Senior Security Engineer
Security architect job in Owatonna, MN
Candidates Only no 3rd Party Candidates!
Company is seeking a Senior Security Engineer or Security Solutions Architect with deep experience in Zscaler Internet Access (ZIA) and Secure Web Gateway (SWG) solutions. The resource will review and assess the current Zscaler deployment, identify best practices, implement configuration and policy improvements, and optimize workflows to improve security posture and user experience.
Key Responsibilities
Assess Company's current Zscaler ZIA (SWG) deployment and provide best practice recommendations.
Perform configuration updates, policy tuning, and remediations based on assessment findings.
Review and optimize the website approval workflow, reducing turnaround time for URL requests (currently 2-3 days).
Implement granular Zscaler policies allowing differentiated access based on user identity (e.g., allow downloads but restrict uploads).
Assist with Zscaler DLP policy design and management.
Develop and document end-user and administrator processes, ensuring consistency and clarity.
Identify opportunities to automate policy or workflow management via scripting or ServiceNow integrations.
Collaborate with internal teams (SOC, Engineering, GRC) to align configurations with security requirements.
Required Qualifications
7+ years of experience in IT security engineering or architecture.
Proven expertise with Zscaler Internet Access (ZIA) and Secure Web Gateway (SWG) design, deployment, and optimization.
Working knowledge of Zscaler Private Access (ZPA) and Zscaler DLP.
Strong understanding of enterprise networking, including firewalls, proxies, and DNS.
Experience designing and implementing identity-based policies within Zscaler.
Familiarity with Zero Trust architecture, encryption, and access control principles.
Proficiency in Python scripting or API integration for automation and workflow improvements.
Experience integrating with ServiceNow or similar platforms.
Excellent communication skills and ability to operate independently in a fast-paced environment.
Strong process orientation with proven experience analyzing, optimizing, and documenting workflows.
Information Security Manager
Security architect job in Sartell, MN
Company Information
Founded in 2002, Jefferson Capital (NASDAQ: JCAP) is an analytically driven purchaser and servicer of delinquent consumer accounts. With over two decades of experience in the consumer finance industry, we partner with major banks, auto lenders, fintech platforms, credit card issuers, utilities, and telecommunication companies.
Headquartered in Minneapolis, MN, with multiple offices in the U.S., Canada, Colombia, and the U.K., Jefferson Capital maintains a global presence focused on delivering compliant, data-backed solutions. Our commitment to integrity, respect, and fairness is central to how we operate, helping hundreds of thousands of consumers regain financial stability while protecting creditor interests. We are a solutions provider focused on innovative, compliant, and ethically grounded performance that focuses first on listening to the clients and consumers with whom we partner and serve.
Job Summary
Jefferson Capital Systems is seeking candidates for an Information Cybersecurity Manager. In today's ever-growing threat landscape, you will be an integral member of the IT Team providing security concepts and best practices throughout multiple Business Lines, IT, InfoSec, and DevOps across multiple locations/geographies. He/She will play a significant role in maintaining industry certifications and collaborating on new business or technology initiatives and ensuring the protection of the data entrusted to us.
What does a typical day look like?
Oversee and participate in day-to-day operations of the IT/Info Sec department by training, coaching, communicating expectations and developing personal growth of employees
Work with senior and peer IT Management to develop short- and long-term plans consistent with company objectives
Maintain and strengthen IT Security initiatives including ISO 27001, Risk Management, Cloud Security, GDPR, Business Continuity & Disaster Recovery, Asset and Data Classification, and System Hardening
Leverage security tools such as SIEM, EDR, Vulnerability scanners to monitor and secure our environments
Assist with the planning, execution, evidence gathering, and remediation of internal/external audits and compliance activities, such as Penetration Tests, Client Security Questionnaires, IT Compliance Audits
Maintain internal/external compliance against information security policies and procedures by completing internal control reviews and risk assessments. This includes identifying and communicating control gaps, proposing action plans for remediation, and reporting on the completion of tasks
Participate/ensure security controls and best practices are available and maintained in DevOps
Facilitate internal phishing campaigns, security announcements, security awareness trainings, and security exception processes
Assist in maturing the overall IT/Cyber Security programs while aligning with security frameworks
What qualifications are required for this position?
5 plus years' experience in IT, Information Cybersecurity and/or related Technology fields
Functional knowledge of Security Frameworks such as ISO 27001, PCI, SANS, NIST, CIS, GDPR, OWASP Top 10
Working experience of creating and maintaining operational effectiveness of IT Controls
In-depth understanding of security tools such as vulnerability scanning, firewalls, IDS/IPS, patch management, EDR, and SIEM
Hands-on experience with security tools, conducting security audits, and performing security investigations
Strong communication skills and the ability to be influential through both written and verbal interactions with a variety of audiences
Proven ability to work independently and as a member of a team
Ability to maintain productivity while multi-tasking in a fast-paced environment
Industry accepted Information Security Certifications are a plus!
Why join us? At Jefferson Capital, we're committed to supporting your career growth every step of the way. We offer full support and career development resources to help you expand your skills, enhance your expertise, and reach your professional potential. You'll be part of a diverse and inclusive community where your voice is valued, and innovation is encouraged. Our generous rewards plan covers health, financial well-being, work/life balance, and career benefits, ensuring that you're supported both personally and professionally.
Ready to lead with us? Apply now to be part of a team that's committed to making work better for everyone!
Jefferson Capital is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, political affiliation, or any other legally protected status.
Final candidates will be subject to background checks, which may include criminal, credit, and professional reference verifications, in accordance with applicable laws and regulations.
Jefferson Capital is committed to providing reasonable accommodation for individuals with disabilities throughout the recruitment process. If you require accommodation, please contact our Human Resources Team at **************.
We thank all applicants for their interest in this opportunity. Please note that only those selected for an interview will be contacted.
Information Security Engineer
Security architect job in Green Bay, WI
We are looking for a Security Engineer to join a growing team. You help protect cloud environments, tighten controls, and support daily security operations. The team handles core protection, detection, and response across the enterprise. The role calls for someone who can own work, guide others, stay calm under pressure, and partner with IT, app teams, and leadership to strengthen the cloud posture and reduce risk.
Key Responsibilities
Support daily security operations, including log review, incident response, and coordination with a vendor SOC.
Lead and assist with security projects across the business, including cloud security, endpoint security, and network security efforts.
Support SDWAN rollout efforts with Fortinet tools.
Help mentor junior engineers and support team growth.
Recommend tools and process improvements to strengthen the security posture.
Required Skills
3+ years' experience with the Microsoft security stack, including Defender, Entra, and/or Sentinel.
Hands-on experience with Windows 10/11 Enterprise and Intune.
Understanding of conditional access and identity controls within EntraID.
Experience with Fortinet technologies, including Fortigate and Fortigate SDWAN.
Experience with vulnerability management tools.
Ability to stay calm and effective during high pressure security events.
Self-starter with strong collaboration habits.
Preferred Skills
Cisco Secure Workload or micro-segmentation experience, including Cisco ICE.
Experience rolling out new security offerings or tools.
Any Azure certifications such as AZ-900, AZ-200, or AZ-500.
Exposure to OT security tooling.
Team & Culture
The team offers autonomy, trust, and room to grow. Engineers help shape tools, practices, and direction. The environment supports ownership and ongoing development without heavy bureaucracy. The organization follows security frameworks and guidelines with established processes, though not a rigid formal policy structure.
React Architect
Security architect job in Minneapolis, MN
We are
At Synechron, we believe in the power of digital to transform businesses for the better. Our global consulting firm combines creativity and innovative technology to deliver industry-leading digital solutions. Synechron's progressive technologies and optimization strategies span end-to-end Artificial Intelligence, Consulting, Digital, Cloud & DevOps, Data, and Software Engineering, servicing an array of noteworthy financial services and technology firms. Through research and development initiatives in our FinLabs we develop solutions for modernization, from Artificial Intelligence and Blockchain to Data Science models, Digital Underwriting, mobile-first applications and more. Over the last 20+ years, our company has been honored with multiple employer awards, recognizing our commitment to our talented teams. With top clients to boast about, Synechron has a global workforce of 14,500+, and has 58 offices in 21 countries within key global markets.
Our challenge
We are seeking an experienced React Architect to lead the design and development of scalable, high-performance web applications. The ideal candidate will have deep expertise in React and modern front-end technologies, with a strong focus on architecture, best practices, and team collaboration.
Additional Information*
The base salary for this position will vary based on geography and other factors. In accordance with law, the base salary for this role if filled within Minneapolis, MN is $125k - $135k/year & benefits (see below).
The Role
Responsibilities:
Architect and design complex, scalable React-based applications.
Collaborate with stakeholders to define requirements, create prototypes, and deliver high-quality solutions.
Drive technical decisions, enforce coding standards, and ensure adherence to SOLID principles and best practices.
Develop reusable components and frameworks to accelerate development across teams.
Optimize application performance and ensure robust security implementations.
Mentor and guide development teams on React, TypeScript, and modern front-end patterns.
Integrate front-end solutions with backend services and APIs.
Implement automated testing strategies and CI/CD pipelines for reliable deployments.
Stay updated with emerging technologies and recommend improvements to existing architecture.
Requirements:
7+ years of experience in front-end development, with 3+ years in React architecture/design.
Bachelor's degree in Computer Science or equivalent experience.
Strong proficiency in React, TypeScript, and SPA development.
Expertise in state management (Redux or similar), React Router, and component-driven architecture.
Solid understanding of HTML5, CSS3, and CSS preprocessors (SASS/LESS).
Experience with Webpack, NPM, and modern build tools.
Hands-on experience with unit testing frameworks (Jest, Selenium).
Proficiency with Git and branching strategies.
Knowledge of micro-frontend architecture and token-based security solutions is a plus.
Excellent communication and leadership skills.
Preferred, but not required:
Experience in Agile environments and cross-functional team collaboration.
Familiarity with CI/CD pipelines and cloud deployment strategies.
We offer:
A highly competitive compensation and benefits package.
A multinational organization with 58 offices in 21 countries and the possibility to work abroad.
10 days of paid annual leave (plus sick leave and national holidays).
Maternity & paternity leave plans.
A comprehensive insurance plan including medical, dental, vision, life insurance, and long-/short-term disability (plans vary by region).
Retirement savings plans.
A higher education certification policy.
Commuter benefits (varies by region).
Extensive training opportunities, focused on skills, substantive knowledge, and personal development.
On-demand Udemy for Business for all Synechron employees with free access to more than 5000 curated courses.
Coaching opportunities with experienced colleagues from our Financial Innovation Labs (FinLabs) and Center of Excellences (CoE) groups.
Cutting edge projects at the world's leading tier-one banks, financial institutions and insurance firms.
A flat and approachable organization.
A truly diverse, fun-loving, and global work culture.
AWS Architect
Security architect job in Oconomowoc, WI
Senior AWS Data Architect - Neenah, WI or Oconomowoc, WI - Onsite
We are seeking a highly skilled AWS Data Architect to design, build, and optimize cloud-based data platforms that enable scalable analytics and business intelligence. The ideal candidate will have deep expertise in AWS cloud services, data modeling, data lakes, ETL pipelines, and big data ecosystems.
Key Responsibilities
Design and implement end-to-end data architectures on AWS (data lakes, data warehouses, and streaming solutions).
Define data ingestion, transformation, and storage strategies using AWS native services (Glue, Lambda, EMR, S3, Redshift, Athena, etc.).
Architect ETL/ELT pipelines and ensure efficient, secure, and reliable data flow.
Collaborate with data engineers, analysts, and business stakeholders to translate business needs into scalable data solutions.
Establish data governance, security, and compliance frameworks following AWS best practices (IAM, KMS, Lake Formation).
Optimize data systems for performance, cost, and scalability.
Lead data migration projects from on-prem or other clouds to AWS.
Provide technical guidance and mentorship to data engineering teams.
Required Skills & Qualifications
Bachelor's or Master's degree in Computer Science, Information Systems, or a related field.
12+ years of experience in data architecture, data engineering, or cloud architecture.
Strong hands-on experience with AWS services:
Storage & Compute: S3, EC2, Lambda, ECS, EKS
Data Processing: Glue, EMR, Kinesis, Step Functions
Analytics: Redshift, Athena, QuickSight
Security & Governance: IAM, KMS, Lake Formation
Proficiency in SQL, Python, and ETL frameworks.
Experience with data modeling (3NF, Dimensional Modeling, Data Vault).
Familiarity with data governance and metadata management tools.
Excellent communication and stakeholder management skills.
Architect
Security architect job in Minneapolis, MN
Are you an experienced Architect with a desire to excel? If so, then Talent Software Services may have the job for you! Our client is seeking an experienced Architect to work at their company in Minneapolis, MN.
Primary Responsibilities/Accountabilities:
Upgrading infrastructure systems, including Windows System Centre
Assist IT teams and customers with ITIL-based incidents and requests on various subjects.
Monitor and manage infrastructure systems (Microsoft Windows and Network and Microsoft 365).
Act as an infrastructure contact on application and cloud upgrade projects.
Qualifications:
Demonstrated expertise in the operation and maintenance of Windows in an enterprise environment (min 5 years experience).
Demonstrated expertise in the use of Microsoft System Centre Products (min 5 years experience).
Demonstrated expertise in the Microsoft 365 platform (min 5 years experience).
Demonstrated ability to work with a team and independently (minimum 5 years of experience).
Cyber Security Architect
Security architect job in Saint Paul, MN
· Proven experience in the development and maintenance of enterprise information security governance processes. · Minimum 4 years' experience as an Information Security Auditor or Consultant. · Experience with Archer eGRC Platform (ability to create dashboards, iViews and basic reports).
·
Experience with Sharepoint.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Google Cloud Security Architect
Security architect job in Minneapolis, MN
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
Cloud Security Architect (New Health Care Company)
Security architect job in Maplewood, MN
The role of Security Architect Cloud Security at 3M's new Health Care Company is a critical position responsible for designing, implementing, and maintaining the security infrastructure of their cloud-based systems and applications. Reporting to the Chief Security Architect Cybersecurity, the Security Architect will lead efforts to secure cloud environments, identify vulnerabilities, and develop solutions to mitigate risks.
This role requires expertise in cloud technologies, security frameworks, configuration management, enterprise architecture, and industry best practices.
Responsibilities include designing and implementing robust security architectures, collaborating with development and operations teams to integrate security measures, conducting security assessments and audits, creating and enforcing security policies, and monitoring and responding to security incidents.
The successful candidate will have ten years of enterprise security architecture experience, five years of Cloud Security background with platforms like AWS, Azure, GCP, or Oracle Cloud, and may hold industry-recognized certifications such as CISSP or CCSP.
Proficiency in scripting or programming languages and excellent communication skills are advantageous.
The role offers flexibility in work location and may involve up to 10% travel.
3M is an equal opportunity employer, and the expected compensation range for this position is $70,563 - $86,244, which includes base pay and variable incentive pay, if eligible.
Senior Manager, Information Security Office Consultant
Security architect job in Madison, WI
Company DescriptionJobs for Humanity is partnering with Capital One to build an inclusive and just employment ecosystem. Therefore, we prioritize individuals coming from the following communities: Refugee, Neurodivergent, Single Parent, Blind or Low Vision, Deaf or Hard of Hearing, Black, Hispanic, Asian, Military Veterans, the Elderly, the LGBTQ, and Justice Impacted individuals. This position is open to candidates who reside in and have the legal right to work in the country where the job is located.
Company Name: Capital One
Job Description201 Third Street (61049), United States of America, San Francisco, CaliforniaSenior Manager, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What You'll Do:
Act as a central Information Security point of contact for the Enterprise Platform team
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Product security consulting in Authentication/Access Management /Identity application and experienced in Authentication and industry-standard protocol for authorization/authorization
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 8 years of experience working in cybersecurity or information technology
At least 7 years of experience providing guidance and oversight of Security concepts
At least 7 years of experience performing security risk assessments and security architecture reviews
At least 7 years of experience with architecture, software design, networking, and cloud infrastructure
At least 5 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
3+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
4+ years of experience in IAM or related areas
Experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
Familiarity with Cloud patch management practices such as system rehydration and image management
Experience utilizing Agile methodologies
Experience with Software Security Architecture
Experience with Application Security
Experience with Threat Modeling
Experience with Penetration Testing or Vulnerability Management
Experience with integrating SaaS products into an Enterprise Environment
Experience with securing Container services
Splunk-Fu / Enterprise Monitoring experience
Financial services industry experience
Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Experience in Offensive and Defensive Security techniques
Experience in a regulated environment
Strong conceptual thinking, influence and communication skills
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $230,100 - $262,700 for Sr Manager, Cyber TechnicalSan Francisco, California (Hybrid On-Site): $243,800 - $278,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to [email protected]
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Information Security Engineer Lead
Security architect job in Duluth, MN
The Lead Security Engineer position is part of the Information Technology team, reporting directly to the Manager, Information Security. The focus of this role is to design, implement, and maintain advanced security solutions that protect the confidentiality, integrity, and availability of Cirrus digital assets. This role requires deep technical expertise in Microsoft technologies, cybersecurity engineering, and enterprise security architecture, as well as the ability to mentor Security analysts and partner with IT teams on secure system design and operations.
Duties and Responsibilities/Essential Functions
Design, implement, and maintain enterprise security controls across Microsoft environments, including Azure, Entra ID (Azure AD), Microsoft 365, Microsoft Defender, and Windows Server platforms.
Lead incident response activities, including investigation, containment, eradication, and recovery, as well as post-incident lessons learned.
Analyze security events and alerts from IDS/IPS, SIEM, EDR/XDR, vulnerability scanners, and Microsoft security tools to identify and mitigate threats.
Develop and implement security hardening baselines, patch management processes, and secure configuration standards for Microsoft platforms and hybrid environments.
Collaborate with IT and business stakeholders to design secure solutions, ensuring security requirements are integrated into Windows, Active Directory/Entra ID, Azure, and Microsoft 365 systems.
Conduct threat modeling and risk assessments, making recommendations for risk treatment and mitigation strategies.
Oversee vulnerability management program, including regular assessments, prioritization, and remediation validation.
Create strategies to mitigate risks and ensure compliance with relevant laws and regulations
Focus on continuous improvement to stay updated on cybersecurity trends and emerging threats to enhance security measures.
Provide mentorship and technical guidance to Information Security Analysts and IT staff.
Assist in the development and enforcement of security policies, standards, and procedures, with specific emphasis on Microsoft platforms.
Stay current with emerging threats, vulnerabilities, and security technologies; recommend improvements to strengthen the security posture
Regular, reliable, and predictable attendance
Qualifications:
To perform this job successfully, an individual must be able to perform each essential function satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.
Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent combination of education and experience.
7+ years of progressive experience in information security, engineering, or related IT disciplines.
Advanced knowledge of Microsoft technologies, including Azure, Entra ID (Azure AD), Office 365, Microsoft Defender suite, and Windows Server.
Experience with SIEM, SOAR, EDR/XDR, vulnerability management, and forensic analysis tools, preferably integrated with Microsoft Sentinel and Defender.
Strong understanding of cloud platforms (Azure, AWS, Google Cloud) and securing hybrid infrastructures.
Relevant security certifications preferred: CISSP, CISM, OSCP, GIAC (GCIA, GCIH, GPEN), Microsoft Certified: Azure Security Engineer Associate, Microsoft 365 Security Administrator Associate, or equivalent.
Demonstrated expertise in incident response, malware analysis, and intrusion detection.
Proficiency with scripting/automation languages (PowerShell, Python, etc.) to enhance security operations.
In-depth knowledge of common frameworks and standards (NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK).
Proven ability to design and implement Zero Trust and defense-in-depth strategies.
Applies advanced knowledge of Microsoft security technologies and enterprise platforms to solve complex challenges.
Mentors and guides team members, builds trust, and fosters a culture of continuous improvement
Competencies
To perform the job successfully, an individual should demonstrate the following competencies:
Manages Complexity - Asks the right questions to accurately analyze situations, acquires data from multiple and diverse sources when solving problems, uncovers root causes to difficult problems, evaluates pros and cons, risks and benefits of different solution options.
Situational Adaptability - Picks up on situation cues and adjusts in the moment. Readily adapts personal, interpersonal, and leadership behavior. Understands that different situations may call for different approaches. Can act differently depending on the circumstance.
Optimizes Work Processes - Identifies and creates the processes necessary to get work done, Separates and combines activities into efficient workflow, Designs processes and procedures that allow managing from a distance, Seeks ways to improve processes,
Collaborates: Builds partnerships and works collaboratively with others to meet shared objectives.
Organizational Savvy: Maneuvers comfortably through complex policy, process, and people-related organizational dynamics.
Directs Work: Provides direction, delegates, and removes obstacles to get work done.
Other Duties
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice. Work beyond 40 hours per week may be required.
Cirrus is dedicated to a drug free work environment promoting equal employment opportunity. Qualified applicants will receive consideration for employment without regard to race, sex, national origin, color, age, disability, religion, pregnancy, veteran status, marital and family status, sexual orientation, receipt of public assistance, genetic information or any other characteristic protected by applicable law.
Our Benefits: Cirrus provides a range of exciting benefits, including:
401(k) Plan: Dollar-for-dollar match up to 5% after 90 days, with 100% vesting.
Employer-Paid Coverages: Group term life, short- and long-term disability insurance.
Comprehensive Health Coverage: Medical, vision, dental, with additional dependent coverage options.
Free Health Tracking: With rewards for meeting health goals.
Generous PTO: 120+ hours accrued within the first year.
Employee Referral Bonus: For referring talented candidates.
Career Development: Tuition reimbursement and professional growth opportunities.
Exclusive Discounts: Access to partner and marketplace discounts.
Community & Engagement: Company and employee clubs at various locations.
These benefits are designed to support your well-being, growth, and enjoyment at Cirrus!
Senior Security Architect
Security architect job in Richfield, MN
As a Senior Security Architect with Best Buy, you will work closely with our Digital, Analytics & Technology teams to deliver security requirements in the design phase, as well as to bridge the gap between IT / Engineering and the greater Enterprise Risk & Compliance practice. The Senior Security Architect will be the primary point of contact for many engineering domains, in addition to having subject matter expertise in one or more security capability focus areas (Network, Cloud, Application Security, IAM, etc.).
The Senior Security Architect will be responsible for maintaining key relationships, understanding business and technical objectives, and maintaining detailed solution-level understanding for the ongoing activities / initiatives in their portfolio. Additionally, the Senior Security Architect will work with the security architecture team to draft new security control documentation, new approved security patterns and maintain the associated document repositories.
This role is hybrid, which means you will be required to work some days on-site at the Best Buy location listed on this posting and some days virtually from home or other non-Best Buy location. The specific work arrangements vary by role and team. The recruiter or hiring manager will provide more details during the hiring process.
What you'll do
* Work in close partnership with a diverse portfolio of Engineering / IT.
* You will threat-model proposed and existing solutions, develop a detailed list of security requirements to mitigate risk, and ensure that the solutions being built mitigate the identified risks.
* Help drive transformation in the security architecture / security consulting practice.
* Act as an Enterprise Risk and Compliance ambassador to development and engineering teams.
* Draft new security documentation that will be consumed by internal technical teams.
Basic qualifications:
* 8+ years of experience in one or more of the following areas: Application Development, Network Engineering, Cloud Security, Architecture, Security Architecture, Security Engineering, Cloud Security Engineering, DevOps, etc.
* 4+ years of experience delivering comprehensive security requirements.
Preferred qualifications
* 2+ years of hands on, deep Kubernetes experience across at least one major managed service (e.g., EKS, GKE, AKS, ARO) in a cloud agnostic architecture, including cluster security, networking, and workload governance.
* Understanding of AI agent frameworks and patterns, including their security, governance, and observability requirements.
* Technical experience in engineering and maintaining security controls.
* Direct experience with threat modeling methodologies.
* Experience with cloud and hybrid cloud architecture and security control.
* Demonstrable passion for security.
* Industry relevant certifications or training.
What's in it for you
We're committed to helping our people thrive at work and at home. We offer generous benefits that address your total well-being and provide support as you need it, especially at key moments in your life.
* Our benefits include
* Competitive pay
* Generous employee discount
* Financial savings and retirement resources
* Support for your physical and mental well-being
About us
As part of the Best Buy team, you'll help us fulfill our purpose to enrich lives through technology. We bring that to life every day by humanizing and personalizing tech solutions for every stage of life - in our stores, online, and in customers' homes.
Our culture is built on deeply supporting and valuing our amazing employees who make it all possible. We're committed to being a great place to work, where you can unlock unique career possibilities. Above all, we aim to provide a place where you can bring your full, authentic self to work now and into the future. Tomorrow works here.
Best Buy is an equal opportunity employer.Auto Req. ID1011835BR
Location Number 100024 Remote - Minnesota
Address 7601 Penn Ave S.$109650 - $194361 /yr
Pay Range $109650 - $194361 /yr
Senior IT Security Analyst
Security architect job in Bloomington, MN
The Senior IT Security Analyst is responsible for managing activities relating to monitoring and responding to security events. The analyst is responsible for monitoring application, host, and network threats, including external threat actors and rogue insiders. As a trusted member of the Information Security team and industry community, the analyst works closely with internal technical teams, business units, and external entities aligned with the business, including private intelligence-sharing groups, law enforcement, and government agencies.
The analyst is responsible for conducting in-depth research, documenting threats, understanding the risk to the business, and sharing information with those who need to know. Analysts are expected to continually adapt to stay a step ahead of cyber attackers and stay up to date on the latest methods attackers use to infiltrate computer systems. Analysts in this role are expected to consistently learn and grow. This is not a passive career opportunity, but rather one that requires a passion for security and rigor to protect the business.
Duties & Responsibilities
* Responsible for developing, managing, and maintaining threat intelligence and threat hunting program and processes
* Regularly research and identify emerging threats, TTPs in public and closed forums, and work with colleagues to access risk and implement/validate controls as necessary.
* Assist with Security Operations activities, including but not limited to, triage of alarms/alerts, and performing technical security assessments.
* Participate in a call tree for outsourced Security Operations Center to assist with triage and remediation of critical and high rated alerts that are escalated both during and after business hours.
* Research and recommend solutions to fulfill regulatory compliance with all standards set forth by FFIEC guidelines, Sarbanes Oxley, Gramm-Leach-Bliley and other regulations applicable to the financial services industry and publicly traded companies.
* Perform periodic review of IT procedures and security of all systems in order to maintain integrity of company and customer data.
* Document and perform verification of IT related changes in accordance with Company security policies and procedures.
* Research and recommend hardware and software solutions to augment or enhance existing security measures.
* Stay current in events and trends in IT security.
* Investigate and report any security violations and incidents and ensure proper protection and corrective measures have been taken when an incident or vulnerability has been discovered.
* Conduct scheduled reviews of key application security settings.
* Develop metrics and scorecards to measure risk to the organization, as well as effectiveness and efficiency of SOC associates.
* Assist in process development and improvements to maximize the efficiency and effectiveness of the department and related programs
* Supports audit and incident processes, as required
* Monitor and support internal SEIM systems, reports, and searches
* Monitor and support internal phishing email report systems and reports
* Partner and establish relationships to work closely with cross-functional teams consisting of representatives in the business
* Develops strong liaison relationships with key internal business and technology teams
* Coach level I & IIs on security domains and program processes
* Depending on need, VP Security may determine a Team Lead designation for Level III role
* Participate in security work streams for a variety of enterprise projects and initiatives
* Determine and communicate security risk postures to partners and leaders as appropriate
Education & Experience
Knowledge of:
* Strong experience with threat information sharing and threat hunting processes to proactively identify potential or existing threats in medium to large environments.
* Proficient with SIEM tools, threat intelligence platforms, and security orchestration, automation, and response (SOAR) solutions to centralize and manage the incident and remediation workflow.
* Knowledge and understanding of networking concepts and securing traffic across LAN, WAN, and Internet infrastructure.
* Proficiency in operating systems such as Windows, Linux, and MacOS to effectively research and analyze threats in a sandbox environment, and respond to incidents.
* Experience in incident handling and investigation including using formal chain-of-custody methods, forensic tools, and best practices.
* Applicable knowledge of adversary tactics, techniques, and procedures (TTPs), MITRE ATT&CK framework, and CVSS.
* Capable of scripting in Python, Bash, Perl, RegEx, or PowerShell.
* Knowledge and understanding of networking concepts and securing traffic across LAN, WAN, and Internet infrastructure.
* Familiarity with cloud architectures, security standards, and best practices
* Strong oral and written communication skills
* Strong organizational skills and attention to detail
* Excellent interpersonal skills
Ability to:
* Ability to analyze incident logs, attack vectors, and understand vulnerabilities and exploits.
* Take independent action within established options and develops new procedures and approaches to problems when necessary
* Analyze assignments based on a wide knowledge of many factors where application of advanced or technical concepts are required
* Self-starter requiring minimal supervision
* Highly organized and efficient.
* Demonstrated strategic and tactical thinking.
* Stays current with the evolving threat landscape.
* Perform duties and make decisions under frequent time pressures
Education and Training:
* (Preferred) Bachelor's degree in Computer Science, Management Information Systems (MIS) or related field or equivalent work experience.
* On-the-job training in relevant roles relating to security operations, threat intel and hunting, system administration, incident response, or equivalent
* Security+, CySA+, GCIH, CSA, CCSP or similar certification; or willingness and ability to pursue certification/re-certification within the first six months of hire.
* At least 5 years' experience in security operations center environments, threat intelligence/hunting, or security systems administration
* Requires knowledge of Microsoft Office and other productivity tools
Benefits and Compensation
Salary offered is based on factors, including but not limited to, the job duties, required qualifications and relevant experience, and local market trends. The role may be eligible for bonus or incentives based on company and individual performance.
(Base Pay Range: $86,000 - $123,000/year)
Busey provides a competitive Total Rewards package in return for your time, talents, efforts and ultimately, results. Your personal and professional well-being-now and in the years to come-are important to us. Busey's Total Rewards include a competitive benefits package offering 401(k) match, profit sharing, employee stock purchase plan, paid time off, medical, dental, vision, company-paid life insurance and long-term disability, supplemental voluntary life insurance, short-term and long-term disability, wellness incentives and an employee assistance program. In addition, eligible associates may take advantage of pre-tax health savings accounts and flexible spending accounts. Visit Busey Total Rewards for more information.
Equal Opportunity
Busey values a diverse and inclusive workplace and strives to recruit, develop and retain individuals with exceptional talent. A team with diverse talent, working together, is essential to Busey's commitment of delivering service excellence. Busey is an Equal Opportunity Employer including Disability/Vets. Visit Busey.com/Careers to learn more about Busey's Equal Opportunity Employment.
Unsolicited Resumes
Busey Bank, and its subsidiaries, does not accept any liability for fees for resumes from recruiters or employment agencies ("Agency"), without a binding, written recruitment agreement between Busey and Agency describing the services and specific job openings ("Agreement"). Busey may consider any candidate for whom an Agency has submitted an unsolicited resume and explicitly reserves the right to hire those candidate(s) without any financial obligation to the Agency, unless an Agreement is in place. Any email or verbal contact with any Busey associate is inadequate to create a binding agreement. Agencies without an Agreement are requested not to contact any associates of Busey with recruiting inquiries or resumes. Busey respectfully requests no phone calls or emails.
Application Deadline 11/15/25
Auto-ApplyNetwork Security Architect
Security architect job in Madison, WI
• In depth hands-on experience in security products like Checkpoint MDM, PIX/ASA, Checkpoint provider 1, Cisco ACS, Cisco CSM, IDS/IPS, RSA envision / SIEM tools, Two-factor Authentication products • Design, implement, support & maintain Network security platforms I.E Firewall (Check Point and Cisco), IPD/IDS, Proxy, Crypto card, PKI etc.
• Rich Experience in Implementation / upgrade / maintenance of Firewalls / Proxy / IPS
• Experience in Site to Site and Client to Site VPN, High availability, Load Balancing, Antivirus and Content Filtering.
• Deep knowledge of security architecture methodologies, Industry best practices and generally accepted information security principles
• Highly skilled in Vulnerability assessment
• Strong Knowledge of Switching / Routing
• Knowledge of security architecture methodologies, BS7799, COBIT,ITIL
• Advanced knowledge of HTTP(S), network protocols such as IP, TCP, UDP, DNS along with packet analysis
• Perform security engineering, audit and regulatory compliance
• Perform periodic reviews & Develop/implement automation ideas to validate audit compliance in all security platforms I.E Firewall, Proxy, IDM,SAP, NT etc.
• Manage, develop and maintain documentation/Security procedures
• Implement and perform appropriate controls and audits for access security to improve security matrix in SAP, NT and IDM Platforms
• Work on Virus, Malware, Spyware and Vulnerability Management Platform
• Support, Implement and Design new technologies K-C will implement in future I.E Web Application Firewall, Database Firewall, Threat Management, etc.
• Adhere, recommend improve, participate in security policies/Standards and Risk Management plan
Additional Information
If you are comfortable with the position and location then please revert me back at the earliest with your updated resume and following details or I would really appreciate if you can call me back on my number.
Full Name:
Email:
Skype id:
Contact Nos.:
Current Location:
Open to relocate:
Start Availability:
Work Permit:
Flexible time for INTERVIEW:
Current Company:
Current Rate:
Expected Rate:
Total IT Experience [Years]:
Total US Experience [Years]:
Key Skill Set:
Best time to call:
In case you are not interested, I will be very grateful if you can pass this position to your colleagues or friends who might be interested.
All your information will be kept confidential according to EEO guidelines.
Senior Security Analyst - AppSec
Security architect job in Saint Paul, MN
Patterson isn't just a place to work, it's a partner that cares about your success.
One of the distinguishing marks of our company is the talented people who embrace the people-first, always advancing, and results-driven culture. Professional growth abounds in this motivating environment. We value the diverse talents and experiences our employees bring to Patterson and believe that they build a stronger and successful organization.
Job Description:
The Application Senior Security Analyst leads the implementation and maintenance of network and application security systems to protect Patterson's information assets. This role drives technical support, incident response, and ensures alignment with security and project goals. The analyst develops and enhances the application security program using industry best practices and frameworks. Expertise in secure coding, static and dynamic code analysis, and vulnerability remediation is essential. The candidate integrates security controls into CI/CD pipelines using SecDevOps methodologies. Responsibilities include tool integration, policy enforcement, and continuous monitoring. Collaboration across DevOps, compliance, risk, and audit teams ensures enterprise-wide security alignment. A methodical approach to assessing and triaging security findings is critical for success.
Essential Functions
To perform this job successfully, an employee must be able to perform each essential function satisfactorily, with or without reasonable accommodation. To request a reasonable accommodation, notify Human Resources or the manager who oversees the position.
Perform application security triage, oversee issue resolution, and track remediation metrics
Oversees the maintenance, support, and delivery of associated security platforms
Drives continuous improvements in acting on alerts, service requests, and incidents
Integrates best practices to proactively analyze and monitor systems and applications for system and security related issues
Considered subject matter expert in assigned platforms and keeps up-to-date knowledge to drive improvements
Strong mentor with the ability to work with junior team members and provide leadership and training on new tools or projects
Provide support and ongoing input in the evolution of the application security program
Ensure the application security tool set is optimized, tuned, and maintained
Collaborate with Devs and Ops teams to embed security into CI/CD pipelines and SecDevOps workflows
Perform security testing to include SAST, DAST, SCA, Container, APIs, IaC, Secrets
Interact with Infrastructure, DevOps, and application owners to ensure alignment with Patterson's roadmaps
Prioritize workload depending on business direction, compliance, and / or security requirements
Embedded in the SDLC process for all major applications, working with DevOps, SecDevOps, Developers, QA, Principal Architects, Security Champions,
Actively participate and / or lead weekly meetings with application team leads and security champions
Track and manage identified vulnerabilities through resolution, ensuring timely remediation and documentation.
Oversee the planning, execution, and follow-up of penetration tests conducted by internal teams and external security partners.
Additional functions
In addition to the essential functions listed above, the incumbent may perform the following additional functions.
Experience with .Net, C#, Javascript, Angular and related languages
Familiarity with AzureDevOPs (ADO), Package Management, SBOM, TFS and / or VSTS
Familiarity with major cloud platforms, including Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP)
General knowledge of Application Security frameworks such as BSIMM, OWASP SAMM / ASVS, NIST, etc
Experience with Thick Clients, Web Apps, Cloud Solutions, SPA, Web Services, MVC, APIs, etc
Familiar with Azure DevOps Pipelines for automated build, test and deployment workflows
Ability to support and manage Azure services including Azure Container Apps (ACA), Azure Kubernetes Service (AKS), and Azure Artifacts
Familiarity with software supply chain security processes, including vulnerability scanning, artifact integrity validation, and dependency risk management
Experience implementing and maintaining gating workflows in CI/CD pipelines to enforce security and compliance checks prior to deployment
Experience communicating security concerns and issues to non-technical audiences
Proficient in assessing microservices and APIs for security flaws using automated and manual testing techniques.
Familiar with key application security tools such as BurpSuite, HCL AppScan, Veracode, Qualsys WAS, Micro Focus WebInspect, Checkmarx, Mend.io (White Source), DevTools, Fiddler, Owasp Zap, Metasploit, BeeF, SQLMap, Postman, etc
Experience with Swagger, SOAPUI, Visual Studio
Required Qualifications
Bachelor's Degree with an emphasis in security, technology, or engineering or equivalent work experience
At least 4 years work experience in information technology, cyber security, or information security
Preferred Qualifications
Security industry certification desired
This person must be located within a commutable distance to Mendota Heights, MN or Loveland, CO. This will be 2 days in the office hybrid model.
What's In It For You
We provide competitive benefits, unique incentive programs and rewards for our eligible employees:
Full Medical, Dental, and Vision benefits and an integrated Wellness Program.
401(k) Match Retirement Savings Plan.
Paid Time Off (PTO).
Holiday Pay & Floating Holidays.
Volunteer Time Off (VTO).
Educational Assistance Program.
Full Paid Parental and Adoption Leave.
LifeWorks (Employee Assistance Program).
Patterson Perks Program.
The potential compensation range for this role is below. The final offer amount could exceed this range, based on various factors such as candidate location (geographical labor market), experience, and skills.
$94,100.00 - $117,700.00EEO Statement
Patterson provides equal employment opportunities to applicants and employees without regard to race; color; sex; gender identity; sexual orientation; religious practices and observances; national origin; pregnancy, childbirth, or other related medical conditions; status as a protected veteran or spouse/family member of a protected veteran; or disability.
Auto-ApplyInformation Security Engineer Lead
Security architect job in Duluth, MN
The Lead Security Engineer position is part of the Information Technology team, reporting directly to the Manager, Information Security. The focus of this role is to design, implement, and maintain advanced security solutions that protect the confidentiality, integrity, and availability of Cirrus digital assets. This role requires deep technical expertise in Microsoft technologies, cybersecurity engineering, and enterprise security architecture, as well as the ability to mentor Security analysts and partner with IT teams on secure system design and operations.
Duties and Responsibilities/Essential Functions
Design, implement, and maintain enterprise security controls across Microsoft environments, including Azure, Entra ID (Azure AD), Microsoft 365, Microsoft Defender, and Windows Server platforms.
Lead incident response activities, including investigation, containment, eradication, and recovery, as well as post-incident lessons learned.
Analyze security events and alerts from IDS/IPS, SIEM, EDR/XDR, vulnerability scanners, and Microsoft security tools to identify and mitigate threats.
Develop and implement security hardening baselines, patch management processes, and secure configuration standards for Microsoft platforms and hybrid environments.
Collaborate with IT and business stakeholders to design secure solutions, ensuring security requirements are integrated into Windows, Active Directory/Entra ID, Azure, and Microsoft 365 systems.
Conduct threat modeling and risk assessments, making recommendations for risk treatment and mitigation strategies.
Oversee vulnerability management program, including regular assessments, prioritization, and remediation validation.
Create strategies to mitigate risks and ensure compliance with relevant laws and regulations
Focus on continuous improvement to stay updated on cybersecurity trends and emerging threats to enhance security measures.
Provide mentorship and technical guidance to Information Security Analysts and IT staff.
Assist in the development and enforcement of security policies, standards, and procedures, with specific emphasis on Microsoft platforms.
Stay current with emerging threats, vulnerabilities, and security technologies; recommend improvements to strengthen the security posture
Regular, reliable, and predictable attendance
Qualifications:
To perform this job successfully, an individual must be able to perform each essential function satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.
Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent combination of education and experience.
7+ years of progressive experience in information security, engineering, or related IT disciplines.
Advanced knowledge of Microsoft technologies, including Azure, Entra ID (Azure AD), Office 365, Microsoft Defender suite, and Windows Server.
Experience with SIEM, SOAR, EDR/XDR, vulnerability management, and forensic analysis tools, preferably integrated with Microsoft Sentinel and Defender.
Strong understanding of cloud platforms (Azure, AWS, Google Cloud) and securing hybrid infrastructures.
Relevant security certifications preferred: CISSP, CISM, OSCP, GIAC (GCIA, GCIH, GPEN), Microsoft Certified: Azure Security Engineer Associate, Microsoft 365 Security Administrator Associate, or equivalent.
Demonstrated expertise in incident response, malware analysis, and intrusion detection.
Proficiency with scripting/automation languages (PowerShell, Python, etc.) to enhance security operations.
In-depth knowledge of common frameworks and standards (NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK).
Proven ability to design and implement Zero Trust and defense-in-depth strategies.
Applies advanced knowledge of Microsoft security technologies and enterprise platforms to solve complex challenges.
Mentors and guides team members, builds trust, and fosters a culture of continuous improvement
Competencies
To perform the job successfully, an individual should demonstrate the following competencies:
Manages Complexity - Asks the right questions to accurately analyze situations, acquires data from multiple and diverse sources when solving problems, uncovers root causes to difficult problems, evaluates pros and cons, risks and benefits of different solution options.
Situational Adaptability - Picks up on situation cues and adjusts in the moment. Readily adapts personal, interpersonal, and leadership behavior. Understands that different situations may call for different approaches. Can act differently depending on the circumstance.
Optimizes Work Processes - Identifies and creates the processes necessary to get work done, Separates and combines activities into efficient workflow, Designs processes and procedures that allow managing from a distance, Seeks ways to improve processes,
Collaborates: Builds partnerships and works collaboratively with others to meet shared objectives.
Organizational Savvy: Maneuvers comfortably through complex policy, process, and people-related organizational dynamics.
Directs Work: Provides direction, delegates, and removes obstacles to get work done.
Other Duties
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this position. Duties, responsibilities and activities may change at any time with or without notice. Work beyond 40 hours per week may be required.
Cirrus is dedicated to a drug free work environment promoting equal employment opportunity. Qualified applicants will receive consideration for employment without regard to race, sex, national origin, color, age, disability, religion, pregnancy, veteran status, marital and family status, sexual orientation, receipt of public assistance, genetic information or any other characteristic protected by applicable law.
Our Benefits: Cirrus provides a range of exciting benefits, including:
401(k) Plan: Dollar-for-dollar match up to 5% after 90 days, with 100% vesting.
Employer-Paid Coverages: Group term life, short- and long-term disability insurance.
Comprehensive Health Coverage: Medical, vision, dental, with additional dependent coverage options.
Free Health Tracking: With rewards for meeting health goals.
Generous PTO: 120+ hours accrued within the first year.
Employee Referral Bonus: For referring talented candidates.
Career Development: Tuition reimbursement and professional growth opportunities.
Exclusive Discounts: Access to partner and marketplace discounts.
Community & Engagement: Company and employee clubs at various locations.
These benefits are designed to support your well-being, growth, and enjoyment at Cirrus!
Security Strategy Senior Analyst - Governance Risk and Compliance
Security architect job in Washington, MN
The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.
Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us - whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop - GSO protects their data and privacy, so they can have a secure and trustworthy experience.
The Security Strategy, Risk, and Resilience (SRR) team is responsible for TikTok's Governance, Risk and Compliance function working closely with cross-functional partners to manage security risks, mature security operations, and build organizational resilience. We support our partners in meeting industry cybersecurity compliance standards and government regulations by developing and driving the organization's cybersecurity strategy, establishing and maintaining a comprehensive business continuity management program, creating and maintaining governing security policies, implementing our security control framework, conducting regular security risk and control assessments, and staying up-to-date on global compliance initiatives and evolving regulatory requirements.
The Cybersecurity Strategy Senior Analyst plays a critical role in supporting the development and execution of strategic initiatives and metrics programs across TikTok's Global Security Organization. You will help define what "best-in-class" looks like for a rapidly growing global cybersecurity team by driving data-informed decision-making, maturity modeling, and performance measurement. This role involves working closely with cross-functional stakeholders to align cybersecurity efforts with broader organizational goals while contributing to the department's strategic direction and operational excellence. You would be a great fit for this role if you are enthusiastic about:
1. Using data and metrics to tell compelling stories and influence decisions at the highest levels of leadership
2. Thriving in a fast-paced, ambiguous environment with a passion for building frameworks and programs from the ground up
3. Collaborating with technical and non-technical stakeholders to build visibility and alignment around cybersecurity goals and performance
Responsibilities
As a Cybersecurity Strategy and Metrics Senior Analyst, you will be responsible for:
* Supporting the development and execution of the department-wide cybersecurity strategy and multi-year maturity roadmap
* Designing and maintaining cybersecurity performance measurement frameworks, including department KPIs, KRIs, OKRs, and executive dashboards
* Developing maturity models and measurement tools to assess and monitor cybersecurity capabilities across teams and functions
* Providing regular reporting and briefings to leadership, summarizing progress against strategic goals, identifying areas for improvement, and recommending adjustments
* Conducting benchmarking and trend analysis to assess the organization's performance relative to industry standards and peers
* Partnering with leadership to identify strategic gaps and support initiative development, prioritization, and tracking
* Supporting strategic planning cycles, initiative management, and documentation efforts that align with both security and business priorities Minimum Qualifications:
* Strong understanding of cybersecurity domains and frameworks (e.g., NIST CSF, ISO 27001, MITRE ATT&CK) and how to translate them into measurable objectives
* Experience designing and operationalizing metrics or performance programs in a cross-functional environment
* Strong analytical and project management skills with the ability to lead initiatives and drive results with multiple stakeholders
* Excellent communication skills, with the ability to translate complex data and strategy into business-relevant narratives
* Ability to work at the Washington DC or New York office for 5 days per week and willingness to travel to other offices, including international locations, as required to support business needs
Preferred Qualifications:
* Strong experience in cybersecurity, GRC, metrics development, strategic operations, or a related field
* Strong experience in security strategy, cybersecurity operations, metrics programs, consulting, or related areas
* Experience working with data visualization tools such as Tableau, Power BI, or internal dashboards
* Relevant certifications (e.g., CISSP, CRISC, CISM, PMP, or other strategy or security-related certifications)
Principal Enterprise Security Engineer
Security architect job in Tower, MN
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.
Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.
Principal Enterprise Security Engineer
Location: Remote
Reports To: VP of Infrastructure and Security
Department: Infrastructure and Security
About the Role
We are seeking a seasoned Principal Enterprise Security Engineer to design, implement, and manage enterprise-wide security solutions. You'll shape our security strategy across endpoint protection, network, SaaS, IAM, and observability, while aligning to NIST and CIS standards. This role reports to the Head of Enterprise Security, with close collaboration with the CISO, CISO staff, and cross-functional teams.
Key Responsibilities
Security Architecture & Governance
Architect enterprise security solutions across endpoints (EDR/XDR), networks, SaaS, and identity/infrastructure.
Ensure compliance with NIST SP 800-53, CIS benchmarks, and FedRAMP (Low/Moderate/High) standards.
Design for DoD Impact Levels IL‑4 and IL‑5 environments, integrating enhanced controls beyond FedRAMP High
IAM & Access Management
Implement and manage IAM frameworks: RBAC, MFA, SAML, OAuth, SCIM.
Regularly review and optimize privilege configurations.
Endpoint & Network Security
Deploy and manage endpoint security tools (e.g., CrowdStrike, SentinelOne).
Define network security strategies including firewalls (e.g., Palo Alto), micro-segmentation, VPNs.
Develop and maintain device health assessments and dashboards leveraging device telemetry from enterprise security tooling.
Configure and maintain Data Loss Prevention (DLP) tooling & policies.
Support security deployments and configurations across multiple operating systems - Windows 10/11, mac OS, Window Server, RHEL, Oracle, CentOS
Experience with Security Service Edge and Software-Defined Perimeter enables ZTNA solutions such as NetSCOPE, Zscaler, and PAN
SaaS Security & Cloud Compliance
Secure SaaS applications using SSPM tools and integrate them into governance frameworks.
Maintain compliance evidence for FedRAMP/DoD IL audits and ATO packages
Incident Response & Threat Intelligence
Lead incident response efforts: detection, triage, investigation, mitigation, and post-mortems.
Coordinate with threat intel teams to feed strategic threat insights into detection logic and tools.
Vulnerability Management & Observability
Own vulnerability scanning, CVE tracking, patch-rollout, and POA&M development.
Build and tune observability systems (SIEM, EDR, logging, telemetry) to support security posture.
Automation & Scripting
Automate security workflows using Python, PowerShell, Bash, or similar languages.
Integrate automation into tooling for reporting, incident response, compliance, detection, and remediation.
Collaboration & Communication
Collaborate with the CISO and staff to align security initiatives with organizational strategy.
Communicate technical concepts clearly to leadership, compliance, legal, and engineering teams.
Develop and deliver security training and awareness for teams across the enterprise.
Qualifications & Experience
Education: Bachelor's degree in cybersecurity, computer science, engineering-or equivalent years of corporate security/SOC experience.
Experience: 7+ years in enterprise or cloud security with hands-on background in IAM, endpoint/network/SaaS security, incident management, vulnerability management, and log analytics.
Compliance Know-How:
Solid understanding of FedRAMP security controls and audit frameworks.
Experience with DoD IL‑4/IL‑5 programs-understand added encryption, personnel restrictions, and control overlays Technical Skills:
Proficiency with tools like CrowdStrike, Palo Alto, F5, Splunk/ELK, and IAM platforms (Okta, Entra ID, etc.).
Strong scripting/automation using Python, PowerShell, Bash, etc.
Security Frameworks: NIST SP 800-53/171, CIS Benchmarks, FedRAMP, DoD CC SRG.
Soft Skills: Strong verbal and written communication; ability to convey complex topics to executives; experience working with stakeholders across multiple time zones.
Nice to have experience with F5 BigIP LTM
Personality Traits: Strategic thinker, collaborative, proactive, with the ability to thrive in fast-moving environments.
#LI-TL2
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.
The annual base pay for this position is: $152,000.00 - $228,000.00
F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change.
You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link:
*******************************************
. F5 reserves the right to change or terminate any benefit plan without notice.
Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com).
Equal Employment Opportunity
It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
Auto-ApplySecurity Systems Engineer l
Security architect job in Minneapolis, MN
As a Systems Engineer, you will perform discovery and analysis of business and contractual requirements to define systems and sub-systems architecture and technical design packages. This position works in conjunction with Systems Designers/Engineers and the Project Management team to determine technical requirements for project work and to ensure fit and suitability of our product offering within the client environment.
Responsibilities:
Prepare high level system designs in a thorough and professional manner during the pre-sales cycle. Design work may include conducting site surveys and device mark-ups, network architecture design, server loading, writing technical narratives and proposals, and preparing bills of materials
Produce detailed design drawings and technical descriptions of physical security, other building technologies and the supporting networking, server and storage architectures in collaboration with owners and their representatives.
Develop design documents that will guide the technical installation and configuration of systems
Develop financial and logistics estimates, both independently and in collaboration with Paladin Technologies sales, marketing, and project management professionals
Multi-task and manage time effectively to prioritize projects, tasks, and meetings as necessary
Identify, establish, and document processes to support design efficiency and scalability
Develop productive relationships with clients and key stakeholders which will build respect and confidence in the organization's capabilities.
Understand and maintain an awareness of the productivity and profitability of work carried out by the organization
Pursue and maintain education and professional development of technology systems related to the technical disciplines you will lead.
Required Qualifications:
A minimum of one year of design experience in the Security, AV, networking or instrumentation and controls.
A strong understanding of the physical security, including an awareness of complimentary products, technologies, trends, and the general application of physical security technology
Experience with the following technologies is required:
Bluebeam Revu, IP networks, low voltage electronics, power and communications, Windows desktop operating system, Microsoft Office
An understanding of and experience with fundamental concepts pertaining to IP networks, low voltage electronics, power, and communications
A strong command of the English language supported by excellent written and verbal communication skills
The ability to simultaneously handle multiple tasks and projects and be responsive to changing priorities in a fast-paced environment
Preferred Qualification:
Post-secondary education from an accredited college, university, or technical institution in Business, Construction Management, Electronics, Engineering, Information Technology, or a related field
P.Eng, EIT, CET, or equivalent professional technical designation is preferred
Highly developed analytical and problem solving skills
Motivated self-starter with ambition to independently research new technologies as well as engineering and business methodologies/concept
Field experience in a construction environment is an asset
Physical Demands:
In general, the following physical demands are representative of those that must be met by an employee to successfully perform the essential functions of the job.
Must be able to effectively communicate, (i.e., see, hear, speak, and write clearly) in order to communicate with colleagues and/or customers; manual dexterity required for occasional reaching, lifting of light office objects, and operating office equipment
Position is a desk job requiring the use of computer, keyboard, and phone
Working Conditions:
In general, the following conditions of the work environment are representative of those that an employee encounters while performing the essential functions of this job.
The office is clean, orderly, properly lighted, and ventilated. Noise levels are considered low to moderate
This is an office-based position
COMPENSATION : $70,000 - $83,000k (DOE)
Company Info:
Paladin Technologies is a premier North American complex systems integrator for building technology solutions, including IP security, alarms & monitoring, audio visual, low-voltage infrastructure, and networking. As a leader in the design, deployment, optimization, management, and maintenance of communication and digital networks, Paladin can meet the needs of clients on a national scale, while providing local support. Our team is the best in the industry, with manufacturer trained technicians, PMP-certified project managers, CTS- and RCDD-certified design engineers, coordinators, and administrative resources.
Paladin has offices coast to coast across the United States and Canada, and nearly 1,700 talented and committed professionals dedicated to custom-crafting and installing technology solutions for clients requiring Integrated Security, Network Infrastructure, Audio Visual, Fiber Optics/OSP, Structured Cabling, and more. We are always at the forefront of the changing technology landscape, and through continued training, complex client projects, and company support, we provide our colleagues with exciting challenges and a rewarding career as Paladin continues to grow.
This company considers candidates regardless of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Equal Opportunity Employer, including disability & veterans, or any other characteristic protected by law. If you need accommodation for any part of the application process, please send an email or call ************** to speak with Human Resources and let us know the nature of your request.
We thank you for your application, however only those selected for an interview will be contacted.
Auto-ApplySystems Security Engineer
Security architect job in Prior Lake, MN
Are you an identity innovator ready to jump in, look at a system, and take it somewhere? Join us as a Systems Security Engineer - a role that blends the technical depth of IAM with the creativity to improve and automate how access happens across the enterprise. This isn't your typical side of cybersecurity - it's where code development, system management, and smart integration meet. From auditing permissions and refining processes to collaborating across teams, you'll have the opportunity to make a wide variety of impacts every day. Enjoy weekly pay, 401(k) starting day one, and health benefits. Whatever your career goals may be, let Mystic Lake Casino help get you there!
Job Overview: Provide engineering development and support for Identity and Access (IAM) management activities related to system software, hardware, performance, problem determination or resource management requiring communication and coordination with vendors, technicians, clients, and management. Actively integrate identity system with other operational systems to achieve single view of all identity access, while providing efficient automation for identity access changes. Perform procedures necessary to manage security and account permissions to protect information systems across the enterprise. Validate information security procedures are updated, communicated and followed. Audit and grant account permissions to network resources and applications. Perform reviews of security logs and controls. Facilitate the remediation of vulnerabilities and inconsistencies. Document and track information security issues or incidents. Assist with security assessments based on the direction of the Director of Cybersecurity.
Elevate & Thrive: Key Responsibilities:
Work with Identity Access Management (IAM) suite of products and processes; developing and providing support services for IAM deployment; defining and standardizing IAM processes; code development; performing analysis of various projects and requests; developing designs for projects that have medium to high complexity; formulating procedures and implementing business solutions.
Building Identity and Access (IAM) management systems integrations across various applications, technologies and cloud services, providing both identity and data governance to entire organization.
Work closely with business units, application teams, infrastructure areas and vendors to identity, review and evaluate the solution requirements.
Review and provide recommendation on new technologies, roadmaps and vendor product offerings specific to server, software technologies and other products.
Provide consultation and work closely with other functional infrastructure areas on multiple initiatives to meet common organizational business goals and objectives.
Participate in and provide consulting to project teams on design development, integration opportunities, planning of systems and assures it is aligned to our established strategies, guiding principles, rationales and practices.
Ensure IAM solution provides best in class governance, availability and operational efficiency to meet business needs.
Job Requirements:
Bachelor's degree required (Cybersecurity or an equivalent discipline preferred)
5+ years of IT experience with 3+ years of Information Security experience
Strong scripting knowledge (PowerShell, Beanshell and JavaScript) preferred
Sailpoint IAM product suite experience preferred
Demonstrate a strong understanding of tools, technologies, security strategies and their implications on the broader business environment
Have a strong understanding of Information Security concepts, protocols, industry best practices and strategies
Have experience with Active Directory security administration in a large Windows network
Demonstrated background of Windows NTFS and Share Permissions
Ability to develop internal processes and procedures as it relates to day-to-day system security administration
Have experience with common Information Security Management frameworks, such as International Standards Organization (ISO) 17799/27001, the IT Infrastructure Library (ITIL) and the National Institute of Standards and Technology (NIST) frameworks
Have excellent technical knowledge of mainstream operating systems (for example, Microsoft Windows and Unix/Linux) and a range of security technologies such as identity and access management systems
Experience in general technical knowledge of current network hardware/software, protocols, and standards
Experience in conducting research into information security issues, reviewing logs and evaluating security controls
Outstanding Benefits & Awesome Perks: Enjoy competitive weekly pay, outstanding benefits, and advancement opportunities at the SMSC Gaming Enterprise. Eligible Team Members are offered a comprehensive benefits package include medical, dental, life and disability insurance, onsite medical clinics and pharmacy, 401(k) retirement plan, paid time off, wellness programs and more. Plus, take advantage of perks like discounts on childcare, fuel, bus passes and fitness membership, free uniforms and free uniform cleaning, and tuition reimbursement.
Who We Are: We're not just in the business of entertainment; we're in the business of crafting unforgettable experiences. We believe in the power of possibility, to unite and uplift, rallying around every triumph, big and small. At Mystic Lake and Little Six, every moment is a chance to be the experience.
Different backgrounds, different strengths, and different passions, we value the diversity that everyone brings to the table. Our values are a direct reflection of the diverse communities that we proudly serve, represent, and invest in. We invite you to the place to learn, grow, thrive and lead. Let's create moments that matter, celebrate diversity, and build a brighter future for all.
Be the Experience. Be Bold. Be Mystic.