Post job

Security architect jobs in New Mexico - 66 jobs

  • Security Architect

    Oracle 4.6company rating

    Security architect job in Santa Fe, NM

    As a Product Security architect, you will be performing security reviews and providing hands-on help to development teams to address security issues systematically. We're looking for passionate engineer who is able to consider business impact and risk to Oracle and its customers while dealing with any security issues. You will work a trusted partner with one or more SaaS product development teams, while simultaneously collaborating with your peers in evolving or creating new security patterns or standards to address any security issues/gaps in an efficient way. You will research the product security landscape and help steer product security architecture for solutions that will provide a competitive edge for Oracle SaaS. This position requires strong product security and application security experience. It will be highly valuable to have past experience in working in or with product development teams. **Responsibilities** **Key responsibilities:** + Evaluate existing and proposed SaaS Service architectures and perform security architecture reviews, threat modeling, risk assessment and provide guidance on mitigating the security risks. + Partner and collaborate with development teams for SaaS products and provide security expertise to product design conversations and implementation decisions. + Work with product teams and peers in security operations to analyze and triage security issues in production and deploy any mitigation such as WAF policies + Review and assess security posture and CVEs in third party libraries or products. + May perform source code review for vulnerability fixes by development teams. + Keep up to date on emerging threats and standards and translate into actionable guidance including but not limited to crypto, AI Security, Identity, Web security, multi-tenant deployment + Evolve security processes and integrate security architecture into SDLC leveraging AI and automation, as appropriate. + Engage in technical discussions, as needed and serve as a subject matter expert for security architecture and trusted advisor to executive leadership and key stakeholders. + Define and influence secure-by-design architecture standards, security patterns, and reference implementations for SaaS Services + May train and mentor team members **Qualifications:** + 7+ years of information security experience including product security, application security, security testing/offensive security, security tools and security architecture. + Experience in helping or leading a product security architecture and assurance effort in a large-scale IaaS/PaaS/SaaS Cloud Service Provider, or Fortune 500 company. + Expert knowledge of modern vulnerability types and threats including intelligence, discovery, mitigation, remediation, and root cause. + Understanding of security risks in AI based solutions including AI Agents, MCP, Generative AI and ML. + Hands-on experience with at-least one programming languages such as Java, Python. + Hands-on experience and knowledge of product development lifecycle in a large enterprise software company. + Understanding of industry standard frameworks such as OWASP, MITRE, NIST, PCI, FedRAMP, etc. + Ability to guide and engage individuals and development teams located across multiple geographies and or cultures. + Knowledge of Oracle Cloud Infrastructure or Oracle SaaS Services is a plus. + Excellent written and verbal communication skills, strong analytical and problem-solving skills. Disclaimer: **Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.** **Range and benefit information provided in this posting are specific to the stated locations only** US: Hiring Range in USD from: $96,800 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral. Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. Oracle US offers a comprehensive benefits package which includes the following: 1. Medical, dental, and vision insurance, including expert medical opinion 2. Short term disability and long term disability 3. Life insurance and AD&D 4. Supplemental life insurance (Employee/Spouse/Child) 5. Health care and dependent care Flexible Spending Accounts 6. Pre-tax commuter and parking benefits 7. 401(k) Savings and Investment Plan with company match 8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation. 9. 11 paid holidays 10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours. 11. Paid parental leave 12. Adoption assistance 13. Employee Stock Purchase Plan 14. Financial planning and group legal 15. Voluntary benefits including auto, homeowner and pet insurance The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted. Career Level - IC5 **About Us** As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity. We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all. Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
    $96.8k-251.6k yearly 60d+ ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Product Security Engineer, AI

    Meta 4.8company rating

    Security architect job in Santa Fe, NM

    Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys. **Required Skills:** Product Security Engineer, AI Responsibilities: 1. Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more 2. Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities 3. Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products **Minimum Qualifications:** Minimum Qualifications: 4. BS or MS in Computer Science or a related field, or equivalent experience 5. 8+ years of experience finding vulnerabilities in interpreted languages. Knowledge of best practice secure code development 6. Experience with exploiting common security vulnerabilities 7. Knowledge of common exploit mitigations and how they work 8. Coding and scripting experience in one or more general purpose languages **Preferred Qualifications:** Preferred Qualifications: 9. Experience creating software that enables security processes, especially those leveraging AI/ML for automation or augmentation 10. Experience integrating or building AI-powered tools to assist with vulnerability detection, code review, or threat modeling 11. Experience creating software that enables security processes 12. 8+ years of experience finding vulnerabilities in C/C++ code 13. Contributions to the security community (public research, blogging, presentations, bug bounty) 14. Demonstrated ability to collaborate with AI researchers or engineers to apply AI in security workflows **Public Compensation:** $184,000/year to $257,000/year + bonus + equity + benefits **Industry:** Internet **Equal Opportunity:** Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment. Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
    $184k-257k yearly 60d+ ago
  • FT Security Level II

    Legends 4.3company rating

    Security architect job in Albuquerque, NM

    Security Guard Level I & II DEPARTMENT: Security REPORTS TO: Director of Security FLSA STATUS: Full-time, Non-Exempt, Hourly Responsible for overseeing the safety and security of Albuquerque Convention Center facilities and Albuquerque Convention Center patrons, employees, and assets. Essential Duties and Responsibilities * Responsible for maintaining twenty-four (24) hour security of the interior and exterior of the building. * Provide security services for assigned facilities; conduct periodic patrols by foot, to ensure only authorized personnel are on facility grounds. * Lock and unlock facility doors as directed. * Regulate the flow of employees and the public on facility premises to ensure safety. * Respond to calls for service and reports of crimes in progress; call for emergency services (police, medical or fire) as necessary; assist outside agencies as needed. * Conduct preliminary investigations to determine if a crime has been committed; determine whether further action is warranted; document incidents and prepare reports. * May conduct periodic fire and safety hazard inspections of facilities; develop recommendations for enhancing security precautions. * Monitor and operate computers, CCTV, and Fire Alarm Panels. * Perform duties in the control center as assigned; dispatch security via radio; answer telephones; maintain 24-hour incident log; notify chain of command in matters of serious nature. * Provide general assistance to the public; receive and document all lost and found articles; respond to and resolve inquiries. * Prepare a variety of reports regarding security enforcement activities. * Collect parking fees, charging customers accordingly. * Provide information and assistance to the public regarding parking information and options; respond to complaints or direct complaints to appropriate staff. * Provide security of the ACC parking structure. * Monitor the occupancy of the parking structure and provide alternate parking locations if necessary. * Maintain and clean surrounding work area. * Perform related duties and responsibilities as required. * Interact with ACC patrons, vendors & employees in a courteous and professional manner. * Conduct bag search / wand / monitors metal detectors for all those entering the facility. * Complete all assigned tasks within the guidelines & deadlines set by the Director of Security & Parking. * Comply & adhere to the department's performance, conduct & attendance standards. * Comply with all legal & ethical instructions given by the Director of Security & Parking. * *Adhere to the Security department's prime directives. * Basic computer skills (i.e.: Microsoft Word, Outlook, etc.). * Communicate clearly and concisely in English * Perform related duties and responsibilities as required. Qualifications * High school diploma or GED * Current valid New Mexico Guard Card to the appropriate level as necessary or obtain the NM Guard Card within 3 months of employment. Preferred Knowledge * Principles and practices of security procedures * Principles and practices of fire safety and evacuation procedures * Exceptional Customer Service habits * Verbal De-Escalation Concepts * Methods and techniques of two-way radio communication * Principles and procedures of record keeping and basic report preparation * Pertinent Federal, State, and local laws, codes and regulations * Safe work practices Preferred Skills and Ability * Ability to prepare clear and concise reports * Operate two-way radio * Perform the essential functions of the job with or without reasonable accommodation * Establish and maintain effective working relationships with those contacted in the course of work Working Conditions Environmental: Work may be performed indoors or out, in inclement weather. Exposure to loud environments and to potentially hostile individuals. Physical: Essential and supplemental functions may require maintaining physical conditions necessary for sitting, standing, climbing stairs or walking for prolonged periods of time; running, kneeling, and light carrying. NOTE: The essential responsibilities of this position are described under the headings above. They may be subject to change at any time due to reasonable accommodation or other reasons. Also, this document in no way states or implies that these are the only duties to be performed by the employee occupying this position. Legends Global is an Equal Opportunity/Affirmative Action employer, and encourages Women, Minorities, Individuals with Disabilities and protected Veterans to apply. VEVRAA Federal Contractor
    $116k-146k yearly est. 60d+ ago
  • Information Systems Security Officer (ISSO) - Socorro, New Mexico

    Serco 4.2company rating

    Security architect job in Socorro, NM

    New Mexico, US Information Security/Cyber 12394 Full-Time $85032.41 - $141720.69 Description & Qualifications** Description & Qualifications** Are you an Information Systems Security Officer looking for a place to make an impact every day? Serco has a place for you! Join our team today as the Information Systems Security Officer in support of our Ground-Based Electro-Optical Deep Space Surveillance (GEODSS) program in Socorro, New Mexico. This mission is vital to keeping existing satellites safe and to provide critical information to organizations launching new satellites in the future. One of the assets USSF uses to accomplish this mission is the Ground-based Electro Optical Deep Space Surveillance (GEODSS) System.This optical sensor is employed at three (3) different locations around the world (White Sands Missile Range, New Mexico; Diego Garcia, British Indian Ocean Territory; and Maui, Hawaii) and helps track the objects in deep space orbit (altitude of 10,000 to 45,000 km). In this role, you will: + Perform computer security assessments and implement required countermeasures; implement and maintain a site mission system and network Cybersecurity program. + Execute cybersecurity responsibilities protecting and defending information systems by ensuring the availability, integrity, confidentiality, authentication, and non-repudiation of data through the application of cybersecurity measures. + Protect ISs, their operating system, peripherals (media and devices), applications, and the information it contains against loss, misuse, unauthorized access, or modification. + Ensure all users and ISSOs receive COMPUSEC training. + Provide information to update system Assessment and Authorization (A&A) packages. + Review TEMPEST packages and provide documentation for TEMPEST package updates. To be successful in this role, you will have: + An active DoD Secret clearance. + An active DoD IAT Level II compliant certification + A high school diploma/GED + 2+ years' of relevant working experience + Ability to travel up to 10% of the time as needed. Additional desired experience and skills: + An active DoD Top Secret clearance + A bachelor's degree in computer science or other related field. + Working knowledge of Microsoft Windows OS and RedHat Linux and Tru64 UNIX Operating System. + An active DoD IAM Level III compliant certification + CISSP highly preferred If you are interested in supporting and working with our military and sailors and a passionate Serco team- then submit your application now for immediate consideration. It only takes a few minutes and could change your career! **Company Overview** Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco's 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters. To review Serco benefits please visit: ************************************************ . If you require an accommodation with the application process please email: ******************** or call the HR Service Desk at ************, option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email. Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our Applicant Privacy Policy and Notice. Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email ********************* . Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics. **Pay Transparency** Our Total Rewards package includes competitive pay, performance-based incentives, and benefits that promote well-being and work-life balance-so you can thrive both professionally and personally. Eligible employees also gain access to a wide range of benefits from comprehensive health coverage and health savings accounts to retirement plans, life and disability insurance, and time-off programs that support work-life balance. Program availability may vary based on factors such as contract type, location, hire date, and applicable collective bargaining agreements. Salary range: The range for this position can be found at the top of this posting. This range is provided as a general guideline and represents a good faith estimate across all experience levels. Actual base salary will be determined by a variety of factors, including but not limited to, the scope of the role, relevant experience, job-related knowledge, education and training, key skills, and geographic market considerations. For roles available in multiple states, the range may vary to reflect differences in local labor markets. In addition to base salary, eligible positions may include other forms of compensation such as annual bonuses or long-term incentive opportunities. Benefits - Comprehensible benefits for full-time employees (part-time employees receive a limited package tailored to their role): + Medical, dental, and vision insurance + Robust vacation and sick leave benefits, and flexible work arrangements where permitted by role or contract + 401(k) plan that includes employer matching funds + Tuition reimbursement program + Life insurance and disability coverage + Optional coverages that can be purchased, including pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection + Birth, adoption, parental leave benefits + Employee Assistance Plan To review all Serco benefits please visit: ******************************************* . Serco complies with all applicable state and local leave laws, including providing time off under the Colorado Healthy Families and Workplaces Act for eligible Colorado residents, in alignment with our policies and benefit plans. The application window for this position is for no more than 60 days. We encourage candidates to apply promptly after the posting date, as the position may close earlier if filled or if the application volume exceeds expectations. Please submit applications exclusively through Serco's external (or internal) career site. If an applicant has any concerns with job posting compliance, please send an email to: ******************** .
    $85k-141.7k yearly Easy Apply 6d ago
  • Information System Security Officer II

    Grs, Inc. 4.4company rating

    Security architect job in Albuquerque, NM

    Global Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Officer II. Job Descriptio n: Summary: The ISSO II's primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities. Essential Duties & Responsibilities: Review, prepare, and update AIS authorization packages Notify customer when changes occur that might affect AIS authorization Perform AIS self-inspections, provide security coordination and review of all system test plans Identify AIS vulnerabilities and implement countermeasures Represent the customer on various technical review and inspection teams Conduct security surveys at subordinate facilities and gather pertinent security documentation for inclusion into system authorization packages Coordinate, prepare, and track AIS inspections, reports, and responses Maintain AIS security records and prepare Co-Utilization Agreements for network nodes operating in government facilities Prepare reports on the status of security safeguards applied to computer systems Ensure AIS and network nodes are operated, maintained, and disposed of in accordance with security policies and practices Perform ISSO duties in support of in-house and external customers Assist Department of Defense, National Agency and Contractor organizations with the development of assessment and authorization (A&A) efforts Review, track, and conduct AIS training Requirement: Four (4) years related experience Bachelor's Degree in a related area or equivalent experience (Four (4) years) Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 within 6 months of the date of hire. Security Requirements: Current Top Secret Clearance with SCI Eligibility Eligibility for access to Special Access Programs Willingness to submit to a Counterintelligence Polygraph Skills: Ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners Working knowledge of Microsoft Office (Word, PowerPoint, and Excel) Possess a high degree of originality, creativity, initiative requiring minimal supervision Must be familiar with security policy/manuals and the appropriate DCIDs/JAFANs and other guiding policy documents Requires travel within the organizational geographic Area of Responsibility (AOR) (note - could be extensive, and will include both air and ground transportation) Must be able to lift up to 50lbs Physical Requirements : This position requires employees to be willing and able to: sit, bend, reach, stoop, squat, stand, and walk. Communication: Excellent customer service via phone and face to face conversation, excellent written and oral command of English. GRS is an Equal Opportunity Employer. GRS will continue to abide by obligations under VEVRRA and Section 503 physical or mental disability, protected veteran status, or any other characteristics that are protected by law.
    $76k-100k yearly est. Auto-Apply 24d ago
  • Information Systems Security Manager (ISSM)

    Msccn

    Security architect job in Albuquerque, NM

    ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you have the required skill set, education requirements, and experience, please click the submit button and follow the next steps.Job Details The Southwest Division (SWD) of Applied Research Associates, Inc. (ARA) is seeking an experienced Information Systems Security Manager (ISSM) to join our Albuquerque, NM. security team. In this role, you will be responsible for overseeing and managing the classified information security program; developing and implementing information security policies, standards and procedures. The ISSM will support Information System (IS) full life cycle activities including preparing accreditation/certification packages in accordance with relevant regulations and standards, maintenance and monitoring of operational systems, system upgrades and feature additions during program execution, and system decommission and de-certification activities. The ISSM must have experience in developing Risk Management Facility (RMF) accreditation packages to ensure IS's are operated and maintained in accordance with ARA and customer security requirements. The ISSM will maintain Authorization to Operate (ATO) certifications for networked systems and ARA applications by developing IS documentation including the executive summary, system security plan, privacy plan, security control assessment, privacy control assessment, risk assessments, equipment specifications, and any relevant plans of action and milestones. The ability to work independently, as well as with teammates, is paramount for this position as it is an extremely dynamic environment. A successful candidate will have strong written and oral communication skills who takes the initiative and creates decisive paths to complete tasks. The ISSM should have experience with security assessments & hardening tools; possess strong understanding of operating systems (Windows and Linux); have or be able to obtain Security + certification and have a working knowledge of eMASS applications. ARA is an employee-owned company that offers competitive compensation and excellent benefits including medical and dental coverage, 401(k) profit sharing, life and long-term disability insurance, performance bonuses, and professional development. Salary Range: $100,000 - $115,000 (Dependent on experience) Basic Qualifications: SECRET security clearance with the ability to obtain a TOP SECRET security clearance Position requires a minimum of five to seven years of related experience. Previous experience as an ISSO/ISSM is required. DoD Directive 8570.1 IAM Level II or higher certification. Familiar with the 32 CFR Part 117, DAAG, NIST RMF, DoDM 5205.07, and/or JSIG IS requirements. Experience investigating security incidents to include data spills, data integrity incidents and malicious code incidents Experience with compliance certifications of various operating systems. Experience with Windows and Server as well as Linux/Unix-based systems. Education Preferred: Bachelors or better. Experience Required 5-7 years: Relevant work experience
    $100k-115k yearly 60d+ ago
  • Offensive Security Engineer, Assessments (Web3)

    Coinbase 4.2company rating

    Security architect job in Santa Fe, NM

    Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system. To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems. Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be. While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported. The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services. *What you'll be doing (ie. job duties):* * Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure. * Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities. * Stay informed on emerging security trends, advisories, and academic research in the Web3 space. * Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities. * Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community. * Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements. * Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement. * Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program. * Mentor and train junior security engineers in Web3 bug bounty triage and analysis. * Provide on-call support for critical Web3 bug bounty-related incidents. * Document and report on Web3 bug bounty metrics and program effectiveness. *What we look for in you (ie. job requirements):* * Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field. * 3+ years of experience in Web3 application security and penetration testing. * Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components. * Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms. * Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25). * Strong analytical skills to identify trends and patterns in vulnerabilities. * Excellent communication skills for engaging with internal teams. * Passion for security and a drive to improve Web3 security posture. * Ability to work independently and take ownership of penetration testing initiatives. * Energy and self-drive for continuous learning in the rapidly evolving crypto space. * Excellence in clear, direct, and kind communication with technical and non-technical stakeholders. * Experience building relationships with product, engineering, and security teams. *Nice to haves:* * Participation in CTFs, bug bounty programs, or open-source security research. * Expertise in Application Security, Network Security, or Cloud Security. * Relevant security certifications (e.g., OSCP, GPEN). * Experience developing and implementing security tooling to support bug bounty triage and analysis. * Experience with bug bounty programs and platforms, including triage, validation, and researcher communication. * Strong analytical skills to identify trends and patterns in bug bounty submissions. * Excellent communication skills to effectively engage with bug bounty researchers. Position ID: P69494 \#LI-remote *Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)). Pay Range: $152,405-$179,300 USD Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying. Commitment to Equal Opportunity Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law. Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations*********************************** *Global Data Privacy Notice for Job Candidates and Applicants* Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required. *AI Disclosure* For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description. For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate. *The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
    $152.4k-179.3k yearly 60d+ ago
  • Information Security Officer (56240)

    First State Community Bank 3.7company rating

    Security architect job in Farmington, NM

    Information Security Officer Make a Positive Impact First State Community Bank is seeking a detail-oriented and technically skilled Information Security Officer. The Information Security Officer (ISO) is responsible for developing, implementing, and maintaining First State's Information Security and Cybersecurity Governance Program. This role ensures the confidentiality, integrity, and availability of information assets, compliance with regulatory requirements, and protection against evolving cyber threats. The ISO provides oversight, governance, and strategic direction for all information security initiatives across the organization. Responsibilities in Accordance with Our Corporate Values Professionalism Maintain and enforce the company's Information Security and Cybersecurity Governance Program in alignment with FFIEC, GLBA, and other regulatory standards. Develop and update security policies, procedures, and standards. Report regularly to senior management and the Board on security posture, risk assessments, and compliance status. Accountability Conduct ongoing risk assessments and cybersecurity evaluations. Identify vulnerabilities and implement mitigation strategies. Oversee vendor security reviews and third-party risk management. Initiative Lead the Incident/Cyber Incident Response Team. Develop and maintain the Business Continuity and Disaster Recovery plans. Coordinate investigations of security breaches and regulatory reporting. Adaptability Implement security awareness programs for employees. Provide guidance and training on emerging threats and best practices. Monitor network and system security controls. Ensure proper documentation of network architecture and security measures. Collaborate with IT teams to integrate security into all technology initiatives. What You Can Expect Competitive pay and benefits package - including an annual bonus program 401(k) with generous employer match benefit Helpful, qualified, and available leadership A caring, stable work environment Strong growth opportunity in this position. The Data and Workflow Analyst will be able to transition into multiple different areas focusing more on Data Science, Data Engineering, or Integration/Automation project Qualifications Bachelor's degree in Information Technology, Cybersecurity, or related field (Master's preferred). Minimum 5 years in information security, preferably in banking or financial services. CISSP, CISM, or equivalent certifications strongly preferred. Deep understanding of regulatory requirements (GLBA, FFIEC). Strong knowledge of risk management frameworks (NIST, ISO 27001). Excellent communication and leadership skills. Demonstrated ability to work with auditors, regulators, and senior executives. Physical Requirements Must be able to remain in a stationary position for long durations (e.g., 6-8 hours with breaks). Occasionally required to stand or walk short distances. Manual dexterity for using keyboard, mouse and telephone system. Visual acuity to read computer screens and written documents. Occasionally lifting office supplies, files and small packages (typically up to 10-25 lbs.) Ability to hear and understand spoken communication, including customer (internal and external) inquiries and phone conversations. Ability to speak clearly and be understood in person and over the phone. Additional Information Being a First Stater . . . Being a First Stater means that you roll up your sleeves and dig in. It means you work hard and do your best. It means that you enjoy learning new skills and are always eager to improve. It means you help the team by being a great teammate. It means you're passionate about making a difference in the lives of our customers and our communities. It means you consistently find new ways to improve our organization. Do you have what it takes to be a First Stater? Make a Difference - Apply Now! First State Bancshares Inc. is an Equal Opportunity Employer. All your information will be kept confidential according to EEO guidelines.
    $105k-135k yearly est. 38d ago
  • FT Security Level II

    Asmglobal

    Security architect job in Albuquerque, NM

    Security Guard Level I & II DEPARTMENT: Security REPORTS TO: Director of Security FLSA STATUS: Full-time, Non-Exempt, Hourly Responsible for overseeing the safety and security of Albuquerque Convention Center facilities and Albuquerque Convention Center patrons, employees, and assets. Essential Duties and Responsibilities Responsible for maintaining twenty-four (24) hour security of the interior and exterior of the building. Provide security services for assigned facilities; conduct periodic patrols by foot, to ensure only authorized personnel are on facility grounds. Lock and unlock facility doors as directed. Regulate the flow of employees and the public on facility premises to ensure safety. Respond to calls for service and reports of crimes in progress; call for emergency services (police, medical or fire) as necessary; assist outside agencies as needed. Conduct preliminary investigations to determine if a crime has been committed; determine whether further action is warranted; document incidents and prepare reports. May conduct periodic fire and safety hazard inspections of facilities; develop recommendations for enhancing security precautions. Monitor and operate computers, CCTV, and Fire Alarm Panels. Perform duties in the control center as assigned; dispatch security via radio; answer telephones; maintain 24-hour incident log; notify chain of command in matters of serious nature. Provide general assistance to the public; receive and document all lost and found articles; respond to and resolve inquiries. Prepare a variety of reports regarding security enforcement activities. Collect parking fees, charging customers accordingly. Provide information and assistance to the public regarding parking information and options; respond to complaints or direct complaints to appropriate staff. Provide security of the ACC parking structure. Monitor the occupancy of the parking structure and provide alternate parking locations if necessary. Maintain and clean surrounding work area. Perform related duties and responsibilities as required. Interact with ACC patrons, vendors & employees in a courteous and professional manner. Conduct bag search / wand / monitors metal detectors for all those entering the facility. Complete all assigned tasks within the guidelines & deadlines set by the Director of Security & Parking. Comply & adhere to the department's performance, conduct & attendance standards. Comply with all legal & ethical instructions given by the Director of Security & Parking. *Adhere to the Security department's prime directives. Basic computer skills (i.e.: Microsoft Word, Outlook, etc.). Communicate clearly and concisely in English Perform related duties and responsibilities as required. Qualifications High school diploma or GED Current valid New Mexico Guard Card to the appropriate level as necessary or obtain the NM Guard Card within 3 months of employment. Preferred Knowledge Principles and practices of security procedures Principles and practices of fire safety and evacuation procedures Exceptional Customer Service habits Verbal De-Escalation Concepts Methods and techniques of two-way radio communication Principles and procedures of record keeping and basic report preparation Pertinent Federal, State, and local laws, codes and regulations Safe work practices Preferred Skills and Ability Ability to prepare clear and concise reports Operate two-way radio Perform the essential functions of the job with or without reasonable accommodation Establish and maintain effective working relationships with those contacted in the course of work Working Conditions Environmental: Work may be performed indoors or out, in inclement weather. Exposure to loud environments and to potentially hostile individuals. Physical: Essential and supplemental functions may require maintaining physical conditions necessary for sitting, standing, climbing stairs or walking for prolonged periods of time; running, kneeling, and light carrying. NOTE: The essential responsibilities of this position are described under the headings above. They may be subject to change at any time due to reasonable accommodation or other reasons. Also, this document in no way states or implies that these are the only duties to be performed by the employee occupying this position. Legends Global is an Equal Opportunity/Affirmative Action employer, and encourages Women, Minorities, Individuals with Disabilities and protected Veterans to apply. VEVRAA Federal Contractor
    $97k-134k yearly est. Auto-Apply 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Security architect job in Santa Fe, NM

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding. **Responsibilities:** + **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture. + **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders. + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 51d ago
  • Information Security Analyst I-sr

    TXNM Energy

    Security architect job in Albuquerque, NM

    Information Security Analyst, Sr Salary Grade: G06 Minimum Midpoint Maximum $78,537 - $106,024 - $133,511 Personnel in this job title may be covered by NERC CIP cyber security standards. If the position is covered, prior to being hired, promoted, or transferred into the position, the candidate must successfully pass a Personnel Risk Assessment, which includes identity verification and a criminal background check. Prior to being granted unescorted access to cyber secure areas, the candidate must attend cyber security training. Annual cyber security training is also required. SUMMARY: Acts as an IT security subject matter expert and technical consultant for security initiatives. Functions as technical engineer, system architect and operational support for the Identity Management (IDM) suite of products. Analyzes the security of systems and applications, and develops security baselines to protect information against unauthorized access. Conducts forensic investigations including investigations done in coordination with other departments. ESSENTIAL DUTIES AND RESPONSIBILITIES: Assesses, designs, and recommends security access requirements for systems and applications; creates ad hoc reports for review Collaborates with enterprise architecture on the development of system and application security standards and baselines Provisions electronic access for supported systems and applications in accordance with the Enterprise Access Provisioning Program Ensures all access issues are handled in a timely manner and that supported systems are functioning properly Creates, modifies and deletes profiles and other access controls as part of Role Based Access Control (RBAC) program Provides routine reaccreditation of existing users and associated entitlements Produces evidence in support of Company policies and regulatory requirements, such as Sarbanes-Oxley (SOX) and North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) Participates in projects as a subject matter expert in support of business initiatives; ensures project work is completed in a timely manner in accordance with Information Security policies, programs and standards; oversees and continuously improves the Enterprise Access Provisioning Program Performs user access reviews supporting Company investigation needs; assists with data preservation requests for litigation holds; conducts digital forensics in support of the Information Security program Ensures teamwork to reduce security exposures COMPETENCIES: Strong knowledge of Company business practices and familiarity with Company products and services Strong knowledge of digital forensic steps and incident response Ability to develop and make recommendations for complex security processes, procedure improvements and management level security standards Ability to identify best practices for security risk assessments, policies, standards and processes Extensive policy, process, and standard development experience Ability to demonstrate leadership skills and provide guidance to less experienced team members QUALIFICATIONS MINIMUM EDUCATION AND/OR EXPERIENCE: Bachelor s degree from a four-year college or university in Information Resource Management, Business Computer Systems, Computer Science or Computer Security with five to seven years related experience, or equivalent combination of education and/or experience related to the discipline. COMMUNICATION SKILLS: Ability to maintain positive and productive working relationships with various individuals and groups Ability to recognize and initiate complex tasks without direction Ability to read and interpret technical manuals and reports, instructional documents, and procedure manuals Ability to write procedural documentation and user instructions Ability to speak effectively with various individuals, groups, and vendors MATHEMATICAL SKILLS: Ability to calculate figures and amounts such as discounts, interest, commissions, proportions, percentages, area, circumference, and volume Ability to apply concepts of basic algebra and geometry COMPUTER SKILLS: In-depth knowledge and experience with Linux/UNIX servers, client & server applications and information security issues In-depth knowledge of Microsoft, Linux and UNIX server security functionality In-depth knowledge of related security software In-depth knowledge of database product security technology, specifically Oracle and SQL, and general knowledge of physical security methods ANALYSIS AND PROBLEM-SOLVING ABILITY: Ability to understand and assimilate complex technical information. Ability to solve partial problems and deal with a variety of concrete variables in situations where only limited standardization exists. Ability to interpret a variety of instructions furnished in written, oral, diagram or schedule form. DECISION MAKING: Ability to make access management and provisioning decisions without direction, in accordance with Company policies, procedures and programs. Examines potential areas for service improvement and makes recommendations for changes to senior staff or management. PHYSICAL DEMANDS: While performing the duties of this job, the employee is regularly required to sit up to 2/3 of the time and talk and listen for long periods of time. WORK ENVIRONMENT: Office environment. JOB DESCRIPTION Information Security Analyst Salary Grade: G07 Minimum Midpoint Maximum $69,581 - $92,194 - $114,808 Personnel in this job title may be covered by NERC CIP cyber security standards. If the position is covered, prior to being hired, promoted, or transferred into the position, the candidate must successfully pass a Personnel Risk Assessment, which includes identity verification and a criminal background check. Prior to being granted unescorted access to cyber secure areas, the candidate must attend cyber security training. Annual cyber security training is also required. SUMMARY: Under general supervision, provisions electronic access to systems and applications. Acts as an IT security subject matter expert for supported systems and applications. Responsible for Identity and Access Management (IAM), access management, provisioning and compliance controls relating to managing access based on business need. Analyzes the security of systems and applications, and develops security baselines to protect information against unauthorized access. ESSENTIAL DUTIES AND RESPONSIBILITIES: Provisions electronic access for supported systems and applications in accordance with Access Management and Provisioning program Ensures all access issues are handled in a timely manner and that supported systems are functioning properly Creates, modifies and deletes profiles and other access controls as part of Role Based Access Control (RBAC) program Provides routine reaccreditation of existing users and associated entitlements Produces evidence in support of Company policies and regulatory requirements, such as Sarbanes-Oxley (SOX) and North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) Recommends security access requirements for systems and applications; creates ad hoc reports for review Participates in major projects, as needed, in support of business initiatives; ensures project work is completed in a timely manner in accordance with Information Security policies, programs and standards; contributes and recommends improvements to the Access Management and Provisioning program Performs user access reviews supporting Company investigation needs; assists with data preservation requests for litigation holds; conducts digital forensics in support of the Security program COMPETENCIES: Knowledge of Company business practices and familiarity with Company products and services Ability to develop and make recommendations for security processes, procedure improvements and management level security standards Ability to identify best practices for security risk assessments, policies, standards and processes Policy, process, and standard development experience QUALIFICATIONS MINIMUM EDUCATION AND/OR EXPERIENCE: Bachelor s degree from a four-year college or university in Information Resource Management, Business Computer Systems, Computer Science or Computer Security with three to five years related experience, or equivalent combination of education and/or experience related to the discipline. COMMUNICATION SKILLS: Ability to maintain positive and productive working relationships with various individuals and groups Ability to recognize and initiate tasks without direction Ability to read and interpret technical manuals and reports, instructional documents, and procedure manuals Ability to write procedural documentation and user instructions Ability to speak effectively with various individuals, groups, and vendors MATHEMATICAL SKILLS: Ability to calculate figures and amounts such as discounts, interest, commissions, proportions, percentages, area, circumference, and volume Ability to apply concepts of basic algebra and geometry COMPUTER SKILLS: To perform this job successfully, an individual should have in-depth knowledge and experience with IBM/UNIX servers, client/server applications and information security issues In-depth knowledge of Microsoft, IBM and UNIX server security functionality Working knowledge of related security software Working knowledge of database product security technology, specifically Oracle, SQL and DB2 and general knowledge of physical security methods for securing automated systems and network components ANALYSIS AND PROBLEM-SOLVING ABILITY: Ability to understand and assimilate complex technical information. Ability to solve partial problems and deal with a variety of concrete variables in situations where only limited standardization exists. Ability to interpret a variety of instructions furnished in written, oral, diagram or schedule form. DECISION MAKING: Ability to make access management and provisioning decisions without direction, in accordance with Company policies, procedures and programs. Examines potential areas for service improvement and makes recommendations for changes to senior staff or management. PHYSICAL DEMANDS: While performing the duties of this job, the employee is regularly required to sit up to 2/3 of the time and talk and listen for long periods of time. WORK ENVIRONMENT: Office environment. SAFETY AND ADA STATEMENT Safety Statement: Safety is a core value at (TXNM Energy/PNM/TNMP) and our vision, "everyone goes home safe", reflects our commitment to promoting an environment conducive to learning, improving and building safety practices. Our safety value is built upon the belief that every employee deserves to work in an environment free from harm. Americans with Disabilities Act (ADA) Statement: If you require assistance with the job application process due to a disability, please contact HR ADA Analyst, at ************.
    $78.5k-106k yearly 1d ago
  • Information System Security Officer II

    Global Resource Solutions, Inc. 4.4company rating

    Security architect job in Albuquerque, NM

    Global Resource Solutions, Inc. (GRS) is seeking an enthusiastic, motivated, detail orientated, and talented individual for the position of Information System Security Officer II. Job Descriptio n: Summary: The ISSO II's primary function is working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities. Essential Duties & Responsibilities: Review, prepare, and update AIS authorization packages Notify customer when changes occur that might affect AIS authorization Perform AIS self-inspections, provide security coordination and review of all system test plans Identify AIS vulnerabilities and implement countermeasures Represent the customer on various technical review and inspection teams Conduct security surveys at subordinate facilities and gather pertinent security documentation for inclusion into system authorization packages Coordinate, prepare, and track AIS inspections, reports, and responses Maintain AIS security records and prepare Co-Utilization Agreements for network nodes operating in government facilities Prepare reports on the status of security safeguards applied to computer systems Ensure AIS and network nodes are operated, maintained, and disposed of in accordance with security policies and practices Perform ISSO duties in support of in-house and external customers Assist Department of Defense, National Agency and Contractor organizations with the development of assessment and authorization (A&A) efforts Review, track, and conduct AIS training Requirement: Four (4) years related experience Bachelor's Degree in a related area or equivalent experience (Four (4) years) Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 within 6 months of the date of hire. Security Requirements: Current Top Secret Clearance with SCI Eligibility Eligibility for access to Special Access Programs Willingness to submit to a Counterintelligence Polygraph Skills: Ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners Working knowledge of Microsoft Office (Word, PowerPoint, and Excel) Possess a high degree of originality, creativity, initiative requiring minimal supervision Must be familiar with security policy/manuals and the appropriate DCIDs/JAFANs and other guiding policy documents Requires travel within the organizational geographic Area of Responsibility (AOR) (note - could be extensive, and will include both air and ground transportation) Must be able to lift up to 50lbs Physical Requirements : This position requires employees to be willing and able to: sit, bend, reach, stoop, squat, stand, and walk. Communication: Excellent customer service via phone and face to face conversation, excellent written and oral command of English. GRS is an Equal Opportunity Employer. GRS will continue to abide by obligations under VEVRRA and Section 503 physical or mental disability, protected veteran status, or any other characteristics that are protected by law.
    $66k-90k yearly est. Auto-Apply 24d ago
  • Product Security Engineer

    Jeppesen 4.8company rating

    Security architect job in Albuquerque, NM

    Company: The Boeing CompanyOverview: The Boeing Defense, Space, and Security (BDS) Engineering division is looking for a two Product Security Engineers (Level 4/5) to join a team in Albuquerque, NM. At Boeing, we are all innovators on a mission to connect, protect, explore and inspire. From the seabed to outer space, you'll learn and grow, contributing to work that shapes the world. Find your future with us! Position Responsibilities: Develop, implement, and sustain product security and resiliency throughout the requirements, design, build, test, production, operations, and support lifecycle. Develop and enhance system requirements and architectures for product security to meet all applicable certification and customer requirements. Ensure security of facilities, equipment, tools, data, networks, and resources used for product: design, development, build, test, storage, delivery, operations, and support. Define and identify product security requirements for suppliers of components and subsystems for integration into Boeing products and services. Coordinate with government, customers, suppliers, and industry to identify risks and improve industry and regulatory security standards and requirements for programs and interfacing systems. Conduct research and development activities that result in innovative solutions. Advise customers on maintaining product security and certification, including security consequences of modifying products and services. This position requires an active U.S. Top Secret Security Clearance (U.S. Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active) Basic Qualifications: Level 4 - Education/experience typically acquired through advanced technical education from an accredited course of study in engineering, engineering technology (includes manufacturing engineering technology), computer science, engineering data science, mathematics, physics or chemistry (e.g. Bachelor) and typically 9 or more years' related work experience or an equivalent combination of technical education and experience or non-US equivalent qualifications. In the USA, ABET accreditation is the preferred, although not required, accreditation standard. Level 5 - Education/experience typically acquired through advanced technical education from an accredited course of study in engineering, engineering technology (includes manufacturing engineering technology), computer science, engineering data science, mathematics, physics or chemistry (e.g. Bachelor) and typically 14 or more years' related work experience or an equivalent combination of technical education and experience or non-US equivalent qualifications. In the USA, ABET accreditation is the preferred, although not required, accreditation standard. Skills and abilities to: collect, organize, synthesize, and analyze data; summarize findings; develop conclusions and recommendations from appropriate data sources. Develop and support security developmental and operational test planning & execution. Engineering-focused experience in incident response, designing and implementing technical controls and workflows to detect, contain, and remediate cyber incidents while preserving forensic integrity. Ability to identify susceptibility, survivability, and vulnerability (S/V) of the systems, subsystems and delivery mechanisms, based on the knowledge of characteristics and capabilities of threats (e.g. protocol exploits, identity spoofing, malware injection techniques, application layer vulnerabilities). Knowledge of emerging computing and information technology areas to manage advanced research computing technology proposals, projects and resources. Knowledge of system security domains (e.g., information assurance, anti-tamper, intrusion detection, software protection, software assurance, communications security, encryption and key management, network security, reverse engineering, countermeasures, certification and accreditation, special security endorsement) and industry and government guidance and regulations which engineers apply to produce secure systems. Experience with performing system security engineering activities that follow NIST 800-160. Strong understanding of secure network architecture and design Experienced in engineering requirements decomposition. Demonstrated expertise in implementing and maintaining DoD security policies and regulations, including threat & risk assessments, accreditation processes, and continuous monitoring to ensure mission assurance and compliance Knowledge and understanding of the methodology and processes associated with risk management, conducting trade studies including cost as an independent variable (CAIV) trade. Ability to: identify and quantify potential risks areas within specific (depth) and across multiple engineering disciplines (breadth); understand design constraints (technical, cost & schedule); identify and trade alternatives (i.e., trade studies); select/recommend the best plan for mitigating risks; implement and execute plans for mitigating risk; and establish appropriate performance tracking metrics to track risk burndown over time. Ability to effectively utilize risk management tools (iso-risk charts/plots, waterfall, etc.) to support program/project execution. Demonstrated systems-thinking to analyze complex technical and organizational interactions, identify root causes, and design scalable, resilient solutions across hardware, software, and process domains. Preferred Qualifications: Knowledgeable in applying Multi-Level Security (MLS) and Cross-Domain Solutions (CDS) to enable secure information sharing across classification and network domains Proficient in Model-Based Systems Engineering (MBSE) tools to design, analyze, and validate complex systems throughout the lifecycle. Understanding Secure Software Development within DevSecOps Knowledgeable in Cyber Supply Chain Risk Management (C-SCRM) to identify, assess, and mitigate supplier-originated risks across hardware, software, and services. Advanced knowledge of design concepts and techniques (e.g., concurrent engineering, Design for Manufacture/Assembly [DFM/A]). Familiarity with industrial control systems (ICS) and proprietary standards and protocols. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and several programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary Pay Range: Level 4: $162,350 - $219,650 Level 5: $204,000 - $276,000 The Boeing 401(k) helps you save for your future, with contributions from Boeing that can help you grow your retirement savings. Our best-in-class retirement benefit features: Best in class 401(k) plan: we'll match your contributions dollar for dollar, up to 10% of eligible pay with Immediate 100% vesting Student Loan Match: The Boeing 401(k) Student Loan Match allows eligible enrolled U.S. employees to have their qualified student loan debt payments counted, along with any match-eligible contributions they make, for purposes of determining the Company Match to employees' Boeing 401(k) accounts. Language Requirements: Not Applicable Education: Bachelor's Degree or Equivalent Relocation: This position offers relocation based on candidate eligibility. Export Control Requirement: This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a “U.S. Person” as defined by 22 C.F.R. §120.62 is required. “U.S. Person” includes U.S. Citizen, U.S. National, lawful permanent resident, refugee, or asylee. Safety Sensitive: This is not a Safety Sensitive Position. Security Clearance: This position requires an active U.S. Top Secret Security Clearance (U.S. Citizenship Required). (A U.S. Security Clearance that has been active in the past 24 months is considered active) Visa Sponsorship: Employer will not sponsor applicants for employment visa status. Contingent Upon Award Program This position is not contingent upon program award Shift: Shift 1 (United States of America) Stay safe from recruitment fraud! The only way to apply for a position at Boeing is via our Careers website. Learn how to protect yourself from recruitment fraud - Recruitment Fraud Warning Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law. EEO is the law Boeing EEO Policy Request an Accommodation Applicant Privacy Boeing Participates in E - Verify E-Verify (English) E-Verify (Spanish) Right to Work Statement Right to Work (English) Right to Work (Spanish)
    $69k-94k yearly est. Auto-Apply 5d ago
  • Information Assurance Security Analyst

    Dynamic Solutions Technology LLC 4.0company rating

    Security architect job in Organ, NM

    Job Description Dynamic Solutions Technology, LLC, a premier strategic services firm that meets IT and Service needs for commercial and government clients. We are is seeking a full-time Information Assurance Security Analyst to support DoD customer. This position is to provide support in the White Sands Missile Range (WSMR), NM area. Responsibilities: Serves as a team member providing network monitoring and scanning functions. Provides network vulnerability scanning to ensure IAVA compliance and remediation. Provides antivirus management using antivirus tools. Provides wireless scanning using network detection software. Implements system security policies, scans and IAVAs for WSMR, including WSMR organizations, tenant activities, and other contractors. Provides Cybersecurity reporting requirements to appropriate authorities. Provides Tier 2 assistance for personnel / users needing information/assistance with Information Assurance (IA) and CSO related issues. Risk Management/Accreditation/Certification Services; Assists the Information Systems Security Manager (ISSM) in the management of the RMF process in accordance with AR 25-2 and DoDI 8510.01. Provide Knowledge Management Services for all information required to perform Certification and Accreditation services for the White Sands Missile Range Cybersecurity Office (CSO). Position requires knowledge of SharePoint services in maintaining required documentation such as appointment orders, Authority to Connect (ATC) and Authority to Operate (ATO) documentation, library of Army and other regulations relating to Information Assurance, Memorandums of Understanding/Agreement, Tenant Security Plans, Certificates of Networthiness (CoNs), etc. Directly supports Information Assurance (IA) requirements, within the immediate area of responsibility (AOR), managing and tracking system administrator elevated level of access to network resources. Therefore, requires the knowledge of the Army Training and Certification Tracking System (ATCTS), and IA DoD 8570.01 status verification. Works with team members to identify IA trends and suggests long-term strategies to help mitigate IA issues. Analyzes and evaluates risk and makes recommendations that are in compliance with all policies, rules and regulations governing IA functions. Assesses procedures and identifies opportunities to improve customer service. Champions customer service and sets and monitors parameters for customer service excellence. REQUIRED SKILLS: COTS software/hardware experience: Working knowledge of COTS software/hardware, and network products, including Windows OS, MS Office, Remedy, etc. Working knowledge of WEB filter management tools, such as WebSense. Working knowledge of IDS management tools, SourceFire. Working knowledge of IAVA tools, such as ACAS, Symantec Endpoint, WSUS, HBSS and Fluke air Check. Working knowledge of Server Operating Systems and Microsoft Active Directory. Working knowledge of Information Assurance policies and procedures. Skills/Certifications/Training - Security+ ce certification, and relevant Computing Environment training, in accordance with DoD 8570.01m. ACAS, Retina, Flying Squirrel, and Snort are preferred Computing Environment training. Good oral and written communication skills. Ability to react to customer issues and formulate resolutions quickly. REQUIRED EXPERIENCE/CERTIFICATIONS/CLEARANCE: High School Diploma or GED Certificate 5 - 7 Years of practical experience in a Cybersecurity/IA Active Secret clearance
    $73k-93k yearly est. 12d ago
  • Security Engineer II

    Trustmark 4.6company rating

    Security architect job in Santa Fe, NM

    Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities. We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information. You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs. **Responsibilities:** + Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data. + Conduct vulnerability assessments and penetration testing to identify and mitigate risks. + Develop and implement security policies, standards, and procedures. + Monitor security systems and respond to incidents promptly and effectively. + Stay up-to-date with the latest cybersecurity threats and trends. + Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business. + Provide technical guidance and support to internal stakeholders. **Qualifications:** + Bachelor's degree in Computer Science, Information Technology, or a related field or + 3-5 Years of network engineering or cyber engineering experience + Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001). + Proficiency in network security, systems security, application security, and data security. + Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM). + Excellent problem-solving and analytical skills. + Strong communication and interpersonal skills. + Ability to work independently and as part of a team. **Preferred Qualifications:** + Certifications such as CISSP, CISA, or CEH. + Experience with cloud security (e.g., AWS, Azure, GCP). + Knowledge of scripting and programming languages (e.g., Python, PowerShell). Brand: Trustmark Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums. **For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability. Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match. When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives. At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
    $75k-97k yearly est. 60d+ ago
  • Information System Security Officer (ISSO) II

    Parsons Commercial Technology Group Inc.

    Security architect job in Las Cruces, NM

    In a world of possibilities, pursue one with endless opportunities. Imagine Next! At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what's possible. Job Description: Parsons is looking for a talented Level 2 ISSO to join our growing team! In this role you will develop, maintain, and implement information security standards, procedures, and guidelines for applications and databases. In addition, you will ensure that systems and organizational databases are protected from unauthorized access and use, and monitor systems, identify threats, and handle disaster recovery operations. The max salary for this role is between $80k-$87k. What You'll Be Doing: * Performs assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments). * Establishes strict program control processes to ensure mitigation of risks and supports for obtaining certification and accreditation of systems. This includes process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits. * Assists in the implementation of required government policy (e.g.,, NISPOM, DCID 6/3), and makes recommendations on process tailoring. * Performs analyses to validate established security requirements and recommends additional security requirements and safeguards where required. * Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports. * Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed. * Demonstrates advanced subject matter expertise in job family. * Contributes to and may lead the planning and implementation of large programs in the function, and regularly interfaces with senior management and executive leadership. * Plays a role in overall functional strategic planning. What Required Skills You'll Bring: * Active Top Secret/SCI with Polygraph. * Bachelors degree with typically 2+ years of relevant experience. Candidates with a Masters degree require 0+ year(s) of relevant experience, and additional years of experience can qualify in lieu of a degree for non-degreed candidates. * Active certification meeting DoD 8140 (DoDD 8570) IAT-II guidelines is required for the position. Acceptable certifications include the Security+, CCNA, CySA+, GSEC, and SSCP. Possessing higher level certifications such as the CISA, GCIH, GCED, CISSP, and Security X (CASP+) are also permitted. Obtaining a certification that meets DoD 8140 (DoDD 8570) IAT-II guidelines is required within 6 months of hire if not currently held." What Desired Skills You'll Bring: * Strong leadership skills * Management experience * Ability to coach and develop junior ISSO's Security Clearance Requirement: An active Top Secret SCI w/Polygraph security clearance is required for this position. This position is part of our Federal Solutions team. The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what's next to deliver the solutions our customers need now. Salary Range: $86,700.00 - $151,700.00 We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle! Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status. We truly invest and care about our employee's wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest-APPLY TODAY! Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to ************************************************
    $86.7k-151.7k yearly Auto-Apply 19d ago
  • Information Systems Security Officer

    Vt Group 3.8company rating

    Security architect job in Las Cruces, NM

    TUNUVA Technologies (a wholly owned subsidiary of VTG) seeks to hire an Information Systems Security Officer (ISSO) in Las Cruces, NM to monitor and maintain systems security on operational systems such as malicious code eradication, configuration management, assessment and authorization of current and future systems, as well as to review and revise systems security documentation on proposed systems. ISSOs shall know how to implement common information system security practices, policies, and technologies. Additionally, ISSOs demonstrate self-motivation, initiative, sound judgement, and effective interpersonal skills, team building skills, and effective communication skills. What will you do? Responsibilities * Collaborate with system stakeholders and teammates to enhance system security * Communicate effectively with all security stakeholders * Create, revise, or review cybersecurity documentation * Proactively identify opportunities for increasing customer value and engagement * Act as a Data Transfer Agent between systems of varying security domains * Inventory, track, and control removable media and portable electronic devices * Advise stakeholders on NIST SP 800-37 RMF workflows and requirements * Review SIEM and RMF workflow tools to advise ISSM on system security baselines and authorization statuses * Advise system stakeholders on acceptable use and applicable cybersecurity policy or regulation * Properly report and document security incidents and response actions Do you have what it takes? Requirements * Clearance: Active TS/SCI with Polygraph * Currently hold or obtain and maintain DoD 8570 IAT-2 certification within 6 months of starting the position * Applicants should possess education and experience at the appropriate level for the position. Education relevant to computer engineering, information security, information management, and/or computer science. Experience relevant to information technology security, information systems security, information assurance engineering, and systems administration. * Bachelor's degree + 2 years of experience OR High School/GED + 6 years of experience OR Associate's degree + 4 years of experience OR Master's degree or higher + 0 - 2 years of experience Desired Qualifications * Knowledge of and experience with ICD 503 and NIST SP 800-37 Risk Management workflows * Understanding and application of network security principles, practices, and implementations * Working knowledge of cross-functional integration of information systems into a physical security environment * Working knowledge of system functions, security policies, technical security safeguards, and operational security measures * Understanding of system methodologies including but not limited to client server, web hosting, web content servers, policy servers, directory servers, firewalls, WAN, LAN, switches, and routers * Familiarity with detecting and preventing computer security compromises in a networked environment * Working knowledge of configuration management; system maintenance; and integration testing * Proficient in the use of tools used to prevent and/or negate malicious code * Understanding of Commercial-Off-the-Shelf (COTS) tools that scan at the physical layer of all removable and fixed media types including but not limited to: (CDs, hard drives, thumb drives, Zip/Jazz, etc.) * Ability to support evidentiary forensics and preservation * Ability to troubleshoot technical configurations and make recommendations on the protection of classified and sensitive data * Demonstrated ability to translate technical information and information technology jargon into plain English * Ability to apply a risk management philosophy when faced with security challenges and the ability to articulate the pro's and con's of a particular solution in a clear concise manner * Demonstrated proficiency with computer operating systems (e.g., Microsoft Windows, LINUX, UNIX, Mac OS, etc.) * Analytical ability to understand complex technical configuration management documents * Strong ability to elicit, articulate, and document information in a well-organized manner * Demonstrated ability to work independent of close supervision * Working knowledge of all applicable customer, IC, and DoD policies, procedures and operating instructions related to cybersecurity * Excellent communication, interpersonal, and team-building skills to engender rapport with the military personnel, civilians, and other contractors at all levels * An ability to prioritize work to meet deadlines.
    $70k-96k yearly est. Auto-Apply 13d ago
  • Product Security Engineer, Instagram

    Meta 4.8company rating

    Security architect job in Santa Fe, NM

    The Instagram Security Ecosystems team is seeking a product-focused security engineer interesting in enabling Instagram product teams to develop features with a focus on security and user safety. You will be relied upon to directly work with Instagram engineers, hardening both product features and our protective frameworks that make life harder for bad actors on the Instagram platform. **Required Skills:** Product Security Engineer, Instagram Responsibilities: 1. Threat Modeling and Security Architecture: Work directly with product managers and technical leads on threat models and security architecture for novel Instagram features or products 2. Security Reviews: Perform manual design and implementation reviews of web, mobile, and native code 3. Developer Guidance: Provide guidance and education to developers that help prevent the authoring of vulnerabilities 4. Automated Analysis and Secure Frameworks: Work with other security teams to improve Instagram's static and dynamic analysis and frameworks to scale coverage 5. Bug Bounty: Help provide technical guidance to our world class bug bounty program and independent security researchers 6. Industry Impact: Push the industry forward through conference talks and open source projects to contribute broadly to security for the world **Minimum Qualifications:** Minimum Qualifications: 7. B.S. or M.S. in Computer Science, Cybersecurity, or related field, or equivalent experience 8. 8+ years of experience finding vulnerabilities in interpreted languages (Python, PHP) 9. Extensive, proven experience in threat modeling and secure systems design 10. Experience with exploiting common security vulnerabilities **Preferred Qualifications:** Preferred Qualifications: 11. Product software engineering or product management experience 12. Experience in security consulting or other leadership-facing security advisory roles 13. Familiarity with cybersecurity investigations, abuse operations, and/or security incident response 14. Contributions to the security community (public research, blogging, presentations, bug bounty, etc.) **Public Compensation:** $184,000/year to $257,000/year + bonus + equity + benefits **Industry:** Internet **Equal Opportunity:** Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment. Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
    $184k-257k yearly 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Security architect job in Santa Fe, NM

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. **Responsibilities:** + **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance. + **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning. + **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications** + Experience with SailPoint IdentityIQ (IIQ) is a must + Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP) + Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses) + Solid understanding of the SailPoint object model, rules, and policies + Experience with both lifecycle manager (LCM) and compliance manager (CM) modules + Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required + Proven track record of successful IAM implementations including large scale enterprise deployments. + Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 51d ago
  • Information System Security Officer (ISSO) III

    Parsons Commercial Technology Group Inc.

    Security architect job in Las Cruces, NM

    In a world of possibilities, pursue one with endless opportunities. Imagine Next! At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what's possible. Job Description: Parsons is looking for a talented Level 3 ISSO to join our growing team! In this role you will develop, maintain, and implement information security standards, procedures, and guidelines for applications and databases. In addition, you will ensure that systems and organizational databases are protected from unauthorized access and use, and monitor systems, identify threats, and handle disaster recovery operations. The max salary for this role is between $120k-$129k. What You'll Be Doing: * Performs assessments of systems and networks within the networking environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations (compliance audits) and active evaluations (vulnerability assessments). * Establishes strict program control processes to ensure mitigation of risks and supports for obtaining certification and accreditation of systems. This includes process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits. * Assists in the implementation of required government policy (e.g.,, NISPOM, DCID 6/3), and makes recommendations on process tailoring. * Performs analyses to validate established security requirements and recommends additional security requirements and safeguards where required. * Supports the formal Security Test & Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports. * Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed. * Demonstrates advanced subject matter expertise in job family. * Contributes to and may lead the planning and implementation of large programs in the function, and regularly interfaces with senior management and executive leadership. * Plays a role in overall functional strategic planning. What Required Skills You'll Bring: * Active Top Secret/SCI with Polygraph. * Bachelors degree with typically 6+ years of relevant experience. Candidates with a Masters degree require 4+ years of relevant experience, and additional years of experience can qualify in lieu of a degree for non-degreed candidates. * Active certification meeting DoD 8140 (DoDD 8570) IAT-III guidelines is required for the position. Acceptable certifications include the CISA, GCIH, GCED, CISSP, and Security X (CASP+). Obtaining a certification that meets DoD 8140 (DoDD 8570) IAT-III guidelines is required within 6 months of hire if not currently held. What Desired Skills You'll Bring: * Strong leadership skills * Management experience * Ability to coach and develop junior ISSO's Security Clearance Requirement: An active Top Secret SCI w/Polygraph security clearance is required for this position. This position is part of our Federal Solutions team. The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what's next to deliver the solutions our customers need now. Salary Range: $86,700.00 - $151,700.00 We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle! Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status. We truly invest and care about our employee's wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest-APPLY TODAY! Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to ************************************************
    $120k-129k yearly Auto-Apply 7d ago

Learn more about security architect jobs

Do you work as a security architect?

What are the top employers for security architect in NM?

Top 1 Security Architect companies in NM

  1. Oracle

Job type you want
Full Time
Part Time
Internship
Temporary

Browse security architect jobs in new mexico by city

All security architect jobs

Jobs in New Mexico