Personnel Security Specialist
Security architect job in Los Angeles, CA
MANTECH seeks a motivated, career and customer-oriented Personnel Security Specialist II to join our team in El Segundo, CA.
The Personnel Security Specialist's primary function is to handle personnel security functions in support of the customer's facility and organization. The position will provide day to day PERSEC services for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Responsibilities include but are not limited to:
Build and Maintain tracking spreadsheets/databases for customer PERSEC activities.
Provide support for the security awareness and education programs.
Perform miscellaneous administrative support functions as directed by the contractor site lead and/or the Government Security Representative.
Review, track, and monitor security clearance processing activities with appropriate government personnel to achieve appropriate clearance actions.
Conduct Defense Central Index of Investigations (DCII), Joint Personnel Access System (JPAS), and SAPNP reviews of candidates being submitted for SAP access.
Perform data entry and record checks in the Joint Access Database (JADE) and maintain all customer sponsored personnel access information.
Receive and/or transmit classified visit requests as necessary to meet customer needs.
Minimum Qualifications:
Bachelor's degree; an additional 4 years of related experience might be considered for a degree.
6 + years of related experience.
4 + years of relevant SCI or SAP experience.
Must be familiar with security policy/manuals and the appropriate ICDs/JAFANs/DOD Manuals and other guiding policy documents.
Clearance Requirements:
Current Top Secret Clearance with SCI Eligibility.
Eligibility for access to Special Access Program Information.
Willingness to submit to a Counterintelligence polygraph.
Physical Requirements:
Must be able to remain in a stationary position 50%.
Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.
Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Security Architect
Security architect job in Santa Ana, CA
1. Security, Compliance and Audit Readiness
a. Enforce network security controls aligned with Criminal Justice Information Services (“CJIS”), National Institute of Standards and Technology (“NIST”), and department policy.
b. Implement and maintain firewall rulesets, Network Access Control (“NAC”) solutions (e.g., Cisco Identity Service Engine (“ISE”)), and endpoint access policies.
c. Support the cybersecurity team in incident detection, forensic analysis, and mitigation strategies.
d. Provide documentation and evidence for security audits and compliance reviews.
2. Implementation, Operations and Support
a. Serve as the hands-on engineer for network deployment, upgrades, and incident response.
b. Configure and manage Cisco switches, routers, firewalls, WLCs, and wireless endpoints.
c. Design and manage VPNs, QoS, ACLs, network monitoring, and logging systems (SolarWinds, NetFlow, SNMP).
3. SME Leadership and Staff Development
a. Serve as the department's SME on enterprise security, guiding decisions across IT, public safety systems, and operations.
b. Train, coach, and mentor internal IT staff, including junior and mid-level network technicians.
c. Lead structured knowledge transfer sessions, hands-on training, and real-time coaching during support and implementation activities.
d. Create SOPs, how-to guides, and step-by-step documentation tailored for ongoing use by internal staff.
e. Support staff in preparation for certification paths (e.g., CCNA/CCNP) if desired.
4. Any other activities reasonably related to the foregoing, as assigned by OCSD.
Security Architect
Security architect job in Torrance, CA
Cloud Security
AI Security
Container Security
Cyber Risk Assessment
Identity and Access Management (IAM)
DevSecOps
CISSP / CCSP / CISA / CCNP (Certifications)
Daily Tasks Performed:
• Security Design and Architecture: Knowledge of security design and architecture for organizational systems to meet defined cybersecurity needs; ability to embed security principles into the design goals while minimizing the risk from cyber security threats and vulnerabilities.
• Cross-functional Collaboration: Knowledge of collaborative techniques and approaches; ability to promote a culture of continuous improvement and working together across functions to solve business problems and meet business goals.
• Frameworks and Industry Standards: Knowledge of cybersecurity enterprise programs, policies, and standards to govern the organization's approach towards protecting their systems; Ability to align them with regulations, organization's context, operating environment, and cyber threats.
• Communicating Complex Concepts: Knowledge of effective presentation tools and techniques to ensure clear understanding; ability to use summarization and simplification techniques to explain complex technical concepts in simple, clear language appropriate to the audience.
• Domain Knowledge: Knowledge of a specific domain, its current trends, directions, and regulatory considerations; ability to apply domain-specific knowledge to relevant situations.
• Technical Excellence: Knowledge of a given technology and various application methods; ability to develop and provide solutions to significant technical challenges
• Cybersecurity Expertise: Knowledge of the processes, tools, and techniques in the cybersecurity domain; ability to deploy and monitor cybersecurity measures, while detecting, controlling, and preventing cybersecurity breaches.
What this person will be working on:
This is a Security architect role and will include Cloud Security, AI Security, endpoint security, Network security and other security domain areas as needed
Position Success Criteria (Desired) - 'WANTS'
Qualification:
IS related bachelor's degree and/or equivalent work experience.
5+ years of IT business work experience
Desired Certifications: CISSP, CCSP, CCNP, CISA, or equivalent are highly desirable
• Problem Solving: Knowledge of approaches, tools, techniques for recognizing, anticipating, and resolving organizational, operational or process problems; ability to apply knowledge of problem solving appropriately to diverse situations.
• Conceptual Thinking: Knowledge of thinking and reasoning at a conceptual level; ability to identify the critical ideas and interdependencies among system elements that impact performance.
• Cloud Security: Knowledge of tools, technologies, and processes of cloud security; ability to minimize security risks to secure cloud computing services.
• Container Security: Knowledge of containerization technologies, secure image practices, runtime security, secure networking, and incident response; ability to design, develop, and implement secure container environments, while assessing risks, leading audits, and advocating for best practices, enables effective protection of containerized environments.
• AI Security: Designs secure architectures for Gen AI systems with a focus on threat modeling, data protection, and adversarial risk mitigation. Ensures secure deployment, access control, and compliance with AI governance and regulatory standards. Collaborates cross-functionally to embed security across the AI/ML lifecycle. Knowledge of tools, technologies related to AI development and security.
• Cyber Risk Assessment and Mitigation: Knowledge of cyber risk assessment and mitigation strategies across the systems' life cycle; ability to assess risks timely and propose countermeasures.
• Threat Analysis and Defense: Knowledge of characteristics, behaviors, capabilities, intent, and interactions of incoming cyber threats; ability to analyze the threats and develop defense and mitigation strategies to effectively combat such threats.
• Identity and Access Management: Knowledge of security administration; ability to manage access to computers, infrastructure, networks, and applications.
• DevSecOp: Knowledge of concept, principles, methodologies of DevSecOps; ability to utilize related tools and techniques to integrate security into DevOps processes.
Director of Information and Data Security
Security architect job in Santa Clara, CA
Role Purpose
The Director of Information and Data Security will establish and lead Eltropy's IT and cybersecurity function, responsible for developing foundational systems, processes, and governance across infrastructure, data protection, and compliance. This leader will drive security maturity across the organization by balancing hands-on execution with long-term strategic planning, and by partnering with external GRC consultants to build a scalable security and compliance framework aligned with industry standards such as SOC 2 and ISO 27001.
Location: Santa Clara, CA (Hybrid)
Department: IT, Cyber Security and Ops
Employment Type: Full-Time
Minimum Experience: Senior Manager/Supervisor
Compensation: $200,000-$240,000 (Base + Bonus)
Strong cybersecurity background, with experience leading threat detection, incident response, and proactive security risk management across cloud and enterprise environments.
Key Responsibilities
IT and Infrastructure Security
Oversee endpoint management, asset inventory, and identity and access management
(IAM).
Establish standards for device hardening, patch management, and secure configuration.
Define and manage the budget for all security and IT tools, services, and human capital,
ensuring cost-effectiveness and alignment with the overall security roadmap.
Implement centralized visibility and control across systems and SaaS applications.
Cybersecurity and Data Protection
Lead threat detection, vulnerability management, and incident response operations.
Implement and maintain a Cloud Security Posture Management (CSPM) solution to
monitor cloud infrastructure (AWS/Azure) for misconfigurations and compliance issues.
Deploy and tune SIEM/XDR solutions to enhance visibility and threat detection across
environments.
Conduct regular penetration testing, track remediation, and drive security awareness
programs.
Define and enforce data protection policies covering classification, encryption, and
retention.
Governance, Risk, and Compliance (in partnership with GRC Consultant)
Partner with external GRC consultants to design and operationalize Eltropy's information
security and compliance framework.
Translate consultant-driven recommendations into actionable internal controls, policies,
and monitoring mechanisms.
Manage the Third-Party Risk Management (TPRM) program, including vendor due
diligence, security questionnaires, and ongoing risk monitoring.
Maintain a centralized risk register and oversee remediation tracking.
Own operational compliance for frameworks such as SOC 2, ISO 27001, and GDPR.
Security Architecture and Product Collaboration
Work closely with Engineering and Product teams to embed security-by-design principles
in SaaS architecture and cloud deployments.
Implement automated security testing (SAST/DAST) within the CI/CD pipeline to shift
security left and reduce vulnerabilities early in the development lifecycle.
Review architecture and third-party integrations to ensure alignment with data security
and privacy standards.
Incident Management and Business Continuity
Establish and operationalize the company's Incident Response Plan (IRP) and Business
Continuity/Disaster Recovery (BCP/DR) framework.
Conduct tabletop exercises and post-incident reviews to enhance preparedness and
learning.
Security Awareness and Culture
Develop and implement a company-wide security awareness program.
Partner with HR and Operations to ensure onboarding/offboarding includes security
compliance and periodic training.
Foster a security-first culture emphasizing accountability and vigilance across teams.
Leadership and Department Setup
Build and lead a high-performing IT and Security team, including IT administrators and
cybersecurity engineers.
Define structure, roles, and hiring priorities aligned with the company's growth stage.
Create a phased roadmap for security maturity, including technology adoption and process optimization.
Key Performance Indicators (KPIs)
Security Tool Coverage: Achieve at least X% deployment and agent coverage across all
corporate and cloud assets within the first 6 months.
Vulnerability Remediation: Maintain average time-to-remediate critical and high
vulnerabilities below X days.
Compliance Milestones: Achieve SOC 2 / ISO 27001 readiness within agreed timelines.
Asset Visibility: 100% endpoint and asset inventory completeness.
Incident Management: Reduction in mean time to detect (MTTD) and mean time to
respond (MTTR) for incidents.
Team Ramp; Process Setup: Completion of key hires and operational processes within the first
year.
Requirements
Independent, self-starter with strong ownership and execution bias.
Ability to prioritize and execute in a resource-constrained, fast-paced SaaS environment.
Strategic thinker with operational depth; able to balance long-term maturity goals with
immediate risk mitigation.
Excellent communication skills with the ability to influence and align cross-functional
stakeholders.
Proven experience setting up IT or cybersecurity programs in a SaaS or technology
environment.
Strong understanding of endpoint protection, cloud infrastructure security (AWS/Azure),
IAM, and network security.
Experience with SIEM and/or XDR deployment and tuning for threat detection and
monitoring.
Familiarity with CSPM, SAST/DAST, and vulnerability management tools.
Knowledge of GRC frameworks (SOC 2, ISO 27001) and translating them into practical,
auditable controls.
Reporting to:
VP of Operations
Level:
Senior Leadership
Direct Reports:
IT Team
Cybersecurity Engineer(s)
Senior Security Architect
Security architect job in Santa Ana, CA
Job Title: Senior Security Architect
Contract Duration: 18 Months
Work Schedule: Monday-Friday, 8:00 AM - 5:00 PM
Interview Process: 1 round virtual, possible 2nd round onsite
Employment Type: Contract (C2C)
Work Authorization: U.S. Citizens or Green Card holders only
Role Overview
We are seeking a highly experienced Senior Security Architect to support a confidential law enforcement agency. This is a fully onsite role requiring strong hands-on cybersecurity architecture expertise, leadership capability, and experience working in regulated or government environments. Candidates must be able to successfully complete Live Scan and background checks.
Required Skills & Experience
7-10 years of combined network engineering and cybersecurity experience
Strong hands-on experience with:
Palo Alto Technologies (NGFW, Panorama, Cortex EDR, Cortex XSOAR, Prisma Cloud)
Cisco Networking (Switches, Routers, Firewalls, WLCs, VPNs)
SIEM technologies and security incident response
Cisco ISE, CyberArk, Tenable
AWS and Azure
Microsoft O365 Security Architecture
Azure Entra ID
ServiceNow
Terraform
Experience with:
Firewall consolidation, migrations, and redesigns
VPN deployments (site-to-site, remote access, third-party integrations)
Wireless security (corporate Wi-Fi, BYOD, IOC)
Network monitoring tools (SolarWinds, NetFlow, SNMP)
Proven leadership experience mentoring and guiding technical teams
Compliance & Security Experience
Strong background in CJIS, NIST, NAC, and audit readiness
Experience supporting law enforcement, public safety, federal, or government environments
Ability to pass Live Scan and comprehensive background checks (no exceptions)
Nice-to-Have Qualifications
Advanced CJIS/NIST compliance and audit experience
Experience creating training programs and mentoring staff toward certifications (CCNA/CCNP)
Strong documentation and communication skills
Prior work in enterprise, public safety, or government networks
Senior Security Architect
Security architect job in Santa Ana, CA
100% On-site | Santa Ana, CA
We are seeking a Senior Security Architect to lead enterprise security operations, compliance, and infrastructure within a mission-critical environment. This hands-on leadership role combines deep Cisco networking expertise, security architecture design, and staff mentorship to ensure audit readiness and operational excellence.
Key Responsibilities:
• Enforce and maintain network security controls aligned with CJIS, NIST, and internal policy frameworks.
• Implement and manage firewall rules, NAC solutions (e.g., Cisco ISE), and endpoint access policies.
• Support incident detection, forensics, and mitigation efforts alongside cybersecurity teams.
• Lead network deployments, upgrades, and response initiatives across Cisco infrastructure.
• Configure and manage switches, routers, firewalls, WLCs, and VPNs.
• Design and optimize QoS, ACLs, and network monitoring (SolarWinds, NetFlow, SNMP).
• Act as a Subject Matter Expert (SME), mentoring internal IT staff and guiding certification readiness (CCNA/CCNP).
• Create and maintain SOPs, documentation, and training materials for ongoing operations.
Top Skills Required:
• Cisco networking (switches, routers, firewalls, WLCs, VPNs)
• Security & compliance (CJIS, NIST, NAC, audit readiness)
• Network monitoring (SolarWinds, NetFlow, SNMP, ACLs, QoS)
• Leadership & mentoring (staff training, documentation, SME guidance)
Nice-to-Have:
• Advanced CJIS/NIST compliance experience
• Public safety or government network background
• Proven mentorship and SOP development experience
#SecurityArchitect #NetworkSecurity #CiscoJobs #CJIS #NIST #Cybersecurity #SolarWinds #NetworkEngineer #OnsiteJobs #CaliforniaJobs #ITLeadership #InformationSecurity #InfrastructureSecurity
Information Security Architect -- MAHDC5660809
Security architect job in San Francisco, CA
Information Security
Need Local to San Francisco, CA
Onsite role
Looking for independent folks.
Top Skills: KQL - kusto query language - used by different Microsoft security tools like sentinel or defender
SPL that Splunk uses
General incident response
actual incident tickets - resolve actual security incident tickets
Requirements
• Self-starter, able to readily explore and learn new areas and concepts.
• Knowledge and experience normally acquired through, or equivalent to, the completion of a Computer Science or Computer Engineering Bachelor's degree with a minimum of 5 years of job-related experience.
• Degrees in Computer Science or Engineering and/or relevant technically focused certifications in Cloud and/or enterprise security architecture such as GCAD or GDSA are advantageous
Experience with
• AWS commercial or government cloud
• Experience securing critical workloads in a cloud environment.
• Knowledge and experience with Databricks, Starburst, Collibra and Immuta is advantageous.
Job Role Summary
Lead and produce system threat models for integration of commercial components into a data lake platform. Help design secure cloud architectures. Propose effective security controls within the environment and identify and mitigate security vulnerabilities. Simplify complex security topics, lead discussion in technical and business teams, communicate risk accurately.
Skills
• Able to create AWS secure cloud architecture designs
• Understand current security threats, techniques, and landscape
• System threat modeling of applications and platforms
• Able to identify and provide mitigation for security vulnerabilities within applications and application environments based on threat models.
• Able to simplify complex security topics for consumption and critical decision making.
• Clear and accurate communication
• Able to lead/direct discussions with technical and business teams to achieve common goals.
• Able to work well within a team and support team goals
• Understand cyber security frameworks such as NIST 800-53
• Ability to work on a geographically distributed team across multiple time zones
• Familiarity with SAFe a plus
Responsibilities
• Evolve and mature our models, templates, standards and procedures related to secure application development and secure application and cloud architecture. Ensure these artifacts are in alignment with FRS policy and standards.
• Consult with our development teams to help them align with FRS policy and standards and meet the risk appetite of the customer.
• Work with members of application development teams to review and create secure application and infrastructure designs and patterns.
• Assist development teams by reviewing threat models related to applications and related systems. Analyze potential business impact and exposure leading to risk, based on emerging security threats, vulnerabilities, configurations, threat actor TTPs, etc.
• Evaluate CICD pipeline design, and related development team processes and help to mature and secure creation, management and utilization of pipelines.
• Assist in identification and integration of security focused tooling into development and operations processes.
• Support secure application architecture within the Federal Reserve System by fostering constructive dialogue and seeking resolution when confronted with discordant views.
• Solicit feedback and continuously improve your knowledge, skills and capabilities related to the position.
• Assist with recruiting activities and administrative work.
Security Architect GCP
Security architect job in Sunnyvale, CA
Security Architect / Implementation Engineer
Duration: 6 Months contract with possibility of extension
We are seeking a highly skilled Security Architect / Security Implementation Engineer with expertise in designing, implementing, and integrating Google Cloud Security Command Center (SCC), Chronicle SIEM, and Cybereason XDR. The candidate will be responsible for architecting the end-to-end solution, implementing GCP native security controls, integrating third-party security tools, and producing detailed design and operational documentation.
Key Responsibilities:
Design and architect cloud-native security controls in GCP aligned with security and compliance frameworks (CIS, ISO 27001, NIST, etc.).
Implement Google Security Command Center (SCC) for threat detection, vulnerability management, and risk insights.
Architect and configure Chronicle SIEM for log ingestion, correlation, and advanced threat analytics.
Integrate Cybereason XDR with SCC, Chronicle, and other security tools to establish end-to-end threat detection and response workflows.
Define use cases, rules, policies, and security playbooks to automate detection and response.
Document the solution architecture, design decisions, configuration standards, and integration workflows.
Conduct knowledge transfer sessions with security operations and support teams.
Collaborate with GCP Cloud Platform teams, SOC teams, and compliance teams to align solutions with enterprise policies.
Required Skills & Experience:
8-12 years of overall IT security experience with at least 4-5 years in Google Cloud Security.
Proven experience with Google Security Command Center (SCC), Chronicle SIEM, and XDR platforms (Cybereason preferred).
Strong knowledge of GCP IAM, VPC Service Controls, Cloud Armor, DLP, Cloud Logging, Cloud Monitoring.
Hands-on experience in integrating SIEM, XDR, and native GCP security tools.
Experience with Terraform, Deployment Manager, or automation frameworks for security deployment.
Strong documentation and presentation skills.
Security certifications preferred: Google Professional Cloud Security Engineer, GCP Professional Architect, CISSP, CISM, CCSP.
Senior Security Cloud Engineer - Top VC Firm
Security architect job in Menlo Park, CA
Help support the CISO at one of the world's largest venture capital firms, working at the intersection of cloud security, AI and cutting-edge technology.
You'll be joining a lean and highly technical security team, where your impact will be immediate and visible. This role is balanced between seniority and technical depth. You'll be trusted to support and advise the CISO, contribute to strategic decisions and act a senior technical voice, while remaining deeply hands-on as a cloud security engineer.
The environment is heavily cloud based, (primarily Azure, with some AWS) and increasingly focussed on AI platforms and MCP workloads. You'll work closely with AI development, data engineering and platform teams to ensure security is embedded.
Ideally, you'll be coming from a similar role, operating in a senior position while remaining technical day-to-day, with coding in python, terraform or SQL. Whilst this role requires general security experience, you will need to have a background specifically in cloud security.
This role is based in Menlo Park.
Interested in finding out more? No up-to-date resume required.
Infrastructure & Security Engineer (Platform)
Security architect job in San Francisco, CA
In this role, you will drive the evolution of our infrastructure and security posture. You will have substantial ownership over our technology choices and implementation for deployment, observability, storage, and security. You will identify, triage, and implement incremental improvements in all of these domains, working closely with backend engineers and internal and external auditors to develop appropriately scoped interventions. You will work with engineers to ensure that security considerations are baked into software development from the outset.
You should have a broad understanding of modern best practices around cloud architecture, data governance and infrastructure as code. You should approach questions of infrastructure and security risk with a sense of nuance and good judgment. You should be able to build consensus around your threat models such that the necessary consequences seem natural to other stakeholders.
In this role, you will need to be fluent in Python and Terraform (at least to start).
Company & Funding
We're building the world's largest long-term insurer, using digital money and AI to serve billions of people profitably. We want anyone, anywhere, to be able to save for their future, protect their family, and build wealth across generations.
We face a once-in-a-century opportunity to build a vertically integrated life (re)insurer. Our product offerings are globally unique, making it possible for us to scale our balance sheet, build modern systems from scratch, and then directly compete to win a market that is 3% of global GDP.
We've raised over $140M to date. Sam Altman and Lachy Groom led our initial raise, and they've since been joined by leading investors in AI, insurance, and Bitcoin, including Northwestern Mutual, Apollo, Bain Capital, Pantera, Haun, Framework, Fulgur Ventures, MS&AD, Mouro, Stillmark, and Wences Casares.
Our Bermuda operating subsidiary holds the the world's only license to issue life insurance denominated entirely in Bitcoin. It's also the only company in the world with audited financials stated in Bitcoin. (If you join us, you can expect to do a lot of things no one's ever done before.)
Engineering at Meanwhile
With the advent of ubiquitous AI tooling, the dynamic range in individual engineering effectiveness is only widening.
At Meanwhile, we're planning for a world in which small, tight-knit engineering teams (supported by a small, tight-knit platform team) own entire lines of business, and are compensated accordingly.
We're attacking a huge market with the leanest, most effective team in insurance. Where incumbents employ a thousand people, we think we can make it work with a hundred or a dozen.
We're looking for hungry ICs (and former managers who see the writing on the wall) interested in pushing the boundaries of engineering productivity in a vertically integrated, regulated organization.
We're growing quickly. You will fix million-dollar bugs.
On the business side, we hire for deep domain expertise, ambition, and the creativity to figure out the previously impossible. Because our engineers work closely with people from the business, they need curiosity, flexibility, an appetite for (and the ability to digest) complex context, and strong communication skills.
Our view is that ownership is taken, not given. You will be successful here if your work progressively builds others' trust in your ability to identify, attack, and solve larger and larger problems, including those that no one else has anticipated.
We believe that "code wins arguments," that prototyping is often the best first step in a design process, and that the impact of velocity is non-linear.
You are excited by putting up multiple meaningful changes, or writing thousands of lines of code, in a day (even though you know that deleting lines of code is more exciting than writing them, and that, occasionally, deep reflection is required in order to ship anything).
You aren't fazed by building systems that don't work out - sometimes, you have to throw code away.
Intellectual honesty is non-negotiable. You love to learn and to teach, to ask questions and to answer them, and to be transparent about your uncertainty.
You are eager to learn, with the rest of the team, how to work with AI tools, including agents, in order to move faster and ship better, more complete versions of your ideas. You will experiment with new ways of working, with the expectation that some of them will be unsuccessful, and you will teach others what works.
This is the most exciting time in decades to be a competent, technically ambitious engineer. We want to offer you the opportunity to see what's really possible and how much better you can get at your craft.
Senior Security GRC Engineer
Security architect job in San Ramon, CA
At PriMed, your uniqueness is valued, celebrated, encouraged, supported, and embraced. Whatever your relationship with Hill Physicians, we welcome ALL that you are.
We value and respect your race, ethnicity, gender identity, sexual orientation, age, religion, disabilities, experiences, perspectives, and other attributes. Our celebration of diversity and foundation of inclusion allows us to leverage our differences and capitalize on our similarities to better serve our communities. We do it because it's right!
Job Description
We are seeking a skilled Governance, Risk, and Compliance (GRC) Engineer to strengthen our security posture and ensure adherence to healthcare regulations. The GRC Engineer will play a vital role in designing, implementing, and maintaining risk management processes, compliance frameworks, and policies that align with healthcare regulations such as HIPAA and HITECH. The ideal candidate will have experience with tools like SAI360, CyberArk, and other compliance and security platforms.
Job Responsibilities:
Develop, implement, and maintain GRC policies, processes, and controls in alignment with industry best practices and regulatory requirements (e.g., HIPAA, HITECH, NIST, ISO 27001).
Perform risk assessments and develop mitigation strategies for identified security risks.
Administer and optimize SAI360 for governance, risk management, and compliance activities, including reporting and policy management.
Collaborate with cross-functional teams to ensure new projects and systems are designed with security and compliance in mind.
Monitor and report on compliance status, identifying gaps and proposing remediation strategies.
Oversee third-party vendor risk assessments and ensure adherence to security requirements.
Support internal and external audits by providing documentation, evidence, and responses to audit findings.
Conduct security awareness training programs and promote a culture of compliance within the organization.
Required Experience/Skills/Knowledge:
5+ years of experience in Governance, Risk, and Compliance roles or a related field.
Strong knowledge of healthcare regulations, including HIPAA, HITECH, and other relevant standards.
Proficiency in GRC tools such as SAI360 for compliance and risk management.
Experience with privileged access management tools like CyberArk.
Solid understanding of risk assessment methodologies and security frameworks, including NIST CSF, ISO 27001, or COBIT.
Excellent communication and collaboration skills to engage with technical and non-technical stakeholders.
Strong analytical and organizational skills with attention to detail.
This role is critical in maintaining our organization's compliance with healthcare security standards and reducing risk exposure.
Required Education:
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
Equivalent work experience may be considered in lieu of a degree.
Senior Backend Engineer - Cloud Security
Security architect job in Sunnyvale, CA
About Company,
Droisys is an innovation technology company focused on helping companies accelerate their digital initiatives from strategy and planning through execution. We leverage deep technical expertise, Agile methodologies, and data-driven intelligence to modernize systems of engagement and simplify human/tech interaction.
Amazing things happen when we work in environments where everyone feels a true sense of belonging and when candidates have the requisite skills and opportunities to succeed. At Droisys, we invest in our talent and support career growth, and we are always on the lookout for amazing talent who can contribute to our growth by delivering top results for our clients. Join us to challenge yourself and accomplish work that matters.
We're hiring Senior Backend Engineer - Cloud Security in Sunnyvale, CA
What You Will Do
Build containerized microservices and related components for a multi-tenant, distributed system that ingests and processes real-time cloud events, system telemetry, and network data across major cloud platforms. Your work will enable customers to detect risks and strengthen their cloud security posture.
Mentor junior engineers, interns, and new graduates, helping them develop strong technical skills and become effective contributors.
Write production-quality software primarily in Java using Spring Boot, and work extensively with Kafka, SQL, and other data interfaces.
Work within a Kubernetes-based service infrastructure, while learning new technologies as needed.
Take ownership of major features and subsystems through the entire development lifecycle-requirements, design, implementation, deployment, and customer adoption.
Participate in operational responsibilities, gaining firsthand experience with real-world performance, reliability, and support scenarios-informing how you design and build better systems.
Prioritize quality at every stage, performing thorough developer testing, functional validation, integration checks, and performance testing to ensure highly resilient systems.
Collaborate closely with Product Management to review, refine, and finalize requirements.
Develop a deep understanding of customer needs by engaging with peers, stakeholders, and real-world use cases.
What You Bring
Bachelor's degree in computer science or similar (Master's preferred).
5+ years of experience building scalable, distributed systems.
Passion for software engineering, continuous learning, and working in a collaborative environment.
Hands-on experience with AWS, Azure, or GCP, with strong familiarity at the API/programming level.
Experience with networking and/or security concepts is a plus.
Experience developing containerized services on Kubernetes is strongly desired.
Strong programming experience in Java/Spring Boot or Golang.
Experience building or using REST APIs.
Knowledge of infrastructure-as-code tools such as CloudFormation, Terraform, or Ansible is a plus.
Understanding of TCP/IP networking fundamentals.
Experience developing in Unix/Linux environments.
Droisys is an equal opportunity employer. We do not discriminate based on race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law. Droisys believes in diversity, inclusion, and belonging, and we are committed to fostering a diverse work environment
Staff Blockchain Security Engineer
Security architect job in Irvine, CA
About the Company:
Blizzard Entertainment, a global leader in interactive entertainment, has been shaping the world of video games since its founding. Renowned for iconic franchises like
World of Warcraft
,
Overwatch
, and
Diablo
, Blizzard is dedicated to creating immersive, innovative, and high-quality gaming experiences that captivate millions of players worldwide. Our mission is to inspire and connect players through engaging gameplay, compelling storytelling, and vibrant online communities. As we continue to expand our reach in the gaming industry, we remain committed to pushing the boundaries of creativity, technology, and entertainment.
The Role: Staff Blockchain Security Engineer
Blizzard's Application Security (AppSec) team is entrusted with safeguarding the company and its players from software vulnerabilities and security threats. As a Staff Blockchain Security Engineer within AppSec, you will specialize in securing blockchain-based game features, in-game economies, and Web3 integrations. You'll collaborate closely with game development and engineering teams to provide guidance, perform security assessments, and implement best practices throughout the blockchain software lifecycle.
This role requires in-person collaboration two days per week at our Irvine, California headquarters.
Key Responsibilities:
Conduct comprehensive security reviews of blockchain integrations, smart contracts, in-game economy systems, and Web3 features for vulnerabilities and architectural flaws
Advise game development teams on secure blockchain practices and remediation strategies
Establish and maintain secure development processes within the blockchain software lifecycle
Develop, maintain, and improve blockchain-specific security tooling (e.g., fuzzers, static analysis frameworks)
Collaborate with legal, compliance, and risk teams to evaluate security, operational, and regulatory risks of blockchain implementations
Minimum Qualifications:
8+ years in application security, Web3 security, or related disciplines
Proven experience auditing smart contracts, blockchain protocols, or Web3 applications
Expertise in design reviews, threat modeling, secure code review, or penetration testing with a hacker mindset
Strong knowledge of application security principles and common vulnerabilities (e.g., SSRF, race conditions, privilege escalation)
Experience with secure key management, wallet systems, or cryptography
Familiarity with blockchain security tools such as Slither, Echidna, or similar
Scripting or programming experience in Python, C++, JavaScript, or other relevant languages
Ability to balance business goals with security priorities and communicate risks clearly to cross-functional teams
Preferred Qualifications:
Experience in formal verification of smart contracts
Background in blockchain-enabled gaming, DeFi platforms, or NFT ecosystems
Contributions to blockchain security communities, bug bounty programs, or published research
Experience defining and executing long-term blockchain security strategies alongside engineering leadership
Why Blizzard?
Competitive base salary and discretionary annual bonus
Equity opportunities and long-term incentives
Comprehensive health, dental, and vision plans
401(k) with company match
Paid parental leave and flexible time off
A hybrid work model that balances collaboration with flexibility
Salary Range: $170,000 - $250,000. This excludes discretionary bonuses or equity grants, which are determined based on experience, skills, and market standards.
Blizzard Entertainment is committed to building diverse teams that reflect the communities we serve. We are an equal opportunity employer and do not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status. If you require accommodation, please reach out to our People Team.
Amplience CMS Architect
Security architect job in San Francisco, CA
HCLTech is looking for a highly talented and self-motivated Sr. Amplience CMS Architect to join it in advancing the technological world through innovation and creativity.
Job Title: Sr. Amplience CMS Architect
Position Type: Full-time
Location: San Francisco, CA (Remote not allowed, Onsite from day 1)
Role/Responsibilities:
Develop content models, schemas, and templates that align with business requirements
Create and maintain robust integration patterns between Amplience and other platforms via APIs
Architect high-performance, scalable content delivery solutions
Lead technical implementation of existing application maintenance and enhancements
Troubleshoot complex issues and provide technical support for production systems
Collaborate with front-end teams to ensure optimal content consumption and rendering
Document technical designs, processes, and best practices
Mentor junior developers and provide technical guidance to cross-functional teams
Evaluate and implement performance optimization strategies
Minimum Requirements
Amplience CMS Technical Architecture and Implementation
Preferred Qualifications:
Content Modeling, Headless CMS, Performance Optimization, Front-end Development, API Integration, Cloud Platforms (Azure)
Pay and Benefits
Pay Range Minimum: $74,000 per year
Pay Range Maximum: $151,800 per year
HCLTech is an equal opportunity employer, committed to providing equal employment opportunities to all applicants and employees regardless of race, religion, sex, color, age, national origin, pregnancy, sexual orientation, physical disability or genetic information, military or veteran status, or any other protected classification, in accordance with federal, state, and/or local law. Should any applicant have concerns about discrimination in the hiring process, they should provide a detailed report of those concerns to ****************** for investigation.
Compensation and Benefits
A candidate's pay within the range will depend on their work location, skills, experience, education, and other factors permitted by law. This role may also be eligible for performance-based bonuses subject to company policies. In addition, this role is eligible for the following benefits subject to company policies: medical, dental, vision, pharmacy, life, accidental death & dismemberment, and disability insurance; employee assistance program; 401(k) retirement plan; 10 days of paid time off per year (some positions are eligible for need-based leave with no designated number of leave days per year); and 10 paid holidays per year.
How You'll Grow
At HCLTech, we offer continuous opportunities for you to find your spark and grow with us. We want you to be happy and satisfied with your role and to really learn what type of work sparks your brilliance the best. Throughout your time with us, we offer transparent communication with senior-level employees, learning and career development programs at every level, and opportunities to experiment in different roles or even pivot industries. We believe that you should be in control of your career with unlimited opportunities to find the role that fits you best.
Oracle HCM Cloud Architect (Techno-Functional)
Security architect job in Santa Rosa, CA
Job Title: Oracle HCM Cloud Architect (Techno-Functional)
Employment Type: Full-time / Permanent
The Oracle HCM Cloud Architect (Techno-Functional) will be responsible for end-to-end architecture, implementation, and ongoing support of Oracle HCM modules. This individual will collaborate with HR, IT, and Compliance teams to ensure the platform aligns with strategic business objectives, healthcare industry regulations, and California-specific labor laws.
You will serve as the go-to expert across Core HR, Absence Management, Benefits, Talent Management, and Payroll (optional), while driving automation, integration, and best practices.
Key Responsibilities:
Strategic & Architectural
Lead the overall design, configuration, and architecture of Oracle HCM Cloud across multiple modules.
Serve as the techno-functional SME for Oracle HCM, ensuring system alignment with healthcare/dental industry needs.
Partner with HR leadership to define and deliver scalable HR solutions that meet business requirements.
Technical/Functional Implementation
Configure Oracle HCM modules: Core HR, Absence, Benefits, Talent, Learning, and Payroll (if applicable).
Translate business processes into system requirements and Oracle HCM configurations.
Develop functional specifications for integrations with payroll systems, third-party vendors, and benefit providers.
Support, Compliance & Optimization
Ensure compliance with California labor regulations, ACA requirements, and healthcare-specific policies.
Manage security roles, access controls, and workflow approvals.
Troubleshoot system issues, lead enhancement projects, and support end-user training.
Collaboration & Leadership
Work cross-functionally with HR, IT, Payroll, and Compliance teams.
Manage vendor relationships (Oracle support, third-party consultants).
Lead or support Oracle HCM upgrades, patches, and quarterly releases.
Required Skills & Qualifications
8+ years of experience with Oracle HCM; at least 2 full-cycle implementations
Strong hands-on knowledge in Core HR, Absence, Benefits, Talent, and Payroll
Familiarity with California labor laws, HIPAA, ACA, and healthcare compliance
EUC (End-User Computing) Architect with Endpoint (Day 1 onsite)
Security architect job in Sunnyvale, CA
Technical Skills
Strong expertise in EDR/XDR platforms (e.g., CrowdStrike, Defender for Endpoint, Trellix, SentinelOne).
Hands-on experience with Intune/MDM, SCCM, JAMF, or similar device management tools.
Solid understanding of SIEM/SOAR platforms and AD integration.
Strong knowledge of NIST CSF, NIST 800-53/171, CIS benchmarks, and endpoint hardening.
Familiarity with NAC, vulnerability management, and patching tools (Tenable, Qualys, BigFix, etc.).
Experience designing endpoint security architectures for large enterprises.
MLOps Architect
Security architect job in Los Angeles, CA
Architect and implement scalable AWS ML/AI cloud infrastructure in a multi-tenant SaaS environment.
Collaborate with data scientists, data engineers, and IT teams to define requirements and best practices for ML model development, deployment, and monitoring.
Evaluate and recommend tools, platforms, and cloud technologies for ML Ops, ensuring alignment with enterprise architecture standards.
Oversee the integration of ML pipelines with existing enterprise data and application architectures. Familiarity with Guidewire integrations is highly desirable.
Oversee ML/AI related Kubernetes cluster management and provide guidance on alternative ML/AI workflow orchestration options such as Argo vs Kubeflow, and ML/AI data pipeline creation, management and governance with tools like Airflow.
Employ tools like Argo CD to automate infrastructure deployment and management.
Mentor and guide technical teams on ML Ops architecture, tooling, and best practices.
Required:
5+ years: AI/ML Strategy & Roadmap Development.
4+ years: MLOps Tools (Eg. AWS Sagemaker, GCP Vertex AI, Databricks).
3+ years: ML & Data Pipeline Orchestration (Eg. Kubeflow, Apache Airflow).
2+ years: ML Feature Store Tools (Eg. Tecton, Databricks, FeatureForm).
3+ years: DevOps (Eg. Argo CD / Argo Workflows), Containerization (Kubernetes, ROSA).
3+ years: Enterprise Application Integration (Eg. Guidewire, Salesforce).
4+ years: Data Platforms (Eg. Snowflake, RedShift, BigQuery).
2+ years: GenAI Tools / LLMs (Eg. OpenAI, Gemini, etc.).
1+ year: Agentic AI Frameworks (Eg. LangGraph, Autogen, Google ADK).
3+ years: API Orchestration (Eg. Mulesoft, Google Cloud API).
Architecture Experience Required
3+ years: Data Mesh Architecture & Data Product Design.
3+ years: Event-Driven Architecture (EDA).
4+ years: Scalable AWS ML/AI Cloud Infrastructure (Multi-tenant SaaS).
3+ years: Data Architecture Guidelines Development.
3+ years: Security in Distributed Systems.
4+ years: Designing Scalable, Decoupled Systems.
5+ years: Strategy & Roadmap Creation.
3+ years: Influencing with Data-Driven Insights.
Domain Experience Required
4+ years: Functional Knowledge of Insurance Domains (Policy, Claims, Services Ops) - Preferred.
2+ years: Legal & Compliance Regulations in Insurance - Preferred.
3+ years: Data Product Development for Functional Domains.
2+ years: AI-Driven Business Process Automation.
Test Automation Architect
Security architect job in Newark, CA
We're hiring a Test Automation Architect
Join Galent and help us deliver high-impact technology solutions that shape the future of digital transformation
We are seeking a highly skilled and innovative Test Automation Architect to design develop and implement robust and scalable test automation frameworks with a strong focus on Playwright.
This role will leverage the power of AI assisted development using GitHub Copilot to optimize test creation and maintenance.
The ideal candidate will be a visionary leader driving best practices in test automation and ensuring the delivery of high quality software products.
Responsibilities:
Design develop and maintain comprehensive test automation frameworks using Playwright with Typescript/
Lead the adoption and effective utilization of GitHub Copilot to accelerate test script development refactoring and debugging.
Define and implement automation strategies for end-to-end API and performance testing.
Collaborate with development QA and DevOps teams to integrate automated tests into CICD pipelines.
Establish and enforce test automation best practices coding standards and design patterns.
Mentor and guide automation engineers on Playwright GitHub Copilot and general test automation principles.
Evaluate and recommend new tools technologies and methodologies to enhance test automation capabilities.
Troubleshoot and resolve complex automation issues ensuring the stability and reliability of test suites.
Provide technical leadership and strategic direction for the test automation function.
Qualifications
Bachelors degree in Computer Science Engineering or a related field.
15 years of experience in software testing and test automation with at least 3 years in an Architect or Lead role.
Extensive hands-on experience designing and implementing test automation frameworks with Playwright.
Proven experience utilizing GitHub Copilot for efficient code generation test script creation and refactoring.
Strong understanding of modern web technologies APIs and microservices architecture.
Proficiency in programming languages such as TypeScript Python or C.
Experience with CICD tools eg Jenkins GitLab CI Azure DevOps and version control systems Git.
Deep understanding of testing methodologies including Agile and DevOps principles.
Excellent analytical problem solving and communication skills.
Ability to lead mentor and collaborate effectively within a team environment.
Preferred Qualifications:
Masters degree in a relevant field Experience with other test automation tools and frameworks eg Selenium Cypress.
Familiarity with cloud platforms AWS Azure GCP.
Familiarity with Test Management tool such as JIRA Zephyr.
Certifications in relevant technologies or methodologies
Skills
Mandatory Skills : Playwright Typescript Automation
Why Galent
Galent is a digital engineering firm that brings AI-driven innovation to enterprise IT. We're proud of our diverse and inclusive team culture where bold ideas drive transformation.
Ready to Apply?
Send your resume to ranjithkumar.b@galent.com/*******************
Information Systems Security Officer (ISSO)
Security architect job in Port Hueneme, CA
JT4 Point Mugu is seeking an Information Systems Security Specialist. This role is responsible for assessing, developing and implementing programs and controls set in place to help increase cybersecurity within our company. The Information Systems Security Specialist will be detail-oriented, have great problem-solving and analytical skills, and a passion for cybersecurity.
JT4, LLC provides engineering and technical support to multiple western test ranges for the U.S. Air Force, Space Force, and Navy under the Joint Range Technical Services Contract, better known as J-Tech II. JT4 develops and maintains realistic, integrated test and training environments and prepares our nation's war-fighting aircraft, weapons systems, and aircrews for today's missions and tomorrow's global challenges.
**An ideal candidate will have an active DoD secret clearance**
**This position is located at Point Mugu and is not eligible for telework**
Job Summary -- Essential Functions/Duties
This position is the on-site technical specialist for monitoring information systems and maintaining the environment of operation to include developing and updating System Security Plans, managing and controlling changes to the systems, conducting audits, providing incident response, perpetration for vulnerability assessments, and assessing the security impact of security and non-security-relevant changes.
Employee will be responsible to perform the following functions/duties:
Provides incident handling in conjunction with the Facility Security Office (FSO) and Information Security Officer / Information Systems Security Manager (ISSO/ISSM)
Assists in writing and maintaining computer security processes to meet Navy requirements of Risk Management Framework
Monitors computer system use and audits logs
Makes recommendations for future hardware / software implementations and related process improvements
This position requires skills in team building and customer service
Provides operational status as required
Uses established policies and procedures and subject matter knowledge to complete complex assignments requiring originality and ingenuity performed under minimum supervision with considerable latitude for independent contribution
Provides security training and awareness briefings
Other duties as assigned.
Requirements -- Education, Technical, and Work Experience
Associates or higher degree in Computer/Information Technology, or equivalent academic/technical training/certification. Possess two to three years of experience in computer system security and/or related areas of expertise. Must be compliant to DoD 8570.01-M levels and possess or working toward Security+ certification with a CISSP desired. Should have experience with JSIG, NIST 800 and NISPOM, Chapter 8.
In addition, an Information Systems Security Specialist must possess the following qualifications:
Must possess and apply a broad knowledge of principles, practices and procedures in computer security and information systems and working experience with Microsoft Office, Access, and Visio
Must possess experience supporting various system configurations such as Stand Alone, Local Area Networks, and Wide Area Networks
Must possess excellent skills in verbal and written communications, planning, and organizing
Ability to work under deadlines. Employee is expected to routinely cross fields in the completion of somewhat difficult and varied assignments. Government vehicle is used on an as-needed basis
Ability to work in a field environment at remote locations with occasional overnight assignments
Must qualify for and maintain a government security clearance
Must possess a valid, state-issued driver's license.
EDW Architect
Security architect job in Los Angeles, CA
Job Title: EDW Architect
Salary Range: $120,000 - $150,000
About the Role
We are looking for a highly experienced and technically skilled Enterprise Data Warehouse (EDW) Architect to lead the design, development, and optimization of data infrastructure across our enterprise. This is a critical, hands-on role that will drive our data architecture strategy, enabling advanced analytics, reporting, and business intelligence across departments.
The ideal candidate brings a deep background in data modeling, enterprise architecture, and cloud-based data platforms-especially AWS, Oracle, and Redshift-along with a passion for building scalable, high-performance systems.
Key Responsibilities
Architect and maintain the enterprise data warehouse to support analytics, reporting, and operational needs.
Design robust, scalable data infrastructure components and ETL/ELT processes.
Develop and implement enterprise information architecture strategies to ensure data consistency, availability, and performance.
Lead end-to-end data lifecycle management including ingestion, transformation, storage, and access.
Collaborate with data engineers, analysts, and business stakeholders to understand requirements and deliver actionable solutions.
Ensure compliance with data governance and security protocols.
Provide technical leadership and mentorship to data engineering teams.
Required Qualifications
Bachelor's degree in Computer Science, Information Systems, or related field
(20+ years of relevant experience accepted in lieu of degree)
16+ years of experience in programming, data modeling, and enterprise data warehouse development
5+ years of experience in Enterprise Information Architecture
5+ years designing data infrastructure components
3+ years of recent hands-on expertise with:
AWS (including Redshift)
Oracle
Programming with database services for enterprise data management and analytics
Strong proficiency in data modeling (conceptual, logical, and physical)
Deep understanding of relational and non-relational database systems
Nice to Have
Experience with Electronic Health Record (EHR) systems and related data architecture
Hands-on experience with tools and technologies such as:
OLAP
Hadoop / Cloudera
Talend
RDBMS & NoSQL
Big Data platforms