Security architect jobs in Philadelphia, PA - 194 jobs
All
Security Architect
Information Systems Security Officer
Security Engineer
Information Security Engineer
Senior Security Architect
Senior Security Analyst
Information Security Director
Senior Information Security Consultant
Information Security Officer
Information Security Architect
Drexel 4.0
Security architect job in Philadelphia, PA
Reporting to the Chief Information Security Officer and working closely with the campus community and outside parties, the Information SecurityArchitect protects the people, the information, and the systems of Drexel University.
Essential Functions
Awareness, training and communications.
Forensics, intrusion detection, incident response, and threat hunting.
Vulnerability scanning and monitoring, including patch management and retirement of obsolete systems. - (Non-Essential)
End-point security, including encryption at rest.
Network security, including encryption in transit.
Identity management.
In-house software development and maintenance.
Cloud computing and software contracts.
Support the Chief Information Security Officer's work on leadership, strategy, policy, risk management, disaster recovery, business continuity, compliance, external relations, and emerging technologies and threats.
Required Qualifications
Minimum of a Bachelor's Degree in computer science, information systems, or a related field or the equivalent combination of education and work experience.
(
Please review the Equivalency Chart for additional information.)
Minimum of Ten years of experience in information security.
Mastery of and experience with four or more of the following functions:
Management of information security technologies to protect information, networks, servers, endpoints, and cloud services, e.g., firewalls, antivirus, encryption, data leak prevention, security information and event management systems, and intrusion detection and prevention systems.
Vulnerability and threat management.
Incident detection, documentation, response, and remediation.
Identity management.
Application of information security and privacy laws, regulations and guidelines, e.g., data breach state laws, FERPA, HIPAA, NIST, PCI-DSS, DFARS, and GDPR.
Preferred Qualifications
Master's degree in a related discipline greatly preferred.
Physical Demands
Typically sitting at a desk/table
Location
University City - Philadelphia, PA
Additional Information
This position is classified as Exempt, grade N. Compensation for this grade ranges from $90,430.00 to $135,640. per year. Please note that the offered rate for this position typically aligns with the minimum to midrange of this grade, but it can vary based on the successful candidate's qualifications and experience, department budget, and an internal equity review.
Applicants are encouraged to explore the Professional Staff salary structure and Compensation Guidelines & Policies for more details on Drexel's compensation framework. For information about benefits, please review Drexel's Benefits Brochure.
Special Instructions to the Applicant
Please make sure you upload your CV/resume and cover letter when submitting your application.
A review of applicants will begin once a suitable candidate pool is identified.
$90.4k-135.6k yearly 13d ago
Looking for a job?
Let Zippia find it for you.
Senior Manager, Information Security Office Consultant
Dev 4.2
Security architect job in Philadelphia, PA
Company DescriptionJobs for Humanity is partnering with Capital One to build an inclusive and just employment ecosystem. Therefore, we prioritize individuals coming from the following communities: Refugee, Neurodivergent, Single Parent, Blind or Low Vision, Deaf or Hard of Hearing, Black, Hispanic, Asian, Military Veterans, the Elderly, the LGBTQ, and Justice Impacted individuals. This position is open to candidates who reside in and have the legal right to work in the country where the job is located.
Company Name: Capital One
Job Description201 Third Street (61049), United States of America, San Francisco, CaliforniaSenior Manager, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What You'll Do:
Act as a central Information Security point of contact for the Enterprise Platform team
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Product security consulting in Authentication/Access Management /Identity application and experienced in Authentication and industry-standard protocol for authorization/authorization
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 8 years of experience working in cybersecurity or information technology
At least 7 years of experience providing guidance and oversight of Security concepts
At least 7 years of experience performing security risk assessments and securityarchitecture reviews
At least 7 years of experience with architecture, software design, networking, and cloud infrastructure
At least 5 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
3+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
4+ years of experience in IAM or related areas
Experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
Familiarity with Cloud patch management practices such as system rehydration and image management
Experience utilizing Agile methodologies
Experience with Software SecurityArchitecture
Experience with Application Security
Experience with Threat Modeling
Experience with Penetration Testing or Vulnerability Management
Experience with integrating SaaS products into an Enterprise Environment
Experience with securing Container services
Splunk-Fu / Enterprise Monitoring experience
Financial services industry experience
Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Experience in Offensive and Defensive Security techniques
Experience in a regulated environment
Strong conceptual thinking, influence and communication skills
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $230,100 - $262,700 for Sr Manager, Cyber TechnicalSan Francisco, California (Hybrid On-Site): $243,800 - $278,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to [email protected]
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
$243.8k-278.2k yearly 60d+ ago
Platform Engineer - Security
Campbell Soup 4.3
Security architect job in Camden, NJ
Since 1869, we've connected people through food they love. We're proud to be stewards of amazing brands that people trust. Our portfolio includes the iconic Campbell's brand, as well as Cape Cod, Chunky, Goldfish, Kettle Brand, Lance, Late July, Pacific Foods, Pepperidge Farm, Prego, Pace, Rao's Homemade, Snack Factory, Snyder's of Hanover. Swanson, and V8.
Here, you will make a difference every day. You will be supported to build a rewarding career with opportunities to grow, innovate and inspire. Make history with us.
Why Campbell's…
Benefits begin on day one and include medical, dental, short and long-term disability, AD&D, and life insurance (for individual, families, and domestic partners).
Employees are eligible for our matching 401(k) plan and can enroll on the first day of employment with immediate vesting.
Campbell's offers unlimited sick time along with paid time off and holiday pay.
If in WHQ - free access to the fitness center. Access to on-site day care (operated by Bright Horizons) and company store.
Giving back to the communities where our employees work and live is very important to Campbell's. Our “Campbell's Cares” program matches employee donations and/or volunteer activity up to $1,500 annually.
Campbell's has a variety of Employee Resource Groups (ERGs) to support employees.
Who we are looking for…
The Campbell's Company is looking for an senior-level Engineer - Information Security to join our critical and highly visible Information Security team. This position will primarily be responsible for managing the lifecycle and effectiveness of key security tools and processes. You will work closely with the Architecture and Risk Management teams to ensure that security controls are in place and appropriately managing risk throughout the Information Technology, Operational Technology, and Cloud environments.
What you will do…
Essential responsibilities will include but not be limited to:
Design, deploy, and integrate security tools and processes
Design, deploy, integrate Privilege Access Management (PAM) services for Linux and Windows environments
Experience in developing, testing, and deploying ZeroTrust security strategies focused on identity, device, and network contexts
Cloud (Azure / AWS) security engineering
Develop and implement automation strategies tied to both administrative maintenance of the environment, as well as contribute to the overall detection engineering efficiency
Active Directory security hardening
Job Complexity
Manage multiple, concurrent project and task assignments, placing proper priorities on tasks and attention to detail to follow through all assignments to completion
Create and manage the lifecycle of documentation to support the architecture and operations of security systems
Continuously improve operational playbooks and knowledge transfer material to enable operational support teams to handle increasingly complex tasks to enable Engineering time is focused on the most valuable work
Serve as an incident escalation point
Provide thought leadership and communications expertise in the development of policies, standards, procedures, and other communication for the department
Provide thought leadership on key performance indicators for measuring success objectively
Integrate existing and new tools and supporting resources into our security intelligence platform, with the goal of deriving actionable data
Keep current with the latest news and events surrounding cyber threats and security
Evaluate new technologies and processes that enhance security capabilities
What you bring to the table… (Must Have)
Bachelor's degree in a computer science or information technology discipline
5+ years of relevant work experience, including:
2 years of experience as an Information Security Analyst with experience within at least two of the following disciplines: networking, system hardening, identity and access management, or privileged access management
1 year of experience in system or firewall administration
Deep understanding of Linux identity engineering and administration
2 years of experience working with privileged access management platforms across Windows, Linux, network device, and containerized platforms
Significant experience working with automation scripting leveraging at least 3 of the following: python, PowerShell, API based integrations, and no/low-code workflow automation platforms.
Strong knowledge of L4-L7 protocols such as SSL, HTTP, DNS, SMTP, and IPsec
Deep understanding of TCP/IP, computer networking, routing, and switching, and encryption technologies and standards
Knowledge of identity and access management principles (SSO, MFA, ModernAuth)
It would be great if you have… (Nice to Have)
CISSP certification is a plus
Cloud security experience is a plus
Conceptual understanding of the Cyber Kill Chain and MITRE ATT&CK framework
Experience with Manufacturing environments is a plus
Experience with leveraging LLM's or statistical analysis to drive operational insights
Strong capacity to understand vectors and the risks associated with them
Experience with deploying and managing distributed architecture layer 7 firewalls
Experience with IDS/IPS, penetration and vulnerability testing
Strong security policy knowledge and experience
Strong ability to clearly communicate and document complex concepts
Data protection tools and processes - Data Loss Prevention [DLP], Rights Management Services [RMS], Cloud Access Security Broker [CASB]
More about the job…
This position reports to the Senior Manager for SecurityArchitecture and Engineering
Compensation and Benefits:
The target base salary range for this full-time, salaried position is between
$131,400-$188,900
Individual base pay depends on work location and additional factors such as experience, job-related skills, and relevant education or training. Total pay may include other forms of compensation. In addition, we offer competitive health, dental, 401k and wellness benefits beginning on the first day of employment. Please ask your Talent Acquisition Partner for more information about our total rewards package.
The Company is committed to providing equal opportunity for employees and qualified applicants in all aspects of the employment relationship, including consideration for employment, without regard to race, color, sex, sexual orientation, gender identity, national origin, citizenship, marital status, protected veteran status, disability, age, religion, or any other classification protected by law.
$131.4k-188.9k yearly Auto-Apply 60d+ ago
Director of Information Security
Rxvantage
Security architect job in Philadelphia, PA
We're seeking an experienced Director of Information Security to join our dynamic team and help drive our growth. In this role, your job will be to coordinate people and processes to instill a “security first” mindset for information management, systems development, acceptable use of these systems, staff awareness, and oversight of our vendors and partners.
This security professional will lead the management of risk and compliance of intellectual property, including day-to-day network and cyber tool monitoring, oversight, and ongoing security testing. The individual performing this role will enforce policies and procedures that ensure compliance with state, federal, and industry standards and requirements, ensuring our customers' and company's data are protected.
As the Director of Information Security, you will implement a security-readiness plan and provide guidance on how to quickly and effectively respond to any and all security incidents. In addition, this role will be instrumental in implementing controls and monitoring capabilities that provide visibility into the organization's security posture.
At RxVantage we transform how medical practices engage with life sciences resources and expertise to improve patient care. Our platform intelligently connects healthcare providers with the precise life sciences experts that they need, when they need them. As a result, medical practices stay on the cutting edge of patient care without disrupting workflows. Trusted by more than tens of thousands of healthcare practitioners and all major life sciences companies, RxVantage has powered millions of educational exchanges between healthcare teams and life sciences companies.
What you'll be doing:
Creating and implementing a security roadmap based on current and ongoing assessments
Ensuring policies are developed and maintained from both a business & technical perspective for the application, data, and security needs of the organization
Working with Legal to ensure agreements are congruent with policies
Overseeing the GRC (Governance Risk and Compliance) process
Ensuring compliance with industry laws and regulations for data security and privacy to include CCPR, 21 CFR Part 11, SOC2, NIST SP800-53
Monitoring the Identity and Access Management Framework
Benefits:
Competitive Salary
100% Company-Paid Premiums for Employee's Medical Health (HDHP 4500), Vision, and Dental Plans + $4,400 company sponsored contribution into an HSA
Short-term and Long-term Disability
Life Insurance
401k Matching
Work from Anywhere within the US
Flexible PTO
100% Paid Parental Leave
Post-Parental Leave Program - $5k stipend to assist with expenses, 4 week 100% paid “Ease-Back” return to work transition period
Charitable donation matching
Location:
Our “Work from Anywhere” philosophy is aimed at making sure that we recruit a diverse range of thought leadership to ensure that our technology is better able to serve local health care providers. Our goal is to hire the country's top talent and allow them to create an environment within the U.S. where they can do their best work.
About Our Organization:
At RxVantage, we're a small company with a big mission: to connect healthcare providers with the right life science experts and resources they need, exactly when they need them, to improve patient care. We've built a software platform that's changing the way providers learn about the latest medical advancements and technologies. Every year, our platform powers over 1 million educational exchanges between medical practices and life science companies, making it easier for them to stay informed and provide better care.
We have a proven product, a strong mission, and a passionate team. Now, we're looking for talented people to help us grow even more. If you're driven, eager to make an impact, and ready to be part of something meaningful, we want to hear from you!
---
RxVantage is an equal opportunity employer and dedicated to ensuring that we represent the local communities where our health and wellbeing providers serve as pillars of support to our family, friends, and neighbors. Our representation within these communities allows us to embody a diverse set of backgrounds, experiences, abilities and perspectives; and provide an inclusive environment for our team to feel empowered to be their authentic selves, without fear of harassment or discrimination.
$113k-169k yearly est. Auto-Apply 12d ago
(Sr./Lead) Security Architect I (II)
PJM Interconnection 4.8
Security architect job in Audubon, PA
Flexible Work Arrangement: Hybrid Cyber threats change at a rapid pace, and cybersecurity approaches must transform to provide effective protection and enable business innovation. As part of the Security Engineering and Architecture department, the SecurityArchitect plays a key role in development of the security strategy, defining roadmaps for achieving security objectives, architectsecure solutions in partnership with enterprise architecture and application architecture, and build security into systems by collaborating with development teams and other internal technology groups. This individual will solve security challenges with implementing and integrating cloud-based services into PJM's business processes, implementing zero trust architecture principals, managing and controlling big data, and leveraging Artificial Intelligence and Machine Learning to solve complex business problems.
Essential Functions:
• Researches and supports development and advancement of a comprehensive security strategy and strategic roadmap.
• Develops and maintains high quality documentation for cyber security policies, architectures, and standards.
• Works across the organization to communicate security approaches and that internal and external stakeholders support the changes.
• Supports cross-functional programs that advance security, such as zero-trust architecture, cloud security, data and analytics, artificial intelligence and machine learning, and security automation.
• Monitors technical advancements and makes recommendations to improve network, system and application securityarchitectures.
• Supports enterprise architecture and application architecture initiatives and creates corresponding security design patterns.
• Consults with project teams to design securearchitecture for new projects in alignment with agreed upon security design patterns.
• Supports application security assessments by developing improved tools and approaches for assessing security.
• Defines data security policies and processes to protect corporate data.
• Develops security solutions based on NIST Cybersecurity Framework (CSF) guidelines.
• Supports architectural guidance team to evaluate project proposals for architectural fit.
• Assists in prioritizing security efforts to balance security risks with operational and business risks.
• Assists team and department management in developing work plans, including scope, milestones, schedule, releases, resources and deliverables.
• Builds strong relationships with stakeholders by providing superior customer support as demonstrated by clearly owning, resolving and communicating issues and problems, and being responsive to needs, requirements, and deadlines.
• Supports the Cyber Security Incident Response Team (CSIRT) process by participating in various responder roles.
Characteristics & Qualifications:
Required:
Bachelor's Degree in Computer Engineering, Computer Science, Information Technology or equivalent work experience
At least 5 years of overall IT/IS experience
At least 2 years of experience with security engineering and/or securityarchitecture
At least 2 years of experience with two or more of the following: networks, operating systems, DevSecOps or applications (on-prem or cloud-based)
Ability to produce high-quality work products with attention to detail
Ability to visualize complex system architectures and develop innovative, scalable solutions for multi-domain security challenges
Experience with NERC Critical Infrastructure Protection (CIP) Standards
Ability to collaborate with and influence diverse business units, bridging the gap between technical security requirements and organizational objectives.
Comprehensive understanding of the security implications across the technology stack-including Operating Systems, networks, DevOps and software development
Experience using effective verbal and written communication skills
Preferred:
Master's Degree in Business Administration (MBA)
Experience with PJM operations, markets, and planning functions
Experience with securing containerized workloads and orchestration environments
Experience developing and enforcing governance frameworks for Artificial Intelligence and Machine Learning, including the assessment of risks related to Large Language Models (LLMs)
Experience in defining data security policies and implementing technical controls to prevent data loss (DLP) across the enterprise
Experience implementing zero trust architecture solutions
Cloud security experience such as implementing landing zone, encryption, identity and access management, security monitoring, infrastructure as code (IaC), cloud workload protection platform (CWPP) and cloud security posture management (CSPM) solutions
Experience working in a regulated industry (especially NERC CIP)
Experience with NIST Cybersecurity Framework (CSF)
Certified Information Systems Auditor (CISA) Upon Hire
Certified Information Systems Security Professional (CISSP) Upon Hire
Certified Information Security Manager (CISM) Upon Hire
$89k-109k yearly est. Auto-Apply 14d ago
Information Security Officer
Provatohr
Security architect job in Philadelphia, PA
The Information System Security Officer (ISSO) is responsible for ensuring the confidentiality, integrity, and availability of information systems in accordance with DoD cybersecurity policies and standards. The ISSO will provide direct support to system owners in maintaining compliance with applicable cybersecurity frameworks, conducting risk assessments, managing system authorizations, and overseeing continuous monitoring activities.
Key Responsibilities:
Develop, implement, and manage cybersecurity policies and procedures in compliance with DoD and Navy directives.
Conduct system security assessments, risk analyses, and vulnerability management to identify and mitigate threats.
Support the development, review, and maintenance of System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms).
Participate in system authorization activities, ensuring compliance with DoD RMF (Risk Management Framework) requirements.
Coordinate with system administrators, network engineers, and program managers to ensure proper implementation of security controls.
Monitor cybersecurity posture, manage incident response activities, and perform forensic data collection and reporting.
Provide security awareness and training to staff and end users to promote compliance with cybersecurity best practices.
Communicate effectively across all levels of the organization regarding cybersecurity posture, incidents, and mitigation actions.
Required Certifications (IAM Level II):
Candidates must meet the DoD 8570.01-M IAM-II baseline certification requirements by possessing one or more of the following:
CAP
CASP+ CE
CISM
CISSP (or Associate)
GSLC
CCISO
HCISPP
Education:
Bachelor's degree in Computer Science, Information Technology, Communications Systems Management, or a related STEM discipline from an accredited college or university.
Experience:
Minimum of six (6) years of experience in:
Coordinating and enacting required security changes within various organizational levels to ensure compliance with published cybersecurity policies.
Conducting cybersecurity vulnerability and threat analyses.
Supporting cyber incident response efforts, including isolation of affected assets, initial investigations, data collection, and status reporting.
Preferred Qualifications:
In-depth knowledge of DoD Risk Management Framework (RMF) and NIST 800-53 security controls.
Experience with Navy or DoD information systems and accreditation processes.
Familiarity with enterprise security tools (e.g., ACAS, HBSS, eMASS).
Strong written and verbal communication skills, with the ability to brief senior leadership.
$100k-150k yearly est. Auto-Apply 60d+ ago
Information Systems Security Officer (ISSO)
Contact Government Services
Security architect job in Philadelphia, PA
ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:
* Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades.
* Maintain responsibility for managing cybersecurity risk from an organizational perspective.
* Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
* Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
* Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).
* Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.
* Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
* Provide subject matter expertise for cyber security and trusted system technology.
* Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.
* Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes.
* Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.
* Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.
Qualifications:
* Bachelor's Degree.
* A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
* eMASS experience.
* Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
* Strong desktop publishing skills using Microsoft Word and Excel.
* Experience with industry writing styles such as grammar, sentence form, and structure.
* Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:
* CISSP, CASP, or a similar certificate is preferred.
* Master's Degree in Cybersecurity or related field.
* Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.
* Demonstrated ability to work well independently and as a part of a team.
* Excellent work ethic and a high commitment to quality.
Our Commitment:
Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.
Health, Dental, and Vision
Life Insurance
401k
Flexible Spending Account (Health, Dependent Care, and Commuter)
Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!
Explore additional job opportunities with CGS on our Job Board:
*************************************
For more information about CGS please visit: ************************** or contact:
Email: [email protected]
#CJ
$92,213.33 - $125,146.66 a year
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
$92.2k-125.1k yearly 60d+ ago
Sr. Security Analyst
Maximus 4.3
Security architect job in Philadelphia, PA
Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. *
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$91k-124k yearly est. Easy Apply 8d ago
(Sr./Lead) Security Architect I (II)
PJM Search
Security architect job in Audubon, NJ
Flexible Work Arrangement: Hybrid Cyber threats change at a rapid pace, and cybersecurity approaches must transform to provide effective protection and enable business innovation. As part of the Security Engineering and Architecture department, the SecurityArchitect plays a key role in development of the security strategy, defining roadmaps for achieving security objectives, architectsecure solutions in partnership with enterprise architecture and application architecture, and build security into systems by collaborating with development teams and other internal technology groups. This individual will solve security challenges with implementing and integrating cloud-based services into PJM's business processes, implementing zero trust architecture principals, managing and controlling big data, and leveraging Artificial Intelligence and Machine Learning to solve complex business problems.
Essential Functions:
* Researches and supports development and advancement of a comprehensive security strategy and strategic roadmap.
* Develops and maintains high quality documentation for cyber security policies, architectures, and standards.
* Works across the organization to communicate security approaches and that internal and external stakeholders support the changes.
* Supports cross-functional programs that advance security, such as zero-trust architecture, cloud security, data and analytics, artificial intelligence and machine learning, and security automation.
* Monitors technical advancements and makes recommendations to improve network, system and application securityarchitectures.
* Supports enterprise architecture and application architecture initiatives and creates corresponding security design patterns.
* Consults with project teams to design securearchitecture for new projects in alignment with agreed upon security design patterns.
* Supports application security assessments by developing improved tools and approaches for assessing security.
* Defines data security policies and processes to protect corporate data.
* Develops security solutions based on NIST Cybersecurity Framework (CSF) guidelines.
* Supports architectural guidance team to evaluate project proposals for architectural fit.
* Assists in prioritizing security efforts to balance security risks with operational and business risks.
* Assists team and department management in developing work plans, including scope, milestones, schedule, releases, resources and deliverables.
* Builds strong relationships with stakeholders by providing superior customer support as demonstrated by clearly owning, resolving and communicating issues and problems, and being responsive to needs, requirements, and deadlines.
* Supports the Cyber Security Incident Response Team (CSIRT) process by participating in various responder roles.
Characteristics & Qualifications:
Required:
* Bachelor's Degree in Computer Engineering, Computer Science, Information Technology or equivalent work experience
* At least 5 years of overall IT/IS experience
* At least 2 years of experience with security engineering and/or securityarchitecture
* At least 2 years of experience with two or more of the following: networks, operating systems, DevSecOps or applications (on-prem or cloud-based)
* Ability to produce high-quality work products with attention to detail
* Ability to visualize complex system architectures and develop innovative, scalable solutions for multi-domain security challenges
* Experience with NERC Critical Infrastructure Protection (CIP) Standards
* Ability to collaborate with and influence diverse business units, bridging the gap between technical security requirements and organizational objectives.
* Comprehensive understanding of the security implications across the technology stack-including Operating Systems, networks, DevOps and software development
* Experience using effective verbal and written communication skills
Preferred:
* Master's Degree in Business Administration (MBA)
* Experience with PJM operations, markets, and planning functions
* Experience with securing containerized workloads and orchestration environments
* Experience developing and enforcing governance frameworks for Artificial Intelligence and Machine Learning, including the assessment of risks related to Large Language Models (LLMs)
* Experience in defining data security policies and implementing technical controls to prevent data loss (DLP) across the enterprise
* Experience implementing zero trust architecture solutions
* Cloud security experience such as implementing landing zone, encryption, identity and access management, security monitoring, infrastructure as code (IaC), cloud workload protection platform (CWPP) and cloud security posture management (CSPM) solutions
* Experience working in a regulated industry (especially NERC CIP)
* Experience with NIST Cybersecurity Framework (CSF)
* Certified Information Systems Auditor (CISA) Upon Hire
* Certified Information Systems Security Professional (CISSP) Upon Hire
* Certified Information Security Manager (CISM) Upon Hire
$110k-153k yearly est. Auto-Apply 13d ago
Information System Security Officer (ISSO) III - Naval Surface Warfare Center
Tln Worldwide Enterprises, Inc.
Security architect job in Philadelphia, PA
Requirements
**Target Education:** - Bachelor's degree in computer science, information technology, communications systems management, or an equivalent science, technology, engineering, and mathematics (STEM) degree from an accredited college or university.
**Target Experience:**
- A minimum of six (6) years of experience in coordinating and executing required security changes, ensuring compliance with organizational policies.
- Extensive experience conducting cybersecurity vulnerability assessments, threat analyses, and supporting cyber incident response activities.
**Skills:**
- Strong analytical and problem-solving skills to assess cybersecurity issues and recommend solutions.
- Excellent communication skills for conveying complex information effectively to various audiences.
- In-depth knowledge of cybersecurity principles, policies, and best practices.
- Familiarity with the DoD A&A process and RMF guidelines.
Salary Description 85,000 - 150,000
$69k-94k yearly est. 38d ago
Information System Security Officer (Contingent)
Rothe Development
Security architect job in Philadelphia, PA
Information System Security Officer (ISSO) Rothe Development, Inc. (RDI) is seeking a skilled Information System Security Officer (ISSO) to support the cybersecurity posture of Navy information systems. The ISSO will play a critical role in ensuring systems are secure, compliant, and resilient against cyber threats in accordance with DoD and Navy cybersecurity policies. Contingent upon contract award to Rothe, this position will be based on-site in Philadelphia, Pennsylvania, and requires an active Secret security clearance. Key Responsibilities:
Implement and manage security controls for Navy information systems in compliance with DoD directives and RMF (Risk Management Framework).
Conduct system security risk assessments and vulnerability analyses.
Develop and maintain system security plans (SSPs), POA&Ms, and other required documentation.
Monitor system security status and support continuous monitoring activities.
Coordinate with system owners, administrators, and other stakeholders to ensure security requirements are met.
Support incident response efforts and investigations as needed.
Ensure compliance with NIST, DoD, and Navy cybersecurity standards and policies.
Qualifications:
U.S. Citizenship and active Secret clearance required.
Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience).
Minimum of 3-5 years of experience in information system security, preferably within DoD environments.
Strong knowledge of RMF, NIST SP 800-53, and DoD cybersecurity policies.
Experience with eMASS, ACAS, and other DoD cybersecurity tools is preferred.
Security+ CE or equivalent DoD 8570 IAT Level II certification required.
Work Environment:
This is an on-site position located in Philadelphia, PA. Remote work is not available. Rothe is an EEO/AA/Disability/Vets Employer and complies with E-Verify Rothe shall abide by the requirements of 41 CFR 60-1.4(a), 60-300.5(a) and 60-741.5(a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity or national origin. Moreover, these regulations require that covered prime contractors and subcontractors take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sexual orientation, gender identity, national origin, disability or veteran status. To apply complete online submission at **************************
$69k-94k yearly est. 60d+ ago
Information System Security Officer (ISSO) III - Naval Surface Warfare Center
TLN Worldwide Enterprises
Security architect job in Philadelphia, PA
The Naval Surface Warfare Center Philadelphia Division (NSWCPD) is a Department of Defense entity focused on research and development, test and evaluation, engineering, and fleet support for the Navy's ships, submarines, military watercraft, and unmanned vehicles. We are seeking a knowledgeable Information System Security Officer (ISSO) to join NSWCPD Code 104, which oversees the Information Technology Operations Division, providing cybersecurity and information assurance support for the Navy Marine Corp Intranet (NMCI) Network and associated Business Systems.
**Position Summary:**
The ISSO III will be responsible for the development, monitoring, and execution of the Cybersecurity Program in support of Code 104. This includes managing the DoD Information Assessment and Authorization (A&A) process and implementing Risk Management Framework (RMF) services. The candidate will develop and enforce cybersecurity policies, review A&A artifacts, conduct A&A validation, and ensure the implementation of appropriate security postures across various systems. The ISSO III will provide subject matter expertise in cybersecurity lifecycle management, coordinate the sustainment of labs under RMF, and support organizational incident response efforts.
**Key Responsibilities:**
- Develop, implement, and maintain the Cybersecurity Program in accordance with DoD guidelines.
- Coordinate and enact necessary security changes to ensure compliance with published policies at various organizational levels.
- Conduct cybersecurity vulnerability and threat analyses, providing actionable insights and recommendations.
- Support cyber incident responses, including isolating potentially affected assets and conducting initial investigations and data collection.
- Perform ongoing reviews of A&A artifacts, ensuring that all documentation meets compliance requirements.
- Validate A&A processes and ensure that security postures are effectively implemented and sustained.
- Collaborate with various teams to coordinate the implementation and operation of labs under RMF.
- Provide training and support to staff on cybersecurity best practices and policies.
Requirements
**Target Education:**
- Bachelor's degree in computer science, information technology, communications systems management, or an equivalent science, technology, engineering, and mathematics (STEM) degree from an accredited college or university.
**Target Experience:**
- A minimum of six (6) years of experience in coordinating and executing required security changes, ensuring compliance with organizational policies.
- Extensive experience conducting cybersecurity vulnerability assessments, threat analyses, and supporting cyber incident response activities.
**Skills:**
- Strong analytical and problem-solving skills to assess cybersecurity issues and recommend solutions.
- Excellent communication skills for conveying complex information effectively to various audiences.
- In-depth knowledge of cybersecurity principles, policies, and best practices.
- Familiarity with the DoD A&A process and RMF guidelines.
Salary Description 85,000 - 150,000
$69k-94k yearly est. 60d+ ago
Information System Security Officer III
Data Intelligence 4.5
Security architect job in Philadelphia, PA
Data Intelligence, LLC (DI) is seeking a qualified and experienced Information Systems Security Officer III to support the Naval Surface Warfare Center (NSWC) in Philadelphia, PA. The successful candidate will be responsible for coordinating security efforts to ensure the safety and integrity of classified and unclassified information systems and assist in maintaining a secure operating environment. This position requires a strong understanding of cybersecurity protocols, as well as the ability to coordinate and implement security measures to meet the specific needs of the organization.
**This position is contingent upon award of contract**
Key Responsibilities:
Collaborate with various levels of the organization to implement required security changes and ensure compliance with established security policies and standards.
Conduct comprehensive cybersecurity vulnerability and threat assessments to identify and mitigate risks to information systems.
Lead cyber-incident-response efforts, including isolating affected systems, conducting initial investigations, collecting relevant data, and providing status updates and reports to leadership.
Provide guidance on best practices and recommend improvements to the organization's security posture.
Perform risk assessments and develop mitigation strategies to protect sensitive data from internal and external threats.
Support continuous monitoring of information systems and provide regular status reports on security compliance.
Maintain up-to-date knowledge of emerging cybersecurity threats and industry best practices.
Required Skills/Experience:
Bachelor's degree in Computer Science, Information Technology, Communications Systems Management, or an equivalent science, technology, engineering, and mathematics (STEM) field.
A minimum of 6 years of relevant experience in cybersecurity or information systems security.
Prior experience supporting Navy programs.
Current IAM Level II certification (or higher) in accordance with DoD 8570.01-M.
At least a Secret-level security clearance is required, with the ability to obtain higher-level clearance if necessary.
Proficiency in cybersecurity frameworks, risk management processes, and security controls.
Strong analytical and problem-solving skills with attention to detail.
Excellent communication and interpersonal skills, with the ability to work effectively with a diverse team.
Preferred Qualifications:
Experience with DoD security requirements and systems.
Familiarity with NIST, RMF, and other relevant cybersecurity standards.
Ability to work in a potentially remote environment with occasional on-site requirements.
Why Work with Data Intelligence, LLC? At Data Intelligence, LLC, we are committed to delivering cutting-edge technology solutions and security expertise to our government clients. Our team members play an integral role in the development and protection of critical national security systems. Join our team and contribute to the defense of vital information assets while advancing your career in a collaborative and rewarding environment.
About Us:
Data Intelligence, DI is an established small business that has supported the critical missions of our government clients since 2005. We provide full life cycle system development, systems engineering, cybersecurity, and supporting analytical and logistics support to C4ISR and other complex systems. We are an equal opportunity employer that offers competitive salaries, comprehensive benefits, a team-oriented environment, and opportunities for advancement. Our excellent employee retention record reflects our employee focus. We work with Veteran's organization to proactively hire those who have served our country. We offer medical, dental and vision insurance, 401k, PTO and 11 paid holidays.
Data Intelligence is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.
Data Intelligence, DI is an established small business that has supported the critical missions of our government clients since 2005. We provide full life cycle system development, systems engineering, cybersecurity, and supporting analytical and logistics support to C4ISR and other complex systems. We are an equal opportunity employer that offers competitive salaries, comprehensive benefits, a team-oriented environment, and opportunities for advancement. Our excellent employee retention record reflects our employee focus. We work with Veteran's organization to proactively hire those who have served our country. We offer medical, dental and vision insurance, 401k, PTO and 11 paid holidays.
Data Intelligence is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, age, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.
$79k-108k yearly est. 60d+ ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security architect job in Trenton, NJ
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 60d+ ago
Information Systems Security
Deegit 3.9
Security architect job in King of Prussia, PA
Experience protocols, such as SAML 2.0, OAuth 2.0, etc.
Experience Internet protocols
Experience with cryptography, and PKI
Additional Information
All your information will be kept confidential according to EEO guidelines.
$75k-99k yearly est. 60d+ ago
Lead Info Security Engineer
Temple University Health System 4.2
Security architect job in Philadelphia, PA
Lead Info Security Engineer - (260154) Description The Lead Information Security Engineer plays a crucial role in supervising the improvement, maintenance, and management of Temple Health's information security posture and related technologies. This position entails leading security projects, providing technical guidance and mentorship, overseeing blue team defensive operations and purple team exercises, coordinating vulnerability management, collaborating with business units and stakeholders, representing the security function, and managing vendor relationships including MSSPs, while working with cross functional IT and operational teams to ensure effective implementation and continuous enhancement of security controls and solutions This role requires three days on-site (Tuesday, Wednesday and Thursday) at Temple Health Women's and Families Hospital.
Education• Bachelor's Degree in Computer, Information Sciences or Business Administration (Required) or • Combination of relevant education and experience may be considered in lieu of degree (Required) Experience• 3 years experience in a Leading Information Security Programs including mentoring / managing junior security engineers/analysts for organizations (Required) • 5 years experience leading Information security initiatives independently (Required) • 5 years experience with risk assessment tools, technologies, and methods (Required) • 7 years experience with anti-virus software, intrusion detection, firewalls, and content filtering (Required) • General Experience with communicating network security issues to peers and management (Required) • General Experience and knowledge with project management simultaneously leading and coordinating multiple projects (Required) • General Experience leading and mentoring a team in a high performing collaborative team environment (Required) • General Experience and knowledge with an in-depth understanding of hardware configurations, database management tools, query language, and application topologies (Required) • General Experience and knowledge with analyzing, diagnosing, suggesting, and implementing process improvements (Required) • General Experience in Healthcare IT (Preferred) Licenses• Cert Info Sys Security Prof (Required) • GIAC Cert Incident Handler (Preferred) • GIAC Penetration Tester (Preferred) • GIAC Cert Forensic Examiner (Preferred) Your Tomorrow is Here!Temple Health is a dynamic network of outstanding hospitals, specialty centers, and physician practices that is advancing the fight against disease, pushing the boundaries of medical science, and educating future healthcare professionals.
Temple Health consists of Temple University Hospital (TUH), Fox Chase Cancer Center, TUH-Jeanes Campus, TUH-Episcopal Campus, TUH-Northeastern Campus, Temple Physicians, Inc.
, and Temple Transport Team.
Temple Health is proudly affiliated with the Lewis Katz School of Medicine at Temple University.
To support this mission, Temple Health is continuously recruiting top talent to join its diverse, 10,000 strong workforce that fosters a healthy, safe and productive environment for its patients, visitors, students and colleagues alike.
At Temple Health, your tomorrow is here!Equal Opportunity Employer/Veterans/DisabledAn Equal Opportunity Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.
Your Tomorrow is Here!Temple Health is committed to setting new standards for preventing, diagnosing and treating major diseases in our community and across the nation.
Achieving that goal means investing in our employees' success through staff and leadership development.
Our recruitment strategy is to attract and retain a diverse, high performing workforce that fosters a healthy, safe and productive environment for our patients and colleagues alike.
Primary Location: Pennsylvania-PhiladelphiaJob: Information TechnologySchedule: Full-time Shift: Day JobEmployee Status: Regular
$83k-107k yearly est. Auto-Apply 1d ago
Sr. Security Analyst
Maximus 4.3
Security architect job in Cherry Hill, NJ
Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. *
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$103k-140k yearly est. Easy Apply 8d ago
Information Systems Security Officer (ISSO)
Contact Government Services, LLC
Security architect job in Philadelphia, PA
ISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cyber security and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.
Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality.
Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: *******************
#CJ
$69k-94k yearly est. Auto-Apply 60d+ ago
Information System Security Officer (ISSO III) - US Navy
Tln Worldwide Enterprises, Inc.
Security architect job in Philadelphia, PA
Requirements
Education:
Bachelor's degree in Computer Science, Information Technology, Communications Systems Management, or other STEM discipline.
Experience:
Minimum 6 years of experience coordinating and enacting security changes within an organization.
Experience with vulnerability and threat analysis, compliance enforcement, and incident response.
Familiarity with DoD and Navy cybersecurity practices and reporting requirements.
Skills & Knowledge:
Proficiency in identifying, analyzing, and mitigating cybersecurity threats.
Strong understanding of Risk Management Framework (RMF), system accreditation processes, and DoD cybersecurity directives.
Excellent communication and reporting skills with the ability to provide clear, actionable recommendations.
Certifications:
Must hold a baseline certification as outlined in the Cybersecurity Workforce (CSWF) requirements (e.g., Security+ CE, CISSP, CISM, or equivalent).
Security Clearance Requirements
Active Secret clearance
Salary Description 85,000 - 150,000
$69k-94k yearly est. 60d+ ago
Lead Info Security Engineer
Temple University Health System 4.2
Security architect job in Philadelphia, PA
The Lead Information Security Engineer plays a crucial role in supervising the improvement, maintenance, and management of Temple Health's information security posture and related technologies. This position entails leading security projects, providing technical guidance and mentorship, overseeing blue team defensive operations and purple team exercises, coordinating vulnerability management, collaborating with business units and stakeholders, representing the security function, and managing vendor relationships including MSSPs, while working with cross functional IT and operational teams to ensure effective implementation and continuous enhancement of security controls and solutions
This role requires three days on-site (Tuesday, Wednesday and Thursday) at Temple Health Women's and Families Hospital.
Education
* Bachelor's Degree in Computer, Information Sciences or Business Administration (Required) or
* Combination of relevant education and experience may be considered in lieu of degree (Required)
Experience
* 3 years experience in a Leading Information Security Programs including mentoring / managing junior security engineers/analysts for organizations (Required)
* 5 years experience leading Information security initiatives independently (Required)
* 5 years experience with risk assessment tools, technologies, and methods (Required)
* 7 years experience with anti-virus software, intrusion detection, firewalls, and content filtering (Required)
* General Experience with communicating network security issues to peers and management (Required)
* General Experience and knowledge with project management simultaneously leading and coordinating multiple projects (Required)
* General Experience leading and mentoring a team in a high performing collaborative team environment (Required)
* General Experience and knowledge with an in-depth understanding of hardware configurations, database management tools, query language, and application topologies (Required)
* General Experience and knowledge with analyzing, diagnosing, suggesting, and implementing process improvements (Required)
* General Experience in Healthcare IT (Preferred)
Licenses
* Cert Info Sys Security Prof (Required)
* GIAC Cert Incident Handler (Preferred)
* GIAC Penetration Tester (Preferred)
* GIAC Cert Forensic Examiner (Preferred)
'395778
How much does a security architect earn in Philadelphia, PA?
The average security architect in Philadelphia, PA earns between $101,000 and $213,000 annually. This compares to the national average security architect range of $92,000 to $179,000.
Average security architect salary in Philadelphia, PA
$146,000
What are the biggest employers of Security Architects in Philadelphia, PA?
The biggest employers of Security Architects in Philadelphia, PA are: