Manager - Security Architect
Security architect job in New Orleans, LA
At EY, we're all in to shape your future with confidence. We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
**Manager - Security Architect**
**The opportunity**
We're hiring an experienced Security Architect that is an expert in the modern security threat and mitigation environment. Knowledge of the use of security in the development of applications (threat model development) best practices for security in the design architecture of applications. The use of AI in SEIM/MDR/MXDR and/or the analysis of behavioral threats. The successful candidate should have experience in the emerging area of AI based attack vectors and be able to devise successful mitigation. The candidate should thrive in fast-paced environments and are passionate about enabling scalable AI solutions.
**Your key responsibilities**
+ Develop effective security designs for implementation into enterprise applications and internal EY platforms.
+ Support security tool selection and verification.
+ Develop best practices for security design patterns in AI native applications.
+ Execute security assessments based on experience and select AI and conventional code analysis tools.
+ Assess new proposed projects to insure they are leveraging best security practices architecture design and implementation.
+ Collaborate with other architectural experts in AI, Data and Infrastructure to insure balanced and practical outcomes.
+ Support strategic business development activities for emerging technology.
**Skills and attributes for success**
+ Strong analytical and troubleshooting skills.
+ Ability to lead security architectural product functions and mentor junior engineers.
+ Comfortable working across cross-functional teams and managing competing priorities.
+ Build and manage strong internal and external partnerships by fostering trust, empathy, and mutual value.
+ Leverage emotional agility and hybrid collaboration to navigate diverse stakeholder needs and drive long-term engagement.
+ Use critical thinking and creative reasoning to address complex problems and exceed expectations.
+ Align cross-functional teams around shared goals, ensuring accountability and progress. Use emotional intelligence and hybrid collaboration to motivate others and deliver high-impact results.
**T** **o qualify you must have**
+ 5-10+ years of experience in security engineering and architecture for products.
+ Understand security and safety in an AI environment (Guardrails, Adversarial attacks, output validation etc..)
+ Use of security tooling for application verification in Github Advance Security, Checkmarx JFrog, DAST, etc..
+ Understand threat model development and verified implementation.
+ Familiarity with security certifications and appropriate use for best practices development OWASP etc....
+ Expertise in the assessment of security best practices of agile development process
+ Expertise in the development and adoption of security first best practices.
**Ideally, you'll also have**
+ Experience with large-scale cross functional software development projects.
+ Excellent communication and leadership abilities.
**What we offer you**
At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
+ We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $125,500 to $230,200. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $150,700 to $261,600. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
+ Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
+ Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
**Are you ready to shape your future with confidence? Apply today.**
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
**EY | Building a better working world**
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at ************************** .
Enterprise Security Architect
Security architect job in New Orleans, LA
Thank you for your interest in our company! To apply, click on the button above. You will be required to create an account (or sign in with an existing account). Your account will provide you access to your application information. The email address used in establishing your account will be used to correspond with you throughout the application process. Please be sure and check the spam folder. You may review, modify, or update your information by visiting and logging into your account.
JOB FUNCTION / SUMMARY:
In conjunction with and/or at the direction of CISO, responsible for the overall "health & wellness" of security infrastructure related to enterprise networks and data systems; plans, coordinates, and implements security measures to safeguard data information against accidental or unauthorized modification, destruction, or disclosure by performing the following duties.
ESSENTIAL DUTIES & RESPONSIBILITIES:
Security Environment Analysis:
Responsible for the analysis & approval of business requirements associated with information security systems and/or processes.
Translates security design based on business requirements into functional processes while maintaining controls set forth by information security policies/procedures.
Develops and recommends new or enhanced security and system designs, including documentation of functional specifications for system configuration and supports system requirements as business processes evolve and system enables are identified.
Information Security System Maintenance:
Responsible for the documentation and maintenance of security systems to include change management processes and tracking requests ensuring on-going changes and developments and upgrades to systems are performed.
Designs and develops tests, document testing results for newly created functionality associated with system maintenance, enhancements and upgrades to ensure all systems changes are successfully implemented.
Information Security Technical Architecture:
Plans, researches, designs, analyzes, estimates, identifies options, recommends, installs, tests, schedules, implements, administers, documents, monitors, tunes performance and maintains all primary and auxiliary technical architecture across all information security system platforms as related to assigned areas of specialty to ensure the integrity, security, availability, reliability, and performance of enterprise network & data systems to meet client needs and expectations.
Strategic & Tactical Planning:
Evaluates and recommends new information security system products or services related to technical architecture to management as needed for developing, monitoring, and maintaining line of business & corporate support unit strategic/tactical plans conforming to the vision, mission, values, and objectives of the organization.
Confers with management, programmers, risk assessment staff, auditors, facilities, and security departments and other personnel to identify and plan for data security for data, software applications, hardware, telecommunications, and computer installations.
Develops and implements tests of computer systems to monitor effectiveness of security.
Develops, coordinates, and implements disaster or emergency recovery procedures for information security systems to assure business continuity/disaster recovery.
Assists in the development of information security policy and procedures.
Analyze systems, network, and applications security and recommend/develop security measures to protect information against unauthorized access, modification, and/or loss.
Works closely with Project Management Office (PMO) through Strategic Services to ensure that all new IT-related projects are reviewed for security prior to rollout.
Develops and conducts information security risk assessments, reports findings and recommends corrective action, in applicable, to management.
Coordinates & oversees information security third-party service providers to validate contracted services are provided according to contract and/or service level agreements.
Supports Internal Auditor and contracted audit vendors related to information security audits and testing of controls
SUPERVISORY RESPONSIBILITIES:
None.
MINIMUM REQUIRED EDUCATION, EXPERIENCE & KNOWLEDGE:
Required: Bachelor's degree in Computer Science, Computer Engineering or relevant science degree and 5+ years of related experience and/or training.
Preferred: Senior certifications (i.e. CISSP-ISSAP, SABSA)
An equivalent combination of education and experience is allowed
ESSENTIAL MENTAL & PHYSICAL REQUIREMENTS:
Ability to work under stress and meet deadlines
Ability to operate a keyboard if required to perform the essential job functions
Ability to read and interpret a document if required to perform the essential job functions
Ability to travel if required to perform the essential job functions
Ability to lift/move/carry approximately 10 pounds if required to perform the essential job functions. If the employee is unable to lift/move/carry this weight and can be accommodated without causing the department/division an “undue hardship” then the employee must be accommodated; hence omitting lifting/moving/carrying as a physical requirement.
Equal Opportunity/Affirmative Action Employers. All qualified applicants will receive consideration for employment without regard to race, color, religious beliefs, national origin, ancestry, citizenship, sex, gender, sexual orientation, gender identity, marital status, age, physical or mental disability or history of disability, genetic information, status as a protected veteran, disabled veteran, or other protected characteristics as required by federal, state and local laws.
Auto-ApplyCyber Palo Alto Networks Security Operations Senior Consultant
Security architect job in New Orleans, LA
Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for this role ends on 12/31/25
The team
Our Cyber Defense & Resilience offering assists clients in defending against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence. Helps manage and protect dynamic attack surfaces and provides rapid crisis and cyber incident response, ensuring clients can be ready for, respond to, and recover from business disruptions.
Work You'll Do
+ Lead the design and deployment of Next-Generation SOC platforms, like Cortex XSIAM, including advanced detection rules and SOAR playbooks, and SIEM ingestion.
+ Integrate diverse log and telemetry sources, ensuring data quality and normalization.
+ Develop and optimize automated response workflows for incident containment and remediation.
+ Advise clients on advanced use cases, threat detection, and automation strategies.
+ Collaborate with cross-functional teams for solution enhancements and threat intelligence integration.
+ Present technical findings and recommendations to stakeholders.
Required Qualifications
+ BA/BS degree in a technical field (e.g., Computer Science, Cyber Security)
+ 4-6 years of progressively responsible experience in cloud, network, or identity security domains, demonstrating increasing levels of responsibility, technical depth, and leadership over time
+ 3-4 years of experience with Security Operations tools and platforms including Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM technologies
+ 3-4 years of Security Operations Center experience demonstrating expertise in detection engineering, automation and playbook development, or SOC maturity methodologies
+ 3-4 years of experience with one or more cloud service providers (AWS, GCP, Azure) and native security tools
+ 3-4 years of experience with management of log sources, data normalization, ingestion and manipulation of data
+ 3-4 years of experience working with detection and response platforms (EDR) like Microsoft Defender, Cortex XDR, CrowdStrike
+ 3-4 years of experience with governance, risk, or compliance initiatives involving common frameworks
+ Certifications including Palo Alto Networks' PCNSE or Certified Cybersecurity Associate or equivalent and/or similar cybersecurity certifications
+ Ability to travel up to 50%, on average, based on the work you perform and the clients and industries/sectors you serve.
+ Limited immigration sponsorship may be available
Preferred Qualifications
+ Experience with Palo Alto Networks' platform of solutions including, but not limited to, next-generation firewalls, Cortex & Prisma Cloud, and Prisma Access, XDR, etc.
+ Strong understanding of vendor competitive analysis within Security Operations (e.g., competitive differences between competing SIEM solutions)
+ Proficiency with advanced scripting, playbook development within a SIEM, SOAR or Security platform
+ Basic proficiency with network routing protocols (e.g., BGP, ECMP) and network architecture concepts (e.g., network segmentation), in support of on-premise and secure cloud infrastructure use cases
+ Ability to communicate and advise on solution design based on client use-cases, requirements, or other success criteria
+ Previous consulting or "Big 4" experience
+ Relevant advanced cybersecurity or related network engineering certifications (e.g., CISSP, CEH, CCSP)
Information for applicants with a need for accommodation: ************************************************************************************************************
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $102,500 - $188,900.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Cybersecurity Endpoint Security Engineer
Security architect job in New Orleans, LA
Title: Cybersecurity Endpoint Security Engineer
Clearance: Active Secret or Higher
Duration: Long Term
Certification: IAT LEVEL 2
Requirements
We're seeking an experienced Cybersecurity Endpoint Security Engineer to join our cybersecurity team. This role is critical in protecting and defending enterprise endpoints across Windows, Linux, and cloud-based environments within a DoD cybersecurity framework. The right candidate brings at least 5 years of hands-on experience in endpoint security and a strong working knowledge of Zero Trust principles.
What You'll Do
Manage, deploy, and optimize endpoint security solutions across Linux, Microsoft Windows, and cloud environments.
Operate, tune, and troubleshoot Microsoft Defender for Endpoint (MDE), Trellix suite (ePO, ENS, DLP, etc.).
Operate, tune and troubleshoot ForeScout.
Provide technical expertise with Host-Based Security System (HBSS), Endpoint Protection Platforms (EPP), and Assured Compliance Assessment Solution (ACAS).
Support endpoint monitoring, detection, and response activities in compliance with DoD cybersecurity directives.
Apply and integrate Zero Trust security models across endpoint and cloud-based architectures.
Perform vulnerability scans, analyze results, and drive remediation actions with system owners.
Collaborate with SOC, compliance, cloud, and system engineering teams to ensure secure configurations and continuous monitoring.
Document processes, develop playbooks, and share expertise across the cybersecurity team.
What We're Looking For
Minimum 5 years of experience in Cybersecurity endpoint protection roles.
High proficiency in both Linux OS and Microsoft Windows administration.
Strong experience with endpoint security platforms and DoD cybersecurity requirements.
Demonstrated experience working in cloud-based environments (AWS or similar).
Familiarity with HBSS, EPP, ACAS, and other endpoint security tools in the federal/DoD ecosystem.
Hands-on experience with MDE, Trellix ePO/ENS/DLP, and ForeScout.
Strong knowledge and practical application of Zero Trust principles.
Ability to troubleshoot complex endpoint and cloud endpoint issues, providing root cause analysis.
Ability to script in one or more of the following languages: Poweshell, Python, Bash, or others.
Strong communication skills to work across technical and non-technical teams.
Preferred Qualifications
DoD 8570 IAT II/III certification (e.g., Security+, CySA+, CISSP, CASP+).
Secret Clearance
BS Degree in a technical field, additional years of experience may be considered in lieu of degree
Previous experience supporting DoD cybersecurity programs.
Familiarity with compliance frameworks such as STIGs, RMF, and advanced Zero Trust adoption roadmaps.
Platform Security Engineer
Security architect job in New Orleans, LA
Saronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms. Saronic Technologies is a leader in defense autonomy at sea. We're seeking a Platform Security Engineer to secure the cloud/edge where vessels, operators, and customers meet. You'll own identity and access patterns, secrets and key management, secure network posture, and policy-as-code guardrails-working across AWS (including GovCloud), Terraform infrastructure, and service code to deliver trustworthy, auditable systems.
Senior Engineers: 3+ years securing production cloud platforms (identity, secrets/KMS, network posture), preferably in autonomy, robotics, aerospace, or defense.
Staff Engineers: 8+ years including technical leadership across secure-by-default platform modules, short-lived credential issuance, and cross-account policy design; demonstrated ownership from design through operational rollout.Key Responsibilities
Design, develop, and maintain secure-by-default infrastructure on
AWS using Terraform (ALB/OIDC, IAM, KMS, Secrets Manager, Route53, VPC/SGs).
Standardize OIDC at the edge (ALB/ingress) for internal and external applications; define scopes, claims, and token lifecycles.
Own secrets and key management: KMS key policies, rotation schedules, cross-account access, and automated issuance for services and tools.
Enforce IMDSv2 required, least-privilege IAM roles, and tight security groups across modules; add CI/policy checks to prevent regressions.
Design secure protocols/APIs for service↔service and boat↔cloud communication (mTLS/TLS, certificate issuance/rotation, revocation).
Manage short-lived credentials used by fleet/overlay services; implement rotation, auditing, and incident response runbooks.
Prefer service-mediated S3 access over broad pre-signed URLs; codify bucket policies, logging, and access boundaries.
Build centralized, tamper-evident logging and audit trails; integrate detections and metrics to validate control effectiveness.
Perform threat modeling and security reviews; document patterns and drive adoption via reusable modules and guides.
Troubleshoot complex security issues in production; lead post-incident reviews and drive remediation to closure.
Stay current on cloud security best practices, especially for defense/government environments.
Required Qualifications:
Bachelor's or Master's degree in Computer Science, Software/Computer/Electrical Engineering, or a related field.
3+ years building on AWS with Terraform (ALB/ELB, IAM, KMS, Secrets Manager, Route53, VPC/SGs).
Strong knowledge of cryptographic and IAM fundamentals (key policies, rotation, certificates, OIDC/OAuth2).
Demonstrated experience enforcing IMDSv2, least-privilege roles, and network controls at scale.
Experience designing secure protocols/APIs and integrating auth into service code (e.g., Go/Rust/TypeScript).
Proven ability to perform threat modeling and conduct design/code security reviews.
Excellent problem-solving and communication skills; effective collaboration across platform, embedded, and field teams.
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience in AWS GovCloud, multi-account landing zones, and cross-account KMS/Secrets patterns
Familiarity with fleet/overlay VPN access control and short-lived credential issuance
Policy-as-code guardrails (e.g., OPA/Conftest, Terraform validations), drift detection, and CI integration
Centralized logging/SIEM and cloud threat detection (e.g., CloudTrail, GuardDuty) with audit readiness
PKI/CA management and, ideally, hardware roots of trust (TPM/secure elements) at the edge
DoD/defense domain familiarity and prior work under export-controlled constraints
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Auto-ApplySenior Security Engineer
Security architect job in New Orleans, LA
Our client, a leading financial institution, is seeking a Senior Security Engineer to join their security engineering operations team. This role involves managing critical security infrastructure including cloud VPNs, user VPNs, business-to-business VPNs, firewalls, and distributed cloud application firewalling as the organization continues its cloud transformation journey. The ideal candidate will possess strong technical expertise, excellent verbal and written communication skills, and the ability to thrive in a corporate financial environment.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
- 8+ years of experience in information security engineering and operations
- F5 LTM
- Palo Alto
- FortiNet
- Juniper Firewalls - Experience with cloud security platforms (AWS, Azure, or GCP)
Certifications:
- CSSP
- SANS
Cyber Network Defense Analyst
Security architect job in Bay Saint Louis, MS
At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.
Leidos is seeking a Junior Cyber Network Defense Analyst to join our team supporting a high-visibility cybersecurity IDIQ contract. This program provides 24x7x365 Security Operations Center (SOC) support, cyber analysis, application development, and incident response for the Department of Homeland Security (DHS).
The DHS SOC is responsible for monitoring, detecting, analyzing, mitigating, and responding to cyber threats across the DHS Enterprise. Analysts coordinate detection and response activities across component SOCs using a shared incident tracking system and other communication tools.
Shift Details
The Monitoring and Analysis team operates on a 24x7 schedule across four shifts:
Front Half (Day/Night): Sunday-Tuesday + alternating Wednesdays
Back Half (Day/Night): Thursday-Saturday + alternating Wednesdays Candidates must be flexible to work non-core hours as needed.
Primary Responsibilities
Monitor enterprise networks using SIEM tools
Investigate alerts and document findings in Security Event Notifications (SENs)
Analyze network traffic (PCAP, firewall, proxy, IDS logs, etc.)
Collaborate with team members to assess threats
Stay current on emerging threats and vulnerabilities
Monitor shared inboxes for notifications and requests
Use OSINT to support investigations
Contribute to content tuning and detection improvements
Basic Qualifications
Candidates must meet one of the following education and experience combinations:
BS in IT, Cybersecurity, Data Science, Info Systems, or Computer Science + 2 years of experience.
AS degree + 6 years of experience
High School Diploma/GED + 8 years of experience
Relevant experience includes:
Network Administration
Unix/Linux Administration
Software Engineering/Development
Systems Administration
Help Desk/IT Support
Additional requirements:
TS/SCI clearance
Entry on Duty (EOD) clearance
At least one of the following certifications:
CompTIA: Security+, PenTest+, Cloud+, CySA+
SANS GIAC: GFACT, GCED, GSEC, GCIA, GDSA, GICSP, GCFA, GISF
EC Council: CEH
CISCO: CBROPS
CertNexus: CFR
Federal IT Security Institute: FITSP-O
Preferred Qualifications
Familiarity with SOC methodologies and processes
Understanding of network ports/protocols (TCP/UDP, HTTP, ICMP, DNS, SMTP)
Knowledge of network topologies and security devices (Firewall, IDS/IPS, Proxy, DNS)
Experience with packet analysis tools (e.g., Wireshark)
Familiarity with malware, attack vectors, and Windows OS logging
Experience with Antivirus, DLP, and host-based firewalls
Scripting skills in Python, PowerShell, JavaScript, VBS, etc.
At Leidos, we don't want someone who "fits the mold"-we want someone who melts it down and builds something better. This is a role for the restless, the over-caffeinated, the ones who ask, “what's next?” before the dust settles on “what's now.”
If you're already scheming step 20 while everyone else is still debating step 2… good. You'll fit right in.
Original Posting:October 15, 2025
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:Pay Range $67,600.00 - $122,200.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Auto-ApplySubstation Physical Engineer
Security architect job in Covington, LA
About Ampirical At Ampirical, we're shaping the future of the power grid with precision, innovation, and purpose. Just as the ampere is the foundation of electric current, Ampirical is a core force driving the energy sector forward. We focus on quality, forward-thinking solutions, and empowering our team to grow and thrive.
We don't just build projects-we build careers. If you're looking for a place where your contributions matter and your professional development is supported every step of the way, we'd love to meet you. Watch this video to get a glimpse into our culture.
Why Ampirical?
Salary Range: $102,000 - $140,000 - Commensurate (dependent on experience, education, and qualifications)
Profit-Sharing Bonus: Semi-annual, performance-based (10% to 20% of salary)
Day-One Benefits: Medical, Dental, Vision
401(k) with 4% match and immediate vesting
️ PTO: Starting at 80 hours of vacation & 40 hours of sick time per year + 10 paid holidays
️ Flexible Work Schedule: Every other Friday off
Career Development: Advancement opportunities, tuition reimbursement
Perks: Gym membership stipend, wellness program, fertility benefits, pet insurance, and more
Your Role: Substation Physical Engineer
What You'll Do
* Deliver accurate designs of high-voltage electrical substation components that meet industry and client standards.
* Design substation systems and components including general arrangement, equipment layout, grounding, conduit, and bills of material.
* Prepare construction drawing packages for bids and review incoming submittals for alignment with design and constructability.
* Perform quality reviews of electrical engineering work for both peers and subcontractors.
* May act as Lead Engineer and Engineer of Record for assigned projects.
* May manage the development of project proposals, bid preparation, and project schedules.
* Assist project teams during construction on substation-related issues.
* Provide mentorship and technical guidance to less experienced engineers.
* Travel to client sites and field locations as necessary.
What You Bring
Education:
* Bachelor's Degree in Electrical Engineering from an ABET-accredited university
* Professional Engineer (PE) license required.
Experience:
* 5+ years of experience in substation engineering/design within the utilities or energy industry.
* Experience with ETAP, WinIGS, and IEEE 80/998.
Skills:
* Proficiency in Autodesk AutoCAD, Inventor, Bentley MicroStation, and/or Bentley Substation software (2D/3D modeling experience is a plus).
* Strong communication and collaboration skills.
Ampirical is an Equal Opportunity Employer, meaning we do not discriminate based on the following characteristics in our hiring and employment practices: Age, sex, color, race, creed, national origin, religion or religious attire, marital status, pregnancy (child birth or related medical conditions), citizenship status or amnesty, ancestry, sexual orientation, gender, gender identity, gender expression, transgender status, physical or mental disability, military or veteran status, genetic information, sickle-cell trait, status as a tobacco user or non-user, or any other classification protected by federal, state, or local law.
Information Systems Engineer
Security architect job in New Orleans, LA
American Cruise Lines is seeking an Information Systems Engineer to join our team in the New Orleans, LA area. This pivotal role ensures the continuous operation and support of critical shipboard technology systems, directly impacting the safety, quality, and guest experience that defines American Cruise Lines. You will report to the Information Systems Manager.
As an Information Systems Engineer, you will be responsible for ensuring the success of American Cruise Lines through a commitment to safety and quality while consistently exceeding company and guest expectations. Your duties will include ensuring safety-related technologies are in full operation as per federal regulations, maximizing the guest experience through quick-response resolutions, and supporting shipboard operations-related technologies.
This position will require frequent travel (approximately 75%) to vessels to perform repair, replacement, and/or maintenance of installed information systems, supporting our entire fleet operations. You will often be the first on the scene to troubleshoot or repair equipment, addressing technical challenges proactively.
At American Cruise Lines, we are driven by our values-Optimism, Commitment, Patriotism, and Merit. These values shape our culture, our service, and our people, guiding us as we work together to Share America's Story on the Finest American Ships.
Responsibilities:
* Ensure full operation of safety-related technologies as per federal regulations.
* Perform repair, replacement, and maintenance of installed information systems.
* Manage and solve technical problems quickly, including troubleshooting outage requests.
* Install new equipment, configure wireless networking equipment, and implement network system improvements.
* Conduct basic low-voltage electrical wiring, networking, programming, and A/V equipment diagnostics.
* Evaluate connectivity issues, equipment, software, and hardware for optimal performance.
* Consult with vendors and crew to ensure system functionality and optimization.
* Directly supervise contractors as assigned.
* Assist with the design, implementation, and support of new software and features.
* Respond to IT tickets in a timely manner; oversee troubleshooting of system errors.
* Maximize guest satisfaction through swift resolution of technology issues.
* Support a wide array of shipboard operational technologies (see below).
Key Technologies (including, but not limited to):
* Television Systems (Analog/IP).
* Vessel navigation electronics.
* Audio Visual / Public Address Systems.
* Shipboard Sound Systems.
* Radios (UHF & VHF).
* Onboard Internet & Wireless Systems.
* Door Access & Keycard Systems.
* Telephone Systems (satellite, mobile phones, intercoms).
* Network Equipment, laptops, and printers.
Preferred Experience:
* 2+ years as an Information Systems Technician.
Technical Proficiencies:
* Proficiency in Windows operating systems, computer, and peripheral hardware and software.
* Familiarity with Ubiquiti systems and remote management systems preferred.
* A+, Network+, Security+, and Microsoft OS proficient certifications are highly desirable.
Required Skills:
* Strong customer service orientation and effective interaction with diverse end-users and technical staff.
* Detail-oriented with proven ability to independently resolve technology problems.
License and Registration Requirements:
* Valid Driver's License.
* Possess or obtain a valid TWIC (Transportation Worker Identification Card) prior to beginning position.
Travel & Physical Requirements:
* Approximately 75% (to vessels, warehouses, and offices) .
* Ability to frequently traverse stairs, fixed ladders, and ladder-wells while walking ships daily.
* Capable of sitting for long periods, standing, walking, crouching, and kneeling.
* Ability to perform tasks requiring reaching, handling, using equipment, keyboards, and mobile devices.
* Capable of lifting and installing technological equipment.
Compensation & Benefits:
* Comprehensive benefits package: medical, dental, 401k matching, paid time off.
* Promotional and transfer opportunities based on performance.
* Opportunity to work in a fast-paced, dynamic industry with a growing company.
Work Schedule:
* This is a full-time role with standard 8-hour shifts. On-call availability is required as part of the position.
Why Join American Cruise Lines?
At American Cruise Lines, our people are the driving force behind our success. As the nation's leader in U.S. river cruising, we're experiencing rapid growth - and we're investing in top talent to grow with us. When you join our team, you'll find a dynamic work environment that values innovation, collaboration, and excellence, with real opportunities to build your career and make an impact.
Network Security Specialist - New Orleans
Security architect job in New Orleans, LA
reports on-site to our Corporate Office in New Orleans, LA Responsibilities Include: * Collect network performance data, monitor network security, and optimize server capacity to manage the flow of information. Perform network upgrades and fix network errors at client locations.
* Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team.
* Maintaining and administering computer networks and related computing environments including systems software, applications software, hardware, and configurations.
* Ability to implement, administer, and troubleshoot network infrastructure devices, including wireless access points, firewall, routers, switches, controllers.
* Enhancing network security, as well as documenting network processes and cabling layouts.
* Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team.
* Troubleshooting, diagnosing, and resolving hardware, software, and other network and system problems.
* Protecting data, software, and hardware by coordinating, planning, and implementing network security measures.
* Extensive knowledge of network connectivity, technologies, protocols, and security.
* Monitoring network performance to determine if adjustments need to be made.
* Conferring with network users about solving existing system problems.
* Running diagnostic tests and performing repairs, as well as developing backup, archiving, and data retrieval procedures.
* Performing disaster recovery operations and data backups when required.
* Training junior IT staff, preparing user manuals, and providing remote or onsite technical support.
* Maintaining, configuring, and monitoring virus protection software and email applications.
* Ensuring secure and stable server connectivity and testing network protocols.
* Creating internet domains and optimizing intranet performance.
* Testing data exchange and communication between computers, routers, modems, and servers.
* Installing, updating, and configuring end-user networking accessories.
* Monitoring server capacity and performance to keep up with demand in online traffic.
* Keeping informed of developments in network technologies and infrastructure.
Qualifications:
* Bachelor's degree in computer science, information science, or similar.
* Certified CompTIA, Microsoft, or Cisco network professional preferred.
* A minimum of four years of related experience.
* Extensive knowledge of network connectivity, technologies, protocols, and security.
* Exceptional analytical and problem-solving skills.
* Excellent interpersonal, communication, and collaboration skills.
* Great organizational and time management skills.
* Willingness to visit all company locations.
* Availability to perform network repairs outside of business hours.
* Windows server 2016/2019, Linux, VM, PowerShell
The qualified candidate will be able to pass drug, alcohol, background, and motor vehicle check.
Security Professional- TWIC Turnaround
Security architect job in Chalmette, LA
Allied Universal , North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and collaborative workplace, you will be part of a team that contributes to a culture that positively impacts the communities and customers we serve.
Job Description
This is temporary position for a Turnaround at a refinery. Onboarding takes 2-3 weeks, we are starting the hiring process now.
LOCATION: Chalmette/Meraux, LA
SITE: Refinery/Plant
PAY: $19.00/hour / pays weekly
SHIFTS: 12-hr shifts available (Morning and Overnight)
QUALIFICATIONS:
Pass full background screen thorugh DISA
Drug Screen (Breath alcohol and hair sample)
Background check
Able to work 12-hr shifts
21 years of age or older
Valid TWIC card (No receipts)
Valid Louisiana drivers license; no active flags or suspensions
Able to stand and walk for extended periods of time
Able to work outdoors in the elements
FIRST INTERVIEW WILL BE A PHONE INTERVIEW. PLEASE HAVE SOCIAL, DRIVERS LICENSE AND TWIC IN-HAND, READY.
This position is responsible for the safety and security of the facilities they protect. Our Critical Facility Officers allow us to accomplish our company's core purpose which is “to service, secure and care for the people and businesses in our communities.” Critical Facility Security Officers act as a visible deterrent to crime and client rule infractions; they detect and report suspicious, unsafe or criminal acts at or near their assigned posts which may be a threat to the property, clients, guests or employees at the site.
RESPONSIBILITIES:
Ensure the facility is provided with high quality security services to protect people and property.
Maintains proficiency in the use of all assigned protective equipment, restraint devices and weapons.
Report safety concern, security breaches and unusual circumstances both verbally and in writing.
Preserves order and acts to enforce regulations and directives for the site pertaining to personnel, visitors and premises.
Monitors closed circuit television systems and alarms; Reports safety concerns, security breaches and unusual circumstances both verbally and in writing.
Maintains awareness and familiarity with the site-specific operations performance manual and post orders.
Meets and continues to meet any applicable state, county and municipal licensing and permit requirements for Armed Security Officers and specific protective device and weapons qualifications.
Build, improve, and maintain effective relationships with both client employees and guests.
Answer questions and assist guests and employees; Answer phones or greet guests/ employees in a professional, welcoming manner.
Patrols the facility on foot or in a vehicle.
Could be required to work for multiple clients at multiple locations; covering special projects, call offs, vacations and open shifts.
QUALIFICATIONS:
High school diploma or equivalent required; at least 21 years of age
Licensing requirements are subject to state and/or local laws and regulations and may be required prior to employment
Be able to obtain a valid Guard License as required in the state for which you are applying, maintain current active status of all required License at all times, and must carry the License at all times while on duty. We provide free training for any hires who do not possess a card/license.
As a condition of employment, candidate must successfully complete a background investigation and a post-offer/pre-employment drug/alcohol test and may be required to pass a Driver's Record check.
Demonstrated ability to take initiative, successfully handle and prioritize multiple competing assignments and effectively manage deadlines.
Ability to handle both common and crisis situations at the client site, calmly and efficiently.
Professional, articulate and able to use good independent judgment and discretion.
Must possess effective oral and written communication and interpersonal skills.
Ability to successfully interact at all levels of personnel and the general public in a professional and effective manner, including with clients.
Have intermediate computer skills to operate innovative wireless technology at client specific sites.
Highly organized and ability to follow procedures concisely and consistently; high level of compliance and unwavering integrity to oversee and ensure policies are enforced in a self-directed environment.
Must be able to frequently prepare reports and read and understand all operating procedures and instructions.
Must possess one or more of the following:
3 years civilian law enforcement
3 years private or corporate security experience
3 years military experience with a positive discharge
Criminal Justice Degree or law enforcement related degree, Associates or higher
Graduate of a law enforcement training academy
PHYSICAL/MENTAL REQUIREMENTS AND WORKING ENVIRONMENT:
While performing the duties of this job, the employee is regularly required to use both hands, is frequently required to stand, sit, stoop, talk and hear (communicate verbally in person and via regular telephone equipment), and must be able to read computer screens, correspondence and reports in English.
The employee must constantly walk, stand, reach with both hands and arms, and must be able to drive a vehicle. The employee may occasionally maneuver up to 40 pounds. May be required to climb stairs on an intermittent basis at client sites.
Constant use of eyes (correctable vision to normal level required) to observe, read, interact with public and co-workers, view security monitors; includes hand/eye coordination.
Work in various environments including adverse outdoor conditions such as cold, rain or heat.
Must be able to focus and multi-task in a busy environment, with the ability to successfully handle stressful situations in a calm and professional manner. Includes being able to effectively manage multiple employees with diverse personalities and engage them to perform at optimum levels.
Remain flexible to ever changing environments; adapt well to different situations.
Closing
Allied Universal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. For more information: ***********
If you have difficulty using the online system and require an alternate method to apply or require an accommodation, please contact our local Human Resources department. To find an office near you, please visit: ***********/offices.
Requisition ID 2025-1487911
Auto-ApplyCyber Palo Alto Networks Security Operations Senior Consultant
Security architect job in New Orleans, LA
Cyber Palo Alto Networks Security Operations Senior Consultant Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.
Recruiting for this role ends on 12/31/25
The team
Our Cyber Defense & Resilience offering assists clients in defending against advanced threats by transforming security operations, monitoring technology, data analytics, and threat intelligence. Helps manage and protect dynamic attack surfaces and provides rapid crisis and cyber incident response, ensuring clients can be ready for, respond to, and recover from business disruptions.
Work You'll Do
* Lead the design and deployment of Next-Generation SOC platforms, like Cortex XSIAM, including advanced detection rules and SOAR playbooks, and SIEM ingestion.
* Integrate diverse log and telemetry sources, ensuring data quality and normalization.
* Develop and optimize automated response workflows for incident containment and remediation.
* Advise clients on advanced use cases, threat detection, and automation strategies.
* Collaborate with cross-functional teams for solution enhancements and threat intelligence integration.
* Present technical findings and recommendations to stakeholders.
Required Qualifications
* BA/BS degree in a technical field (e.g., Computer Science, Cyber Security)
* 4-6 years of progressively responsible experience in cloud, network, or identity security domains, demonstrating increasing levels of responsibility, technical depth, and leadership over time
* 3-4 years of experience with Security Operations tools and platforms including Cortex XSIAM, Cortex XDR, Splunk, or similar SIEM technologies
* 3-4 years of Security Operations Center experience demonstrating expertise in detection engineering, automation and playbook development, or SOC maturity methodologies
* 3-4 years of experience with one or more cloud service providers (AWS, GCP, Azure) and native security tools
* 3-4 years of experience with management of log sources, data normalization, ingestion and manipulation of data
* 3-4 years of experience working with detection and response platforms (EDR) like Microsoft Defender, Cortex XDR, CrowdStrike
* 3-4 years of experience with governance, risk, or compliance initiatives involving common frameworks
* Certifications including Palo Alto Networks' PCNSE or Certified Cybersecurity Associate or equivalent and/or similar cybersecurity certifications
* Ability to travel up to 50%, on average, based on the work you perform and the clients and industries/sectors you serve.
* Limited immigration sponsorship may be available
Preferred Qualifications
* Experience with Palo Alto Networks' platform of solutions including, but not limited to, next-generation firewalls, Cortex & Prisma Cloud, and Prisma Access, XDR, etc.
* Strong understanding of vendor competitive analysis within Security Operations (e.g., competitive differences between competing SIEM solutions)
* Proficiency with advanced scripting, playbook development within a SIEM, SOAR or Security platform
* Basic proficiency with network routing protocols (e.g., BGP, ECMP) and network architecture concepts (e.g., network segmentation), in support of on-premise and secure cloud infrastructure use cases
* Ability to communicate and advise on solution design based on client use-cases, requirements, or other success criteria
* Previous consulting or "Big 4" experience
* Relevant advanced cybersecurity or related network engineering certifications (e.g., CISSP, CEH, CCSP)
Information for applicants with a need for accommodation: ************************************************************************************************************
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $102,500 - $188,900.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose
Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte & Touche LLP, a subsidiary of Deloitte LLP. Please see ************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries. Certain services may not be available to attest clients under the rules and regulations of public accounting.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers
Requisition code: 314097
Job ID 314097
Embedded Security Engineer
Security architect job in New Orleans, LA
Saronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms. Saronic Technologies is a leader in defense autonomy at sea. We're seeking an Embedded Security Engineer to design, implement, and harden security for the software that runs on our autonomous surface vessels. You'll work across device identity, secure boot and update flows, secrets/key management, and secure communications-partnering closely with autonomy, platform, manufacturing, and field teams to deliver trustworthy systems that operate reliably in maritime environments.
Senior Engineers: 3+ years of experience delivering security features on embedded/Linux systems, preferably in autonomy, robotics, aerospace, or defense.
Staff Engineers: 8+ years of experience including technical leadership across secure boot/update pipelines, identity/PKI, and fleet-wide hardening; demonstrated ownership of mission-critical features from design through field deployment.Key Responsibilities:
Design, develop, and maintain security features for embedded Linux systems (systemd-managed services, Rust/C/C++) used for navigation, control, and communications.
Own per-vessel identity and mutual authentication for boat↔cloud and boat↔boat links; implement certificate/key rotation and revocation workflows.
Implement signed/verified update mechanisms with rollback protection; collaborate with manufacturing on secure boot enablement and key provisioning.
Integrate and operate hardware-backed key storage (e.g., TPM/secure elements) and sealed secrets for on-vessel services.
Harden network paths over constrained links: TLS/mTLS, VPN overlay policies, and least-privilege service access.
Reduce attack surface in embedded services (capabilities, seccomp/AppArmor where appropriate, safe process execution, input validation).
Build tamper-evident, structured logging and diagnostics suitable for ship→shore analysis and incident response.
Perform threat modeling, code reviews, and security testing (static/dynamic analysis, fuzzing, negative testing).
Troubleshoot and debug complex security issues in fielded systems; author runbooks and safe-rollback procedures.
Document designs, processes, and verification results for compliance and knowledge sharing; contribute to secure coding guidelines.
Stay current on emerging security technologies and best practices relevant to embedded Linux and autonomous systems.
Required Qualifications:
Bachelor's or Master's degree in Computer Science,
Electrical/Computer Engineering, Software Engineering, or a related field.
Proficiency in Rust and/or C/C++ developing software for embedded Linux.
Strong understanding of cryptographic primitives and protocols (keys, certificates, signatures, TLS/mTLS), and experience integrating them into systems.
Experience with secure/verified boot, OTA/update safety, and firmware/bootloader workflows.
Familiarity with VPN overlays and constrained-network security patterns.
Comfortable with Linux security fundamentals (users/permissions, capabilities, sandboxing) and systemd-based service management.
Excellent problem-solving skills and ability to collaborate effectively in na fast-paced, cross-functional environment.
Strong written and verbal communication skills.
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience with TPM/secure elements, measured/verified boot, and attestation.
Exposure to NixOS-based builds, Yocto, or similar embedded Linux tooling.
Experience with authenticated media/telemetry pipelines and secure streaming.
DoD/defense domain familiarity and prior work under export-controlled constraints.
Physical Demands:
Prolonged periods of sitting at a desk and working on a computer.
Occasional standing and walking within the office.
Manual dexterity to operate a computer keyboard, mouse, and other office equipment.
Visual acuity to read screens, documents, and reports.
Occasional reaching, bending, or stooping to access file drawers, cabinets, or office supplies.
Lifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages).
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Auto-ApplyPhysical Substation Engineer
Security architect job in Metairie, LA
About Ampirical At Ampirical, we're shaping the future of the power grid with precision, innovation, and purpose. Just as the ampere is the foundation of electric current, Ampirical is a core force driving the energy sector forward. We focus on quality, forward-thinking solutions, and empowering our team to grow and thrive.
We don't just build projects-we build careers. If you're looking for a place where your contributions matter and your professional development is supported every step of the way, we'd love to meet you. Watch this video to get a glimpse into our culture.
Why Ampirical?
Salary Range: $80,000 - Commensurate (dependent on experience, education, and qualifications)
Profit-Sharing Bonus: Semi-annual, performance-based (10% to 20% of salary)
Day-One Benefits: Medical, Dental, Vision
401(k) with 4% match and immediate vesting
️ PTO: Starting at 80 hours of vacation & 40 hours of sick time per year + 10 paid holidays
️ Flexible Work Schedule: Every other Friday off
Career Development: Advancement opportunities, tuition reimbursement
Perks: Gym membership stipend, wellness program, fertility benefits, pet insurance, and more
Job Summary:
The Experienced Physical Substation Engineer works within a multi-discipline team to develop efficient and reliable preliminary design of electrical systems and components for Substation Facilities. This Engineer is accountable for developing preliminary substation electrical drawings in accordance with RFQ scope of work, ensuring constructability of design. This individual provides leadership, mentorship, and/or guidance to less experienced engineers within the department.
Who You Are:
* Bachelor's Degree in Electrical Engineering from an ABET accredited university
* 4+ years of experience engineering/designing electrical systems within the Utilities or Energy industry
* Experience with ETAP, WinIGS, IEEE 88/998
* Experience using Autodesk AutoCAD, Autodesk Inventor, Bentley MicroStation and/or Bentley Substation software to develop 2D drawings or 3D models are a plus.
* EIT Certification preferred (not required)
* FE Certified
Duties and Responsibilities:
* Deliver accurate designs of high voltage electrical substation components that meet industry and client standards and applicable codes.
* Perform quality reviews of electrical engineering work for both peers/sub-contractors on assigned projects.
* Act as lead Engineer and Engineer of Record for projects.
* Design substation systems and components to include general arrangement, equipment, and electrical layout, grounding, bills of material, etc.
* Prepare construction drawing preliminary packages for bids and review incoming proposals for alignment with design and constructability of methods.
* Manage the development of project proposals, bid preparation, project schedules, etc. for assigned Substation projects.
* Assist project team during construction on electrical substation issues.
* Travel to client sites/field as necessary.
Ampirical is an Equal Opportunity Employer, meaning we do not discriminate based on the following characteristics in our hiring and employment practices: Age, sex, color, race, creed, national origin, religion or religious attire, marital status, pregnancy (child birth or related medical conditions), citizenship status or amnesty, ancestry, sexual orientation, gender, gender identity, gender expression, transgender status, physical or mental disability, military or veteran status, genetic information, sickle-cell trait, status as a tobacco user or non-user, or any other classification protected by federal, state, or local law.
Network Security Specialist - New Orleans
Security architect job in New Orleans, LA
Job Description
reports on-site to our Corporate Office in New Orleans, LA
Responsibilities Include:
Collect network performance data, monitor network security, and optimize server capacity to manage the flow of information. Perform network upgrades and fix network errors at client locations.
Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team.
Maintaining and administering computer networks and related computing environments including systems software, applications software, hardware, and configurations.
Ability to implement, administer, and troubleshoot network infrastructure devices, including wireless access points, firewall, routers, switches, controllers.
Enhancing network security, as well as documenting network processes and cabling layouts.
Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team.
Troubleshooting, diagnosing, and resolving hardware, software, and other network and system problems.
Protecting data, software, and hardware by coordinating, planning, and implementing network security measures.
Extensive knowledge of network connectivity, technologies, protocols, and security.
Monitoring network performance to determine if adjustments need to be made.
Conferring with network users about solving existing system problems.
Running diagnostic tests and performing repairs, as well as developing backup, archiving, and data retrieval procedures.
Performing disaster recovery operations and data backups when required.
Training junior IT staff, preparing user manuals, and providing remote or onsite technical support.
Maintaining, configuring, and monitoring virus protection software and email applications.
Ensuring secure and stable server connectivity and testing network protocols.
Creating internet domains and optimizing intranet performance.
Testing data exchange and communication between computers, routers, modems, and servers.
Installing, updating, and configuring end-user networking accessories.
Monitoring server capacity and performance to keep up with demand in online traffic.
Keeping informed of developments in network technologies and infrastructure.
Qualifications:
Bachelor's degree in computer science, information science, or similar.
Certified CompTIA, Microsoft, or Cisco network professional preferred.
A minimum of four years of related experience.
Extensive knowledge of network connectivity, technologies, protocols, and security.
Exceptional analytical and problem-solving skills.
Excellent interpersonal, communication, and collaboration skills.
Great organizational and time management skills.
Willingness to visit all company locations.
Availability to perform network repairs outside of business hours.
Windows server 2016/2019, Linux, VM, PowerShell
The qualified candidate will be able to pass drug, alcohol, background, and motor vehicle check.
Corporate Security Engineer
Security architect job in New Orleans, LA
Saronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms. As a Corporate Security Engineer, you'll safeguard the systems that power Saronic's mission. You'll engineer, harden, and operate Microsoft 365 and AWS environments to meet defense-grade security requirements while protecting our people, data, and operations. You'll own the protection of every employee, system, and credential. Your work will secure the full user lifecycle by automating onboarding/offboarding, protecting remote and traveling employees, and minimizing human-targeted risks like phishing and social engineering.
You will design secure-by-default platforms, automate compliance and monitoring through cloud solutions, and ensure our environments remain resilient, frictionless, and compliant. At Saronic, security is a force multiplier; security is not a blocker. You will have the autonomy to build and the mandate to innovate, working side-by-side with engineers who are developing technology that directly supports national defense. This role is ideal for someone who wants to own security at scale, shape a defense-grade security program, and see their impact every day. You'll thrive here if you're driven by mission, biased toward action, and enjoy working in a high-trust, low-ego team that values resilience, integrity, and creativity. Key Responsibilities:
Cloud and Identity Security
Administer and secure multiple Microsoft 365 GCC High and Microsoft 365 commercial tenants and AWS GovCloud and commercial accounts to align with NIST SP 800-171, NIST CSF, and ISO 27001 standards
Configure and harden identity and access management (Entra ID, AWS IAM), data loss prevention (Purview), and conditional access policies to enforce multi-factor authentication, single sign-on, and least privilege
Implement security guardrails and automation in partnership with IT and DevOps teams using Infrastructure as Code (Terraform, Ansible, CloudFormation)
Continuously drive security automation and visibility improvements across people, process, and technology
User and Endpoint Security
Engineer and enforce secure device baselines and policies via Intune and Jamf for unified endpoint management
Configure and maintain endpoint protection platforms (Defender, CrowdStrike)
Secure the user lifecycle through automated identity and device provisioning/de-provisioning, least-privilege enforcement, remote and traveling employee protection, and anomalous behavior monitoring
Reduce phishing and user-targeted threats through identity hardening, email protections, and user awareness feedback loops
Network Security
Engineer and maintain secure network architectures across global offices, remote, and cloud environments through VPNs, network segmentation, DNS filtering, secure network connectivity, and firewall configurations
Lead vulnerability, configuration, and asset management to maintain secure baselines and visibility across all enterprise systems
Support incident response through automation, playbooks, and forensic readiness
Application Security
Harden and monitor SaaS applications through secure SaaS controls, SSO/SAML enforcement, SCIM provisioning, and least privilege
Manage shadow IT detection, vendor risk reviews, and data protection
Required Qualifications:
3+ years proven experience administering and securing Microsoft 365 through Intune + Jamf, Entra ID, Defender, Purview, and Sentinel
Hands-on experience securing AWS environments, including secure configurations of IAM, GuardDuty, CloudTrail, Config, Security Hub, and encryption/key management controls
Proven proficiency in scripting and automation (i.e., Python, PowerShell, Bash)
Familiarity with cloud and identity ecosystems (i.e., Azure, AWS, Okta, Entra ID, Active Directory)
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience with highly regulated frameworks such as NIST SP 800-171, NIST SP 800-53, ISO 27001, or FedRAMP
Familiarity with cloud and endpoint observability and EDR tools (i.e., Defender, CrowdStrike, Sentinel, Splunk)
Demonstrated experience automating compliance and audit processes
Experience implementing and managing secure cloud architecture and controls using Infrastructure as Code tools (i.e., Terraform, CloudFormation, Ansible)
Proven ability to design and operate Zero Trust Network Access
Experience implementing network intrusion detection and response tools
Demonstrated ability to evaluate SaaS vendor security posture and integrate approved applications securely into the environment
Background in defense, aerospace, or high-assurance manufacturing
Relevant security certifications (SC-100, MS-500, MD-102, AWS Certified Security - Specialty, GCSA, GCIA, CISSP, CCSP)
Physical Demands
Prolonged periods of sitting and computer work
Occasional standing and walking within the office
Manual dexterity to operate computers and office equipment
Visual acuity to read screens and documents
Occasional reaching or lifting up to 20 pounds (e.g., equipment or supplies)
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Auto-ApplySubstation Physical Engineer
Security architect job in Covington, LA
About Ampirical At Ampirical, we're shaping the future of the power grid with precision, innovation, and purpose. Just as the ampere is the foundation of electric current, Ampirical is a core force driving the energy sector forward. We focus on quality, forward-thinking solutions, and empowering our team to grow and thrive.
We don't just build projects-we build careers. If you're looking for a place where your contributions matter and your professional development is supported every step of the way, we'd love to meet you. Watch this video to get a glimpse into our culture.
Why Ampirical?
Salary Range: $90,000 - Commensurate (dependent on experience, education, and qualifications)
Profit-Sharing Bonus: Semi-annual, performance-based (10% to 20% of salary)
Day-One Benefits: Medical, Dental, Vision
401(k) with 4% match and immediate vesting
️ PTO: Starting at 80 hours of vacation & 40 hours of sick time per year + 10 paid holidays
️ Flexible Work Schedule: Every other Friday off
Career Development: Advancement opportunities, tuition reimbursement
Perks: Gym membership stipend, wellness program, fertility benefits, pet insurance, and more
Job Summary:
The Experienced Physical Substation Engineer works within a multi-discipline team to develop efficient and reliable preliminary design of electrical systems and components for Substation Facilities. This Engineer is accountable for developing preliminary substation electrical drawings in accordance with RFQ scope of work, ensuring constructability of design. This individual provides leadership, mentorship, and/or guidance to less experienced engineers within the department.
Who You Are:
* Bachelor's Degree in Electrical Engineering from an ABET accredited university
* 4+ years of experience engineering/designing electrical systems within the Utilities or Energy industry
* Experience with ETAP, WinIGS, IEEE 88/998
* Experience using Autodesk AutoCAD, Autodesk Inventor, Bentley MicroStation and/or Bentley Substation software to develop 2D drawings or 3D models are a plus.
* EIT Certification preferred (not required)
* FE Certified
Duties and Responsibilities:
* Deliver accurate designs of high voltage electrical substation components that meet industry and client standards and applicable codes.
* Perform quality reviews of electrical engineering work for both peers/sub-contractors on assigned projects.
* Act as lead Engineer and Engineer of Record for projects.
* Design substation systems and components to include general arrangement, equipment, and electrical layout, grounding, bills of material, etc.
* Prepare construction drawing preliminary packages for bids and review incoming proposals for alignment with design and constructability of methods.
* Manage the development of project proposals, bid preparation, project schedules, etc. for assigned Substation projects.
* Assist project team during construction on electrical substation issues.
* Travel to client sites/field as necessary.
Ampirical is an Equal Opportunity Employer, meaning we do not discriminate based on the following characteristics in our hiring and employment practices: Age, sex, color, race, creed, national origin, religion or religious attire, marital status, pregnancy (child birth or related medical conditions), citizenship status or amnesty, ancestry, sexual orientation, gender, gender identity, gender expression, transgender status, physical or mental disability, military or veteran status, genetic information, sickle-cell trait, status as a tobacco user or non-user, or any other classification protected by federal, state, or local law.
Platform Security Engineer
Security architect job in New Orleans, LA
Job DescriptionSaronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms.
Saronic Technologies is a leader in defense autonomy at sea. We're seeking a Platform Security Engineer to secure the cloud/edge where vessels, operators, and customers meet. You'll own identity and access patterns, secrets and key management, secure network posture, and policy-as-code guardrails-working across AWS (including GovCloud), Terraform infrastructure, and service code to deliver trustworthy, auditable systems.
Senior Engineers: 3+ years securing production cloud platforms (identity, secrets/KMS, network posture), preferably in autonomy, robotics, aerospace, or defense.
Staff Engineers: 8+ years including technical leadership across secure-by-default platform modules, short-lived credential issuance, and cross-account policy design; demonstrated ownership from design through operational rollout.Key Responsibilities
Design, develop, and maintain secure-by-default infrastructure on
AWS using Terraform (ALB/OIDC, IAM, KMS, Secrets Manager, Route53, VPC/SGs).
Standardize OIDC at the edge (ALB/ingress) for internal and external applications; define scopes, claims, and token lifecycles.
Own secrets and key management: KMS key policies, rotation schedules, cross-account access, and automated issuance for services and tools.
Enforce IMDSv2 required, least-privilege IAM roles, and tight security groups across modules; add CI/policy checks to prevent regressions.
Design secure protocols/APIs for service↔service and boat↔cloud communication (mTLS/TLS, certificate issuance/rotation, revocation).
Manage short-lived credentials used by fleet/overlay services; implement rotation, auditing, and incident response runbooks.
Prefer service-mediated S3 access over broad pre-signed URLs; codify bucket policies, logging, and access boundaries.
Build centralized, tamper-evident logging and audit trails; integrate detections and metrics to validate control effectiveness.
Perform threat modeling and security reviews; document patterns and drive adoption via reusable modules and guides.
Troubleshoot complex security issues in production; lead post-incident reviews and drive remediation to closure.
Stay current on cloud security best practices, especially for defense/government environments.
Required Qualifications:
Bachelor's or Master's degree in Computer Science, Software/Computer/Electrical Engineering, or a related field.
3+ years building on AWS with Terraform (ALB/ELB, IAM, KMS, Secrets Manager, Route53, VPC/SGs).
Strong knowledge of cryptographic and IAM fundamentals (key policies, rotation, certificates, OIDC/OAuth2).
Demonstrated experience enforcing IMDSv2, least-privilege roles, and network controls at scale.
Experience designing secure protocols/APIs and integrating auth into service code (e.g., Go/Rust/TypeScript).
Proven ability to perform threat modeling and conduct design/code security reviews.
Excellent problem-solving and communication skills; effective collaboration across platform, embedded, and field teams.
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience in AWS GovCloud, multi-account landing zones, and cross-account KMS/Secrets patterns
Familiarity with fleet/overlay VPN access control and short-lived credential issuance
Policy-as-code guardrails (e.g., OPA/Conftest, Terraform validations), drift detection, and CI integration
Centralized logging/SIEM and cloud threat detection (e.g., CloudTrail, GuardDuty) with audit readiness
PKI/CA management and, ideally, hardware roots of trust (TPM/secure elements) at the edge
DoD/defense domain familiarity and prior work under export-controlled constraints
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Embedded Security Engineer
Security architect job in New Orleans, LA
Job DescriptionSaronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms.
Saronic Technologies is a leader in defense autonomy at sea. We're seeking an Embedded Security Engineer to design, implement, and harden security for the software that runs on our autonomous surface vessels. You'll work across device identity, secure boot and update flows, secrets/key management, and secure communications-partnering closely with autonomy, platform, manufacturing, and field teams to deliver trustworthy systems that operate reliably in maritime environments.
Senior Engineers: 3+ years of experience delivering security features on embedded/Linux systems, preferably in autonomy, robotics, aerospace, or defense.
Staff Engineers: 8+ years of experience including technical leadership across secure boot/update pipelines, identity/PKI, and fleet-wide hardening; demonstrated ownership of mission-critical features from design through field deployment.Key Responsibilities:
Design, develop, and maintain security features for embedded Linux systems (systemd-managed services, Rust/C/C++) used for navigation, control, and communications.
Own per-vessel identity and mutual authentication for boat↔cloud and boat↔boat links; implement certificate/key rotation and revocation workflows.
Implement signed/verified update mechanisms with rollback protection; collaborate with manufacturing on secure boot enablement and key provisioning.
Integrate and operate hardware-backed key storage (e.g., TPM/secure elements) and sealed secrets for on-vessel services.
Harden network paths over constrained links: TLS/mTLS, VPN overlay policies, and least-privilege service access.
Reduce attack surface in embedded services (capabilities, seccomp/AppArmor where appropriate, safe process execution, input validation).
Build tamper-evident, structured logging and diagnostics suitable for ship→shore analysis and incident response.
Perform threat modeling, code reviews, and security testing (static/dynamic analysis, fuzzing, negative testing).
Troubleshoot and debug complex security issues in fielded systems; author runbooks and safe-rollback procedures.
Document designs, processes, and verification results for compliance and knowledge sharing; contribute to secure coding guidelines.
Stay current on emerging security technologies and best practices relevant to embedded Linux and autonomous systems.
Required Qualifications:
Bachelor's or Master's degree in Computer Science,
Electrical/Computer Engineering, Software Engineering, or a related field.
Proficiency in Rust and/or C/C++ developing software for embedded Linux.
Strong understanding of cryptographic primitives and protocols (keys, certificates, signatures, TLS/mTLS), and experience integrating them into systems.
Experience with secure/verified boot, OTA/update safety, and firmware/bootloader workflows.
Familiarity with VPN overlays and constrained-network security patterns.
Comfortable with Linux security fundamentals (users/permissions, capabilities, sandboxing) and systemd-based service management.
Excellent problem-solving skills and ability to collaborate effectively in na fast-paced, cross-functional environment.
Strong written and verbal communication skills.
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience with TPM/secure elements, measured/verified boot, and attestation.
Exposure to NixOS-based builds, Yocto, or similar embedded Linux tooling.
Experience with authenticated media/telemetry pipelines and secure streaming.
DoD/defense domain familiarity and prior work under export-controlled constraints.
Physical Demands:
Prolonged periods of sitting at a desk and working on a computer.
Occasional standing and walking within the office.
Manual dexterity to operate a computer keyboard, mouse, and other office equipment.
Visual acuity to read screens, documents, and reports.
Occasional reaching, bending, or stooping to access file drawers, cabinets, or office supplies.
Lifting and carrying items up to 20 pounds occasionally (e.g., office supplies, packages).
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.
Corporate Security Engineer
Security architect job in New Orleans, LA
Job DescriptionSaronic Technologies is a leader in revolutionizing defense autonomy at sea, dedicated to developing state-of-the-art solutions that enhance maritime operations for the Department of Defense (DoD) through autonomous and intelligent platforms.
As a Corporate Security Engineer, you'll safeguard the systems that power Saronic's mission. You'll engineer, harden, and operate Microsoft 365 and AWS environments to meet defense-grade security requirements while protecting our people, data, and operations. You'll own the protection of every employee, system, and credential. Your work will secure the full user lifecycle by automating onboarding/offboarding, protecting remote and traveling employees, and minimizing human-targeted risks like phishing and social engineering.
You will design secure-by-default platforms, automate compliance and monitoring through cloud solutions, and ensure our environments remain resilient, frictionless, and compliant. At Saronic, security is a force multiplier; security is not a blocker. You will have the autonomy to build and the mandate to innovate, working side-by-side with engineers who are developing technology that directly supports national defense. This role is ideal for someone who wants to own security at scale, shape a defense-grade security program, and see their impact every day. You'll thrive here if you're driven by mission, biased toward action, and enjoy working in a high-trust, low-ego team that values resilience, integrity, and creativity. Key Responsibilities:
Cloud and Identity Security
Administer and secure multiple Microsoft 365 GCC High and Microsoft 365 commercial tenants and AWS GovCloud and commercial accounts to align with NIST SP 800-171, NIST CSF, and ISO 27001 standards
Configure and harden identity and access management (Entra ID, AWS IAM), data loss prevention (Purview), and conditional access policies to enforce multi-factor authentication, single sign-on, and least privilege
Implement security guardrails and automation in partnership with IT and DevOps teams using Infrastructure as Code (Terraform, Ansible, CloudFormation)
Continuously drive security automation and visibility improvements across people, process, and technology
User and Endpoint Security
Engineer and enforce secure device baselines and policies via Intune and Jamf for unified endpoint management
Configure and maintain endpoint protection platforms (Defender, CrowdStrike)
Secure the user lifecycle through automated identity and device provisioning/de-provisioning, least-privilege enforcement, remote and traveling employee protection, and anomalous behavior monitoring
Reduce phishing and user-targeted threats through identity hardening, email protections, and user awareness feedback loops
Network Security
Engineer and maintain secure network architectures across global offices, remote, and cloud environments through VPNs, network segmentation, DNS filtering, secure network connectivity, and firewall configurations
Lead vulnerability, configuration, and asset management to maintain secure baselines and visibility across all enterprise systems
Support incident response through automation, playbooks, and forensic readiness
Application Security
Harden and monitor SaaS applications through secure SaaS controls, SSO/SAML enforcement, SCIM provisioning, and least privilege
Manage shadow IT detection, vendor risk reviews, and data protection
Required Qualifications:
3+ years proven experience administering and securing Microsoft 365 through Intune + Jamf, Entra ID, Defender, Purview, and Sentinel
Hands-on experience securing AWS environments, including secure configurations of IAM, GuardDuty, CloudTrail, Config, Security Hub, and encryption/key management controls
Proven proficiency in scripting and automation (i.e., Python, PowerShell, Bash)
Familiarity with cloud and identity ecosystems (i.e., Azure, AWS, Okta, Entra ID, Active Directory)
This role requires the ability to obtain and maintain a security clearance
Preferred Qualifications:
Experience with highly regulated frameworks such as NIST SP 800-171, NIST SP 800-53, ISO 27001, or FedRAMP
Familiarity with cloud and endpoint observability and EDR tools (i.e., Defender, CrowdStrike, Sentinel, Splunk)
Demonstrated experience automating compliance and audit processes
Experience implementing and managing secure cloud architecture and controls using Infrastructure as Code tools (i.e., Terraform, CloudFormation, Ansible)
Proven ability to design and operate Zero Trust Network Access
Experience implementing network intrusion detection and response tools
Demonstrated ability to evaluate SaaS vendor security posture and integrate approved applications securely into the environment
Background in defense, aerospace, or high-assurance manufacturing
Relevant security certifications (SC-100, MS-500, MD-102, AWS Certified Security - Specialty, GCSA, GCIA, CISSP, CCSP)
Physical Demands
Prolonged periods of sitting and computer work
Occasional standing and walking within the office
Manual dexterity to operate computers and office equipment
Visual acuity to read screens and documents
Occasional reaching or lifting up to 20 pounds (e.g., equipment or supplies)
Benefits:Medical Insurance: Comprehensive health insurance plans covering a range of services Saronic pays 100% of the premium for employees and 80% for dependents Dental and Vision Insurance: Coverage for routine dental check-ups, orthodontics, and vision care Saronic pays 100% of the premium under the basic plan for employees and 80% for dependents Time Off: Generous PTO and HolidaysParental Leave: Paid maternity and paternity leave to support new parents Competitive Salary: Industry-standard salaries with opportunities for performance-based bonuses Retirement Plan: 401(k) plan Stock Options: Equity options to give employees a stake in the company's success Life and Disability Insurance: Basic life insurance and short- and long-term disability coverage Pet Insurance: Discounted pet insurance options including 24/7 Telehealth helpline Additional Perks: Free lunch benefit and unlimited free drinks and snacks in the office
This role requires access to export-controlled information or items that require “U.S. Person” status. As defined by U.S. law, individuals who are any one of the following are considered to be a “U.S. Person”: (1) U.S. citizens, (2) legal permanent residents (a.k.a. green card holders), and (3) certain protected classes of asylees and refugees, as defined in
8 U.S.C. 1324b(a)(3)
.
Saronic does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity or any other reason prohibited by law in provision of employment opportunities and benefits.