Post Job

Security Architect Jobs in Orchards, WA

- 53 Jobs
All
Security Architect
Security Engineer
Information Security Manager
Information Systems Security Officer
Security System Engineer
Senior Security Architect
SAP Security Consultant
Senior Security Engineer
  • Deloitte Microsoft Technology Services Practice (DMTSP) - Security Pre-Sales Architect

    Deloitte 4.7company rating

    Security Architect Job In Portland, OR

    Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities? If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Advisory Cloud Cyber Risk Services team and become a member of the largest group of Cyber Risk individuals worldwide. Microsoft is an audit client for Deloitte - as a result, Deloitte does not and cannot have any form of alliance or partnership with Microsoft. Deloitte, however, can advise on and implement Microsoft products, and interact with Microsoft in certain ways in connection with these activities. When doing so, Deloitte and Microsoft must be sensitive to and mindful of the need for independence. Recruiting for this role ends on 4.1.25 Work you'll do As a DMTSP - Security Pre-Sales Architect, you will be at the front lines with our clients who have chosen the Microsoft technology platform and supporting them with their Cloud Cyber Risk needs specifically helping them navigate the journey on securing their Microsoft platform infrastructure such as Azure and Office 365 and the design and deployment of Microsoft Security solutions. This is a Deloitte services pre-sales role and not a project implementation role. This will include: + Lead or support proposals and/or also function as proposal lead architect with services potentially including the following Microsoft technologies: Microsoft Defender for Cloud, Azure Policies, Purview, Intune, Sentinel, Entra ID, Defender for Office, Defender for Endpoints and Servers, Defender for Vulnerabilities, Defender for Cloud Apps, Defender XDR and SCCM + Assist in business development activities such as defining scope of services, building resource estimates and related pricing, packaging proposals and supporting the delivery of the proposal to the client for security services at clients who may have selected Microsoft infrastructures. + Lead the delivery of cloud security analysis, recommendations and configurations of prospective clients' Microsoft Entra ID, Office 365 (O365), Exchange Online, Teams, OneDrive for Business, M365 Copilot and SharePoint Online environments based on Deloitte's Microsoft 365 Cyber Risk Framework. This can include leveraging security solutions services which may include Microsoft's technology products such as Entra, Purview, Defender, Intune, and Sentinel. + Support or lead the delivery of Cyber Security workshops with clients(remote/in-person) including building demo labs, PowerPoint decks and Deloitte best practice perspectives + Function as a Cyber security architect (experienced in applicable Microsoft technologies) supporting Deloitte project teams for practice development and eminence + Function as deep subject matter expert on Microsoft security and securing Microsoft solutions staying abreast of Gartner research and Microsoft product roadmaps and advising Deloitte teams and clients on new developments. + Function as the primary client day-to-day interface building rapport and trust with the client. + Perform technical health checks of client's Microsoft platforms/environments as part of client development activities prior to broader deployments. + When clients have expressed a desire to discuss Microsoft technologies, assist clients in a pre-sales role, with transitions to the Microsoft 365 security services such as solution setup and service configuration, focused on risk mitigation. Additional technologies include MFA, Conditional Access, Purview Compliance Manager, M365 Defender, Defender for O365, Defender for Cloud Apps (MDCA), Purview Information Protection (MPIP), Purview Data Loss Prevention (DLP). + Implement industry leading practices around M365 E5 cyber risks and cloud security for clients. + As part of the Deloitte Microsoft Technology Services security practice development and eminence activities; Design and develop cloud-specific security policies, standards and procedures e.g., O365 tenant management and configuration, identify management and access control, auditing and monitoring, security incident and event management, data protection (classification/labeling, DLP, encryption), user and administrator account management, SSO, conditional access controls and password/key management. + Provide internal technical training to Advisory personnel as needed. + Act as a subject matter expert on cloud cyber risk for Microsoft Purview, Microsoft Intune, Entra ID, Azure security, Microsoft Defender, and Microsoft Sentinel capabilities. + Lead the development of Point-of-Views (PoVs) on providing leading practices to our clients on Cyber, including the Microsoft security challenges they face. + Support talent process in the architect role such as for recruiting and coaching. + Function as an expert in CNAPP, CWPP and CSPM technologies and security risk frameworks relevant to cloud as well as the Microsoft Cloud Security Benchmark The successful candidate will possess: + Strong critical thinking, analysis, and problem-solving skills + Strong written and oral communication skills + Experience working independently as well as collaboratively across large teams The team Deloitte Advisory's Cloud Cyber Risk team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive cyber risk programs. Join the team developing the future state of cyber risk solutions. Learn more about Deloitte Advisory's Cyber Risk Services practice. Qualifications Required: + 5+ years of experience in technical consulting, client problem solving, architecting and designing solutions in a consulting role with project leadership and/or architect experience with Microsoft technologies + 5+ years of hands-on technical experience with securing Microsoft 365 enterprise-level messaging and collaboration and/or Azure Infrastructure in implementation and operations. + 5+ years of hands-on technical experience with enterprise-level systems management systems such as SCCM, End point security and Intune and endpoint engineering (MEM) and mobile device management (MAM & MDM)) implementation or operations. + 5+ years of hands-on technical and project / professional experience enterprise-with at least two of the following technologies: Microsoft Endpoint Security Platforms (e.g. Defender for Endpoints and Defender for Servers), Microsoft Sentinel, Microsoft's email security platform (Defender for Office), Microsoft Purview, Azure security & Entra ID + Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve + Limited sponsorship may be available Preferred: + BA/BS Degree preferred. Ideally in Computer Science, Cyber Security, Information Security, Engineering, Information Technology. + Microsoft Certifications such as: (SC-900, SC-100, SC-200, SC-300, SC-400, AZ 500), + Cyber Certifications such as: CCSP, CCSK, CISSP, CCNP, and CCNA. Ideally the following technical experience is a plus in any of the technologies below: + Microsoft Security Copilot + Defender for Vulnerabilities + Defender for Cloud Apps + Defender XDR + Experience with Azure data, analytics, or AI/ML services (Azure SQL, HDInsight, Databricks, Data Factory, Data Lake Storage, Azure Analysis Services, Synapse Analytics, Azure Machine Learning, etc.) The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $102,500.00 to $210,600.00. You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. Information for applicants with a need for accommodation:Hyperlink: ************************************************************************************************************ #DeloitteNDO, #SalesOpsGreenDot All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
    $102.5k-210.6k yearly 14d ago
  • Senior Hardware Security Architect, GPU Security Verification

    Nvidia 4.9company rating

    Security Architect Job In Hillsboro, OR

    We are now looking for a Senior Hardware Security Architect - GPU Security Verification: NVIDIA is seeking a Senior Hardware Security engineer to architect, design, validate, and guide implementation of HW security for its GPU products with a focus on security verification. You are expected to take a strong, hands-on approach to ensuring secure development and engineering practices across multiple internal teams by leading by example. Persons in this role will help reduce risk, threats, and vulnerabilities with a focus on GPU security verification. What you'll be doing: * Define verification flows and requirements for GPU security features. * Work with architecture, HW IP, and fullchip verification teams to ensure new GPU security features are verified correctly. * Write testplans and architectural model tests to verify GPU security requirements. * Perform security reviews of firmware and hardware designs and assist others to ensure quality and robustness of our products. * Recommend best practices for secure service development driving continuous improvement in the engineering organization. Including mentoring, developing and delivering training materials, producing frameworks to reduce best practice patterns to application for use in production efforts. * Review architectural and micro-architectural details for features that improve security of our GPUs in order to ensure they can be verified. * Drive verification of hardware features that improve security of our GPUs. * You will collaborate to develop a long-term security roadmap for our products to ensure suitability for the markets we serve. What we need to see: * A Masters degree or equivalent experience in Computer Engineering, Computer Science, Electrical Engineering. * 8+ years of relevant hardware development experience with a focus and interest in hardware security and chip verification. * Deep understanding of verification methodologies. * Understanding of processor architectures (GPU is a plus), caches and memory systems. * Proficiency in Verilog RTL coding and scripting languages, such as: Perl, Python and Make etc. * A hands on technical background; excellent C programming and low-level firmware experience. * Strong communication skills are required along with the ability to work in a dynamic product oriented team. Ways to stand out from the crowd: * Experience with security testing techniques, threat modeling, fuzzing, negative testing and other techniques. * Background with micro architectural attacks (side channels, fault injection, etc). * Experience with HW level applications of cryptography; secure boot, key management, etc. NVIDIA is widely considered to be one of the technology world's most desirable employers. We have some of the most forward-thinking and hardworking people in the world working for us. Are you creative and autonomous? Do you love the challenge of crafting the securest silicon possible? If so, we want to hear from you. Come, join our GPU Security Architecture team and help build the real-time, cost-effective computing platform driving our success across several exciting and quickly growing fields. The base salary range is 184,000 USD - 356,500 USD. Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. You will also be eligible for equity and benefits. NVIDIA accepts applications on an ongoing basis. NVIDIA is committed to fostering a diverse work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.
    $132k-175k yearly est. 27d ago
  • Information Security Engineering Manager

    Lam Research 4.6company rating

    Security Architect Job In Tualatin, OR

    Job Responsibilities Lam Research is looking for a Manager to join our growing team and lead the Information Security Engineering function. The primary responsibility of the manager is to ensure the effective delivery and support Information Security controls across the network, systems, endpoints, applications and data. The manager will work with a staff of engineers to ensure that controls are effectively deployed, maintained and optimally configure to mitigate threats against Lam. Other Job Responsibilities * Contribute to the development and maintenance of Lam's security architecture and roadmap. * Supervision of engineering staff, from hiring and orientation, to coaching, mentoring and performance management. * Providing leadership in engineering and across towers, setting positive examples of Lam's core leadership competencies. * Ensure adequate support for critical security services. * Prioritize daily work and ensure coverage for ad hoc and project based work. * Manage the engineering budget and tools procurement. * Support compliance work and audits such as ISO 27001, NIST CSF and customer audits. Minimum Qualifications * Possess a certification in Cybersecurity, or in one or more of the following services: Network Security Tools (Firewalls, IDS/IPS), Application Security Tools (Web Application Firewall), Endpoint Detection and Response (EDR), Cloud Security Systems and Tools. * Possess a minimum of 4 years' technical engineering experience in two or more of the specific Security Engineering disciplines: Network Security Tools (Firewalls, IDS/IPS), Application Security Tools (Web Application Firewall), Endpoint Detection and Response (EDR), Cloud Security Systems and Tools. * Possess a minimum of 2 years' management experience in an IT environment characterized by multiple processing platforms and 24/7 operational support requirements. * Trained or experienced in performing organizational analysis including staffing levels, functional alignment, and skills assessment. * Strong verbal and written communication skills. Preferred Qualifications * Experience within a global semiconductor company or equivalent industry experience preferred. * Experience with Microsoft and Palo Alto security tooling. Our Commitment We believe it is important for every person to feel valued, included, and empowered to achieve their full potential. By bringing unique individuals and viewpoints together, we achieve extraordinary results. Lam Research ("Lam" or the "Company") is an equal opportunity employer. Lam is committed to and reaffirms support of equal opportunity in employment and non-discrimination in employment policies, practices and procedures on the basis of race, religious creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex (including pregnancy, childbirth and related medical conditions), gender, gender identity, gender expression, age, sexual orientation, or military and veteran status or any other category protected by applicable federal, state, or local laws. It is the Company's intention to comply with all applicable laws and regulations. Company policy prohibits unlawful discrimination against applicants or employees. Lam offers a variety of work location models based on the needs of each role. Our hybrid roles combine the benefits of on-site collaboration with colleagues and the flexibility to work remotely and fall into two categories - On-site Flex and Virtual Flex. 'On-site Flex' you'll work 3+ days per week on-site at a Lam or customer/supplier location, with the opportunity to work remotely for the balance of the week. 'Virtual Flex' you'll work 1-2 days per week on-site at a Lam or customer/supplier location, and remotely the rest of the time. IND123 #LI-FC1 #LI-Hybrid Our Perks and Benefits At Lam, our people make amazing things possible. That's why we invest in you throughout the phases of your life with a comprehensive set of outstanding benefits. Discover more at
    $111k-136k yearly est. 44d ago
  • SAP Platform Security Consultant

    Accenture 4.7company rating

    Security Architect Job In Beaverton, OR

    We are a global collective of innovators applying the "New" every day to improve the way the world works and lives. Help us show the world what's possible as you partner with clients to unlock hidden value and deliver innovative solutions. Empowered with innovative tools, continuous learning, and a global community of diverse talent and perspectives, we drive success in a new business architecture that disrupts conventional practices. Our expertise spans 40+ industries across 120+ countries and impacts millions of lives every day. We turn ideas into reality. We Are: Platform Security professionals develop and deliver solutions - including the design and implementation of SAP application Security Roles, implementation of SAP Access and Process Control, Segregation of Duties Analysis Rules, Security Role Provisioning solutions, Security Analytics, Automated External Application Scanning, and Automated Source Code Analysis - that minimize the impact of internal and external manipulation of applications to access, steal, modify, or delete sensitive data. You Are: A Security and Risk professional developing and delivering solutions that protect SAP systems and data by establishing policies, practices, and tools that prevent unauthorized access, use, disclosure, modification, or disruption. SAP Platform Security professionals develop and deliver solutions - including design and implementation of SAP Security Roles, Segregation of Duties Analysis Rules, Security Role Provisioning solutions, Security Workflow, Business Process Controls, Security Analytics, Enterprise GRC Solutions, Automated External Application Scanning, and Automated Source Code Analysis. A professional at this position level within Accenture has the following responsibilities: + Adapts existing methods and procedures to create possible alternative solutions to moderately complex problems. + Understands the strategic direction set by senior management as it relates to team goals. + Uses considerable judgment to determine solutions and seeks guidance on complex problems. Primary upward interaction is with the direct supervisor. May interact with peers and/or management levels at a client and/or within Accenture. + Determines methods and procedures on new assignments with guidance. Decisions often impact the team in which they reside. + Manages small teams and/or work efforts (if in an individual contributor role) at a client or within Accenture. The Work (Role Responsibility): + Contribute to a strong client relationship through interactions with client personnel- + Understand engagements as they relate to client's business + Configure security and associated solutions in SAP S/4 to meet unique client security requirements + Demonstrate knowledge in some areas of industry or functional specialty + Communicate client expectations to the engagement team + Conduct security assessments + Assume responsibility for small components of engagements. May have a greater role in small engagements + Contribute to engagement planning and verify that deliverables meet contract and work plan objectives. + Deliver services that meet Accenture Project Manager specifications + Recognize and communicate opportunities to sell "add-on" work to client + Strong understanding of information security management principles, SAP application security implementation methodologies, role-based access controls, distributed systems administration, and distributed system recovery. + Demonstrate experience 1) independently completing complex security-related tasks (ex. An upgrade to S/4HANA); 2) making major contributions in assuring deliverables meet contract and work plan objectives and; 3) taking on tasks of increased complexity + Ability to take a broad view of the position and take initiative to communicate, interact, and cooperate with others to ensure that all aspects of a task are addressed + Ability to independently create written deliverables and participate in presentations + On-site, regular client travel will be required for this position Here's What You Need (Basic Qualifications): - Minimum 3 years of experience in SAP S/4 HANA, with a focus on implementation - Minimum 3 years of experience creating technical documentation - Minimum 3 years of experience with SAP Fiori and HANA DB security experience - Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate's Degree, must have minimum 6 years work experience) - Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements. Bonus Points If You Have (Preferred Skills): - Prior experience working in a consultant/advisory capacity. Big Four experience preferred - Knowledge of internal controls, with relation to SAP Security and SAP Access/Process Controls - Proven ability to work creatively and analytically in a problem-solving environment - Proven success in contributing to a team-oriented environment + Desire to work in an environment fostering teamwork and camaraderie + Excellent leadership, communication (written and oral), and interpersonal skills Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired in California, Colorado, District of Columbia, Illinois, Maryland, Minnesota, New York or Washington as set forth below.We accept applications on an on-going basis and there is no fixed deadline to apply. Information on benefits is here. (************************************************************ Role Location Annual Salary Range California $63,800 to $196,000 Colorado $63,800 to $169,300 District of Columbia $68,000 to $180,300 Illinois $59,100 to $169,300 Minnesota $63,800 to $169,300 Maryland $59,100 to $156,800 New York $59,100 to $196,000 Washington $68,000 to $180,300 #LI-NA What We Believe We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Accenture has the responsibility to create and sustain an inclusive environment. Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and more creative, which helps us better serve our clients and our communities. Read more here (*********************************************************************** Equal Employment Opportunity Statement Accenture is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion or sexual orientation. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Accenture is committed to providing veteran employment opportunities to our service men and women. For details, view a copy of the Accenture Equal Employment Opportunity and Affirmative Action Policy Statement (********************************************************************************************************************************************** . Requesting An Accommodation Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. If you would like to be considered for employment opportunities with Accenture and have accommodation needs for a disability or religious observance, please call us toll free at ****************, send us an email (************************************************* or speak with your recruiter. Other Employment Statements Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States. Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration. Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.
    $68k-180.3k yearly 51d ago
  • Specialist, Information Security Architect

    Teck Resources Limited

    Security Architect Job In Vancouver, WA

    Vacant Teck is a leading Canadian resource company focused on responsibly providing the metals essential for global development and the energy transition while caring for the people, communities and land that we love. Teck's two regional business units, North America and Latin America, oversee Teck's assets through all phases of safe, sustainable development, operation and closure. The business units are supported by enterprise-wide functions that set strategic direction, establish standards and provide governance, as well as supporting the business through shared services, centers of excellence and business partnering. Reporting to the Manager, Cyber Threat Prevention, the Specialist, Information Security Architect is responsible for the design, implementation, and continuous improvement of the organization's information security architecture. This outstanding role requires translating business objectives and risk management strategies into specific and measurable security outcomes for corporate environments! Further responsibilities include the secure integration of such outcomes with required industrial and external systems. Don't miss out on this outstanding opportunity to be part of one of Canada's leading mining companies and join our team! ResponsibilitiesBe a courageous safety leader, adhere to and sponsor safety and environmental rules and procedures Risk Management: Champion the three lines of defense model for risk management and act as a second line of defense facilitator, regularly interacting with the first line of defense Partner Collaboration: Collaborate with IT, OT, and business partners to manage and integrate security requirements into each phase of the solution delivery lifecycle Architecture Development: Build and maintain security architecture frameworks and standards. Perform threat modeling and exposure assessments to set architectural priorities and assess their adoption and efficiency QualificationsUndergraduate education or equivalent experience in science, technology engineering or math5+ years of demonstrable experience in information security architecture and continuous professional development in the realm Demonstrable understanding of security frameworks (e.g., NIST CSF, ISO 27001) and control standards (e.g. CIS CSC, NIST 800-53, ISO 27002) General security certification (e.g. GSEC, CISSP, CISA, etc) Proven specialized training in architecture frameworks (e.g. TOGAF, SABSA, etc) You live the Teck values in your daily activities by being responsible and courageous, respectful and inclusive, and both humble and driven Knowledge towards the ability to increase maturity by building on context The desire to keep Teck safe by anticipating company needs The capacity to manage risk while assessing trade-offs Ability to standardize processes through writing and reviewing Demonstrated personal accountability, transparency and a overall growth mindset Collaborative engagement style and effective communication with diverse groups $103,000 - $127,000 a year The actual base salary offered is determined based on the successful candidate's relevant experience, skills, and competencies and considers internal equity. Why Join Us? At Teck, we offer more than just a job - we provide a pathway to personal and professional enrichment. With captivating projects set against stunning backdrops, a culture of inclusivity and collaboration, and boundless opportunities to learn and grow, joining us means embracing a fulfilling and dynamic career adventure. Teck employees receive access to our total rewards program and comprehensive benefits package that promote physical, mental, financial, and emotional well-being. This includes but is not limited to: • Annual Performance Bonus • Profit Share Plan • Health Spending Account • Personal Spending Account • Extended Health Care • Dental and Vision Care • Employer Paid Pension Plan • Life Insurance and Disability Coverage • Paid Sick Leave, Vacation and Holidays • Virtual Telemedicine and additional support for overall well-being • Employee and Family Assistance Program (EFAP)
    $103k-127k yearly 11d ago
  • Secure Systems Engineer - Platform Architecture

    Apple 4.8company rating

    Security Architect Job In Beaverton, OR

    Beaverton,Oregon,United States Hardware Are you a big-picture visionary who understands how each element affects all the others? At Apple, our Platform Architecture group is responsible for connecting our hardware, software, and servers into one unified system. You'll join a team of architects who are dedicated to securing the world's most advanced consumer devices. Our products are trusted for storing personal data, and our goal is to better safeguard our users. We're looking for dedicated and inspired individuals to help raise the bar on the security of Apple's products. **Description** In this role, you will define the architecture and oversee the operation of distributed web services that set and enforce security policy for the development, manufacture, deployment, and operation of Apple products, ultimately driving continuous security improvements for these products. Together, our work will be instrumental in maintaining the trust millions of customers place in their devices every day. As a member of Platform Architecture, you will: - Lead cross-functional teams throughout the product development cycle to resolve system-level issues without sacrificing product security or impacting world class product design. - Identify emerging threats, develop threat models, and define security architectures for exciting new Apple products and technologies. Derive system security requirements, and design balanced and novel mitigations in creative collaboration with iconic product and engineering teams. - Develop detailed system-level specifications to guide product development, integration, and quality assurance teams in the creation of golden unit tests, reference data, and sample libraries to aid integration of our security technologies across team boundaries (e.g. client/server). - Drive security requirements and architecture into web application services that play a pivotal role in the development, manufacture, deployment, and operation of Apple Products. - Use a wide range of interpersonal and technical skills to champion adoption of our industry leading security technologies across multiple product categories. **Minimum Qualifications** + BS and 10+ years of relevant industry experience. + Experience in designing, developing, and deploying backend web services including API design or scalable infrastructures for highly available applications. + Experience with common programming languages such as Python, Go or C/C++. + Experience in implementing and managing DevOps practices. Such as continuous integration/continuous deployment (CI/CD), infrastructure as code (IaC), or automation of development, testing, and deployment pipelines. **Key Qualifications** **Preferred Qualifications** + Masters in EE/CE. + Ability to effectively lead cross-functional initiatives and to provide architectural guidance to teams lacking resident security expertise. + Breadth to work cross-functionally with Infrastructure, Privacy, Safety, Service, Manufacturing, Software, and Product Development teams to resolve system-level security issues. + Strong written and oral communications skills across multiple levels. + Ability to critically analyze security properties of web service architectures, hardware, and software systems in order to build a comprehensive threat model. (e.g. familiarity with common threat modeling methodologies such as STRIDE) + Knowledge of basic cryptographic principles (e.g., symmetric vs asymmetric crypto, encryption vs authentication, secure boot, and PKI frameworks) and familiarity with HSM-based security applications and/or data center management and security expertise. **Education & Experience** **Additional Requirements** + Apple is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics.Learn more about your EEO rights as an applicant. (*********************************************************************************************** **Apple Footer** Apple is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant (Opens in a new window) . Apple will not discriminate or retaliate against applicants who inquire about, disclose, or discuss their compensation or that of other applicants. United States Department of Labor. Learn more (Opens in a new window) . Apple participates in the E-Verify program in certain locations as required by law. Learn more about the E-Verify program (Opens in a new window) . Apple is committed to working with and providing reasonable accommodation to applicants with physical and mental disabilities. Reasonable Accommodation and Drug Free Workplace policy Learn more (Opens in a new window) . Apple is a drug-free workplace. Reasonable Accommodation and Drug Free Workplace policy Learn more (Opens in a new window) . Apple will consider for employment all qualified applicants with criminal histories in a manner consistent with applicable law. If you're applying for a position in San Francisco, review the San Francisco Fair Chance Ordinance guidelines (opens in a new window) applicable in your area. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
    $124k-163k yearly est. 52d ago
  • Application Security Engineer

    Indeed 4.4company rating

    Security Architect Job In Portland, OR

    **Our Mission** As the world's number 1 job site*, our mission is to help people get jobs. We strive to cultivate an inclusive and accessible workplace where all people feel comfortable being themselves. We're looking to grow our teams with more people who share our enthusiasm for innovation and creating the best experience for job seekers. **Day to Day** As an Application Security Engineer, your role involves close collaboration with software development teams to ensure the safety of our customers during the development of innovative services. On any given day, your tasks may include code inspections to identify security issues, the development of new frameworks to enhance the speed and security of software development, and fine-tuning service designs in collaboration with software developers. As an Application Security Engineer, you'll apply your skills towards our mission of helping people find jobs and secure our global cloud-native environment which serves 200M unique visitors per month. **Responsibilities** + Creating, updating, and maintaining threat models for a wide variety of software projects + Executing Manual and Automated Secure Coding Reviews, primarily in Java, Python and Javascript + Assist in development of security processes and automated tooling that prevent classes of security issues. + Developing security training and guidance for internal development teams + Work closely with software developers to advise on secure coding practices and to establish a proactive security posture. + Partnering with engineering teams to incrementally improve their security processes, priorities, and choices on a continual basis + Support and consult with product and development teams in the area of application security, including threat modeling and AppSec reviews + Assist teams in reproducing, triaging, and addressing application security vulnerabilities. **Skills/Competencies** + Bachelor's Degree in Computer Science, Engineering, Computer Security, Information Systems, or related field + You demonstrate excellent judgment in assessing and prioritizing technical risk + You have knowledge of security best practices and standards such as OWASP Top 10 and SANS Top 25 with a focus on scalable solutions + You have excellent communication skills with the ability to articulate complex security issues to technical and non-technical collaborators, with an inclusive mindset + You work to identify and remove bottlenecks for your teammates, both in process and technology + You have familiarity with a wide variety of security tools, technologies, and methodologies. + You have some level of scripting/development experience (e.g. Python, Java, Ruby, etc.) **Education Requirement** : Bachelor's Degree in Computer Science, Engineering, Computer Security, Information Systems, or related field **Salary Range Transparency** Austin, Metro Area 110,000- 154,000 USD per year New York City, Metro Area 118,000 - 172,000 USD per year Seattle, Metro Area 134,000 - 188,000 USD per year San Francisco, Bay Area 143,000 - 200,000 USD per year Remote, US 110,000- 154,000 USD per year **Salary Range Disclaimer** The base salary range represents the low and high end of the Indeed salary range for this position in the given work location. Actual salaries will vary depending on factors including but not limited to location, experience, and performance. The range(s) listed is just one component of Indeed's total compensation package for employees. Other rewards may include quarterly bonuses, Restricted Stock Units (RSUs), a Paid Time Off policy, and many region-specific benefits. **Benefits - Health, Work/Life Harmony, & Wellbeing** We care about what you care about. We have a multitude of benefits to support Indeedians, as well as their pets, kids, and partners including medical, dental, vision, disability and life insurance. Indeedians are able to enroll in our company's 401k plan, as well as an equity-based incentive program. Indeedians will also receive open paid time off, 12 paid holidays a year and up to 26 weeks of paid parental leave. For more information, select your country and learn more about our employee benefits, program, & perks at **************************** ! **Equal Opportunities and Accommodations Statement** Indeed is deeply committed to building a workplace and global community where inclusion is not only valued, but prioritized. We're proud to be an Equal Employment and Affirmative Action employer seeking to create a welcoming and diverse environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity or expression, family status, marital status, sexual orientation, religious creed, national origin, genetics, neuro-diversity, disability, age, status as a protected veteran, or any other non-merit based or legally protected grounds. Indeed is dedicated to providing reasonable accommodations to qualified individuals with known disabilities to participate in the employment application process. To request an accommodation, an applicant should contact Talent Attraction Accommodations at **************, or by email at accommodations@indeed.com. In the request for an accommodation, please inform us of the nature of your request and your contact information. If you are requesting accommodation for an interview, please reach out at least one week in advance of your interview. For more information about our commitment to Equal Employment Opportunity and Affirmative Action, please review our Equal Employment Opportunity and Affirmative Action Statement of Policy (************************************************************************ **Inclusion & Belonging** Inclusion and belonging are fundamental to our hiring practices and company culture, forming an integral part of our vision for a better world of work. At Indeed, we're committed to the wellbeing of our employees and on a mission to make this the best place to work and thrive. We believe that fostering a diverse and inclusive environment where every employee feels respected and accepted benefits everyone, fueling innovation and creativity. We value diverse experiences, including those who have had prior contact with the criminal legal system. We are committed to providing individuals with criminal records, including formerly incarcerated individuals, a fair chance at employment. Those with military experience are encouraged to apply. Equivalent expertise demonstrated through a combination of work experience, training, military experience, or education is welcome. **Indeed's Employee Recruiting Privacy Policy** **Fair Chance Hiring** We value diverse experiences, including those who have had prior contact with the criminal legal system. We are committed to providing individuals with criminal records, including formerly incarcerated individuals, a fair chance at employment. **Indeed's Employee Recruiting Privacy Policy** Like other employers Indeed uses our own technologies to help us find and attract top talent from around the world. In addition to our site's user and privacy policy found at ***************************** we also want to make you aware of our recruitment specific privacy policy found at ***************************************** **Req ID:** **45401** **This position accepts applications on an ongoing basis, and there is no deadline to apply.** Reference ID: 45401
    $100k-136k yearly est. 16d ago
  • Principal Operational Technology Security Engineer (HYBRID)

    MKS Instruments Inc. 4.8company rating

    Security Architect Job In Beaverton, OR

    A Day in Your Life at MKS: We seek a Principal Security Network Engineer experienced in IT and OT (Operational Technology) systems, specializing in federally regulated domestic industries, including energy (electric oil and gas), maritime, pharmaceutical, chemical, manufacturing/warehousing, and critical municipal infrastructures. The ideal candidate will have a strong background in IEC 62443 cybersecurity standards and protocols and a proven track record in assessing and implementing secure IT/OT network infrastructures within these sectors. This position is Hybrid within a commutable distance to one of our facilities in Andover MA, Beaverton OR, Broomfield CO, Irvine CA, Milpitas CA, or Rochester NY. You Will Make an Impact By: OT Security Strategy: * Develop and execute a comprehensive OT security strategy aligned with industry standards and regulatory requirements. * Continuously assess and update the OT security strategy to address emerging threats and vulnerabilities. OT Security Architecture: * Design and implement secure OT architectures and solutions for industrial control systems (ICS), supervisory control and data acquisition (SCADA) systems, and other OT assets. * Ensure that OT systems are designed with security as a fundamental consideration, including network segmentation and access controls. Security Controls Implementation: * Implement and manage security controls and technologies specific to OT environments, such as intrusion detection systems (IDS), firewalls, and network monitoring tools. * Configure and maintain OT security solutions to detect and respond to anomalies and threats. Vulnerability Management: * Perform regular vulnerability assessments and penetration testing of OT systems. * Collaborate with OT teams to remediate identified vulnerabilities and weaknesses. Incident Response and Recovery: * Develop and maintain incident response plans and procedures for OT security incidents. * Lead incident response efforts in the event of security breaches or incidents. Security Awareness and Training: * Provide guidance and training to OT teams on security best practices, including secure configurations and access controls. * Foster a culture of security awareness within the OT organization. Regulatory Compliance: * Ensure OT environments comply with relevant industry-specific standards and regulations, such as NERC CIP or IEC 62443. * Collaborate with compliance teams to conduct assessments and audits. Documentation and Reporting: * Maintain detailed documentation of OT security architectures, policies, and procedures. * Produce reports and recommendations for management and stakeholders. Continuous Improvement: * Stay current with industry trends, emerging threats, and evolving technologies. Drive continuous improvement in IT and OT network and security solutions Skills You Bring: * 8+ years of recent experience supporting network and security projects. * Proficient in the first four layers of the OSI model. * Familiarity with IEC 62443 and the Purdue model. * Proven experience with SCADA, DCS, and ICS systems. * A proactive individual capable of navigating uncertainty and managing multiple project tasks simultaneously. * Security: Cisco, Fortinet, F5, Check Point and Palo Alto firewalls, WAF, IDS/IPS and VPN * WAN routing solutions: MPLS, SD-WAN with VPN overlays * LAN/WAN platforms: Cisco Nexus, ACI, Catalyst, ISR route/switch, Fortinet, Aruba, especially multi-chassis, multi-context, ruggedized, and virtualized systems. * OT Networking & PLC Vendors: GE, Schweitzer, Schneider, Siemens, Red Lion, Antaira, Hirschmann, Emerson, Phoenix Contact, Moxa * Cloud: Azure VNETs, Peering, Virtual Gateway, VLAN, DNS, Load Balancing * Authentication Systems: TACACS, RADIUS, LDAP, Cisco ISE, FortiAuthenticator * Wireless: Client and point-to-point/multipoint wireless, radio and cellular solutions Competencies * Communication: Effectively communicate with a variety of technical and non-technical audiences and tune messages appropriately * Collaboration: Ability to work independently and effectively as part of a multidisciplinary team * Proficient in multitasking: Effectively handle various responsibilities, prioritize tasks, and maintain awareness of upcoming work. * Attention to Detail: Work with accuracy and be thorough. * Create detailed Change Management documentation and implementation plans. * Adaptability: Capacity to rapidly grasp and adapt to new technologies and solutions. * Customer Focus: Maintain focus on providing customers with secure networking solutions with excellent value. * Team Focus: Foster an innovation environment, team compatibility, positive work culture, and excellence. Manage relationships within the project team, clients, and relevant stakeholders. Physical Demands and Working Conditions: * Perform activities such as sitting, standing, or typing for extended periods of time * Regularly requires good manual dexterity and coordination * Ability to remain in a stationary position for 90% of the time * Must be able to communicate information and ideas so others will understand * Must be able to exchange accurate information * Operates in a professional office environment * Constantly operates a computer and other office productivity machinery * Ability to observe documents and details at close range (within a few feet of the observer) * Noise level in the work environment is usually average Compensation and Benefits: Salary Pay Range: $150k - $175k per year. This range is a good faith estimate of the expected salary range for this position, based on a wide range of factors including qualifications, experience and training, operational and business needs and other considerations permitted by law. Bonus: This position is eligible for a discretionary annual bonus, in an amount to be determined by MKS [or as applicable]. Benefits: MKS offers a comprehensive benefits package, including health insurance coverage (medical, dental and vision), 401(k) with company match, life and disability insurance, 12 paid holidays, sick time, 15 paid vacation days, [6 weeks fully paid] parental leave, adoption assistance and tuition reimbursement [and for participation in any stock programs, signing bonus, etc.]. This position is Hybrid within a commutable distance to one of our facilities in Andover MA, Beaverton OR, Broomfield CO, Irvine CA, Milpitas CA, or Rochester NY. Relocation benefits are not available for this position. We are interested in a qualified candidate who is eligible to work in the United States. However, we will not be sponsoring work visas for this position, at this time. MKS is an equal opportunity employer, including disability, veteran status and all categories protected by law. Please review our EOE statements for additional details. MKS is generally only hiring candidates who reside in states where we are registered to do business. MKS will consider qualified applicants with a criminal history pursuant to the California Fair Chance Act and the Los Angeles County Fair Chance Ordinance for Employers. #LI-MH1 #LI-Hybrid Globally, our policy is to recruit individuals from wide and diverse backgrounds. However, certain positions require access to controlled goods and technologies subject to the International Traffic in Arms Regulations (ITAR) or Export Administration Regulations (EAR). Applicants for these positions may need to be "U.S. persons." "U.S. persons" are generally defined as U.S. citizens, noncitizen nationals, lawful permanent residents (or, green card holders), individuals granted asylum, and individuals admitted as refugees. MKS Instruments, Inc. and its affiliates and subsidiaries ("MKS") is an affirmative action and equal opportunity employer: diverse candidates are encouraged to apply. We win as a team and are committed to recruiting and hiring qualified applicants regardless of race, color, national origin, sex (including pregnancy and pregnancy-related conditions), religion, age, ancestry, physical or mental disability or handicap, marital status, membership in the uniformed services, veteran status, sexual orientation, gender identity or expression, genetic information, or any other category protected by applicable law. Hiring decisions are based on merit, qualifications and business needs. We conduct background checks and drug screens, in accordance with applicable law and company policies. MKS is generally only hiring candidates who reside in states where we are registered to do business. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. MKS is committed to working with and providing reasonable accommodations to qualified individuals with disabilities. If you need a reasonable accommodation during the application or interview process due to a disability, please contact us at: accommodationsat *************** . If applying for a specific job, please include the requisition number (ex: RXXXX), the title and location of the role
    $150k-175k yearly 37d ago
  • Lead Security Analyst - Information System Security Officer (ISSO)

    Maximus 4.3company rating

    Security Architect Job In Portland, OR

    Description & Requirements Reporting to the Sr. Manager for the Program Security Services team (US Services), the Lead Security Analyst-ISSO is responsible for managing the overall security posture of their assigned projects. Acting as an independent contributor, the Lead Analyst-ISSO will document and validate security compliance requirements, as defined in client contracts and established regulatory frameworks (NIST 800-53, HIPAA, IRS 1075, CMS MARS-E/ARC-AMPE, PCI-DSS). This position requires broad knowledge of Information Technology, including cloud providers such as Azure and AWS. This role will also manage stakeholder relationships with both internal and external customers. US citizenship is required per contract/client, at least one of the following certifications is required: CISSP (preferred), CISA or CISM. Experience with NIST 800-53 and the ability to travel up to 10% is required. Essential Duties and Responsibilities: - Responsible for ensuring information security for an assigned area of Business/Project focusing on key areas of risk, as outlined in the Information Security policy, under the direction of the Information Security management team. - Conduct Information Security risk assessments and compliance evaluations for infrastructure and application assets within required timeframes and to industry standards and regulatory specifications. - Ensure controls are properly and fully implemented to address identified Information Security risks for assigned area of responsibility. - Define, create and maintain the documentation for certification and accreditation of each information system in accordance with regulatory requirements. - Lead and support audits and client reviews of security posture; coordinate the collection, review and submission of Information Security deliverables and track the remediation of audit findings and exceptions. - Manage expectations with multiple stakeholders on projects and programs in conjunction with the Information Security team. - Promotion of Information Security awareness through various communication channels within the organization. - Collaborate with the Information Security team members on process improvements, secure design and recertification of MAXIMUS assets. Identify potential security control gaps by reviewing evidence provided by stakeholders, system generated reports and/or control implementation statements. Perform risk assessments using vulnerability management and application security testing reports. Initiate formal security exception process, when required. Develop Plan of Action and Milestones (POA&M) as necessary. Minimum Requirements - Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required. - Bachelor's degree and 7+ years of relevant professional experience required, or equivalent combination of education and experience. US Citizenship is REQUIRED per contract/client. At least one of the following certifications is REQUIRED: CISSP (preferred), CISA or CISM Experience with NIST 800-53 is REQUIRED Ability to travel nationally up to 10% is REQUIRED HIPAA experience is preferred Experience with Cloud providers, such as Azure and AWS Knowledge of any of the following security frameworks is preferred: IRS 1075, CMS MARS-E/ARC-AMPE, PCI-DS Demonstrates excellent interpersonal, presentation and verbal/written communication skills Demonstrates strong customer service skills Ability to communicate technical information to non-technical staff Ability to work collaboratively with a broad range of staff (including analysts, engineers and leadership) Proficiency with Microsoft Office SmartSheet experience is a plus Ability to perform comfortably in a fast-paced, deadline-oriented work environment Ability to organize and execute complex tasks Ability to work as a team member as well as independently #LI-JH1 #maxcorp #LeadSecurityAnalyst #HotJobs0311LI #HotJobs0311FB #HotJobs0311X #HotJobs0311TH #TrendingJobs EEO Statement Active military service members, their spouses, and veteran candidates often embody the core competencies Maximus deems essential, and bring a resiliency and dependability that greatly enhances our workforce. We recognize your unique skills and experiences, and want to provide you with a career path that allows you to continue making a difference for our country. We're proud of our connections to organizations dedicated to serving veterans and their families. If you are transitioning from military to civilian life, have prior service, are a retired veteran or a member of the National Guard or Reserves, or a spouse of an active military service member, we have challenging and rewarding career opportunities available for you. A committed and diverse workforce is our most important resource. Maximus is an Affirmative Action/Equal Opportunity Employer. Maximus provides equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disabled status. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Minimum Salary $ 111,605.00 Maximum Salary $ 145,000.00
    $81k-110k yearly est. 7d ago
  • Senior Security Automation Engineer

    Genoa Employment Solutions 4.8company rating

    Security Architect Job In Beaverton, OR

    We are looking for a high energy individual with experience and interest in developing cloud native applications, APIs, and data pipelines. This individual will work with a wide range of technologies, both cutting-edge and legacy, and coordinate with both technical and non-technical business teams. Tenacity, an open and curious mind, and desire to learn and understand is critical for success on this team.
    $113k-156k yearly est. 60d+ ago
  • PERS - Information Security Analysis

    Perfecta

    Security Architect Job In Tigard, OR

    Founded in 2017 Perfecta is a division and a wholly owned subsidiary of City National Security a well known and reputed company providing IT Consulting , Staffing and Security services throughout the United States. Perfecta brings a rich experience of over 12 years in providing fully scaled IT Consulting and Staffing & Recruiting services. Perfecta brings a successful track record of delivering value based quality professional solutions at economical price to its customers across the U.S. Perfecta has successfully executed various IT and Staffing projects with its government and commercial clients and has consistently provided quality services to its customers. Job Description Part I. General Information Under this Statement of Work (SOW), the Contractor shall analyze, recommend, create working documentation, guidelines, policies, standards, instructional procedures, and conduct assessments to support the implementation of the following: • PERS Information Security Awareness and Training Program • PERS Information Security Program • Reorganization and alignment of PERS Information Security policies, standards, and procedures Part II. Work The Contractor shall comply with OPERS contractual deliverable review and approval processes by working with OPERS Quality Assurance in utilizing the Quality Checkpoint process attached to this SOW as Attachment 1. Quality Checkpoint is a Quality Assurance process to verify that major deliverables in the project have been reviewed and approved by their respective stakeholders. PERS Information Security Awareness and Training Program Contractor shall assist OPERS' CISO in the creation, documentation, and implementation of a structured Information Security Awareness and Training Program. Contractor shall work with OPERS to plan, document and implement solutions to fit the needs of OPERS. Tasks to support OPERS' Information Security Awareness and Training Program include, but not limited to: 1. Define activities to be performed to enable and implement the Security Awareness and Training Program 2. Research and document materials needed to implement the program 3. Research and document delivery methods and related activities to implement the program 4. Research, obtain stakeholder buy-in, and document a regularly occurring schedule of activities. 5. Develop content for PERS specific, role based training for data/system owners/custodians. 6. Develop content, produce materials for PERS specific training for staff. 7. Deliver Security, Awareness and Training materials, presentations, etc. to targeted audiences Reorganization of PERS Information Security policy structure In the first phase of policy, standard, procedure creation, emphasis was placed on creating required policy documentation to address HPE findings. In this second phase, the emphasis is to consolidate and reorganize the policy structure, resulting in fewer policies, and more specific requirements, based on security domains: 1. Identify and convert redundant policies to standards as appropriate 2. Align policy structure to NIST CSF domains 3. Address gaps by creating policies, standards, and procedures as identified and needed. Implementation of PERS Information Security Program Initialize and implement operation of Information Security program: 1. Conduct Third Party and Software Development Information Security assessments 2. Initialize policy exception requesting, approval, denial, and risk acceptance process. Part III. Special Considerations Contractor acknowledges and agrees that any and all information regarding OPERS installation, design, configuration, data migration will be kept confidential. Part IV. Travel and Other Expenses OPERS shall not reimburse Contractor for any expenses under this Contract. Work must be completed on-site, Tigard, OR Additional Information All your information will be kept confidential according to EEO guidelines.
    $107k-155k yearly est. 11d ago
  • Security Engineer

    TEC Equipment 4.1company rating

    Security Architect Job In Portland, OR

    About Us Headquartered in Portland, Oregon, TEC has 30+ locations from Seattle to San Diego to the Midwest, serving thousands of customers across Washington, Oregon, California, Nevada, Arizona, Nebraska, Iowa and South Dakota. TEC Equipment features Mack and Volvo heavy-duty trucks, Hino and Isuzu medium duty trucks, Wabash trailers and Cottrell auto transport trailers. We offer a large and desirable inventory of new Mack and Volvo heavy-duty trucks and all makes of used trucks. Our full-service line-up also features quality parts, state-of-the-art service, collision centers and fuel, leasing/rental, financing, and insurance. Our locations are authorized service centers for Mack, Volvo, Cummins, Meritor, Eaton and Fuller warranties. TEC truly offers the convenience of one-stop shopping for all trucking-related needs. Overview The Security Engineer possesses expert problem-solving, analytical, design and communication skills, in addition to in-depth technical knowledge of network and systems security. The Security Engineer is considered the subject matter expert for all aspects of IT security - including design, development, and support of the enterprise security environment. Responsibilities Develop effective solutions to increase the security posture of company systems and projects. Create test plans which will allow for a proper evaluation of security issues of the network and systems infrastructure. Work with Infrastructure Team to communicate the information security state, improve information security controls, and remediate risk issues. Maintain updated security plans and documentation of historical security events. Interpret security policies, regulations, standards, and other mandates into security control requirements and work with management to create security policies. Perform IT security risk assessments, product and application security evaluations and provide documented results/recommendations to IT Management. Develop and conduct IT security education and awareness training to improve organizational security posture. Measure and report security metrics to IT Management and IT Steering Committee. Current security stack alerts and respond to security incidents. Act as a Subject Matter Expert with regards to all IT security related products and policies. Develop automation scripts and workflows to track and respond to incidents. Assist in PoC solutions including the evaluation, deployment, and management of new technologies. Participate in weekly 1:1 and team meetings with Infrastructure & Operations Teams. Communicate the current status of all ongoing projects and any security specific needs. Cross train/mentor staff and company in awareness, security packages and best-practices. All other duties as assigned. Qualifications Education or experience equivalent to a Bachelor's degree in Information Security, Systems, or Computer Science. Minimum 5 years of IT Security Engineering experience in advanced technical environment, preferably within large company. Ability to communicate effectively and professionally with all levels of staff and management. Expert experience in Security Practices and Implementation of Policies. 3 years of experience with a scripting language (PowerShell or other automation language). Ability to manage projects and priorities with careful time management and little supervision. Understanding of and experience with Microsoft operating systems, Active Directory & Domain architecture, ACLs, DNS, DHCP, RADIUS, NPS, PKI, McAfee, Veeam, and WSUS. Experience with hypervisors, converged infrastructure and hybrid-cloud design. 00+ employees). Project Management experience, CRISC (Certified in Risk and Information Systems Control), CCNP (Cisco Certified Network Professional) or other relevant certifications preferred Benefits TEC provides our employees and their families with a full menu of health, wellness, and retirement benefits. New hires are eligible to participate in TEC Equipment's comprehensive benefits plan the first of the month following your date of hire. Choice of two comprehensive medical plan options that include prescription drug coverage Choice of two dental plans that cover preventative and diagnostic care, basic and major services, and orthodontia for children Vision care, discounted hearing exams, and hearing aids 401(k) retirement savings plan with company contribution Life, accident, and disability insurance Employee Assistance Program (EAP) Education assistance Seven paid holidays, vacation accrual of at least 48 hours per year, and paid sick Statements All offers of employment are contingent upon successful completion of all applicable screenings. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, disability status, protected veteran status, or any other characteristic protected by law. Pursuant to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. #LI-PK1
    $104k-145k yearly est. 60d+ ago
  • Information System Security Officer

    Plexsys 4.1company rating

    Security Architect Job In Camas, WA

    At PLEXSYS, our teams design, build and deliver Live, Virtual, and Constructive (LVC) innovation and training solutions to customers around the world. With over 200 employees in seventeen states and four foreign countries, we contribute our success to enabling better training…everyday…across the globe. As an employee of PLEXSYS, you'll find a culture that empowers you to achieve your professional objectives, give your personal best, and work with other highly passionate individuals. Our core values of integrity, excellence, teamwork and agility drive our daily decisions, identify our focus areas, and inspire our organizational culture. GENERAL DESCRIPTION The Information System Security Officer (ISSO) is responsible for ensuring the appropriate operational security posture for information systems and as such, works in close collaboration with the ISSM, CPSO, and FSO. The ISSO must have detailed knowledge and expertise required to manage the security aspects of an information system and is assigned the day-to-day responsibility for assigned systems. Responsibilities include implementation of the requirements of Risk Management Framework, including the Joint Special Access Program (SAP) Implementation Guide (JSIG), NIST 800-53, or other security requirements as assigned. This position will report to the Corporate Information Assurance Manager and work in close collaboration with the AFSO and FSO. The ISSO is responsible for developing and updating the security authorization package, managing and controlling changes to the system, and assessing the security impact of those changes. Ensure systems are operated, maintained, and disposed of following security policies and procedures as outlined in the security authorization package. Report all security-related incidents to the ISSM. Conduct periodic reviews of information systems to ensure compliance with the security authorization package. Monitor system recovery processes to ensure security features and procedures are properly restored and functioning correctly. Ensure audit records are collected, reviewed, and documented. Duties also include physical and environmental protection, personnel security, and incident handling. DUTIES & RESPONSIBILITIES Lead the information system security program for their assigned location to include implementation and validation of automated informational security, ensuring security requirements as contracted are satisfied Maintain and establish the accreditation of classified information systems Establish and implement security procedures and practices in support of Corporate goals and current DoD Regulations Ensure all security procedures are being followed such as patching, AV updates, continuous monitoring, trainings, and self-inspections Develop, implement and maintain security emergency action plans Provide security education and training to local employees Maintain administrative security records and documents for local employees Conduct self-inspections to ensure current security measures and policies are effective Conduct random security inspections to ensure regulations and procedures are being adhered to by local employees Conduct system audits in accordance with security accreditation package requirement Lead the information system security program for their assigned location to include implementation and validation of automated informational security, ensuring security requirements as contracted are satisfied Maintain and establish the accreditation of classified information systems Establish and implement security procedures and practices in support of Corporate goals and current DoD Regulations Ensure all security procedures are being followed such as patching, AV updates, continuous monitoring, trainings, and self-inspections Develop, implement and maintain security emergency action plans Provide security education and training to local employees Maintain administrative security records and documents for local employees Conduct self-inspections to ensure current security measures and policies are effective Conduct random security inspections to ensure regulations and procedures are being adhered to by local employees Conduct system audits in accordance with security accreditation package requirements Conduct vulnerability scans and analysis Conduct maintenance on the networks, systems, and hardware Perform software upgrades on networks, systems, and hardware Perform security assignments in accordance with the Automated Information System requirements and local regulations Understand and follow NISPOM/ODAA/RMF/JAFAN/ICD/NIST/JSIG classified system accreditation and certification requirements Other duties as assigned REQUIREMENTS Bachelor's degree in related field or 4 years' experience in related field DoD 8570 compliant, IAT Level II Experience with Windows based administration of Information Systems Ability to work within compliance standards; previous experience with RMF, HIPAA , PCI DSS, or equivalent compliance standard preferred Strong experience in networking, active directory, centralized logging solutions, vulnerability scanning and anti-virus solutions Experience with security audits for information systems Strong communication and problem-solving skills Ability to work in both a team environment as well as independently Must be organized and detail oriented Ability to obtain and maintain Top Secret clearance with the ability to obtain approval for SAP/SCI access DESIRABLE Have previous experience with DoD Security Regulations and Policies PERKS As a PLEXSYS employee, you can expect certain advantages; such as advancement based on performance, competitive wages, valuable benefits and a great working environment. Our team is committed to ensuring an environment that empowers individuals to realize their full potential by providing opportunities and necessary support to achieve personal and professional goals. Medical/Vision/Prescription/Dental Benefits Life, AD&D and Long Term Disability Coverage Paid Holidays, Military Leave, and Paid Time Off 401k Plan with eligibility from first day of employment Education reimbursement for job-related courses for full-time employees PriceClub/COSTCO/Sam's Club annual membership
    $88k-116k yearly est. 23d ago
  • Security Engineer

    Krg Technology 4.0company rating

    Security Architect Job In Hillsboro, OR

    Rajesh KRG Technologies Inc. 25000 | Avenue Stanford | Suite 253 | Valencia, CA 91355 rajesh.b at krgtech.com / ************ EXT- 514 Job Description : General Cryptography (symmetric algorithms like AES, DES and asymmetric or public crypto like RSA, EC) Experience of open security suites like Openssl, embed TLS, Elgamal or other opensource secure communication packages which export general crypto api's (e.g. Open SSL, Elgamal) Public key and private key concepts Programming in ‘C' Preferred: Basic kernel driver development concepts, linux Userspace Desirable : DRM's, NOCS, Nagra Additional Information All your information will be kept confidential according to EEO guidelines.
    $95k-128k yearly est. 60d+ ago
  • Infrastructure Security Engineer

    Western Partitions 3.7company rating

    Security Architect Job In Portland, OR

    Western Partitions, Inc. (WPI) is one of the largest and most reputable interior and exterior contracting firms in the US. WPI provides superior contracting services for drywall, prefabrication, metal studs, acoustical systems, wall panels, fireproofing, firestopping, stucco, claddings, painting, windows, doors/frames/hardware, and more. Since WPI's inception in 1972, we have provided award-winning construction without sacrificing integrity, safety, or efficiency. We are proud that a significant percentage of our business comes from repeat customers. Our service-oriented, fast-track approach, coupled with an attention to detail has resulted in a superior reputation within our industry. We work hard every day to earn our customers' trust and confidence. Throughout our history, our dedication to our employees, quality of work, and customers has set us apart. The strongest characteristic of our organization is the prominent level of pride we take in every job we complete. Our employees are driven to do the job right the first time without compromise. Lastly, our customers choose WPI based on the emphasis we place on communication, trust, and respect. WPI is a forward-thinking enterprise committed to protecting our customers and business by successfully applying rigorous compliance standards. As an Infrastructure Security Engineer, you'll lead security initiatives impacting our organization's risk posture and operational resilience. You can shape our security strategy alongside a dedicated, dynamic team that values continuous innovation. Key Responsibilities Compliance & Risk Management Spearhead and maintain compliance standards adoption, including NIST and CMMC Design and implement security controls satisfying multiple compliance frameworks Facilitate external audits and maintain evidence of security controls Maintain knowledge of security sector trends, technologies, and regulations Coordinate vulnerability assessments and penetration testing Define operating standards, monitor and refine benchmarks Develop security policies and operational documentation Operational Security Collaborate with senior staff and subject matter experts to ensure that best security practices are in place Contribute to the design, management, and operation of a Fortinet secure network fabric with zero-trust capabilities Provide staff training and guidance regarding security protocols and practices Architect zero-trust network solutions and least-privilege isolation strategies in private and public cloud environments Design, implement, and refine security controls throughout the enterprise Evaluate and lead the integration of new security tools and technologies Develop automated security controls and monitoring solutions Threat Detection & Response Implement, optimize, and manage SIEM, XDR, and MDR services to neutralize threats Build and maintain security automation workflows for rapid incident response and remediation Conduct threat-hunting exercises and improve detection engineering practices Lead security incident investigations and drive continuous improvement of response processes Required Experience: Bachelor's degree in computer science, information technology, or related field 3+ years of hands-on experience securing enterprise infrastructure Strong background in SDN/NFV and underlay network engineering Experience with private and public cloud security architecture Experience with security tools and frameworks: SIEM, EDR/XDR, SOAR Experience with NIST, CMMC, ISO, and compliance programs Proficiency in automation scripting (e.g., PowerShell, Python) Excellent problem-solving skills and attention to detail Strong communication and teamwork preference Preferred Qualifications: Active CISSP, CISM, CEH, or equivalent security certification Experience rooted in SecOps and networking Proficiency with PKI infrastructure This role is not eligible for visa sponsorship. Benefits At WPI our employees are our greatest asset. We put our people first and are proud to provide a comprehensive benefits package designed to meet the needs of our employees at every stage of life. In our commitment to fostering an environment where everyone can thrive personally and professionally, we offer: Competitive pay Incentive bonus plan 401(k) retirement savings plan with match Medical, prescription drug, dental and vision insurance plans with flexible spending account option Life insurance, accidental death, and disability benefits Flexible paid time off policy and paid holidays Professional development opportunities and certifications WPI provides equal employment and affirmative action opportunities to applicants and employees without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability. WPI is a background screening, drug-free workplace. This job description is intended to outline the general nature and level of work being performed by employees. It is not designed to cover or contain a comprehensive list of responsibilities, duties, or skills required of the employee of this job. Furthermore, this description is subject to change at the discretion of the company, with or without notice. Revised 2-20-25
    $85k-116k yearly est. 14d ago
  • Infrastructure Security Engineer

    Westernpartitionsinc

    Security Architect Job In Wilsonville, OR

    Western Partitions, Inc. (WPI) is one of the largest and most reputable interior and exterior contracting firms in the US. WPI provides superior contracting services for drywall, prefabrication, metal studs, acoustical systems, wall panels, fireproofing, firestopping, stucco, claddings, painting, windows, doors/frames/hardware, and more. Since WPI's inception in 1972, we have provided award-winning construction without sacrificing integrity, safety, or efficiency. We are proud that a significant percentage of our business comes from repeat customers. Our service-oriented, fast-track approach, coupled with an attention to detail has resulted in a superior reputation within our industry. We work hard every day to earn our customers' trust and confidence. Throughout our history, our dedication to our employees, quality of work, and customers has set us apart. The strongest characteristic of our organization is the prominent level of pride we take in every job we complete. Our employees are driven to do the job right the first time without compromise. Lastly, our customers choose WPI based on the emphasis we place on communication, trust, and respect. WPI is a forward-thinking enterprise committed to protecting our customers and business by successfully applying rigorous compliance standards. As an Infrastructure Security Engineer, you'll lead security initiatives impacting our organization's risk posture and operational resilience. You can shape our security strategy alongside a dedicated, dynamic team that values continuous innovation. Key Responsibilities Compliance & Risk Management Spearhead and maintain compliance standards adoption, including NIST and CMMC Design and implement security controls satisfying multiple compliance frameworks Facilitate external audits and maintain evidence of security controls Maintain knowledge of security sector trends, technologies, and regulations Coordinate vulnerability assessments and penetration testing Define operating standards, monitor and refine benchmarks Develop security policies and operational documentation Operational Security Collaborate with senior staff and subject matter experts to ensure that best security practices are in place Contribute to the design, management, and operation of a Fortinet secure network fabric with zero-trust capabilities Provide staff training and guidance regarding security protocols and practices Architect zero-trust network solutions and least-privilege isolation strategies in private and public cloud environments Design, implement, and refine security controls throughout the enterprise Evaluate and lead the integration of new security tools and technologies Develop automated security controls and monitoring solutions Threat Detection & Response Implement, optimize, and manage SIEM, XDR, and MDR services to neutralize threats Build and maintain security automation workflows for rapid incident response and remediation Conduct threat-hunting exercises and improve detection engineering practices Lead security incident investigations and drive continuous improvement of response processes Required Experience: Bachelor's degree in computer science, information technology, or related field 3+ years of hands-on experience securing enterprise infrastructure Strong background in SDN/NFV and underlay network engineering Experience with private and public cloud security architecture Experience with security tools and frameworks: SIEM, EDR/XDR, SOAR Experience with NIST, CMMC, ISO, and compliance programs Proficiency in automation scripting (e.g., PowerShell, Python) Excellent problem-solving skills and attention to detail Strong communication and teamwork preference Preferred Qualifications: Active CISSP, CISM, CEH, or equivalent security certification Experience rooted in SecOps and networking Proficiency with PKI infrastructure This role is not eligible for visa sponsorship. Benefits At WPI our employees are our greatest asset. We put our people first and are proud to provide a comprehensive benefits package designed to meet the needs of our employees at every stage of life. In our commitment to fostering an environment where everyone can thrive personally and professionally, we offer: Competitive pay Incentive bonus plan 401(k) retirement savings plan with match Medical, prescription drug, dental and vision insurance plans with flexible spending account option Life insurance, accidental death, and disability benefits Flexible paid time off policy and paid holidays Professional development opportunities and certifications WPI provides equal employment and affirmative action opportunities to applicants and employees without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability. WPI is a background screening, drug-free workplace. This job description is intended to outline the general nature and level of work being performed by employees. It is not designed to cover or contain a comprehensive list of responsibilities, duties, or skills required of the employee of this job. Furthermore, this description is subject to change at the discretion of the company, with or without notice. Revised 2-20-25
    $87k-121k yearly est. 11d ago
  • Senior GPU Hardware Security Architect, Memory Security and System Configuration

    Nvidia 4.9company rating

    Security Architect Job In Hillsboro, OR

    We are now looking for a Senior Hardware Security Architect focused on GPU Memory Security and System Configuration: NVIDIA is seeking a Senior Hardware Security Architect to architect, design, validate, and guide implementation of HW security for its GPU products with a focus on memory security. You are expected to take a strong, hands-on approach to ensuring secure development and engineering practices across multiple internal teams by leading by example. Persons in this role will help reduce risk, threats, and vulnerabilities with a focus on GPU memory security. What you'll be doing: * Define HW features that ensure GPU and system memory security properties. * Threat Modeling of new GPU features and use cases. * Collaborate between multiple business units and development groups to ensure the GPU meets the security requirements of the target markets. * Perform security reviews of firmware and hardware designs and assist others to ensure quality and robustness of our products. * Recommend best practices for secure service development driving continuous improvement in the engineering organization. Including mentoring, developing and delivering training materials, producing frameworks to reduce best practice patterns to application for use in production efforts. * Define architectural and micro-architectural details for features that improve security of our GPUs. * Drive implementation and verification of hardware features that improve security of our GPUs. * You will collaborate to develop a long-term security roadmap for our products to ensure suitability for the markets we serve. What we need to see: * A Master's degree or equivalent experience in Computer Engineering, Computer Science, Electrical Engineering. * 8+ years of relevant hardware development experience with a focus and interest in hardware security and client systems. * Deep understanding of processor architectures (GPU is a plus), caches and memory systems. * Understanding of server level PCIE and memory system architectures. * Proficiency in Verilog RTL coding and scripting languages, such as: Perl, Python and Make etc. * A working understanding of floor-planning, ASIC physical design, VLSI and DFT. * A hands on technical background; excellent C programming and low-level firmware experience. * Strong communication skills are required along with the ability to work in a dynamic product oriented team. Ways to stand out from the crowd: * Familiarity with kernel level security concepts. * Experience with security testing techniques, threat modeling, fuzzing, negative testing and other techniques. * Background with micro architectural attacks (side channels, fault injection, etc). * Experience with HW level applications of cryptography; secure boot, key management, etc. NVIDIA is widely considered to be one of the technology world's most desirable employers. We have some of the most forward-thinking and hardworking people in the world working for us. Are you creative and autonomous? Do you love the challenge of crafting the securest silicon possible? If so, we want to hear from you. Come, join our GPU Security Architecture team and help build the real-time, cost-effective computing platform driving our success across several exciting and quickly growing fields. The base salary range is 184,000 USD - 356,500 USD. Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. You will also be eligible for equity and benefits. NVIDIA accepts applications on an ongoing basis. NVIDIA is committed to fostering a diverse work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.
    $132k-175k yearly est. 27d ago
  • SAP Platform Security Consultant

    Accenture 4.7company rating

    Security Architect Job In Beaverton, OR

    We are a global collective of innovators applying the "New" every day to improve the way the world works and lives. Help us show the world what's possible as you partner with clients to unlock hidden value and deliver innovative solutions. Empowered with innovative tools, continuous learning, and a global community of diverse talent and perspectives, we drive success in a new business architecture that disrupts conventional practices. Our expertise spans 40+ industries across 120+ countries and impacts millions of lives every day. We turn ideas into reality. We Are: Platform Security professionals develop and deliver solutions - including the design and implementation of SAP application Security Roles, implementation of SAP Access and Process Control, Segregation of Duties Analysis Rules, Security Role Provisioning solutions, Security Analytics, Automated External Application Scanning, and Automated Source Code Analysis - that minimize the impact of internal and external manipulation of applications to access, steal, modify, or delete sensitive data. You Are: A Security and Risk professional developing and delivering solutions that protect SAP systems and data by establishing policies, practices, and tools that prevent unauthorized access, use, disclosure, modification, or disruption. SAP Platform Security professionals develop and deliver solutions - including design and implementation of SAP Security Roles, Segregation of Duties Analysis Rules, Security Role Provisioning solutions, Security Workflow, Business Process Controls, Security Analytics, Enterprise GRC Solutions, Automated External Application Scanning, and Automated Source Code Analysis. A professional at this position level within Accenture has the following responsibilities: * Adapts existing methods and procedures to create possible alternative solutions to moderately complex problems. * Understands the strategic direction set by senior management as it relates to team goals. * Uses considerable judgment to determine solutions and seeks guidance on complex problems. Primary upward interaction is with the direct supervisor. May interact with peers and/or management levels at a client and/or within Accenture. * Determines methods and procedures on new assignments with guidance. Decisions often impact the team in which they reside. * Manages small teams and/or work efforts (if in an individual contributor role) at a client or within Accenture. The Work (Role Responsibility): * Contribute to a strong client relationship through interactions with client personnel• * Understand engagements as they relate to client's business * Configure security and associated solutions in SAP S/4 to meet unique client security requirements * Demonstrate knowledge in some areas of industry or functional specialty * Communicate client expectations to the engagement team * Conduct security assessments * Assume responsibility for small components of engagements. May have a greater role in small engagements * Contribute to engagement planning and verify that deliverables meet contract and work plan objectives. * Deliver services that meet Accenture Project Manager specifications * Recognize and communicate opportunities to sell "add-on" work to client * Strong understanding of information security management principles, SAP application security implementation methodologies, role-based access controls, distributed systems administration, and distributed system recovery. * Demonstrate experience 1) independently completing complex security-related tasks (ex. An upgrade to S/4HANA); 2) making major contributions in assuring deliverables meet contract and work plan objectives and; 3) taking on tasks of increased complexity * Ability to take a broad view of the position and take initiative to communicate, interact, and cooperate with others to ensure that all aspects of a task are addressed * Ability to independently create written deliverables and participate in presentations * On-site, regular client travel will be required for this position Qualification Here's What You Need (Basic Qualifications): * Minimum 3 years of experience in SAP S/4 HANA, with a focus on implementation * Minimum 3 years of experience creating technical documentation * Minimum 3 years of experience with SAP Fiori and HANA DB security experience * Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate's Degree, must have minimum 6 years work experience) * Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements. Bonus Points If You Have (Preferred Skills): * Prior experience working in a consultant/advisory capacity. Big Four experience preferred * Knowledge of internal controls, with relation to SAP Security and SAP Access/Process Controls * Proven ability to work creatively and analytically in a problem-solving environment * Proven success in contributing to a team-oriented environment * Desire to work in an environment fostering teamwork and camaraderie * Excellent leadership, communication (written and oral), and interpersonal skills Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired in California, Colorado, District of Columbia, Illinois, Maryland, Minnesota, New York or Washington as set forth below. We accept applications on an on-going basis and there is no fixed deadline to apply. Information on benefits is here. Role Location Annual Salary Range California $63,800 to $196,000 Colorado $63,800 to $169,300 District of Columbia $68,000 to $180,300 Illinois $59,100 to $169,300 Minnesota $63,800 to $169,300 Maryland $59,100 to $156,800 New York $59,100 to $196,000 Washington $68,000 to $180,300 #LI-NA Locations
    $68k-180.3k yearly 51d ago
  • Secure Systems Engineer - Platform Architecture

    Apple Inc. 4.8company rating

    Security Architect Job In Beaverton, OR

    Are you a big-picture visionary who understands how each element affects all the others? At Apple, our Platform Architecture group is responsible for connecting our hardware, software, and servers into one unified system. You'll join a team of architects who are dedicated to securing the world's most advanced consumer devices. Our products are trusted for storing personal data, and our goal is to better safeguard our users. We're looking for dedicated and inspired individuals to help raise the bar on the security of Apple's products. Description In this role, you will define the architecture and oversee the operation of distributed web services that set and enforce security policy for the development, manufacture, deployment, and operation of Apple products, ultimately driving continuous security improvements for these products. Together, our work will be instrumental in maintaining the trust millions of customers place in their devices every day. As a member of Platform Architecture, you will: • Lead cross-functional teams throughout the product development cycle to resolve system-level issues without sacrificing product security or impacting world class product design. • Identify emerging threats, develop threat models, and define security architectures for exciting new Apple products and technologies. Derive system security requirements, and design balanced and novel mitigations in creative collaboration with iconic product and engineering teams. • Develop detailed system-level specifications to guide product development, integration, and quality assurance teams in the creation of golden unit tests, reference data, and sample libraries to aid integration of our security technologies across team boundaries (e.g. client/server). • Drive security requirements and architecture into web application services that play a pivotal role in the development, manufacture, deployment, and operation of Apple Products. • Use a wide range of interpersonal and technical skills to champion adoption of our industry leading security technologies across multiple product categories. Minimum Qualifications * BS and 10+ years of relevant industry experience. * Experience in designing, developing, and deploying backend web services including API design or scalable infrastructures for highly available applications. * Experience with common programming languages such as Python, Go or C/C++. * Experience in implementing and managing DevOps practices. Such as continuous integration/continuous deployment (CI/CD), infrastructure as code (IaC), or automation of development, testing, and deployment pipelines. Preferred Qualifications * Masters in EE/CE. * Ability to effectively lead cross-functional initiatives and to provide architectural guidance to teams lacking resident security expertise. * Breadth to work cross-functionally with Infrastructure, Privacy, Safety, Service, Manufacturing, Software, and Product Development teams to resolve system-level security issues. * Strong written and oral communications skills across multiple levels. * Ability to critically analyze security properties of web service architectures, hardware, and software systems in order to build a comprehensive threat model. (e.g. familiarity with common threat modeling methodologies such as STRIDE) * Knowledge of basic cryptographic principles (e.g., symmetric vs asymmetric crypto, encryption vs authentication, secure boot, and PKI frameworks) and familiarity with HSM-based security applications and/or data center management and security expertise. * Apple is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics.
    $124k-163k yearly est. 52d ago
  • M365 Security Engineer

    Lam Research 4.6company rating

    Security Architect Job In Tualatin, OR

    The Group You'll Be A Part Of The Global Information Systems Group is dedicated to the success of Lam through providing best-in-class and innovative information system solutions and services. Together, we support users globally with data, information, and systems to achieve their business objectives. What You'll Do * Plans and directs Azure/M365 policy and security related components, services and application integration. * Collaborate with cross-functional teams, including security engineers, security analysts, and compliance team, to develop highly secure and scalable architectures and roadmaps. * Perform risk assessments and develop strategies to address vulnerabilities, integrating security controls and monitoring mechanisms into Azure solutions. * Participate in the selection and configuration of security services and tools, aligning them with NIST CSF compliance guidelines. * Stay up to date with the latest M365 and NIST CSF changes and industry trends, advising teams on potential impacts and necessary adjustments. * Collaborate with stakeholders to define and document system requirements and design specifications specific to NIST CSF and/or SOX compliance. * Provide technical leadership and guidance to project teams, ensuring adherence to security and compliance standards throughout the development lifecycle. * Administer, operate, manage, and maintain components for on-premises and cloud-based environments and systems. * Reviews completion and implementation of system configurations and/or enhancements and makes recommendations to management and/or clients. Preferred Qualifications * Strong understanding or direct experience with onboarding and operating within Azure and M365 environments * Strong understanding and experience with the designing, engineering, administering and operating M365 security services * Strong understanding of Microsoft Intune, Entra ID, and conditional access policies * Experience with Multi Factor Authentication (MFA) and Public Key Infrastructure (PKI) * Experience managing Azure/M365 using PowerShell and Microsoft Graph * System configuration based on security guidelines such as DISA STIGs, CIS or Azure Security Benchmarks Our Commitment We believe it is important for every person to feel valued, included, and empowered to achieve their full potential. By bringing unique individuals and viewpoints together, we achieve extraordinary results. Lam Research ("Lam" or the "Company") is an equal opportunity employer. Lam is committed to and reaffirms support of equal opportunity in employment and non-discrimination in employment policies, practices and procedures on the basis of race, religious creed, color, national origin, ancestry, physical disability, mental disability, medical condition, genetic information, marital status, sex (including pregnancy, childbirth and related medical conditions), gender, gender identity, gender expression, age, sexual orientation, or military and veteran status or any other category protected by applicable federal, state, or local laws. It is the Company's intention to comply with all applicable laws and regulations. Company policy prohibits unlawful discrimination against applicants or employees. Lam offers a variety of work location models based on the needs of each role. Our hybrid roles combine the benefits of on-site collaboration with colleagues and the flexibility to work remotely and fall into two categories - On-site Flex and Virtual Flex. 'On-site Flex' you'll work 3+ days per week on-site at a Lam or customer/supplier location, with the opportunity to work remotely for the balance of the week. 'Virtual Flex' you'll work 1-2 days per week on-site at a Lam or customer/supplier location, and remotely the rest of the time. IND123 #LI-FC1 #LI-Hybrid Our Perks and Benefits At Lam, our people make amazing things possible. That's why we invest in you throughout the phases of your life with a comprehensive set of outstanding benefits. Discover more at
    $90k-114k yearly est. 31d ago

Learn More About Security Architect Jobs

How much does a Security Architect earn in Orchards, WA?

The average security architect in Orchards, WA earns between $95,000 and $192,000 annually. This compares to the national average security architect range of $92,000 to $179,000.

Average Security Architect Salary In Orchards, WA

$135,000

What are the biggest employers of Security Architects in Orchards, WA?

The biggest employers of Security Architects in Orchards, WA are:
  1. Teck Resources Limited
Job type you want
Full Time
Part Time
Internship
Temporary