Information System (HRIS) with Application Programming Interface (API)-driven syncs or establishing governance for non-employee/contractor identities.
Understanding of System for Cross-domain Identity Management (SCIM) or API-based provisioning to automate Joiner-Mover-Leaver (JML) workflows for Software as a Service (SaaS) apps, expanding beyond just core directories and email.
Experience with Tier-0 threat monitoring and detection strategies, including security event logging and SIEM integration with Active Directory and other Tier 0 assets.
Professional certifications (e.g., Microsoft Identity/SC series, CISSP, CyberArk, Delinea)
Occasional exposure to CIAM platforms (e.g., Microsoft Entra External ID, Okta, Auth0) and associated migration/implementation patterns is a plus but not a core requirement.
Based on pay transparency guidelines, the salary range for this role can vary based on your proximity to one of our West Monroe offices (see table below). Information on our competitive total rewards package, including our bonus structure and benefits is here. Individual salaries are determined by evaluating a variety of factors including geography, experience, skills, education, and internal equity.
Employees (and their families) are covered by medical, dental, vision, and basic life insurance. Employees are able to enroll in our company's 401k plan, purchase shares from our employee stock ownership program and be eligible to receive annual bonuses. Employees will also receive unlimited flexible time off and ten paid holidays throughout the calendar year. Eligibility for ten weeks of paid parental leave will also be available upon hire date.
Seattle or Washington, D.C.$203,200-$239,100 USDLos Angeles$212,900-$250,500 USDNew York City or San Francisco$222,500-$261,900 USDA location not listed above$193,500-$227,700 USD Other consultancies talk at you.
At West Monroe, we work with you.
We're a global business and technology consulting firm passionate about creating measurable value for our clients, delivering real-world solutions.
The combination of business and technology is not new, but how we bring them together is unique. We're fluent in both. We know that technology alone is not the answer, but how we apply it is. We rely on data to constantly adapt and solve new challenges. Actions that work today with outcomes that generate value for years to come.
At West Monroe, we zero in on the heart of the opportunity, getting to results faster and preparing people for what's next.
You'll feel the difference in how we work. We show up personally. We're right there in the room with you, co-creating through the challenges. With West Monroe, collaboration isn't a lofty promise, but a daily action. We work together with you to turn vision into clear action with lasting impact.
West Monroe is an Equal Employment Opportunity Employer
We believe in treating each employee and applicant for employment fairly and with dignity. We base our employment decisions on merit, experience, and potential, without regard to race, color, national origin, sex, sexual orientation, gender identity, marital status, age, religion, disability, veteran status, or any other characteristic prohibited by federal, state or local law. To learn more about diversity, equity and inclusion at West Monroe, visit ***************************** If you require a reasonable accommodation to participate in our recruiting process, please inquire by sending an email to *************************.
Please review our current policy regarding use of generative artificial intelligence during the application process.
If you are based in California, we encourage you to read West Monroe's Notice at Collection for California residents, provided pursuant to the California Consumer Privacy Act (CCPA) and linked here.
Auto-ApplyGoogle Cloud Security Architect
Security architect job in Chicago, IL
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
Senior Manager, Information Security Office Consultant
Security architect job in Chicago, IL
Jobs for Humanity is partnering with Capital One to build an inclusive and just employment ecosystem. Therefore, we prioritize individuals coming from the following communities: Refugee, Neurodivergent, Single Parent, Blind or Low Vision, Deaf or Hard of Hearing, Black, Hispanic, Asian, Military Veterans, the Elderly, the LGBTQ, and Justice Impacted individuals. This position is open to candidates who reside in and have the legal right to work in the country where the job is located.
Company Name: Capital One
Job Description
201 Third Street (61049), United States of America, San Francisco, California
Senior Manager, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What You'll Do:
Act as a central Information Security point of contact for the Enterprise Platform team
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Product security consulting in Authentication/Access Management /Identity application and experienced in Authentication and industry-standard protocol for authorization/authorization
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 8 years of experience working in cybersecurity or information technology
At least 7 years of experience providing guidance and oversight of Security concepts
At least 7 years of experience performing security risk assessments and security architecture reviews
At least 7 years of experience with architecture, software design, networking, and cloud infrastructure
At least 5 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
3+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
4+ years of experience in IAM or related areas
Experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
Familiarity with Cloud patch management practices such as system rehydration and image management
Experience utilizing Agile methodologies
Experience with Software Security Architecture
Experience with Application Security
Experience with Threat Modeling
Experience with Penetration Testing or Vulnerability Management
Experience with integrating SaaS products into an Enterprise Environment
Experience with securing Container services
Splunk-Fu / Enterprise Monitoring experience
Financial services industry experience
Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Experience in Offensive and Defensive Security techniques
Experience in a regulated environment
Strong conceptual thinking, influence and communication skills
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $230,100 - $262,700 for Sr Manager, Cyber Technical
San Francisco, California (Hybrid On-Site): $243,800 - $278,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the
Capital One Careers website
. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.
No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at
[email protected]
. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to
[email protected]
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
SAP Security
Security architect job in Chicago, IL
Job Title: SAP Security Architect Duration for Contract: 5 Months + - ECC 6.0 Security design / architecture is the base requirement for the role. - 7+ years of experience in application or SAP ECC, BI, HR, portal and CRM security architecture, design and administration.
Summary:
Provide solutions architecture oversight for new development projects specific to SAP according to timelines and budget, while following accepted programming, testing and change control standards, and accepted business intelligence technology best practices.
Job Responsibilities:
• Define and document the structure, connections and relationships of business processes, organizational work groups, SAP data models, SAP applications, user interfaces, applications interfaces, SAP infrastructure and network topology.
• Provide standards, guidelines and statements of direction for IT system architectures, establishing a framework that constrains the design of systems for the purpose of integration of systems and accessibility of data supporting various business processes and functions.
• Define, design and develop the SAP enterprise systems information architecture to enable cross functional operational reporting and performance optimization.
• Identify strategic opportunities and drive cross-business and cross-functional change.
Skills:
• Knowledge of ITIL and SDLC.
• Experience in business system application design, development and installation.
• Experience in planning/architecture development and support.
• Experience designing and implementing advanced SAP application architectures.
Education/Experience:
• Bachelor's degree in Computer Science or a related field.
• Master's degree in Business or Management Information Systems preferred.
• 8-10 years of SAP functional systems experience.
• SAP Certification preferred.
Additional Information
All your information will be kept confidential according to EEO guidelines.
AI Security Engineer
Security architect job in Chicago, IL
The Aspen Group (TAG) is one of the largest and most trusted retail healthcare business support organizations in the U.S. and has supported over 20,000 healthcare professionals and team members with close to 1,500 health and wellness offices across 48 states in four distinct categories: dental care, urgent care, medical aesthetics, and animal health. Working in partnership with independent practice owners and clinicians, the team is united with a single purpose: to prove that healthcare can be better and smarter for everyone. TAG provides a comprehensive suite of centralized business support services that power the impact of five consumer-facing businesses: Aspen Dental, ClearChoice Dental Implant Centers, WellNow Urgent Care, Chapter Aesthetic Studio, and Lovet. Each brand has access to a deep community of experts, tools and resources to grow their practices, and an unwavering commitment to delivering high-quality consumer healthcare experiences at scale.
As a reflection of our current needs and planned growth we are very pleased to offer a new opportunity to join our dedicated team as a AI Security Engineer.
Job Overview:
An AI security engineer designs and implements security controls for AI systems, protecting models, data, and infrastructure from threats like adversarial attacks and prompt injection. Key responsibilities include performing technical security assessments, developing AI-specific defenses, integrating security into the AI/ML lifecycle, and creating automated security tools for tasks like threat detection and compliance. This role requires a combination of cybersecurity fundamentals and AI-specific knowledge, including secure coding for AI and understanding AI-related vulnerabilities.
Essential Job Duties
Collaboratively develop agent RBAC (role-based access control) to ensure AI agents operate under permissions aligned to firm roles, enforcing least-privilege access
Design integrations for AI systems with corporate IAM/SSO (Entra, Okta, etc.) to manage persona- and role-based access across the enterprise
Design Data Loss Prevention (DLP) and redaction pipelines to prevent confidential, regulated, or proprietary data from being sent to external LLM endpoints
Provide technical advice, direction, and hands-on support to design and develop safe, compliant, and resilient AI workflows
Evaluate existing and proposed AI/ML architectures for bias, fairness, drift, hallucination, and security risks; recommend controls aligned with NIST AI RMF, EU AI Act, ISO/IEC 42001, CIS
Collaborate with Information Security, Cloud, Governance, and Engineering teams to implement standardized AI safety and compliance practices
Actively contribute to the development of AI security standards, playbooks, and architectural patterns
Automate guardrails, compliance checks, and AI gateway protections for scale and efficiency
Build and maintain initiative-level artifacts, including AI policy-as-code configs (YAML), architectural diagrams, and risk assessments
Monitor, log, and audit AI activity for policy violations, compliance tracking, and security event correlation. YAML-based guardrails, architectural diagrams, and AI risk assessments
Design and build systems to detect and prevent AI abuse, such as anti-abuse agents.
Perform technical security assessments, code reviews, and penetration testing on AI products and systems.
Integrate security controls throughout the AI/ML lifecycle, from data handling and model training to deployment and monitoring.
Develop and implement AI-driven automation for tasks like real-time alert enrichment, log analysis, and incident triage using tools like Security Copilot and other AI-assisted platforms.
Research and reproduce vulnerabilities in AI systems, develop mitigation strategies, and work with engineering teams to improve security.
Contribute to creating and implementing governance policies, security standards, and privacy frameworks for AI systems.
Develop AI-specific incident response plans and playbooks.
Stay up-to-date on emerging AI security threats, such as adversarial attacks, prompt injection, and data leakage.
Skills and Experience
At least 5+ years' experience in cybersecurity, including compliance and risk management with a system and network security engineering background.
Strong background in traditional cybersecurity, including networking, web-based protocols, and security systems.
Experience in secure software development, including secure coding for AI-powered applications.
Familiarity with AI concepts, machine learning, and the AI/ML lifecycle.
Experience with implementing security controls like encryption, access controls, and authentication for AI systems.
Experience with security tools and platforms like Chronicle & Orca/Wiz, and familiarity with concepts like SAST/DAST.
Excellent problem-solving, communication, and leadership skills.
Experience with dynamic and static analysis tools.
Track record of acting with integrity, taking pride in work, seeking to excel, being curious and adaptable, and communicating effectively.
Additional Qualifications
Experience with applications hosted in Google Cloud Platform (GCP), Amazon Web Services (AWS) or Microsoft Azure.
Experience with cryptography controls and measures to secure applications and data. Proficiency with scripting in Python, JavaScript, PowerShell, PHP or Ruby.
Proficiency with Terraform, Python, and cloud automation
Prior experience in cloud security, data protection, and SIEM/logging for AI traffic
Experience with one or more of the following: ISO 27001, NIST, PCI Data Security Standard (PCI DSS), HIPAA, Health Information Technology for Economic and Clinical Health (HITECH) Act, SOX, the General Data Protection Regulation (GDPR), Center for Internet Security (CIS) standards or Service Organization Controls (SOC) 2.
Working knowledge of Windows, Linux and Unix.
Familiarity with state privacy laws.
Highly trustworthy; leads by example.
Education Requirements
Bachelor's degree in computer science, information assurance, MIS or related field, or equivalent.
Experience Requirements
5-7+ years of related experience required
Certification Requirements
SANS certifications (GWAPT) and others; CISSP (preferred, or CSSLP), OSCP (and related)
Annual Salary Range: $130,000-$150,000/year, with a generous benefits package that includes paid time off, health, dental, vision, and 401(k) savings plan with match.
If you are an applicant residing in California, please view our privacy policy here: *********************************************************************************
Auto-ApplySecurity & Fire Systems Engineer III
Security architect job in Calumet City, IL
Build your best future with the Johnson Controls team
As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, places and the planet. Join a winning team that enables you to build your best future! Our teams are uniquely positioned to support a multitude of industries across the globe. You will have the opportunity to develop yourself through meaningful work projects and learning opportunities. We strive to provide our employees with an experience, focused on supporting their physical, financial, and emotional wellbeing. Become a member of the Johnson Controls family and thrive in an empowering company culture where your voice and ideas will be heard - your next great opportunity is just a few clicks away!
What we offer
Paid vacation/holidays/sick time - 15 days of vacation first year
Comprehensive benefits package including 401K, medical, dental, and vision care - Available day one
Extensive product and on the job/cross training opportunities with outstanding resources
Encouraging and collaborative team environment
Dedication to safety through our Zero Harm policy
Check us Out: A Day in a Life at Johnson Controls:
What you will do
Under specific direction, assists in the design, configuration, and operation of building systems including security, fire, and other low voltage control sub-systems (i.e. lighting, nurse call, data networks, etc.) to meet the intent of the project requirements. Assists in the development of software programs, commissioning and troubleshooting to ensure proper operations of the building control system. Provides detailed information and submittals to communicate design and operation to customers, consultants, Johnson Controls field installation team and subcontractors.
How you will do it
Design and configure technically complex Security & Fire systems as defined by the contract documents. Create flow diagrams, sequence of operations and bill of material, network layouts and electrical schematics as required.
Develop and test software programs necessary to operate the system per the intent of the project requirements.
Use your ability to integrate different Security subsystems with each other.
Coordinate and create the necessary drawings and equipment schedules for submittals and installation.
Select, order, and track the delivery of materials for assigned projects.
Coordinate factory-mounting processes to meet factory and project schedule.
Assist in the loading and commissioning of all system and network-level controllers as required. Assist in validation of complete system functionality and troubleshoot problems with subcontractors and other trades to ensure proper operation.
Provide field change information to the project team for the creation of as-built drawings and software.
Keep management and JCI contractor or customer informed of job progress and issues. Assist in performing site-specific training for owner / operator on the total building control system.
Participate in release meeting with project field team. Perform value engineering to provide cost effective results while maintaining customer satisfaction.
Adhere to safety standards. Operate with a high degree of regard to employee and subcontractor safety.
What we look for:
Required
Experience in setting up application deployment (Installation, Configuration, Integration with other components) on Cloud environment based on underlying Application Architecture
Experience in Disaster Recovery setup
Administration, Maintenance and support of the Application instances on Reference, Validation and Customer environments
Identify any known incident resolutions using a knowledge management system
Apply identified resolutions to the incident and interact with the customer to ensure the incident has been properly resolved
Antivirus - Symantec (Installation, updates and remediation's of antivirus client for servers and computers
Off-shift support for machine moves quarterly maintenance
Deployment of physical and virtual server deployment, troubleshooting and maintenance
Ability to learn security software programs (I.E. C-cure9000, Milestone, Genetec)
Strong technical skills in the domain of Windows Server 2008/2012, Microsoft Hyper-V and SCCM/SCOM/SCVMM is essential
Basic MS SQL database and scripting skills is an asset Basic MS SQL database and scripting skills is an asset
HIRING SALARY RANGE: $85,000 - $106,000 Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, location and alignment with market data.) This role offers a competitive Bonus plan that will take into account individual, group, and corporate performance. This position includes a competitive benefits package. For details, please visit the About Us tab on the Johnson Controls Careers site at *****************************************
#LI - AD2
#LI - DS1
Johnson Controls International plc. is an equal employment opportunity and affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, protected veteran status, genetic information, sexual orientation, gender identity, status as a qualified individual with a disability or any other characteristic protected by law. To view more information about your equal opportunity and non-discrimination rights as a candidate, visit EEO is the Law. If you are an individual with a disability and you require an accommodation during the application process, please visit here.
Auto-ApplyPrincipal AI Security Architect
Security architect job in Chicago, IL
Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
Overview
As artificial intelligence transforms the financial services sector, the need for robust and forward-looking security architecture has never been more critical. We are seeking a Principal AI Security Architect to lead the secure design, integration, and governance of AI systems across the enterprise.
This role is responsible for defining AI security strategies that span internal LLM deployments, Microsoft Copilot, and managed third-party AI platforms provided by SaaS providers and other counterparties. You will drive architecture, risk governance, and security enforcement for AI adoption across the organization-balancing innovation with regulatory, operational, and reputational risk.
The successful candidate will serve as a trusted advisor to Security & Technology Leadership, internal governance boards, and senior business stakeholders to ensure AI is adopted securely, accountably, and in alignment with industry-leading standards.
Key Responsibilities
AI Security Architecture
- Define and enforce enterprise-wide AI security architecture patterns across:
- First-party AI/LLM deployments
- Microsoft Copilot and GitHub Copilot
- Azure OpenAI and plugin architectures
- Third-party managed AI platforms (e.g., Workday, ServiceNow, Solytics, and other integrated AI services)
- Ensure AI systems and plugins are securely integrated with Microsoft 365, Entra ID, Defender suite, Purview, and Azure services.
- Architect Model Context Protocol (MCP) patterns for safe containerized deployments:
- Secure pod-to-pod communication via microsegmentation
- API gateway authentication and rate limiting
- Container image integrity validation
- Grounding data access policy enforcement
- Centralized monitoring and logging for auditability
AI Governance & Risk Management
- Develop and maintain enterprise-wide AI security policy frameworks
- Partner with Data Protection, Legal, Procurement, and Business Units
- Design and implement policy-as-code and workflow-based governance controls
AI Threat Modeling, Detection & Mitigation
- Build and maintain AI-specific threat models
- Design AI-aware detection and response strategies
- Support red teaming, abuse case development, and adversarial testing
Integration with Microsoft and Third-Party Ecosystems
- Enable seamless and secure integration of Microsoft and third-party AI platforms
- Ensure data classification and DLP enforcement using Microsoft Purview
- Ensure AI interactions respect network boundaries
Controls Alignment & Regulatory Compliance
- Map AI-specific controls to CRI v2.1, NIST AI RMF, and OWASP Top 10 for LLMs
- Enforce end-to-end controls across the AI lifecycle
- Implement controls to protect confidentiality, integrity, and availability
Executive Influence & Cross-Functional Leadership
- Act as a recognized authority on AI security
- Advise Security Leadership, Technology Leadership, and governance boards
- Present AI security strategy and posture to stakeholders
- Mentor security architects, engineers, and data scientists
Qualifications
Required:
- 10+ years in enterprise security architecture or engineering
- Expertise in Microsoft security ecosystem
- Strong scripting and query experience with PowerShell, KQL
- Experience securing AI pipelines and plugin-based architectures
- Proven leadership in AI-specific threat modeling and risk treatment
- Familiarity with model lifecycle governance
- Regulatory alignment: CRI v2.1, NIST AI RMF, OWASP LLM Top 10, FFIEC, GDPR, Basel III
Desired:
- Experience with a Global Systemically Important Bank (G-SIB)
- Experience with Solytics, Snowflake integrations, or other third-party platforms
- Knowledge of shadow principal, token abuse, and adversary tactics
- Recognition as an industry expert
Salary Range:
$137,400 - 233,600 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us:
As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation
Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at *****************.
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Auto-ApplySr Lead, Security Architect - CIAM
Security architect job in Chicago, IL
About Northern Trust:
Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
Summary:
The Sr Lead, Security Architect role is responsible leading the design and implementation of secure customer identity and access management (CIAM) solutions. This role partners with security, product and development teams to help drive the strategic CIAM architecture vision while enabling secure, scalable user experiences and compliance with regulatory standards.
Responsibilitiess
Design and maintain CIAM architecture and roadmaps aligned with business and regulatory needs
Collaborate with customer experience and product teams to balance usability with security
Provide architectural guidance for API security, mobile app integration, and federated identity (OAuth2, OIDC, SAML)
Ensure secure design and integration of identity services including registration, login, MFA, identity proofing, and access control.
Experience :
• Minimum of 7+ years of experience working in an information security engineering or development role in a large, complex environment.
• Bachelor's or Master's degree in Computer Science or other IT related field.
• Self-motivated, proactive and able to work independently.
• Strong communication skills.
Salary Range:
$114,500 - 194,700 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us:
As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation
Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at *****************.
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.
Auto-ApplySAP Security
Security architect job in Chicago, IL
Job Description
Job Title: SAP Security Architect
Duration for Contract: 5 Months +
- ECC 6.0 Security design / architecture is the base requirement for the role.
- 7+ years of experience in application or SAP ECC, BI, HR, portal and CRM security architecture, design and administration.
Summary:
Provide solutions architecture oversight for new development projects specific to SAP according to timelines and budget, while following accepted programming, testing and change control standards, and accepted business intelligence technology best practices.
Job Responsibilities:
• Define and document the structure, connections and relationships of business processes, organizational work groups, SAP data models, SAP applications, user interfaces, applications interfaces, SAP infrastructure and network topology.
• Provide standards, guidelines and statements of direction for IT system architectures, establishing a framework that constrains the design of systems for the purpose of integration of systems and accessibility of data supporting various business processes and functions.
• Define, design and develop the SAP enterprise systems information architecture to enable cross functional operational reporting and performance optimization.
• Identify strategic opportunities and drive cross-business and cross-functional change.
Skills:
• Knowledge of ITIL and SDLC.
• Experience in business system application design, development and installation.
• Experience in planning/architecture development and support.
• Experience designing and implementing advanced SAP application architectures.
Education/Experience:
• Bachelor's degree in Computer Science or a related field.
• Master's degree in Business or Management Information Systems preferred.
• 8-10 years of SAP functional systems experience.
• SAP Certification preferred.
Additional InformationAll your information will be kept confidential according to EEO guidelines.