Post job

Security architect jobs in Manteca, CA

- 65 jobs
All
Security Architect
Security Engineer
Senior Security Engineer
Network Security Architect
Information Security Director
Information Security Consultant
  • Senior Security GRC Engineer

    Hill Physicians Medical Group

    Security architect job in San Ramon, CA

    At PriMed, your uniqueness is valued, celebrated, encouraged, supported, and embraced. Whatever your relationship with Hill Physicians, we welcome ALL that you are. We value and respect your race, ethnicity, gender identity, sexual orientation, age, religion, disabilities, experiences, perspectives, and other attributes. Our celebration of diversity and foundation of inclusion allows us to leverage our differences and capitalize on our similarities to better serve our communities. We do it because it's right! Job Description We are seeking a skilled Governance, Risk, and Compliance (GRC) Engineer to strengthen our security posture and ensure adherence to healthcare regulations. The GRC Engineer will play a vital role in designing, implementing, and maintaining risk management processes, compliance frameworks, and policies that align with healthcare regulations such as HIPAA and HITECH. The ideal candidate will have experience with tools like SAI360, CyberArk, and other compliance and security platforms. Job Responsibilities: Develop, implement, and maintain GRC policies, processes, and controls in alignment with industry best practices and regulatory requirements (e.g., HIPAA, HITECH, NIST, ISO 27001). Perform risk assessments and develop mitigation strategies for identified security risks. Administer and optimize SAI360 for governance, risk management, and compliance activities, including reporting and policy management. Collaborate with cross-functional teams to ensure new projects and systems are designed with security and compliance in mind. Monitor and report on compliance status, identifying gaps and proposing remediation strategies. Oversee third-party vendor risk assessments and ensure adherence to security requirements. Support internal and external audits by providing documentation, evidence, and responses to audit findings. Conduct security awareness training programs and promote a culture of compliance within the organization. Required Experience/Skills/Knowledge: 5+ years of experience in Governance, Risk, and Compliance roles or a related field. Strong knowledge of healthcare regulations, including HIPAA, HITECH, and other relevant standards. Proficiency in GRC tools such as SAI360 for compliance and risk management. Experience with privileged access management tools like CyberArk. Solid understanding of risk assessment methodologies and security frameworks, including NIST CSF, ISO 27001, or COBIT. Excellent communication and collaboration skills to engage with technical and non-technical stakeholders. Strong analytical and organizational skills with attention to detail. This role is critical in maintaining our organization's compliance with healthcare security standards and reducing risk exposure. Required Education: Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. Equivalent work experience may be considered in lieu of a degree.
    $131k-184k yearly est. 4d ago
  • Security Architect - TikTok Account

    Tiktok 4.4company rating

    Security architect job in San Jose, CA

    We are the TikTok Account Team, responsible for the account system of all TikTok brand products. We are currently seeking an Account Security Technical Architect to join our team. Here, there are global business scenarios, challenges posed by hundreds of millions of users, and cutting-edge identity authentication technologies. * Design account security architecture, plan the core system design for identity authentication, session management, and account protection; * Counter complex security threats, identify and defend against risks such as credential stuffing, phishing, simulated login, brute force cracking, etc., and build a multi-layered protection system including multi-factor authentication, device fingerprinting, risk control engine, etc.; * Promote cross-team implementation, closely collaborate with product, R&D, data, and risk control teams, and integrate security design into business scenarios; * Embrace the industry's cutting-edge trends, explore and implement technical standards such as FIDO2, Passkey, OAuth2.1, OpenID Connect, and Zero Trust Architecture, and promote internationalization and security compliance.Minimum Qualifications * Bachelor's degree or above, with experience in account security, identity authentication, or large-scale system architecture * Familiarize with the challenges faced by account security and the corresponding technical countermeasures * Familiar with protocols such as OAuth2, OIDC, SAML, FIDO2, etc., and have practical experience in architecture or implementation * Familiar with distributed system architecture, with the ability to design high-concurrency and high-availability systems Preferred Qualifications: * Possess excellent cross-team communication and facilitation skills
    $155k-220k yearly est. 36d ago
  • Network and Security Architect

    Lam Research 4.6company rating

    Security architect job in Fremont, CA

    The requirements listed below are representative of the knowledge, skill, and/or ability required: Build the networks by taking into consideration various factors like, bandwidth requirements, infrastructure requirements and security. Responsible for estimating growth and plan for the network upgrade to meet future demands. Ability to work on multiple priorities and/or projects simultaneously. Excellent listening and communications skills, both verbal and written. flexible in working hours to support global project and migration during non-business hours. Ability to collaborate with multiple teams to achieve project goals. Organized, detail oriented and self-motivated. Ability to provide and maintain detailed documentation on each project. Demonstrate knowledge in advanced networking and infra security domain. Ability to successfully train the operation team on the new solution(s) implemented. Problem-solving skills and abilities to meet reasonable deadlines. Ability to work with little supervision and manage a team. Identify opportunities and recommend solutions for improving the overall network health by assessing overall effectiveness and efficiency. Stay current with existing, emerging, and evolving technologies and when appropriate, make recommendations as to how we may best harness a new technology or idea. BS in Engineering, Computer Science, or related field, with 15+ years of work experience in networking domain Have completed minimum 3 significant network solution designs In-depth knowledge of the OSI network model Experience with different network types (i. e. LAN, WAN, WLAN) Network protocols and technologies, e. g. DNS, HTTP, SSL, 802. 1x, Load Balancing, WAN optimization, SD-WAN, VPN, PKI Cisco network products (Nexus and Catalyst switches, routers, WLC, ISE) Knowledge of Palo Alto Networks firewall and IPS configuration and troubleshooting Knowledge of F5 load balancer Knowledge of public cloud is highly desirable Knowledge of Zero-Trust networking is highly desirable CCNP certification CCIE certification PCNSE certification Azure Network Engineer Associate
    $144k-184k yearly est. 2d ago
  • Principal Cloud Security Architect

    Nextracker Inc. 4.2company rating

    Security architect job in Fremont, CA

    We are seeking a highly skilled Principal Cloud Security Architect with deep experience designing and securing distributed systems that span embedded devices, edge components, and cloud-based infrastructures. This individual will be responsible for evaluating and supporting the security of our cloud-connected robotic and inspection products. They will also support the creation of cloud-based multiple product integrations, both within the company and with partner customers and companies. The ideal candidate will combine strong software engineering skills with expertise in cybersecurity, secure coding, and modern cloud technologies. You will play a critical role in evaluating system designs, reviewing code, and ensuring secure deployments across the full technology stack. Key Responsibilities * Architect and Design: * Evaluate and document end-to-end system architectures integrating embedded, edge, and cloud components. * Evaluate and coordinate efforts to establish integrated solutions between multiple product-specific systems. * Security and Compliance: * Establish and maintain secure coding and deployment standards. * Drive adoption of DevSecOps principles and security automation throughout CI/CD pipelines. * Perform code reviews and threat modeling for embedded, backend, and cloud software. * Collaborate with IT and product security teams to ensure compliance with security frameworks (e.g., ISO 27001, NIST, OWASP, or similar). * Evaluate new technologies, frameworks, and tools for secure and efficient deployment. * Work closely with firmware, backend, and cloud engineering teams to define interfaces and data security requirements. * Partner with product management and operations to align architecture with product roadmaps and reliability goals. Required Qualifications * Education: Bachelor's or Master's degree in Computer Science, Electrical Engineering, Software Engineering, or related field. * Experience: 7-10+ years of professional experience in software architecture, system design, or cybersecurity engineering. * Technical Expertise: * Proven experience designing distributed or hybrid cloud systems (AWS, Azure, or GCP). * Hands-on coding experience in one or more modern languages (Python, C/C++, Go, Java, or Rust). * Experience evaluating and enforcing secure coding design, particularly in evaluating risks in deploying cloud-connected embedded devicies. * Experience implementing effective CI/CD scanning and analysis tools. * Strong understanding of embedded software principles, real-time systems, and device-to-cloud communication (MQTT, REST, gRPC, etc.). * Familiarity with infrastructure-as-code (Terraform, CloudFormation) and container orchestration (Kubernetes, Docker) and the key methods of baking security into those products. * Knowledge of common vulnerabilities and exposures (CVEs), and mitigation strategies in both embedded and cloud contexts. Preferred Qualifications * Experience with zero-trust architectures, identity management (OAuth2, JWT, IAM), and secure OTA updates. * Background in industrial IoT, energy systems, or mission-critical control environments. * Contributions to open-source security tools or frameworks. * Security certifications such as CISSP, CEH, CSSLP, or AWS/Azure Security Specialty. Soft Skills * Excellent communication skills for cross-functional collaboration. * Ability to balance innovation with compliance and operational reliability. Nextracker offers a comprehensive benefits package. We provide health care coverage, dental and vision, 401(K) participation including company matching, company paid holidays with unlimited paid time off, generous discretionary company bonuses, life and disability protection and more. Employees in certain positions may be eligible for stock compensation. All plans are in accordance with relevant plan documents. For more information on Nextracker's benefits please view our company website at ******************* Pay is based on market location and may vary based on factors including experience, skills, education and other job-related reasons. The annual salary range for this position is $220,000 - $250,000. At Nextracker, we are leading in the energy transition, providing the most comprehensive portfolio of intelligent solar tracker and software solutions for solar power plants, as well as strategic services to capture the full value of solar power plants for our customers. Our talented worldwide teams are transforming PV plant performance every day with smart technology, data monitoring and analysis services. For us at Nextracker, sustainability is not just a word. It's a core part of our business, values and our operations. Our sustainability efforts are based on five cornerstones: People, Community, Environment, Innovation, and Integrity. We are creative, collaborative and passionate problem-solvers from diverse backgrounds, driven by our shared mission to provide smart solar and software solutions for our customers and to mitigate climate change for future generations. Nextracker is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Culture is our Passion
    $220k-250k yearly Auto-Apply 34d ago
  • Enterprise Information Security Architect

    Quantumscape Corp 3.9company rating

    Security architect job in San Jose, CA

    QuantumScape is on a mission to transform energy storage with solid-state lithium-metal battery technology. The company's next-generation batteries are designed to enable greater energy density, faster charging and enhanced safety to support the transition away from legacy energy sources toward a lower carbon future. We are seeking a highly skilled and experienced Enterprise Information Security Architect to join our team. In this critical role, you will be responsible for designing, developing, and implementing security architectures and solutions that protect QuantumScape's information assets and infrastructure. You will work closely with multi-functional teams to ensure that security is integrated into all aspects of our technology and business operations. Responsibilities: Security Architecture Design: * Develop and maintain a comprehensive enterprise security architecture that aligns with business objectives, regulatory requirements, and industry standard methodologies. * Design secure solutions for complex systems, including cloud, on-premises, and hybrid environments. * Evaluate and recommend security technologies and solutions to address current and emerging threats. * Design security architectures to protect QuantumScape's unique intellectual property and R&D efforts. * Address the security challenges of scaling up manufacturing and production. * Ensure the security of our supply chain and partner ecosystems. Risk Management: * Conduct security risk assessments to identify vulnerabilities and potential threats to QuantumScape's information assets. * Develop and implement risk mitigation strategies and controls. * Provide guidance on security standard methodologies and compliance requirements (e.g., NIST, ISO 27001). Security Implementation and Integration: * Collaborate with IT, engineering, and other teams to integrate security into the system development lifecycle (SDLC). * Provide security expertise and guidance during the implementation of new systems and technologies. * Develop security standards, policies, and procedures. Security Leadership and Collaboration: * Act as a domain expert on security principles and provide guidance to other teams. * Stay up-to-date on the latest security trends, threats, and technologies. * Participate in security incident response and investigations as needed. * Mentor other security team members. Qualifications * Bachelor's degree in Computer Science, Information Systems, or a related field; Master's degree preferred. * 10+ years of experience in information security, with a focus on security architecture. * Extensive knowledge of security principles, technologies, and standard methodologies. * Experience designing and implementing security solutions in cloud (e.g., Azure, GCP, SaaS, etc.) and on-premises environments. * Expertise in networking, operating systems, databases, and application security. * Experience with risk management frameworks and methodologies (e.g., NIST, ISO 27001). * Superb communication, collaboration, and problem-solving skills. Preferred Skills * Experience in a manufacturing or research and development environment. * Knowledge of battery technology or related fields. * Familiarity with industrial control systems (ICS) security. * Experience with security automation and orchestration. * Relevant security certifications (e.g., CISSP, CISA, GCSA) are highly desirable. Personal Attributes * Strong passion for security and a commitment to protecting information assets. * Ability to think strategically and translate business requirements into secure technical solutions. * Proactive individual who takes ownership of their work. * Ability to work effectively in a fast-paced, dynamic environment. * Excellent interpersonal and communication skills. This position is required to work onsite 5 days per week to meet the minimum essential duties and requirements of this position. As an on-site R&D and manufacturing operations organization, in-person face to face interaction is essential to building authentic relationships, trust, teamwork, and collaboration. Compensation & Benefits: Salary range for this role is $155,700-$237,500, and a salary will be determined by the candidate's experience and educational background. QuantumScape also offers an annual bonus and a generous RSU/Equity package as part of its compensation plan. In addition, we do offer a tremendous benefits plan including employee paid health care, Employee Stock Purchase Plan (ESPP), and other exciting perks. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive benefits and privileges of employment. Please contact us to request an accommodation. Nearest Major Market: San Jose Nearest Secondary Market: Palo Alto
    $155.7k-237.5k yearly 42d ago
  • Principal Security Engineer, Enterprise Security - San Jose

    Bytedance 4.6company rating

    Security architect job in San Jose, CA

    Team Introduction ByteDance's Enterprise Security team is responsible for global IT enterprise cyber security, server security, endpoint security, application security construction, and protection work. They work to improve overall enterprise security capabilities and security posture, providing security processes, security assessments, security operations, and security vulnerability management services. The team also supports enterprise security teams and business departments in meeting their security requirements. Responsibilities * Responsible for the design and implementation of enterprise security architectures and solutions, tracking the evolution of cutting-edge security technologies, and keeping update of the latest security threats and trends. * Provide security solutions for business departments' requirements, keeping security solutions implementable and leading the implementation of these plans. * Regularly assess and analyze weaknesses in the existing security architecture, provide improvement suggestions. * Collaborate tightly and effectively with global & regional IT teams, Infrastructure teams and XFN business security teams to ensure the rationality and feasibility of security solutions, verifying the efficacy of security protection. * Design, plan, and drive viable security solutions for enterprise security related requirements, enhancing the adaptability of security solutions to business needs. * Focus on addressing requirements such as endpoint (include mobile devices) security, network security, data security, security operation and threat management etc. * Assist in building and implementing IT security policies and standards to ensure compliance with internal and external regulations and requirements. * Collaborate with the security tools operations team to drive the design and development of automated security operations and maintenance solutions. * Provide technical support and training on security architectures and solutions to internal teams.Minimum Qualifications * 5+ years of experience in the cyber security industry, 3+ years hands on experience of security tools operation and maintenance, with 3+ years experience in security architecture or solution experience or 3+ years security tools operation team management experience. * Practical experience in endpoint security, network security, data security, security operation and threat management etc. at least cover 2 domains. * Familiar with various security devices and solutions, such as FW, IDS, NTA, VPN, zero-trust-related technologies and mainstream products, such as SASE, ZTNA, SWG, CASB etc. EDR, DLP, BYOD, MDM, Email security, identification security, FIDO2, SSO, vulnerability management., patching management. etc. * Excellent problem-solving and analytical skills, able to quickly identify risks and provide solutions. * Exceptional communication, coordination, and project management skills, enabling effective collaboration with teams at all levels and XFN teams. Preferred Qualifications * 3+ years of work experience in multinational corporations or large enterprises, Internet companies, global companies with enterprise network security design or operations experience; Global team management experience or multi time zone collaboration experience. * Have a strong sense of responsibility and ownership, strong awareness of achieving goals. * Familiar with mainstream security standards and frameworks, such as NIST, ISO2700X, Kill Chain, att&ck etc. * Have cyber security certifications (e.g. CISSP, CCSP, CISM, etc.) is preferred.
    $150k-222k yearly est. 16d ago
  • QA Automation and Security Test Architect

    Intelliswift 4.0company rating

    Security architect job in Pleasanton, CA

    QA Automation and Security Test Architect Job ID: 21-14390 Top must haves are: * 5+ years of experience as Automation Architect and doing web application security testing as per OWASP standards * 5+ years of experience designing, developing and executing Automation Scripts using Selenium * Ability to provide application security risk assessment of technologies stack used in cloud or web applications. TECHNICAL KNOWLEDGE AND SKILLS: * 5+ years of experience as an Automation Architect and doing web application security testing as per OWASP standards * 5+ years of experience designing, developing and executing Automation Scripts using Selenium * Knowledge and experience in other Automation tools (like QTP, Rational Robot, AutoIT) * Understanding and working knowledge with Data Driven, Keyword Driven and Hybrid frameworks * Knowledge of Defect Management Tool (Quality Center, JIRA) * Exploit application security flaws and vulnerabilities with attack simulations on multiple projects working against specific client-focused scopes of work. * Ability to provide application security risk assessment of technologies stack used in cloud or web applications. * Ability to perform application vulnerability assessments or application penetration testing, utilizing tools commercial and open source tools. * Perform, review and analyze security vulnerability data to identify applicability and false positives. * Create risk based security code reviews (Static, Dynamic and Interactive). * Conduct application security testing in line with OWASP (Open Web application Security Project) * Mentor junior engineers to build their skills and contribution levels * Write technical reports that include suggested resolution for identified problem areas and perform operational risk assessment. * Perform Proof of Concept testing and do evaluation of new security technologies and tools. * Assist and support Security Test Analysts as they perform vulnerability, network and network security assessments. * Experience DevOps tools like DynaTrace, Chef, Splunk and Vagrant. * Experience with scripting languages (e.g. python, PERL, SQL) a plus * Ability to perform below tasks: o Dynamic Application Security Testing (DAST) o Static Application Security Testing (SAST) o Interactive Application Security Testing (IAST) o Web Application Penetration Testing o Product Security Testing o Cloud Application Security Testing o Web Services Security Testing o Security Code Review o Network Security Assessment * Application Security Testing Tools: VeraCode, Synopsys, Contrast IAST, Burp Suite, Tamper Data, Live http Headers, Client Fortify, VeraCode, OWASP Top 10, N-Stealth, Hailstorm, Paros, SANS Top 20, Acunetix, Nessus * Fast learning, problem solving and analytical skills * Excellent communication, presentation, and interpersonal skills * Track record of good time management * Efficient in effort estimation, planning and prioritization * Ability to understand Business Requirements and transform them to functional units * Knowledge of SDLC and implementation * Knowledge of SoapUI * Proficiency in Java language * Proficiency in SQL * Job details *
    $125k-167k yearly est. 60d+ ago
  • Platform Security Architect

    F5 Networks 4.6company rating

    Security architect job in San Jose, CA

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. F5 Distributed Cloud Platform is a world class, mission critical and highly reliable platform serving a global customer base. Our customers depend on us to keep their business highly available and secure around the planet. We are rapidly expanding our platform in many dimensions - global footprint, infrastructure, performance, low latency etc., We are looking for a hands-on, driven, results oriented Architect in our Platform Security organization. This organization is responsible for the build and life cycle management of Distributed Cloud platform with Secure first mindset. We build, engineer and evolve systems, tools and practices to ensure our Distributed Cloud is always protected from code to traffic. Responsibilities Design and implement a blueprint with Security First mindset for Distributed Cloud. Work closely with product and development teams to ensure software and product architectures are developed in line with the vision and future direction of the company. Drive architectural reviews, design validations, and threat models to ensure operational, security, and scalability concerns are addressed early. Work closely with Engineers and Managers to drive the engineering and deployment and operationalization of Distributed Cloud platform. Ensure the documenting and recording every aspect of Distributed Cloud. Planning, tracking and scheduling software deliverables. Ensure teams can identify problems within software systems and drive issues to resolution. Developing good working relationships with other employees and senior leadership. Engineer systems and tools to secure communication between On Prem and Public Clouds. Evolve Distributed Cloud to meet federally regulated standards - FedRamp, IL5, HIPAA. Build and Operate systems for data protection, identifying and mitigating threats from supply chains, external attacks. Required Qualifications Bachelor's degree in computer science or equivalent professional experience of 12+ years in architecture roles, with 5+ years in a Principal Architect capacity for a global SaaS or cloud platform in Security. Experience building and operating Products serving in Federal regulatory customers - FedRamp, IL5, HIPAA etc., Proven experience designing and operating multi-tenant, multi-region, highly available SaaS services at global scale. Deep technical expertise in CDN, edge computing, routing, load balancing, DDoS mitigation, and application layer security. Understanding of containers and orchestration technologies. Broad understanding of coding and programming languages. Extensive knowledge of the software development process and corresponding technologies. Excellent understanding of design patterns and architectural styles. Proficient knowledge of the operation and development designs of agile software. Strong soft skills, including attention to detail, problem-solving and communication skills. #LI-ZB1 The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $234,400.00 - $351,600.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************* . F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $234.4k-351.6k yearly Auto-Apply 60d+ ago
  • Information Security

    Tech-Mex

    Security architect job in Pleasanton, CA

    This job requires relocation to the United States, Silicon Valley, through the use of a TN visa. If selected for this job, the process of coming to the United States will be handled by Tech-Mex. The Information Security Engineer maintains 24x7 support, responds to vendor security questionnaires, performs monitoring and maintenance of the security infrastructure and components, participates in project planning and deployment of new technologies and will be responsible for remediation of identified compliance and risk gaps. He/she works independently, operating under the defined guidelines established by the Director of Information Technology and Security. ESSENTIAL Job Duties & Responsibilities Monitor and advise on information security issues related to the systems and workflow to ensure the internal and external security controls for the company are appropriate and operating as intended Documenting gaps between vendor requirements and National MIs infrastructure Coordinate and execute IT security projects Coordinate response to information security incidents Conduct company-wide audits and manage remediation plans Collaborate with other areas of IT to manage security vulnerabilities Conduct research to keep abreast of latest security issues Ensures that system documentation is accurate and updated as needed Participates in disaster recovery (DR) exercises as directed Logfile review and analysis Install and maintain new systems Prioritize remediation of gaps based on internal and external audits Prepares compliance reports by collecting, analyzing, and summarizing data Evaluates information to determine compliance with laws, regulations, or standards MINIMUM QUALIFICATIONS 3-5 plus years related work experience Vendor audit and compliance experience, preferably with the SIG framework Strong technical skills in anti-virus, DLP, and PKI Strong experience with the McAfee suite of products Solid understanding of networking concepts and system administration Experience with Nessus, RSA envision, RedHat Linux and database security Knowledge of data compliance and privacy standards and regulations as they apply to insurance and banking industries Knowledge of Information Security Standards (ISO27001, NIST, etc) Self-motivated, self-directed and shows attention to detail while working Ability to effectively prioritize and execute reporting tasks in a fast-paced, results-driven environment Extensive experience working in a team-oriented, collaborative environment with a diverse team of business and IT staff Bachelor's degree in Computer Science or Information Systems preferred; Professional certifications are an advantage Essential Worker Competencies The ability to function independently with minimal supervision. Works ethically and with integrity supporting organizational goals and values Displays commitment to excellence Completes work in a timely manner and meets deadlines Good verbal and written communication skills Meets productivity standards and achieves key outcomes Is dependable and keeps commitments Contributes to building a positive team spirit and treats others with respect Candidate will be relocated to the United States
    $142k-208k yearly est. 60d+ ago
  • Security Engineer - D&R

    Figure 4.5company rating

    Security architect job in San Jose, CA

    Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot, Figure 02, is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It's time to build. We are looking for a Security Engineer to join the Security & Privacy team at Figure, focusing on designing, implementing, and managing the detection and response tooling and processes. Responsibilities: Design, pilot, and implement central logging and alerting systems to detect malicious activity on Figure's infrastructure, including endpoints, networks, labs, and cloud environments Develop tools and automation strategies to improve Figure's ability to hunt threats and respond to incidents Participate in team operations, such as investigating events generated by the alerting pipeline and triage potential incidents, and drive response efforts in case of an active incident Identify, analyze, and build threat intelligence on relevant trends in adversary tactics, techniques, and procedures (TTPs) for sophisticated threat actors spanning APTs and cybercrime. Requirements: Experience several of the following detection and response areas: digital forensics, malware analysis, incident management, host/network intrusion detection, threat intelligence Demonstrated knowledge in threat hunting and developing logic to automate threat detection and incident response Work record of collaborating with internal and external stakeholders at all levels of a company Practical experience in a BeyondCorp model Strong software engineering (beyond scripting or automation) skills in C/C++, Rust, Golang, Python or similar Solid knowledge of operating system internals (Linux, Windows, mac OS), and experience with detection in Cloud environments (Azure, GCP, AWS) Bachelor of Science in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field 6+ years of experience in the field of security monitoring or related security role Excellent verbal and written communication skills, with high attention to detail The US base salary range for this full-time position is between $150,000 - $350,000 annually. The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.
    $150k-350k yearly Auto-Apply 60d+ ago
  • Principal Cloud Security Engineer

    Astreya 4.3company rating

    Security architect job in San Ramon, CA

    We are seeking an experienced and proactive DevSecOps engineer with expertise in AWS and AZURE Platforms to join our Cybersecurity Application Platform Security Team. This role combines expertise in AWS & AZURE platforms security with a strong foundation in DevSecOps practices to ensure the ‘secure by design', ‘secure by default' principles throughout development, deployment, and operation of AWS & AZURE platforms. The ideal candidate will have hands-on experience with Cybersecurity platforms, with a deep understanding of AWS & AZURE cloud platforms. This position plays a critical role in assisting customer portfolio teams to secure SaaS, PaaS platforms, maintain compliance and availability. DevSecOps engineer role responsible for security automation of cloud services. Job Responsibilities Secure the AWS & AZURE Platform: Implement best practices to ensure AWS & AZURE applications are “secure by design” and “secure by default” protecting sensitive data and workflows. Provide guidelines on usage of AppExchange / Vendor products versus using out of box capabilities with a keen eye for cybersecurity risk. Risk Identification & Mitigation: Proactively identify security risks across the AWS & AZURE ecosystem and implement solutions to address vulnerabilities. DevSecOps Enablement: Drive DevSecOps practices within the organization by embedding security into the development lifecycle of AWS & AZURE applications. Collaboration with Stakeholders: Partner with various customer portfolio teams to influence their roadmaps, ensuring security is a foundational element in their strategies. Data Security & Compliance: Ensure compliance with data protection regulations and implement robust data security measures within AWS & AZURE and integrated systems. Cloud Integration Expertise: Leverage your knowledge of AWS & AZURE to secure integrations Continuous Improvement: Stay up to date on emerging threats, trends, and technologies in application security to continuously improve our security posture. Communication & Advocacy: Act as a trusted advisor on security matters, effectively communicating complex technical concepts to both technical and non-technical stakeholders. Qualifications We're looking for someone with: Recent 5+ years of experience in IT focused on DevSecOps, DevOps or Security Engineering roles. Recent 3+ years of shell scripting, aws-cli, python, lambda. Recent 1+ years of Terraform deployments and Terraform templates (Infrastructure as Code). Knowledge of and experience with CI/CD technologies. Knowledge of and experience with continuous security practices. Knowledge of infrastructure automation and infrastructure as code. Demonstrated ability to integrate security practices into AWS & AZURE applications. Proficiency in data protection techniques such as encryption, tokenization, and access controls. Bachelor's degree in computer science, Information Security, or a related field. Desired Skills Experience with Salesforce, SAP, and MuleSoft architecture, development, and administration with a focus on platform security (e.g., profiles, roles, permissions, encryption). Excellent Communication Skills: Ability to clearly articulate security concepts to diverse audiences, including engineers, product managers, and executives. Collaboration & Influence: Proven ability to work cross-functionally with teams to align on security priorities and influence roadmaps. Preferred Technical Skills/ Qualifications Relevant certifications in Cybersecurity - SSCP, CISSP, CISM preferred. AWS certifications (e.g., AWS Certified Solutions Architect or AWS Certified Security Specialty). AZURE certifications. Experience with regulatory frameworks like GDPR, CCPA, or HIPAA. The ideal candidate will be passionate about security, have a proactive mindset, and be able to balance security requirements with business needs. They should be comfortable working in a fast-paced environment and be able to adapt to evolving security threats and technologies Salary Range $63.58 - $100.38 USD (Hourly) Please note that the salary information provided herein is base pay only (gross); it does not include other forms of compensation which may or may not apply to this specific position, namely, performance-based bonuses, benefits-related payments, or other general incentives - none of which are guaranteed, may be subject to specific eligibility requirements, and are wholly within the discretion of Astreya to remit. Further, the salary information noted above is a range that consists of a minimum and maximum rate of pay for this specific position. Where an applicant or employee is placed on this range will depend and be contingent on objective, documented work-related considerations like education, experience, certifications, licenses, preferred qualifications, among other factors. Astreya offers comprehensive benefits to all Regular, Full-Time Employees, including: Medical provided through Cigna (PPO, HSA, EPO options) / Medical provided through Kaiser (HMO option only) for California employees only Dental provided through Cigna (DPPO & DHMO options) Nationwide Vision provided through VSP Flexible Spending Account for Health & Dependent Care Pre-Tax Account for Commuter Benefit/Parking & Transit (location-specific) Continuing Education and Professional Development via various integrated platforms, e.g. Udemy and Coursera Corporate Wellness Program Employee Assistance Program Wellness Days 401k Plan Basic Life, Accidental Life, Supplemental Life Insurance Short Term & Long Term Disability Critical Illness, Critical Hospital, and Voluntary Accident Insurance Tuition Reimbursement (available 6 months after start date, capped) Paid Time Off (accrued and prorated, maximum of 120 hours annually) Paid Holidays Any other statutory leaves, paid time, or other fringe benefits required under state and federal law
    $63.6-100.4 hourly Auto-Apply 60d+ ago
  • Senior Security Engineer

    Adobe Systems Incorporated 4.8company rating

    Security architect job in San Jose, CA

    Our Company Changing the world through digital experiences is what Adobe's all about. We give everyone-from emerging artists to global brands-everything they need to design and deliver exceptional digital experiences! We're passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen. We're on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours! Position summary: The Senior Security Engineer position will be part of the Enterprise Security organization consisting of IAM professionals across several technologies. This specific position will have a specialized role in directory services and SaaS applications! It will focus on large implementations of Entra ID with integrations with other directories, IDPs, applications, and automated workflows. We give technical direction, administer tools, and provide support for various security technologies. We participate in driving Enterprise Security projects that use our cloud directory services for various internal and external Adobe services. We work with other specialists, architects, security teams, and software engineer teams across Adobe and collectively provide services, guidance, and strategies that protect services and data as well as adhere to various global government regulations. You will work with business customers, management teams, infrastructure teams, development teams, project managers, and other security teams to help implement the vision, structure, standards, and plan solutions that support the future architecture. At Adobe, you will be immersed in an exceptional work environment that is recognized throughout the world on Best Companies lists! You will also be surrounded by colleagues who are committed to helping each other grow through our Check-In approach where ongoing feedback flows freely. If you're looking to make an impact, Adobe is the place for you. Discover what our employees are saying about their career experiences on the Adobe Life blog and explore the meaningful benefits we offer. Adobe is an equal opportunity employer. We welcome and encourage diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability or veteran status. Primary Responsibilities May Include, but Are Not Limited To: * Managing deep and complex directory architectures and services span directories, IDPs, and federated environments. * Providing guidance and architecting solutions for directory service strategies across a variety of internal customers at Adobe. * We help test, implement, and support secure services used by end-users, devices, and application workflows to all of Adobe. * We engineer secure identity solutions for on-premises and cloud environments. * We are a team of Security Engineers that handle incoming requests, respond to issues, solve reported problems, and develop solutions. * We meet with teams to get business requirements, understand workflows, and devise solutions. * We help assess SaaS implementations for identity integrations and general security. * We generate useful metrics to help make decisions, identify issues, and manage our sevices. Requirements: * Possess a Bachelor's or advanced degree in MIS, Computer Science, Cybersecurity, or Engineering OR 10+ years in IT or Cybersecurity * Comfortable working on and leading different projects with many teams at one time * In-depth understanding of Windows, Mac and UNIX/Linux based systems, permissions, and interoperability. * Strong knowledge of machine to machine and application to machine connections using MFA, certificates, tokens, and other methods. * Strong understanding of the identity lifecycle, secure by design, least privileged and zero trust. * An in-depth knowledge and understanding of managing and securing cloud directories (e.g. Entra ID/AWS/Okta) and integrating with traditional directories (e.g. Active Directory/389DS/ LDAP based directories). * Proficient in written and verbal communications, skilled at working alongside differing viewpoints to accomplish shared objectives. * Able to work independently and as a team member. * Capable of conveying technical concepts to diverse audiences including non-technical users, architects, and senior leadership. * Professional written, verbal, and presentation communication skills to engage with senior leadership. * A deep understanding of Cloud Directories, especially Entra ID, and how to secure it, use conditional access policies, and apply/create automation. * Ability to teach and mentor others while fostering a collaborative environment. * Can model leadership behavior and help to grow other's leadership behavior. Preferred: * Understanding of Desktop operating systems including Windows, Linux, and Mac * Experience or knowledge of Public Key Infrastructure * Strong abilities in programming/scripting languages for automating repeatable tasks like Python, PowerShell, etc. * Experience and/or Knowledge of dashboarding and log correlation engines such as Grafana, Telegraph, Splunk, etc. * Experience with SaaS Security Posture Management technologies. * Experience with developing PowerBI dashboards. The Person Should: * Have strong social skills, ability to "win people over" and be a great teammate. * Be able to communicate, influence and mentor across business and executive leadership as well as partners while being able to explain the benefits for their teams. * Be neutral toward technology, vendor and product choices; more interested in results than in personal preferences. * Have the ability to think creatively and to solve complex tasks and problems with minimal direction. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this position is $160,900 -- $297,400 annually. Pay within this range varies by work location and may also depend on job-related knowledge, skills, and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process. At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP). In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award. State-Specific Notices: California: Fair Chance Ordinances Adobe will consider qualified applicants with arrest or conviction records for employment in accordance with state and local laws and "fair chance" ordinances. Colorado: Application Window Notice Nov 10 2025 12:00 AM If this role is open to hiring in Colorado (as listed on the job posting), the application window will remain open until at least the date and time stated above in Pacific Time, in compliance with Colorado pay transparency regulations. If this role does not have Colorado listed as a hiring location, no specific application window applies, and the posting may close at any time based on hiring needs. Massachusetts: Massachusetts Legal Notice It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more. Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call **************.
    $160.9k-297.4k yearly 24d ago
  • Information Security Consultant

    Jobsbridge

    Security architect job in San Jose, CA

    Assist Manager of Information Security on all application and network security activities Evaluate, design, deploy, support, and monitor information security systems Identify security exposures and develop mitigation plans Work with our operations team to implement information security solutions Advocate security awareness and teach secure behavior and methods Lead technical security incident response activities and forensic investigations Implement best-practice security procedures, standards, and guidelines Support Paydiant customers in developing and maturing their own mobile application security programs. Assist in compliance activities such as external audits from customers, regulatory compliance projects, and overall information security reviews Support integration with the Client's Security Operations center and be central point of contact for any esclations. Qualifications Information Security, PCI-DSS, Compliance, Audit, SOX Additional Information Multiple Openings
    $102k-146k yearly est. 60d+ ago
  • Infrastructure Security Operation and Validation Architect - Global Security Organisation

    Tiktok 4.4company rating

    Security architect job in San Jose, CA

    The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates. Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us - whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop - GSO protects their data and privacy, so they can have a secure and trustworthy experience. The GSO provides industry-leading security and privacy services to Bytedance, guided by four principles: trust and transparency, business enablement, risk-informed decision-making, and proactive risk reduction. We strive to build sustainable, world-class security capabilities. SecOps Validation Team (STOV) is responsible for the tools and technologies that support the TikTok infrastructure. STOV oversees technical validation, security operations, and drives engineering enhancements, including the deployment, configuration, and maintenance of security technologies across various domains. The role will be responsible for design and development of Product Security technical controls required by security policy and regulations. The validation targets include product security of TikTok product family and Secure SDLC process. It will provide a solid foundation to evaluate maturity for TikTok product family and Secure SDLC. This role ensures product security governance is embedded into every stage of development, enabling scalable compliance while fostering collaboration across teams. This role will focus on TikTok's global cloud and data center infrastructure. The team is responsible for administering security controls and implementing the validation across TikTok's hybrid-cloud environment, including native and 3rd party cloud environments, global datacenters, etc. The team partners with key stakeholders like IECS teams to design and implement the cloud and infrastructure security framework, establish security baselines, remediate cloud and infrastructure security vulnerabilities, administer and maintain security controls, and manage TikTok's multi-cloud services. Responsibilities * Lead the effort to define and implement TikTok's cloud and data center infrastructure security controls, in a global hybrid-cloud architecture * Play a leading role in designing and implementing cloud and infrastructure security control validation frameworks and automation * Enable the team to optimize TikTok's infrastructure security posture * Working with TikTok related stakeholders to define the right priorities in cloud security * Review and assess utilization of cloud security tooling, improve cloud and infrastructure security tool operation cost and efficiency. * Using validation frameworks: find control gaps, develop and report cloud and infrastructure security metrics and drive remediation plans to bridge any gaps.Minimum Qualifications * Experience in security application, architecting, operation experience with at least one cloud provider, preferably Google Cloud Platform (GCP), Amazon Web Services (AWS), Microsoft Azure or Oracle Cloud Infrastructure (OCI), with deep understanding of following areas like: IAM, zero trust, network security, data encryption etc. * Familiar with data center security controls and implementation, knowing related industrial standards and regulations * Familiar with cloud security industry standards and best practices (CSA CCM, CIS benchmarks, NIST etc.), having experience with cloud security standards and regulations * Experience of working closely with compliance, legal teams * Ability to communicate technical concepts to a broad range of technical and non-technical staff along with excellent analytical and problem-solving skills Preferred Qualifications * Degree in computer science, information technology, cybersecurity, or a related field is usually required. * Having certification of any AWS security, GCP security etc * 3+ years leading technical teams or projects * Cloud security automation or security tools development experience will be a big plus * Good experience in Secure SDLC or security governance
    $155k-220k yearly est. 48d ago
  • Principal Cloud Security Architect

    Nextracker 4.2company rating

    Security architect job in Fremont, CA

    We are seeking a highly skilled Principal Cloud Security Architect with deep experience designing and securing distributed systems that span embedded devices, edge components, and cloud-based infrastructures. This individual will be responsible for evaluating and supporting the security of our cloud-connected robotic and inspection products. They will also support the creation of cloud-based multiple product integrations, both within the company and with partner customers and companies. The ideal candidate will combine strong software engineering skills with expertise in cybersecurity, secure coding, and modern cloud technologies. You will play a critical role in evaluating system designs, reviewing code, and ensuring secure deployments across the full technology stack. Key Responsibilities Architect and Design: Evaluate and document end-to-end system architectures integrating embedded, edge, and cloud components. Evaluate and coordinate efforts to establish integrated solutions between multiple product-specific systems. Security and Compliance: Establish and maintain secure coding and deployment standards. Drive adoption of DevSecOps principles and security automation throughout CI/CD pipelines. Perform code reviews and threat modeling for embedded, backend, and cloud software. Collaborate with IT and product security teams to ensure compliance with security frameworks (e.g., ISO 27001, NIST, OWASP, or similar). Evaluate new technologies, frameworks, and tools for secure and efficient deployment. Work closely with firmware, backend, and cloud engineering teams to define interfaces and data security requirements. Partner with product management and operations to align architecture with product roadmaps and reliability goals. Required Qualifications Education: Bachelor's or Master's degree in Computer Science, Electrical Engineering, Software Engineering, or related field. Experience: 7-10+ years of professional experience in software architecture, system design, or cybersecurity engineering. Technical Expertise: Proven experience designing distributed or hybrid cloud systems (AWS, Azure, or GCP). Hands-on coding experience in one or more modern languages (Python, C/C++, Go, Java, or Rust). Experience evaluating and enforcing secure coding design, particularly in evaluating risks in deploying cloud-connected embedded devicies. Experience implementing effective CI/CD scanning and analysis tools. Strong understanding of embedded software principles, real-time systems, and device-to-cloud communication (MQTT, REST, gRPC, etc.). Familiarity with infrastructure-as-code (Terraform, CloudFormation) and container orchestration (Kubernetes, Docker) and the key methods of baking security into those products. Knowledge of common vulnerabilities and exposures (CVEs), and mitigation strategies in both embedded and cloud contexts. Preferred Qualifications Experience with zero-trust architectures, identity management (OAuth2, JWT, IAM), and secure OTA updates. Background in industrial IoT, energy systems, or mission-critical control environments. Contributions to open-source security tools or frameworks. Security certifications such as CISSP, CEH, CSSLP, or AWS/Azure Security Specialty. Soft Skills Excellent communication skills for cross-functional collaboration. Ability to balance innovation with compliance and operational reliability. Nextracker offers a comprehensive benefits package. We provide health care coverage, dental and vision, 401(K) participation including company matching, company paid holidays with unlimited paid time off, generous discretionary company bonuses, life and disability protection and more. Employees in certain positions may be eligible for stock compensation. All plans are in accordance with relevant plan documents. For more information on Nextracker's benefits please view our company website at ******************* Pay is based on market location and may vary based on factors including experience, skills, education and other job-related reasons. The annual salary range for this position is $220,000 - $250,000. At Nextracker, we are leading in the energy transition, providing the most comprehensive portfolio of intelligent solar tracker and software solutions for solar power plants, as well as strategic services to capture the full value of solar power plants for our customers. Our talented worldwide teams are transforming PV plant performance every day with smart technology, data monitoring and analysis services. For us at Nextracker, sustainability is not just a word. It's a core part of our business, values and our operations. Our sustainability efforts are based on five cornerstones: People, Community, Environment, Innovation, and Integrity. We are creative, collaborative and passionate problem-solvers from diverse backgrounds, driven by our shared mission to provide smart solar and software solutions for our customers and to mitigate climate change for future generations. Nextracker is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. Culture is our Passion
    $220k-250k yearly Auto-Apply 35d ago
  • Software Engineer, Security Engineering

    Bytedance 4.6company rating

    Security architect job in San Jose, CA

    About the team: The security operation platform team is missioned to build innovative security solutions to protect our products, infrastructures, and customers from cyberattacks. We take on the challenges of fighting against ever evolving cyber threats and attacks. Our team is passionate about tackling sophisticated cyber security problems, through effective software engineering, solid computer science fundamentals, and curiosity about cyber warfare. We are a team who values trust in each other, and fosters collaboration across functional teams. We dream of ambitious goals and are determined to achieve them fast and energetically. Responsibilities: * Design, implement, and deploy security operation platforms, including but not limited to SIEM, SOAR, TIP, Incidence Management, and XDR products. * Design, deploy, and operate large scale distributed systems for global threat intelligence curation, threat activity monitoring, and data analysis. * Collaborate with multiple cross-functional global teams, analyze product requirements, and deliver highly effective products rapidly. * Manage individual project priorities, deadlines and deliverables.Minimum Qualifications: * Bachelor's degree or above in Computer Science, Computer Engineering or other relevant majors, with at least two years of software development experience in the cybersecurity domain. * Excellent algorithm, data structure, and programming skills; Proficiency in at least two general purpose programming languages. * Proficiency in back-end development, including distributed data systems and computing systems. * Proficiency in front-end development, including languages, layouts, runtimes, and frameworks. * Ability to think critically and to formulate solutions to problems in a clear, concise and timely manner. Preferred Qualifications: * Experience in building security operation platforms such as SIEM, SOAR, TIP, and incident management for threat analysts and response teams, who use the platform to manage and triage threats and alerts. * Experience in building threat intelligence systems that collect, discover, monitor, and analyze cyber threat activities. In particular, experience in developing and deploying honeypots under large scale cloud settings, and generating threat intelligence that disrupt harmful cyber activity in real time.
    $150k-222k yearly est. 16d ago
  • Security Engineer, Application Security

    Figure 4.5company rating

    Security architect job in San Jose, CA

    Figure is an AI Robotics company developing a general purpose humanoid. Our humanoid robot, Figure 02, is designed for commercial tasks and the home. We are based in San Jose, CA and require 5 days/week in-office collaboration. It's time to build. We are looking for a Security Engineer to join the Security & Privacy team at Figure, focusing on security of the robot as well as associated backend services. We are looking for excellent security engineers who have experience in breaking and building complex software systems, with experience in AI and embedded systems. Responsibilities Conduct security assessments of applications, embedded systems, back-end services, and business integrations, as well as build tooling for a secure development lifecycle Design technical solutions to mitigate security weaknesses on the robot and our service stack. Work with teams across the company to implement them. Build frameworks and systems to prevent classes of vulnerabilities Hunt for vulnerabilities and insecure coding patterns on our product stack (backend services and robot internal systems) Be a champion for security and user privacy Requirements Experience in several of the following application security domains: penetration testing, vulnerability research, security assessment, secure coding practices, security architecture & design, hardware security Strong software engineering (not scripting or automation) skills in C/C++, Rust, Golang, Python or similar Experience with securing embedded systems, including secure boot, secure identity, OTA, or others Solid foundation in web security, mobile security, or cryptography Ability to collaborate with internal and external stakeholders whilst prioritizing tasks and work independently under minimal supervision. BS in Computer Science, Engineering, Information Systems, or equivalent years of experience in a related technical field 3+ years of experience in the field of application security or related security role Passion for learning and helping others Excellent verbal and written communication skills, with high attention to detail The US base salary range for this full-time position is between $150,000 - $350,000 annually. The pay offered for this position may vary based on several individual factors, including job-related knowledge, skills, and experience. The total compensation package may also include additional components/benefits depending on the specific role. This information will be shared if an employment offer is extended.
    $150k-350k yearly Auto-Apply 14d ago
  • Security GRC Engineer - 25-210

    Hill Physicians Group

    Security architect job in San Ramon, CA

    We're delighted you're considering joining us! At Hill Physicians Medical Group, we're shaping the healthcare of the future: actively managed care that prevents disease, supports those with chronic conditions and anticipates the needs of our members. Join Our Team! Hill Physicians has much to offer prospective employees. We're regularly recognized as one of the “Best Places to Work in the Bay Area” and have been recognized as one of the “Healthiest Places to Work in the Bay Area.” When you join our team, you're making a great choice for your professional career and your personal satisfaction. DE&I Statement: At PriMed, your uniqueness is valued, celebrated, encouraged, supported, and embraced. Whatever your relationship with Hill Physicians, we welcome ALL that you are. We value and respect your race, ethnicity, gender identity, sexual orientation, age, religion, disabilities, experiences, perspectives, and other attributes. Our celebration of diversity and foundation of inclusion allows us to leverage our differences and capitalize on our similarities to better serve our communities. We do it because it's right! Job Description: We are seeking a skilled Governance, Risk, and Compliance (GRC) Engineer to strengthen our security posture and ensure adherence to healthcare regulations. The GRC Engineer will play a vital role in designing, implementing, and maintaining risk management processes, compliance frameworks, and policies that align with healthcare regulations such as HIPAA and HITECH. The ideal candidate will have experience with tools like SAI360, CyberArk, and other compliance and security platforms. Job Responsibilities: Develop, implement, and maintain GRC policies, processes, and controls in alignment with industry best practices and regulatory requirements (e.g., HIPAA, HITECH, NIST, ISO 27001). Perform risk assessments and develop mitigation strategies for identified security risks. Administer and optimize SAI360 for governance, risk management, and compliance activities, including reporting and policy management. Collaborate with cross-functional teams to ensure new projects and systems are designed with security and compliance in mind. Monitor and report on compliance status, identifying gaps and proposing remediation strategies. Oversee third-party vendor risk assessments and ensure adherence to security requirements. Support internal and external audits by providing documentation, evidence, and responses to audit findings. Conduct security awareness training programs and promote a culture of compliance within the organization. Required Experience/Skills/Knowledge: 5+ years of experience in Governance, Risk, and Compliance roles or a related field. Strong knowledge of healthcare regulations, including HIPAA, HITECH, and other relevant standards. Proficiency in GRC tools such as SAI360 for compliance and risk management. Experience with privileged access management tools like CyberArk. Solid understanding of risk assessment methodologies and security frameworks, including NIST CSF, ISO 27001, or COBIT. Excellent communication and collaboration skills to engage with technical and non-technical stakeholders. Strong analytical and organizational skills with attention to detail. Preferred Experience/Skills/Knowledge: Experience working in the healthcare industry or with Protected Health Information (PHI). Familiarity with tools such as Varonis, Extrahop, or SIEM platforms. Knowledge of data classification, data loss prevention (DLP), and data governance. Relevant certifications such as Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or Certified Risk and Information Systems Control (CRISC). Experience implementing compliance with NIST 2.0 or managing frameworks for healthcare-related threats. Required Education: Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field. Equivalent work experience may be considered in lieu of a degree. Additional Information: This role is critical in maintaining our organization's compliance with healthcare security standards and reducing risk exposure. The position offers a collaborative environment with opportunities for professional development and certifications. Competitive salary and benefits package, with the chance to make a significant impact on healthcare security. Salary: $135,000 - $150,000 Annual Hill Physicians is an Equal Opportunity Employer
    $135k-150k yearly Auto-Apply 18d ago
  • Security Engineer

    F5, Inc. 4.6company rating

    Security architect job in San Jose, CA

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. Join a team using leading edge security technology and processes to protect the F5 enterprise and product environment. The Security Engineer position will execute strategic processes and implement technical solutions to enable our information security program and address day-to-day security challenges amidst the industry's evolving technology landscape. Primary Responsibilities * Build and implement new security controls, processes and tools. * Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations. * Leverage native Azure, GCP, and AWS cloud services to automate and improve existing security and control activities. * Develop or implement open-source/third-party tools to assist in detection, prevention and analysis of security threats. * Perform technical security assessments against product and enterprise cloud hosted, virtual, and on-premise systems including static and dynamic analysis, and threat modeling. * Review and test changes to services, applications, and networks for potential security impacts. * Collaborate with Architecture, Site Reliability Engineering and Operations teams to develop and implement technical solutions and security standards. * Stay abreast on security best practices and secure design principles. * Review changes to and ongoing operations of enterpise environments and supporting systems for security and compliance impacts. * Assist in incident detection and response efforts. * Implement zero-trust patterns with cloud agnostic tools to support enterprise business units. * Implement, design, develop, administer, and manage enterprise security tooling. Knowledge, Skills and Abilities * Experience working with high-availability enterprise production environments * Familiarity with scripting languages (e.g., (Go, Python, Ruby, Rust,etc.). and building scripts for process improvements * Experience automating security testing and reporting outputs * Technical knowledge and hands-on experience with security and networking security, basic networking protocols, cloud security, network security design, intrusion prevention/detection, and firewall architecture * Experience assessing and implementing technical security controls * Willingness to innovate and learn new technologies * Excellent interpersonal and relationship skills with a collaborative mindset * Knowledge or familiarity with technological stack (Big-IP, Azure, AWS, GCP, CentOS, Hashicorp Vault, Palo Alto, Qualys). * Experience with network and application vulnerability and penetration testing tools. * Baseline competency in administration of Microsoft Azure Cloud, Amazon Web Services (AWS), Google Cloud Platform (GCP) or equivalent public cloud infrastructure. * Exposure to DevOps tooling, CI/CD pipelines, container orchestration, and infrastructure as code approach (e.g. Puppet, Chef, Ansible, Terraform, Jenkins, CircleCI, Artifactory, Git) * Strong written and verbal cowimmunication skills. * Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance and professionalism. * Agile, tactful, and proactive attitude that can manage prioritization and know when to escalate. Qualifications * B.S. or M.S. in Computer Science, Engineering, or related field, or equivalent experience. * 3+ years of relevant security and networking experience LI-KT1 The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. The annual base pay for this position is: $120,000.00 - $180,000.00 F5 maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, geographic locations, and market conditions, as well as to reflect F5's differing products, industries, and lines of business. The pay range referenced is as of the time of the job posting and is subject to change. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. More details about F5's benefits can be found at the following link: ******************************************** F5 reserves the right to change or terminate any benefit plan without notice. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com). Equal Employment Opportunity It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
    $120k-180k yearly Auto-Apply 10d ago
  • Site Reliability Engineer - Security Engineering - San Jose

    Bytedance 4.6company rating

    Security architect job in San Jose, CA

    About Security Team at ByteDance The security engineering team is missioned to build security services, platforms and technologies, as well as to support cross-functional teams to protect our users, products and infrastructures. In this team you'll have a unique opportunity to have first-hand exposure to the strategy of the company in key security initiatives, especially in building scalable and secure-by-design systems and solutions. You also have opportunities to go through the whole lifecycle of security products or services, are encouraged to participate in each phase, each part of the projects and have the whole picture of what we are working on. We count on our site reliability engineers (SREs) to empower our users with high availability and stellar performance level to pursue their missions from security perspective. As we expand our business in APAC, we are currently seeking experienced SRE to deliver insights from massive-scale security systems in real time. You will not only address those regular day-to-day technical problems but also are encouraged to bring fresh ideas, investigate the existing infrastructure, identify problems, and develop new solutions to those challenges of a kind not previously addressed by big tech. We are moving fast while expanding on a large scale (1B+ users). This role assumes a huge impact and plays a key role in the company's business. Responsibilities 1. Lead or drive an SRE team to design and implement the security SRE framework for the company's security infrastructure, and build cutting-edge SRE technologies for system deployment, upgrade, capacity planning and rapid troubleshooting and disaster recovery. 2. With cutting edge technologies, drive the implementation and the improvement of automation and the intelligence of the SRE infrastructure and evolve it into a platform; build solutions to measure and monitor availability, scalability, latency and overall system health of security products and services developed by partner teams, and improve the efficiency and sustainability of system maintenance. 3. Drive the design and development of the SRE infrastructure and maintenance tools for the full lifecycle of security system development; support the rapid iteration and system reliability of the company's security services. 4. Coordinate support to cross-functional teams and external customers with security products and services. 5. Responsible for building, scaling, managing and coaching the SRE team, as well as driving technical decisions as a leader.Minimum Qualifications 1. Bachelor's degree in Computer Science or related fields, with minimum 5+ years of relevant experience in developing and maintaining large-scale distributed SRE platform/tooling with automation. 2. Solid programming skills, mastering at least one of the programming skills such as Go/Java/Python/Shell, and being able to deliver high quality code; Familiar with at least one of the web frameworks, such as Gin/Django/Spring, with a decent understanding of their design principles. 3. Experienced and hands-on skills in debugging, troubleshooting and optimization of sophisticated distributed systems and platforms 4. Deep understanding of OS (Linux, windows), Network (TCP/IP, HTTP, etc), with good exposure to network, storage, as well as computer architecture. 5. Familiar with Redis/MySQL/PostgreSQL database architecture and working principle, familiar with daily operation and maintenance including but not limited to high availability cluster construction, monitoring, backup, fault handling, Performance optimization. 6. Familiar with cloud native framework with experience in Kubernetes. Good experience with SRE tools such as Ansible, ELK, Prometheus and Grafana. Preferred Qualifications 1. Passionate about self-studying cutting edge technologies and staying relevant. Strong communication and collaboration skills, and willing to take ownership.
    $150k-222k yearly est. 16d ago

Learn more about security architect jobs

How much does a security architect earn in Manteca, CA?

The average security architect in Manteca, CA earns between $104,000 and $212,000 annually. This compares to the national average security architect range of $92,000 to $179,000.

Average security architect salary in Manteca, CA

$149,000
Job type you want
Full Time
Part Time
Internship
Temporary