Information Security Compliance Analyst
Security architect job in West Des Moines, IA
The Information Security Compliance Analyst plays a pivotal role in safeguarding the organization's information assets by leading compliance initiatives, managing vendor and client security assessments, and supporting incident response efforts. This position ensures alignment with industry standards such as ISO27001, SOC 2, PCI DSS, and GDPR, while maintaining robust governance frameworks and security policies. The analyst collaborates cross-functionally to enhance security operations, drive continuous improvement, and uphold regulatory compliance across ITA Group's systems and third-party relationships.
ACCOUNTABILITIES & PERFORMANCE EXPECTATIONS
Security Operations & Compliance
Lead client and vendor security assessments, including third-party reviews, risk assessments, and questionnaire responses.
Build and manage workflows for vendor assessments and due diligence.
Oversee compliance audits (SOC2, PCI, ISO27001, TruSight), including evidence collection and process optimization.
Support the Information Systems Incident Response Team (ISIRT) during security events.
Assist in developing requirements for security tools and operational procedures.
Evaluate and recommend emerging security technologies and products.
Provide off-hours support on a rotating and as-needed basis.
Coordinate with external suppliers to resolve security incidents.
Systems & Tools Management
Administer and monitor various security tools to ensure optimal performance and coverage.
Audit & Incident Management
Conduct quarterly audits of systems in scope for compliance.
Maintain incident logs and ensure readiness for ISO27001 certification.
Investigate and remediate Microsoft Security alerts.
Compliance Certifications
Collaborate with Legal to support privacy regulations and ensure compliance with GDPR and other frameworks.
Governance Management
Develop and implement Data Loss Prevention (DLP) rules for sensitive document handling.
Enhance Insider Threat Protection capabilities.
Maintain and update InfoSec policies and procedures.
Provide organization-wide coaching and mentorship on security policies.
Ensure regulatory and compliance requirements are consistently met.
Establish and maintain a security framework and auditing process.
Manage security questionnaires and third-party data security risk assessments.
Analyze and investigate security anomalies using platform reports, logs, and alerts.
POSITION REQUIREMENTS
Bachelor's degree in computer science, information technology, or equivalent experience.
Five-to-eight years experience in information technology support with at least five years of experience in system administration and system design.
Security certification such as CISSP, CISA, or CISM are required. Technical certifications in Cisco and Microsoft products is preferred.
Excellent communication and documentation skills.
Strong experience with ISO27001, SOC 2, PCI DSS 4.x, GDPR, and other regulatory frameworks and privacy regulations.
Ability to demonstrate ownership of systems and drive the technology forward to the goals of the company.
Direct involvement in the annual planning and budgeting process for Information Technology.
Strong communication skills and the ability to interact with other systems personnel in a team environment.
Ability to maintain confidentiality pertaining to nonpublic business, financial, personnel, salary, and technological information, plans or data.
Ability to think analytically to solve technical problems individually and in a team environment.
Ability to effectively plan, schedule and coordinate projects and meet deadlines, managing multiple project concurrently.
Ability to analyze and communicate technology performance results. Specific experience working with our current primary technology and software preferred.
Ability to listen, understand and respond to external and internal customers' needs in a timely manner; customer service experience in a service-related industry preferred.
Ability to work the time necessary to complete projects and/or meet deadlines.
ABOUT ITA GROUP
ITA Group is an employee-owned engagement and loyalty company that provides data-driven solutions designed to uniquely motivate and inspire our clients' employees, channel partners and customers. Creating engaging employee experiences is at the heart of what we do and who we are, and we continuously evaluate our team member benefits to ensure our team members are cared for. We offer an array of competitive benefits, including healthy retirement contributions, health, dental and vision insurance, paid parental leave, flexible work arrangements, Volunteer Time Off, paid sabbaticals, anniversary awards and more! Come join our team, recently recognized by several top organizations as a Great Place to Work.
Product Security Architect
Security architect job in Marshalltown, IA
If you are a cyber security architect looking for an opportunity to grow, Emerson has an opening for you! Based in our Marshalltown, Iowa location, you will play a critical role in ensuring the security of our Industrial Automation and Control Systems (IACS) and Operational Technology products. You will work closely with multi-functional teams to embed security standard processes and frameworks into our product design, development, and deployment processes. Collaborating with the business Group Product Security Officer, this position will also coordinate with Emerson Enterprise Product Security resources to ensure compliance with Emerson's Product Security requirements and applicable reference architectures for all products in scope through product development activities, processes, and tools.
IN THIS ROLE, YOUR RESPONSIBILITIES WILL BE:
Develop Security Frameworks: Create and implement security control frameworks tailored to IACS products, ensuring compliance with industry standards and regulations.
Risk Assessment: Conduct risk assessments and threat modeling to identify potential security vulnerabilities in product designs.
Security Architecture: Design and review security architectures for IACS products, ensuring robust protection against cyber threats. Familiarity with reference and concept architectures such as; TOGAF, ISA 62443, NAMUR, and Zero Trust.
Collaboration: Partner with development teams to communicate security requirements and promote secure design practices.
Incident Response: Assist in responding to security incidents, guiding in root cause analysis and remediation.
Compliance Monitoring: Monitor compliance with security frameworks and customer requirements, ensuring continuous improvement.
Technical Leadership: Provide technical leadership and guidance to security and development teams, fostering a culture of security awareness and practice maturity.
WHO YOU ARE: You pursue everything with energy, drive, and the need to finish. You always keep the end in sight and put in extra effort to meet deadlines. You create teamwork allowing others across the organization to achieve shared objectives. You partner with others to get work done. You achieve gained trust and support of others. You ask the right questions to accurately analyze situations. You evaluate pros and cons, risks and benefits of different solution options.
For This Role, You Will Need:
Bachelor's in Computer science, Cyber Security, Engineering, Information Security, or a related field.
5+ years of experience and familiarity with product security standards and initiatives or practical work experience related to the implementation of products, services, and solutions.
3 years of experience in security architecture, preferably in the industrial automation sector.
Strong understanding of security standards and regulations (e.g., NIST, IEC 62443).
Proficiency in threat and risk assessment, threat modeling, and secure architecture and design.
Experience with secure coding practices and security testing methodologies.
Experience in secure by design principles, standard processes, and the integration of security into preexisting development practices.
Familiar with concepts such as secure development lifecycle, secure by design, and defense in depth.
Familiar with Microsoft Office tools for effective communications and information management.
Excellent communication skills with the ability to organize, prepare and make compelling presentations to non-technical customers.
Self-motivated and able to work under timelines.
Strong problem solving / interaction management skills
Up to 25% travel expected.
Strong organizational and collaboration skills
Legal authorization to work in the United States without need for sponsorship now or in the future
Preferred Qualifications that Set You Apart:
Master's degree in Computer Science, Cyber Security, Engineering, Information Security, or a related field
Problem-Solving: Ability to think critically and solve complex security challenges.
Collaborative mentality with the ability to work effectively in a team environment.
Continuous Learning: Commitment to staying updated with the latest security trends and technologies.
Experience with industrial control systems (ICS) and operational technology (OT) security
Experience with software bills of material (SBOM).
Relevant certifications such as CISSP, CISM, or GIAC are preferred
Our Culture & Commitment to You
At Emerson, we prioritize a workplace where every employee is valued, respected, and empowered to grow. We foster an environment that encourages innovation, collaboration, and diverse perspectives-because we know that great ideas come from great teams. Our commitment to ongoing career development and growing an inclusive culture ensures you have the support to thrive. Whether through mentorship, training, or leadership opportunities, we invest in your success so you can make a lasting impact. We believe diverse teams, working together are key to driving growth and delivering business results.
We recognize the importance of employee wellbeing. We prioritize providing flexible, competitive benefits plans to meet you and your family's physical, mental, financial, and social needs. We provide a variety of medical insurance plans, with dental and vision coverage, Employee Assistance Program, 401(k), tuition reimbursement, employee resource groups, recognition, and much more. Our culture offers flexible time off plans, including paid parental leave (maternal and paternal), vacation and holiday leave.
Learn more about our Culture & Values.
#LI-BA1
#LI-HYBRID
Auto-ApplyProduct Security Engineer, AI
Security architect job in Des Moines, IA
Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys.
**Required Skills:**
Product Security Engineer, AI Responsibilities:
1. Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more
2. Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities
3. Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products
**Minimum Qualifications:**
Minimum Qualifications:
4. BS or MS in Computer Science or a related field, or equivalent experience
5. 8+ years of experience finding vulnerabilities in interpreted languages. Knowledge of best practice secure code development
6. Experience with exploiting common security vulnerabilities
7. Knowledge of common exploit mitigations and how they work
8. Coding and scripting experience in one or more general purpose languages
**Preferred Qualifications:**
Preferred Qualifications:
9. Experience creating software that enables security processes, especially those leveraging AI/ML for automation or augmentation
10. Experience integrating or building AI-powered tools to assist with vulnerability detection, code review, or threat modeling
11. Experience creating software that enables security processes
12. 8+ years of experience finding vulnerabilities in C/C++ code
13. Contributions to the security community (public research, blogging, presentations, bug bounty)
14. Demonstrated ability to collaborate with AI researchers or engineers to apply AI in security workflows
**Public Compensation:**
$177,000/year to $251,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Business Information Security Officer
Security architect job in Clinton, IA
LyondellBasell is a leader in the global chemical industry creating solutions for everyday sustainable living. With a nearly 70-year legacy that includes a Nobel Prize in Chemistry and our proprietary MoReTec recycling technology, LYB is enabling a more sustainable future for generations to come. LYB develops high-quality and innovative products for applications ranging from sustainable transportation and food safety to clean water and quality healthcare. LYB places high priority on diversity, equity and inclusion and is Advancing Good with an emphasis on our planet, the communities where we operate and our future workforce. We're addressing the global challenges of ending plastic waste, taking climate action, and supporting a thriving society, while generating value for our customers, investors, and society.Come Join an Inclusive Team
The BISO provides tactical direction to regional and local sites to identify and mitigate digital risks and prevent, detect, and remediate cyber security threats. This improves the overall company-wide security posture. This role is a hands-on role that ensures the subject matter expertise, and processes for the effective execution of global cybersecurity program in the OT environments. The BISO supports the computing systems of the site's Business and Manufacturing environments and coordinates changes, provides security and ensures optimum reliability, availability, integrity and confidentiality. This role acts locally as the main focal point for the business and manufacturing organization and supports the center-led business systems security in the region. Work-life balance is offered consistent with LyondellBasell's Flexible Work Policies.A Day in the Life
Oversee the operation of regional and local IT and ICS computing systems and security software including hardware and software lifecycle (Firewall, Anti Malware, Patch and Asset Management[PM1.1][bd VD1.2], etc.).
Ensure that all regional sites' networks and systems comply with Corporate and Industry[PM2.1][bd VD2.2] standards;
Contribute to internal documentation and standards (build documents, operational excellence, Disaster Recovery, Business Continuity, security whitepapers, Technical Designs)
Help to validate the translation of the company policies from English into the local language (spoken by the BISOs as their first language) as optional if they have the capabilities.
Advise or consult on OT changes initiated by IT and Site Management.
Participate in Purdue Level 2 and 3 monitoring[KJL3.1], including the review, validation and reporting of security metrics.
Assist in Operational Excellence audit support, Site Vulnerability Assessments and Cyber Process Hazard Analysis.
Facilitate forensics investigations and incident follow-up.
Support the design, implementation and documentation of (security) OT and M&A projects and initiatives.
Ensure effective regional security awareness program implementation and training.
Improve overall cyber resilience to the next level of maturity and effectiveness according with the defined BSS roadmap.
Regularly analyze LyondellBasell's intrusion protection processes and lead efforts to improve it through automation, integration, and aggregation.
Provide information protection expertise to IT operational teams to ensure systems are properly protected and monitored by design. Communicate threats appropriately.
Profile new and emerging threats to the IT landscape and drive changes needed in response.
Serve as a member to the event response team, providing mentoring to other team members as needed, while performing Level 2 support.
Contribute ideas to the future state technology roadmap ensuring effective investments are made to enable scale, quality, and maintenance and overall cost effectiveness.
Assist in setting technical direction and strategy for ICS systems architecture and security.
Understand the security vulnerability management process and be able to conduct vulnerability assessments for the IT and ICS infrastructure, including mitigation and patch testing.
You Bring This Value
Bachelor's degree in an appropriate field, or equivalent professional 6-8 years of technical experience
Support for LyondellBasell's Diversity, Equity, and Inclusion (DEI) strategy and values.
Exceptional communication and advocacy skills, both verbal and written, with the ability to express complex and technical issues in clear and concise language
Ability to collaborate and communicate effectively with both business-oriented and technology-oriented personnel
Working knowledge of one or more of these technologies: Microsoft Windows, Active Directory architecture & management, Group Policies, network topology, Anti Malware, SQLServer Database Management, virtualization, Manufacturing Execution Systems.
Ability to perform field work for site assessments including visiting control rooms, rail yards, network closets, offices, and inspections of external perimeter fencing in a variety of physical locations - requiring walking for extended distances, walking over uneven terrain, and wearing protective equipment (PPE)
Preferred Qualifications:
Experience in information security, information technology (IT), or operational technology (OT)
Experience developing and refining risk based, defense-in-depth security architectures based on established frameworks such as NIST, ISO27001 or IEC62443
Working knowledge of plant ICS systems (i.e. Modbus, OPC, AspenTech, OSI PI, Sample Manager, PAS Alarm Management, Honeywell, DeltaV, Yokogawa, Siemens, Schneider, etc.)
Practical knowledge of different message distribution techniques to ensure end users understand and apply the behavioral changes necessary to reduce the 'human factors' risk
Detailed understanding of manufacturing and business systems
Ability to work with minimal supervision with demonstrated mentoring skills
Ability to travel as required, up to 10%
Competencies
Build PartnershipsDrive InnovationGrow CapabilitiesPromote InclusionMotivational FitTechnical SkillsDeliver ResultsLearn more about our benefits: Benefits/Health & Welfare | LyondellBasell
Stay Connected!
Visit our LYB Website
Follow us on LinkedIn and Instagram
Like us on Facebook
Subscribe to our YouTube channel LyondellBasell is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex (including pregnancy), sexual orientation, gender identity, national origin, disability, age, veteran status, and other legally protected characteristics. The US EEO is the Law poster is available here.LYB is committed to providing reasonable accommodations for qualified individuals with disabilities. If you need assistance or an accommodation related to LYB's recruiting process, please email us at ***************. Applicants must be at least 18 years old.LyondellBasell does not accept or retain unsolicited résumés or phone calls and/or respond to them or to any third party representing job seekers.Privacy Statement: For information regarding how LyondellBasell processes your personal data, please read our Privacy Statement.
Regulatory Disclosure
The compensation and reference to benefits for this role is listed on this posting in compliance with applicable law. Please note that the compensation and benefits listed below are only applicable for U.S. payroll offers.
The anticipated salary range for this position is $111,360.00 - $167,040.00 . The selected candidate's compensation will be determined based on their skills, experience, and qualifications.
Associate Information Security Director
Security architect job in Johnston, IA
Johnston Exp 2-5 years Degree Bachelors Relo Bonus Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement.
As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations.
What You'll Do
Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will:
• Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company.
• Act as the single point to accountability and delivery for President, General Counsel and IT Director.
• Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets.
• Develop and implement information security strategy, assuring alignment with the GSEC security strategy.
• Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services.
• Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders.
• Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed.
• Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls.
• Participate in the strategic planning and budgeting processes.
• Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance.
• Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services.
• Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures.
• Partner with Supply Management and Legal organizations to review vendor contracts and suppliers.
• Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees.
• Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures.
• Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc.
Qualifications
We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require:
• 8+ years of direct information security experience within the finance and banking industry.
• Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function.
• Certified Information Systems Security Professional (CISSP) certification.
• Project management skills; financial / budget management, scheduling and resource management.
• Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences.
• High degree of initiative and dependability.
• High level of personal integrity, and the ability to professionally handle confidential matters.
• Good understanding of risk management methodologies and implementation in an IT organization.
• Proven ability to manage to financial goals, both in own area, and in support of a larger entity.
• Proven ability to build strong teams; recruit top talent and develop colleagues at all levels.
• Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done.
• Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat.
• Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications.
• Collaborative mindset, with ability to achieve creative, win-win solutions.
A strong candidate will also have:
• Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans.
• Strong interest in and proven track record with challenging assignments.
• Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc.
• Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc.
• Additional certifications such as CISA, CISM, CRISC, CPP, CFE.
What You'll Get
At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package.
Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile?
The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Direct Staffing Inc
Senior Information Security Engineer
Security architect job in West Des Moines, IA
This role will provide security Incident Response (IR) services for our customers. IR activities would include all aspects of analysis, containment, eradication, and recovery, and would entail actions such as log reviews, malware analysis, evidence collection, and other forensic activities that are part of a cybersecurity incident investigation.
This role will also advise on and deploy security technical solutions as well as perform internal and external oriented security assessments. These assessments range from deep technical security assessments, social engineering, broad-based risk, and security posture assessments. These assessments and services may be performed as individual projects or in a virtual Security Engineer (vSE) role. Additionally, this role will work with the Practice Manager - Digital Forensics & Incident Response to identify and develop new technical cybersecurity offerings.
Roles and Responsibilities/ Essential Functions:
Work as a member of the HBS Cybersecurity team that provides consultative and proactive security related support to Heartland's account base.
Lead Incident Response cases from beginning to end, providing consulting and remediation efforts.
Perform forensic analysis to identify systems artifacts which can be used as evidence of the “who, what, when, where, and how” during cybersecurity incident response activities or digital investigations.
Serve as a Virtual Security Engineer (vSE) for customers.
Obtain knowledge on other technologies, as directed by customer demand.
Effectively present and explain security solutions to customers.
Provide sales consultants and fellow Engineers with design assistance, review, validation, and optimization of security technologies and solutions.
Contribute to product selection and research, configuration standards and best practices and educate our sales teams on these products and services so that they can sell them.
Ability to work in a team atmosphere as both a leader and contributor, as assigned. Always maintaining a professional and respectful demeanor.
Cross-training/Mentoring of other HBS employees.
Participate in on-call to support the 24x7 IR services.
Minimum of 1,350 hours billed per fiscal year prorated based on start date. These charge hour requirements will be balanced against professional development and on the job training.
Requirements
Competencies
Accountability - Ability to accept responsibility and account for his/her actions.
Active Listening - Ability to actively attend to, convey, and understand the questions of others.
Adaptability - Ability to adapt to change in the workplace.
Communication - Oral and Written - Ability to communicate effectively with others.
Customer Oriented - Ability to take care of the customers' needs while following company policy.
Decision Making - Ability to make critical decisions while following company procedures.
Problem Solving - Ability to find a solution for or to deal proactively with work-related problems.
Working Under Pressure - Ability to complete assigned tasks during stressful situations.
Independence - Ability to work on your own to drive the desired results on assigned work.
Required Experience:
8+ years of related IT experience
3+ years of AD and Azure experience
Preferred Experience:
2+ years of experience handling and leading IR
Experience with Digital Forensic handling and analysis
Experience with Threat Hunting and analysis
Experience with Active Directory specifically domain recovery
Experience with Configuration on various firewall vendors and VPN
Experience with Office 365 and Exchange
Experience with Virtualization concepts and technologies (VMWare, Hyper-V)
Experience with Data Center Operations (Networking, SAN/NAS, Servers)
Required Skills, Education and/ or Certifications:
Bachelor's degree or equivalent experience
Preferred Skills, Education and/ or Certifications:
CEH and/or CHFI or current industry standard certifications in areas of security expertise
Equal Opportunity Employer - Including Disabled and Veterans
#HBS
Information Security Engineer / Analyst
Security architect job in Johnston, IA
Mindlance is a national recruiting company which partners with many of the leading employers in IT, financial services, engineering, semiconductor, clinical and pharmaceutical domains. You can learn more about us at *****************
.
Job Description
·
3-7 years of experience in Information Security focusing on security solution design, engineering, implementation and assurance.
·
3-5 years of experience defining and managing the implementation of controls to address access security and IT control requirements.
·
3-5 years of experience working with Information Security and IT general controls, including experience defining and documenting controls using COBIT 4.1 or 5.0, the NIST Cybersecurity Framework, the ISO 27k framework, the SANS 20 critical controls or similar experience.
·
Deep understanding of Information Security technologies including firewalls, IDS/IPS, Password Vaults, CASBs, SIEM, IT GRC, DLP, etc.
·
Understanding of the regulatory environment and experience with regulators.
·
Comfort delivering tasks and assignments in an evolving and a maturing environment.
·
Application security experience and corresponding technologies (e.g. Jenkins).
·
Experience with the FFIEC Cyber Security Assessment Tool.
·
Applicable certifications (e.g. CISSP, CISA, CISM, CGEIT, CRISC).
Additional Information
All your information will be kept confidential according to EEO guidelines.
Offensive Security Engineer, Assessments (Web3)
Security architect job in Des Moines, IA
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior security engineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Engineer, Information Security and Risk
Security architect job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Senior Technology Security Engineer (IAM)
Security architect job in Des Moines, IA
About the job
Our client is all about working together to make an impact. As part of our team, you'll have the opportunity to grow, contribute, and gain experience that matters. We strive to be caring leaders, close partners, and responsive experts-always supporting each other to do our best work. Join us, and let's improve lives together.
The Senior Technology Security Engineer will be responsible for the design, build, deploy and support of our clients Privileged Access Management (PAM) platform implemented in CyberArk Cloud, including infrastructure, servers, services and privileged accounts that are part of the overall IT ecosystem.
The Senior Technology Security Engineer will collaborate with various teams to ensure the seamless integration and effective use of CyberArk for managing privileged access, monitoring, and securing sensitive accounts.
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements. Assesses information security risks, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs. Serves as PAM subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation and maintains the vendor relationship. Collects and provides documentation for internal and external audits and assessments. Oversees assigned security tools/services and vendor life cycle management.
Essential Functions
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements.
Identifies information security risks, provides recommendations, builds, and configures solutions, and troubleshoots issues.
Collaborates with IT and security teams on project plans and meets with stakeholders to assess impacts and dependencies.
Leads project activities to ensure timely deliverables and supports the establishment of a roadmap by evaluating and recommending new tools
Leads highly complex information security projects across all security teams.
Designs, builds, deploys, and maintains information security systems, including identity governance and access management solutions.
Ensures the efficient operation of information security systems and resolves intricate security problems.
Researches, evaluates, and proposes new information security solutions. Aligns information security systems with architectural requirements and strategies.
Provides implementation and cost estimates for new solutions, including training requirements and system administration processes
Collaborates with stakeholders to ensure the efficient operation of information security systems in alignment with architectural requirements and strategies
Identifies and documents of highly complex information technology risks, assesses risk levels, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs
Serves as the primary contact on assigned internal and third-party IT processes, risk assessments, and audits.
Provides advice to key stakeholders on the security-relevant impact of findings
Serves as security subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation
Leads troubleshooting sessions and knowledge transfers to resolve security issues including identity governance and access management
Recommends solutions for aligning technology areas with future needs
Collects and provides documentation for internal and external audits and assessments
Documents information security systems policies, procedures, standards, needed improvements, and guidelines
Maintains the document life cycle, including periodic reviews, updates, and approval cycles
Oversees assigned security tools/services and vendor life cycle management
Schedules vendor meetings to review products, services, and vendor/tool roadmaps
Drives renewals and new purchases through the our clients vendor management and purchase process
Education & Experience
Bachelor's degree, preferably in information security, information technology, or a related field, or equivalent relevant experience
Eight years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Master's degree, preferably in information security, information technology, or a related field or equivalent related experience and six years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Information security certifications (CISSP, CCSP, CCSK, AWS, Azure, Security+, CEH, GSEC) preferred
Prior experience in the insurance industry preferred
Knowledge, Skills, & Abilities
Advanced knowledge of information security and privacy standards, concepts, principles, technologies, and audit practices
Advanced knowledge of information technology including network, servers, cloud, and PKI/cryptography and identity and access management technologies
Excellent knowledge of identity and access management concepts, principles, technologies
Excellent ability to assess and report on information technology risks
Strong knowledge of Linux and Windows operating systems
Strong knowledge of secure cloud solutions within AWS, Google, and/or Azure cloud platforms
Strong ability to perform and create automation tasks with tools (i.e., PowerShell, Python) preferred
Experience in designing, building, and maintaining information security systems
Excellent analytical and problem-solving abilities
Strong verbal and written communication skills
Excellent ability to work effectively with others at varying levels
Excellent documentation skills
Ability to lead moderate to highly complex technology projects
Desired Skills
SailPoint File Access Manager
CyberArk Privileged Cloud
Atlassian BitBucket
Atlassian Confluence
AWS EC2, Lambda
SharePoint
Auto-ApplySenior Security Engineer
Security architect job in Des Moines, IA
As a Security Engineer at Brale, you will work within an experienced, security-focused engineering team to help bolster existing defenses and use your industry experience to identify and reinforce weaknesses in applications, systems, and processes.
You enjoy threat modeling, designing security protocols, discovering vulnerabilities in software systems, and working closely with the team to document and resolve known issues. Staying up to date on the latest threats and trends enables you to evolve the company's security posture.
Your background in cryptography and secure coding will help Brale protect both on and off-chain assets by defining and building systems that leverage multi-party authorization and follow sound processes. (Bonus points if you have previously worked with blockchain technologies!)
As a security engineer at a small startup, you will need to wear a lot of hats. Your responsibilities will include:
Maintain threat models and other security-related system documentation.
Coordinate penetration testing with independent test team and triage and drive resolution of any identified issues.
Perform white-box security testing of security-critical features.
Participate in the design process for application features and AWS platform infrastructure by defining security requirements and reviewing designs to ensure requirements are met and best practices are followed.
Participate in the design and implementation of controls for regulatory and standards compliance.
Define internal best practices for secure development and data handling, including key material management.
Identify SIEM tooling needs and help select suitable solutions for our scale and budget.
Maintain the security incident response plan and lead incident response in case of a security event.
Understand the threat environment and establish and maintain monitoring for endpoints and application systems.
Share knowledge with other engineering roles to improve overall understanding of security topics.
Qualifications:
Five or more years experience in a security engineering or related role
Proven experience with a wide variety of different of aspects of security engineering, including network security, incident response, threat modeling, and identity and access management.
Ability to identify and lead initiatives to improve information security without direct oversight.
Strong communication skills for communicating with both technical and non-technical audiences in a remote environment.
Auto-ApplyInformation System Security Officer (ISSO) (Onsite)
Security architect job in Cedar Rapids, IA
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
This position will support classified computing environments 100% onsite at our facilities in Cedar Rapids, Iowa and supporting the Mission Systems CBEC Portfolio. The ISSO is responsible for implementing and enforcing the cybersecurity compliance directives with hands-on execution and oversight. The position will create, sustain, and enforce standard operating procedures developed from government compliance documents/regulations (NISPOM, DFARS, DAAPM, JSIG, etc.), while still being able to interpret and troubleshoot requests and tasks of volatile complexity. This position utilizes a wide variety of cybersecurity technologies and tools and requires knowledge and experience with a comprehensive selection of Information Technology skill sets.
** This position requires a Secret Clearance, is onsite in Cedar Rapids, IA and a relocation package is available if needed. **
What YOU will do:
You will be responsible for designated information system compliance at system level; including but not limited to technical configuration analysis, change control facilitation, hardware/software management, audit and inspections, incident response and troubleshooting, etc.
You will be responsible for the System Security Plan maintenance and change control per procedure.
You will ensure all users have the requisite security clearances, authorization, need-to-know, and provide security training and guidance.
You will collect, review, document, and archive security event logs, reports and files in accordance with the System Security Plan (SSP), reporting any anomalies. Monitor and analyze all available resources that track user activity, provide warnings of system vulnerabilities, and provide system performance information in accordance with cybersecurity plans and policies.
You will manage the tracking, accounting, safeguarding, and disposition of material assets associated with the security systems.
You will possess and maintain technical competence and a working knowledge of system functions, security policies, technical security safeguards, and operational security measures.
You will understand implications of work and makes recommendations for solutions.
What YOU will Learn:
You will foster relationships with your DT peers all over the world that work and WANT to work at Collins.
You learn how to communicate with customers regarding secure system status and security posture.
Qualifications you must have:
U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Typically requires a University Degree and minimum 2 years of prior relevant experience or an Advanced Degree in a related field.
Active security clearance or ability to obtain and maintain active security clearance within 1 year.
DoD 8570-compliant industry certification at IAM Level I (Security+) or ability to obtain certification within 6 months.
Qualifications We Prefer:
Desired certifications: Security+, A+, Network+, CAP, CASP+,CISM, Cisco (CCNA), CISSP.
Knowledge and/or experience with NIST SP 800-series RMF framework and guidelines.
Knowledge and/or experience with STIGs, SCAP, Splunk or other system hardening and compliance, vulnerability assessment, and/or SIEM tools.
Willingness to learn new technologies & take on new projects to grow experience.
Ability to work in a high energy, fast paced environment, able to adapt to changing business needs.
Highly self-directed and able to learn quickly with a strong ability to drive and deliver results.
Comfort working with minimal daily supervision and to balance numerous priorities.
Ability to remain calm and composed under pressure, in a fast-paced environment of rapidly changing demands.
Some of our competitive benefits packages include:
Medical, dental, and vision insurance.
Three weeks of vacation for newly hired employees.
Generous 401(k) plan that includes employer matching funds and separate. employer retirement contribution, including a Lifetime Income Strategy option.
Tuition reimbursement program.
Student Loan Repayment Program.
Life insurance and disability coverage.
Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection.
Birth, adoption, parental leave benefits.
Ovia Health, fertility, and family planning.
Adoption Assistance.
Autism Benefit.
Employee Assistance Plan, including up to 10 free counseling sessions.
Healthy You Incentives, wellness rewards program.
Doctor on Demand, virtual doctor visits.
Bright Horizons, child, and elder care services.
Teladoc Medical Experts, second opinion program.
And more!
Learn More & Apply Now!
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond. At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customers succeed today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
WE ARE REDEFINING AEROSPACE.
* Please consider the following role type definitions as you apply for this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
Regardless of your role type, collaboration and innovation are critical to our business and all employees will have access to digital tools so they can work with colleagues around the world - and access to Collins sites when their work requires in-person meetings.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplySecurity Engineer II
Security architect job in Des Moines, IA
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
Security Systems Engineer
Security architect job in Davenport, IA
OBJECTIVE: Design and quote innovative and reliable technology solutions by assessing customer needs and requirements. Develop effective Security, VMS, and Access Control system designs that align with industry standards and customer expectations. CORE RESPONSIBILITIES include, but are not limited to the following:
* Consulting: Be the professional technical "expert" in sales situations by consulting with customers, recommending solutions, and demonstrating products. Specifically identify key customer needs and produce a solution that best meets those needs.
* Designs: Design systems that best fit the customers' needs independent of price. Be able to communicate the features, benefits, and business value of your solution.
* Site Surveys: Effectively capture site conditions, device locations, and cable pathways, to accurately quote the system components and labor.
* Quotes: Provides quotes that are accurate, timely, and with appropriate detail to effectively present our solution to the customer.
* Job Files: Produce detailed and accurate project documentation that permits the Operations team to successfully implement the project.
* Training: Maintain knowledge of your industry/technology. Achieve and maintain required industry certifications in accordance with CEC policy.
* Other duties as assigned.
POSITION RESULTS DESCRIPTION
* Quoting Efficiency - >30%
* Overages -
* Unfunded Change Orders - < 0.50% of closed business
* Quote Turnaround - > 90% by customer due date
SUPERVISORY RESPONSIBILITIES
None.
MINIMUM QUALIFICATIONS:
* 4+ years experience in low voltage security systems. Installation or service of access control, security cameras, CCTV, etc.
* Industry technical certification
* Two year technical degree preferred
* Must have a valid driver's license
PERSONAL ATTRIBUTES:
* Strong interpersonal skills, ability to communicate and lead well at all levels of the organization and with staff at remote locations essential.
* Strong problem solving and creative skills and the ability to exercise sound judgment and make decisions based on accurate and timely analyses.
* Excellent Presentation Skills, large and small groups
* High level of integrity and dependability with a strong sense of urgency and results-orientation.
OTHER SKILLS & ABILITIES:
* Strong knowledge of communications systems, including audio, video, security, fire alarm, wireless, and data networks.
* PC proficiency is essential (Windows environment) and strong working knowledge of Excel is preferred.
PHYSICAL, MENTAL AND ENVIRONMENTAL REQUIREMENTS:
* Ability to define problems collects data, establish facts and draw valid conclusions.
* The duties of this job require the employee to effectively talk and hear English language communications.
* The employee is required to stand, walk, climb, sit and use hands and fingers.
* Some light lifting of objects is required.
* Reaching, grasping and carrying activities also required.
* Specific vision abilities required by this job include close vision, distance vision, color vision, depth perception and the ability to adjust focus.
* Above average intellectual ability and excellent judgment are needed to deal effectively with a wide range of problem solving and trouble shooting activities.
* This job is primarily located in a private office.
* The noise level in the work environment is usually moderate.
* Although most work is performed inside, occasional outside activities are subject to seasonal temperature fluctuations.
"Essential duties and responsibilities" describe those functions considered to be essential to the performance of the job. All requirements may be modified to reasonably accommodate individuals with disabilities.
Communications Engineering Company is an Equal Opportunity/Affirmative Action Employer. We are committed to achieving and maintaining a diverse workforce. Qualified females, minorities, veterans and disabled individuals are encouraged to apply.
Security Engineer
Security architect job in Des Moines, IA
Meta Platforms, Inc. (Meta), formerly known as Facebook Inc., builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps and services like Messenger, Instagram, and WhatsApp further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. To apply, click "Apply to Job" online on this web page.
**Required Skills:**
Security Engineer Responsibilities:
1. Build tools that enable connectivity to our infrastructure only from Meta owned and managed devices.
2. Build machine attestation and secure certificate storage solutions to enable strong client trust.
3. Deploy systems that help mitigate security risks by understanding and controlling what software is allowed to execute on our client devices.
4. Develop, validate, and enforce our client security policies.
5. Build and deploy tools and automation that proactively detect and respond to security risks and threats to internal corporate services.
6. Advise and collaborate with other teams.
7. Telecommuting from anywhere in the U.S. allowed.
**Minimum Qualifications:**
Minimum Qualifications:
8. Requires Bachelor's Degree (or foreign equivalent) in Computer Science, Engineering or a related field and 1 year of experience in the job offered or a computer-related occupation
9. Requires 12 months of experience involving the following:
10. PHP, Golang, Python, C/C++, Rush, or Ruby
11. Designing and deploying security infrastructure such as PKI, key management, and certificate management
12. Endpoint Security & Management
13. Certificate Lifecycle
14. Devices & OS hardening and security policies
15. Identity & Access Management (Authentication & Authorization, SSO)
16. Network Security and
17. Programming and Code Review
**Public Compensation:**
$178,041/year to $200,200/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Associate Information Security Director
Security architect job in Johnston, IA
Johnston
Exp 2-5 years
Degree Bachelors
Relo
Bonus
Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement.
As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations.
What You'll Do
Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will:
• Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company.
• Act as the single point to accountability and delivery for President, General Counsel and IT Director.
• Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets.
• Develop and implement information security strategy, assuring alignment with the GSEC security strategy.
• Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services.
• Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders.
• Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed.
• Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls.
• Participate in the strategic planning and budgeting processes.
• Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance.
• Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services.
• Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures.
• Partner with Supply Management and Legal organizations to review vendor contracts and suppliers.
• Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees.
• Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures.
• Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc.
Qualifications
We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require:
• 8+ years of direct information security experience within the finance and banking industry.
• Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function.
• Certified Information Systems Security Professional (CISSP) certification.
• Project management skills; financial / budget management, scheduling and resource management.
• Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences.
• High degree of initiative and dependability.
• High level of personal integrity, and the ability to professionally handle confidential matters.
• Good understanding of risk management methodologies and implementation in an IT organization.
• Proven ability to manage to financial goals, both in own area, and in support of a larger entity.
• Proven ability to build strong teams; recruit top talent and develop colleagues at all levels.
• Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done.
• Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat.
• Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications.
• Collaborative mindset, with ability to achieve creative, win-win solutions.
A strong candidate will also have:
• Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans.
• Strong interest in and proven track record with challenging assignments.
• Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc.
• Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc.
• Additional certifications such as CISA, CISM, CRISC, CPP, CFE.
What You'll Get
At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package.
Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile?
The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Direct Staffing Inc
Engineer, Information Security and Risk
Security architect job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Senior Technology Security Engineer (IAM)
Security architect job in Des Moines, IA
Job DescriptionAbout the job
Our client is all about working together to make an impact. As part of our team, you'll have the opportunity to grow, contribute, and gain experience that matters. We strive to be caring leaders, close partners, and responsive experts-always supporting each other to do our best work. Join us, and let's improve lives together.
The Senior Technology Security Engineer will be responsible for the design, build, deploy and support of our clients Privileged Access Management (PAM) platform implemented in CyberArk Cloud, including infrastructure, servers, services and privileged accounts that are part of the overall IT ecosystem.
The Senior Technology Security Engineer will collaborate with various teams to ensure the seamless integration and effective use of CyberArk for managing privileged access, monitoring, and securing sensitive accounts.
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements. Assesses information security risks, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs. Serves as PAM subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation and maintains the vendor relationship. Collects and provides documentation for internal and external audits and assessments. Oversees assigned security tools/services and vendor life cycle management.
Essential Functions
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements.
Identifies information security risks, provides recommendations, builds, and configures solutions, and troubleshoots issues.
Collaborates with IT and security teams on project plans and meets with stakeholders to assess impacts and dependencies.
Leads project activities to ensure timely deliverables and supports the establishment of a roadmap by evaluating and recommending new tools
Leads highly complex information security projects across all security teams.
Designs, builds, deploys, and maintains information security systems, including identity governance and access management solutions.
Ensures the efficient operation of information security systems and resolves intricate security problems.
Researches, evaluates, and proposes new information security solutions. Aligns information security systems with architectural requirements and strategies.
Provides implementation and cost estimates for new solutions, including training requirements and system administration processes
Collaborates with stakeholders to ensure the efficient operation of information security systems in alignment with architectural requirements and strategies
Identifies and documents of highly complex information technology risks, assesses risk levels, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs
Serves as the primary contact on assigned internal and third-party IT processes, risk assessments, and audits.
Provides advice to key stakeholders on the security-relevant impact of findings
Serves as security subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation
Leads troubleshooting sessions and knowledge transfers to resolve security issues including identity governance and access management
Recommends solutions for aligning technology areas with future needs
Collects and provides documentation for internal and external audits and assessments
Documents information security systems policies, procedures, standards, needed improvements, and guidelines
Maintains the document life cycle, including periodic reviews, updates, and approval cycles
Oversees assigned security tools/services and vendor life cycle management
Schedules vendor meetings to review products, services, and vendor/tool roadmaps
Drives renewals and new purchases through the our clients vendor management and purchase process
Education & Experience
Bachelor's degree, preferably in information security, information technology, or a related field, or equivalent relevant experience
Eight years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Master's degree, preferably in information security, information technology, or a related field or equivalent related experience and six years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Information security certifications (CISSP, CCSP, CCSK, AWS, Azure, Security+, CEH, GSEC) preferred
Prior experience in the insurance industry preferred
Knowledge, Skills, & Abilities
Advanced knowledge of information security and privacy standards, concepts, principles, technologies, and audit practices
Advanced knowledge of information technology including network, servers, cloud, and PKI/cryptography and identity and access management technologies
Excellent knowledge of identity and access management concepts, principles, technologies
Excellent ability to assess and report on information technology risks
Strong knowledge of Linux and Windows operating systems
Strong knowledge of secure cloud solutions within AWS, Google, and/or Azure cloud platforms
Strong ability to perform and create automation tasks with tools (i.e., PowerShell, Python) preferred
Experience in designing, building, and maintaining information security systems
Excellent analytical and problem-solving abilities
Strong verbal and written communication skills
Excellent ability to work effectively with others at varying levels
Excellent documentation skills
Ability to lead moderate to highly complex technology projects
Desired Skills
SailPoint File Access Manager
CyberArk Privileged Cloud
Atlassian BitBucket
Atlassian Confluence
AWS EC2, Lambda
SharePoint
Powered by JazzHR
T0AM7pwqj5
Systems Engineer II - Secure Systems
Security architect job in Cedar Rapids, IA
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
The ability to obtain and maintain a U.S. government issued security clearance is required. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
Our nation's security depends on the sacrifice of the men and women who defend our country. For them to do this effectively, they need technology that keeps them a step ahead of their adversaries. This means providing secure yet technologically advanced equipment to our service personnel, fielded as quickly as possible. Our commitment is to do exactly that.
This position is for a Systems Engineer II professional who will work onsite in our Cedar Rapids facility. Join the Mission Systems Secure Systems Department and help shape, define, and design communication solutions that connect militaries around the world! As a Systems Engineer, you will design and develop military products ensuring safe and protected communication. You will interface with multi-discipline engineering teams to create total system solutions, addressing both domestic and international customer needs.
We are looking for talented individuals that love to problem solve and have a desire to grow and gain exposure to new skills. Our customers come from all different backgrounds, and so do our employees. If you're passionate about what you could accomplish here, we'd love to hear from you.
What You Will Do
Perform analysis, architecture and design at all levels of the total system product including concept, design, fabrication, modeling, test, installation, operation, maintenance and disposal.
Perform functional analysis, trade studies, requirements allocation and interface definition studies to translate customer requirements into hardware and software specifications.
Provide analysis for the decomposition of customer specifications and system level requirements into sub-system and piece part requirements, and develop verification criteria and plans for the requirements
Perform technical planning, system integration, verification and validation, and supportability and effectiveness analyses for total system solutions.
Perform daily tasks in a classified and controlled lab environment
Travel up to 10%
What You Will Learn
You will gain Systems Engineering Requirements, Integration, Validation and Verification skills.
You will be provided with mentorship opportunities to gain experience as a Systems Engineer
You will obtain invaluable experience working with our radio subject matter experts in addition to security and crypto certification specialists, our customer base, and cross-functional integrated product team.
You can take flight to becoming knowledgeable in security hardened products with exposure to the variety of business and products in an ever-evolving field. We are growing, so can you!
Qualifications You Must Have
Typically requires a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 2 years prior relevant experience or an Advanced Degree in a related field.
The ability to obtain and maintain a U.S. government issued secret security clearance is required.
Qualifications We Prefer
Familiarity with the Scaled Agile framework
Exceptionally strong communication skills, experience presenting technical data to program management and executive leadership
Experienced with Cryptographic Hardware architecture/design, Network Encryption specifications and test methodologies
Experience with tools such as DOORS, CAMEO or similar, Software Languages such as Rust and Python
Experience with Model Based Systems Engineering
What We Offer
Benefits
Some of our competitive benefits package includes:
Medical, dental, and vision insurance
Three weeks of vacation for newly hired employees
Generous 401(k) plan that includes employer matching funds and separate employer retirement contribution, including a Lifetime Income Strategy option
Tuition reimbursement program
Student Loan Repayment Program
Life insurance and disability coverage
Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
Birth, adoption, parental leave benefits
Ovia Health, fertility, and family planning
Adoption Assistance
Autism Benefit
Employee Assistance Plan, including up to 10 free counseling sessions
Healthy You Incentives, wellness rewards program
Doctor on Demand, virtual doctor visits
Bright Horizons, child and elder care services
Teladoc Medical Experts, second opinion program
Eligible for relocation assistance
And more!
Eligible for relocation.
Learn More & Apply Now!
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond? At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
Role Type
*Please ensure the role type (defined below) is appropriate for your needs before applying to this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplySecurity Systems Engineer
Security architect job in Davenport, IA
Job Description
OBJECTIVE:
Design and quote innovative and reliable technology solutions by assessing customer needs and requirements. Develop effective Security, VMS, and Access Control system designs that align with industry standards and customer expectations.
CORE RESPONSIBILITIES include, but are not limited to the following:
Consulting: Be the professional technical "expert" in sales situations by consulting with customers, recommending solutions, and demonstrating products. Specifically identify key customer needs and produce a solution that best meets those needs.
Designs: Design systems that best fit the customers' needs independent of price. Be able to communicate the features, benefits, and business value of your solution.
Site Surveys: Effectively capture site conditions, device locations, and cable pathways, to accurately quote the system components and labor.
Quotes: Provides quotes that are accurate, timely, and with appropriate detail to effectively present our solution to the customer.
Job Files: Produce detailed and accurate project documentation that permits the Operations team to successfully implement the project.
Training: Maintain knowledge of your industry/technology. Achieve and maintain required industry certifications in accordance with CEC policy.
Other duties as assigned.
POSITION RESULTS DESCRIPTION
Quoting Efficiency - >30%
Overages -
Unfunded Change Orders - < 0.50% of closed business
Quote Turnaround - > 90% by customer due date
SUPERVISORY RESPONSIBILITIES
None.
MINIMUM QUALIFICATIONS:
4+ years experience in low voltage security systems. Installation or service of access control, security cameras, CCTV, etc.
Industry technical certification
Two year technical degree preferred
Must have a valid driver's license
PERSONAL ATTRIBUTES:
Strong interpersonal skills, ability to communicate and lead well at all levels of the organization and with staff at remote locations essential.
Strong problem solving and creative skills and the ability to exercise sound judgment and make decisions based on accurate and timely analyses.
Excellent Presentation Skills, large and small groups
High level of integrity and dependability with a strong sense of urgency and results-orientation.
OTHER SKILLS & ABILITIES:
Strong knowledge of communications systems, including audio, video, security, fire alarm, wireless, and data networks.
PC proficiency is essential (Windows environment) and strong working knowledge of Excel is preferred.
PHYSICAL, MENTAL AND ENVIRONMENTAL REQUIREMENTS:
Ability to define problems collects data, establish facts and draw valid conclusions.
The duties of this job require the employee to effectively talk and hear English language communications.
The employee is required to stand, walk, climb, sit and use hands and fingers.
Some light lifting of objects is required.
Reaching, grasping and carrying activities also required.
Specific vision abilities required by this job include close vision, distance vision, color vision, depth perception and the ability to adjust focus.
Above average intellectual ability and excellent judgment are needed to deal effectively with a wide range of problem solving and trouble shooting activities.
This job is primarily located in a private office.
The noise level in the work environment is usually moderate.
Although most work is performed inside, occasional outside activities are subject to seasonal temperature fluctuations.
"Essential duties and responsibilities" describe those functions considered to be essential to the performance of the job. All requirements may be modified to reasonably accommodate individuals with disabilities.
Communications Engineering Company is an Equal Opportunity/Affirmative Action Employer. We are committed to achieving and maintaining a diverse workforce. Qualified females, minorities, veterans and disabled individuals are encouraged to apply.