Blockchain Security Engineer
Security Architect Job 176 miles from Sierra Vista
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our work culture is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
At Coinbase, security isn't just a priority. It's the foundation of everything we do. In the fast-evolving world of digital currency, where trust is paramount, security breaches can mean the difference between success and failure. That's why we've made security a cornerstone of our mission, setting the standard for protecting millions of customers and billions of dollars in assets.
As a Blockchain Security Engineer on the Decentralized Financial Security Team, you will work closely with engineers, technical product managers and senior leadership on designing secure products from the ground up. You will be responsible for performing secure design reviews, threat modeling, vendor reviews and secure code reviews for upcoming Coinbase products or features that will be used by millions of customers. You will have an opportunity to work on the latest technology and provide leadership visibility of the current risk posture. You'll also have an opportunity to pitch, lead and participate in cross-functional initiatives that uplevel the security of all Coinbase products and services.
What you'll be doing (ie. job duties): To be completed by all business teams except Eng.
Perform design reviews, threat modeling and code reviews of upcoming features and products.
Identify top product risk areas and lead risk-reduction initiatives with cross-functional teams.
Improve and/or automate existing processes to increase efficiency.
Participate in the team on-call rotation to support engineering teams through timely design consultations, vulnerability analysis, bug fix verification, etc.
What we look for in you (ie. job requirements): To be completed by all business teams except Eng.
Bachelor's degree in Computer Science
Expertise in Application Security and fundamental knowledge of cryptography
2+ years of threat modeling/design review experience
Strong communication skills with the ability to translate technical security requirements and risks into terms that anyone can understand.
Ability to work independently and unblock yourself.
Nice to haves:
MS or PhD in Computer Science or related field.
Experience in at least one of: Go, Ruby or Python.
Experience automating manual processes or carrying out process improvements.
Experience in Blockchain, Exchange, or Decentralized Exchange Security.
ID: P69496
Pay Transparency Notice: Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include target bonus + target equity + benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is committed to diversity in its workforce and is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the Know Your Rights notice here. Additionally, Coinbase participates in the E-Verify program in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations[at]coinbase.com to let us know the nature of your request and your contact information. For quick access to screen reading technology compatible with this site click here to download a free compatible screen reader (free step by step tutorial can be found here).
Global Data Privacy Notice for Job Candidates and Applicants
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available here. By submitting your application, you are agreeing to our use and processing of your data as required. For US applicants only, by submitting your application you are agreeing to arbitration of disputes as outlined here.
Benefits at Coinbase
Medical Plan, Dental and Vision Plan with generous employee contributions
Health Savings Account with company contributions each pay period
Disability and Life Insurance
401(k) plan with company match
Wellness Stipend
Mobile/Internet Reimbursement
Connections Stipend
Volunteer Time Off
Fertility Counseling and Benefits
Generous Time off/Leave Policy
The option of getting paid in digital currency
Learn more about our mission
Senior Information Security Engineer
Security Architect Job 175 miles from Sierra Vista
This role is in Scottsdale AZ and is hyrbid on site
As a Senior IT Security Engineer, you'll play a crucial role in safeguarding our systems and ensuring compliance with industry best practices. This individual will take ownership of our security tools stack, ensuring it remains current, ubiquitous, and properly configured. You'll lead security projects around tooling, infrastructure, applications and cloud (AWS).
Responsibilities:
Security Stack Ownership: Take charge of our security stack, including SIEM, EDR, NDR, VM, WAF, firewalls, email security, IAM, and more, aligning it with leadership objectives.
Vulnerability and Incident Management: Drive our vulnerability and incident management processes to ensure compliance with security policies.
Internal Support Services: Provide assistance to internal team members on security-related issues, fostering a culture of collaboration and support.
Project Management: Lead the creation, prioritization, and execution of security projects, ensuring alignment with organizational goals.
Documentation and Policy Maintenance: Ensure all work is thoroughly documented, and security policies and procedures are kept current.
Audits and Reviews: Conduct audits and reviews, providing metrics and diagrams as needed to support compliance efforts.
Security Education and Awareness: Contribute to the development of internal security testing and monitoring processes, educating stakeholders on evolving security technologies.
Risk Assessment and Mitigation: Collaborate with IT and other departments to assess and address security risks, promoting a proactive approach to risk management.
Continuous Learning: Stay abreast of emerging IT security technologies and trends, sharing knowledge and insights with the team to drive innovation.
Compliance Support: Collaborate with internal compliance teams to address compliance mandates through policy development and process improvement.
On-call Support: Participate in 24/7 on-call duties to support essential business clients and respond to emergencies.
Qualifications:
Education: Bachelor's Degree or equivalent related experience.
Experience: Seven years in IT, with at least five years in IT Security.
Technical Knowledge: Proficiency in security engineering, computer and network security, authentication, security protocols, and applied cryptography.
Certification: CISSP certification or willingness to obtain within the first 6 months of hire.
Process Adherence: Strong adherence to process and accountability to mitigate risk.
Professional Traits: Demonstrated integrity, good judgment, honesty, and reliability.
Continuous Improvement: Commitment to lifelong learning and skill enhancement, with a willingness to share knowledge with others.
Customer Service: Dedication to providing excellent customer service to internal stakeholders.
Collaborative Spirit: Ability to work effectively as part of a collaborative team, contributing to a positive and inclusive work environment.
AI Architect with CoPilot / AI Code Generator
Security Architect Job 176 miles from Sierra Vista
We are
At Synechron, we believe in the power of digital to transform businesses for the better. Our global consulting firm combines creativity and innovative technology to deliver industry-leading digital solutions. Synechron's progressive technologies and optimization strategies span end-to-end Artificial Intelligence, Consulting, Digital, Cloud & DevOps, Data, and Software Engineering, servicing an array of noteworthy financial services and technology firms. Through research and development initiatives in our FinLabs we develop solutions for modernization, from Artificial Intelligence and Blockchain to Data Science models, Digital Underwriting, mobile-first applications and more. Over the last 20+ years, our company has been honored with multiple employer awards, recognizing our commitment to our talented teams. With top clients to boast about, Synechron has a global workforce of 14,500+, and has 58 offices in 21 countries within key global markets.
Our challenge
We are looking for a visionary Solution Architect with deep expertise in Java, Spring Boot, Microservices, and extensive hands-on experience in cloud-native architecture and GitHub Copilot / Generative AI-based code development. This role requires a strong leader who can define and deliver scalable, resilient architecture while leveraging AI-assisted development to accelerate modernization and cloud transformation initiatives. Ideal for someone with 15+ years of technical leadership and client-facing delivery experience in banking, financial services, or enterprise digital transformation.
Additional Information*
The base salary for this position will vary based on geography and other factors. In accordance with law, the base salary for this role if filled within Phoenix, AZ / Irving, TX is $150k - $165k/year & benefits (see below).
The Role
Responsibilities:
Define and architect enterprise-scale cloud-native solutions using Java/Spring Boot, Microservices, and event-driven patterns.
Leverage GitHub Copilot and other AI Code Generators to improve development velocity, auto-generate components, and standardize codebase.
Lead architecture design sessions for modernizing legacy applications and platforms using Generative AI/LLM frameworks.
Guide integration of business workflows, data services, and APIs with AI-enhanced pipelines across AWS, Azure, or GCP platforms.
Collaborate with stakeholders to design robust architecture blueprints including API architecture, DevOps pipelines, and data engineering flows.
Create solution roadmaps, technical proposals, and effort estimates for enterprise engagements and RFP responses.
Provide architectural governance and conduct reviews to ensure compliance with best practices, security, scalability, and performance.
Lead technical enablement sessions, mentoring engineers on Gen AI adoption and Copilot-integrated SDLC processes.
Requirements:
15+ years of experience in software development and architecture with strong exposure to Java, J2EE, Spring Boot, and microservices.
Practical experience in designing, implementing, and deploying applications using GitHub Copilot or similar AI-powered development tools.
Demonstrated leadership in cloud migration, containerization (Kubernetes/OpenShift), and DevOps practices.
Strong experience architecting solutions across AWS, Azure, or Google Cloud Platform.
Expertise in API Management (Apigee, Azure API Gateway, AWS API Gateway) and event streaming (Kafka, MQ).
Working knowledge of Generative AI platforms (e.g., Azure OpenAI, LangChain, ChatGPT, Vertex AI).
Proficient in tools such as Terraform, Jenkins, GitLab CI/CD, Docker, and SonarQube.
Exposure to BPM tools like Camunda or RHPAM is a plus.
Excellent communication and stakeholder management skills.
Preferred, but not required:
Experience with machine learning frameworks (e.g., TensorFlow, PyTorch).
Familiarity with containerization and orchestration technologies (Docker, Kubernetes).
Knowledge of front-end technologies (HTML, CSS, JavaScript) is a plus.
We offer:
A highly competitive compensation and benefits package.
A multinational organization with 58 offices in 21 countries and the possibility to work abroad.
10 days of paid annual leave (plus sick leave and national holidays).
Maternity & paternity leave plans.
A comprehensive insurance plan including medical, dental, vision, life insurance, and long-/short-term disability (plans vary by region).
Retirement savings plans.
A higher education certification policy.
Commuter benefits (varies by region).
Extensive training opportunities, focused on skills, substantive knowledge, and personal development.
On-demand Udemy for Business for all Synechron employees with free access to more than 5000 curated courses.
Coaching opportunities with experienced colleagues from our Financial Innovation Labs (FinLabs) and Center of Excellences (CoE) groups.
Cutting edge projects at the world's leading tier-one banks, financial institutions and insurance firms.
A flat and approachable organization.
A truly diverse, fun-loving, and global work culture.
S YNECHRON'S DIVERSITY & INCLUSION STATEMENT
Diversity & Inclusion are fundamental to our culture, and Synechron is proud to be an equal opportunity workplace and is an affirmative action employer. Our Diversity, Equity, and Inclusion (DEI) initiative ‘Same Difference' is committed to fostering an inclusive culture - promoting equality, diversity and an environment that is respectful to all. We strongly believe that a diverse workforce helps build stronger, successful businesses as a global company. We encourage applicants from across diverse backgrounds, race, ethnicities, religion, age, marital status, gender, sexual orientations, or disabilities to apply. We empower our global workforce by offering flexible workplace arrangements, mentoring, internal mobility, learning and development programs, and more.
All employment decisions at Synechron are based on business needs, job requirements and individual qualifications, without regard to the applicant's gender, gender identity, sexual orientation, race, ethnicity, disabled or veteran status, or any other characteristic protected by law.
HPE Silver Peak and Zscaler Architect
Security Architect Job 176 miles from Sierra Vista
Must Have Technical/Functional Skills
Lead architect to integrate into the Customer team and provide NGEN architecture, engineering and transformation support. Customer and Team will work together to determine the responsibilities, priorities, and work activities for this resource. The proposed resource can assist where needed but in general, will focus on the following activities:
1. Capture of key issues, risks and planned approaches
2. Requirements Definition/ Use Case Documentation
3. Strategic Guidance
4. Architecture Development
5. Site/Implementation Readiness
6. Artifacts and Knowledge Sharing
7. Complex Solutioning
Salary Range: $100,000-$140,000 a year
Advanced Cyber Security Architect
Security Architect Job 176 miles from Sierra Vista
As an Advanced Cyber Security Architect here at Honeywell, you will play a crucial role in designing and implementing advanced cybersecurity solutions to protect our critical assets. You will collaborate with cross-functional teams and senior leadership to develop and execute our cybersecurity strategy, ensuring the highest level of protection for our digital infrastructure. Your expertise will contribute to the secure and resilient future of our organization.
You will report directly to our Cyber Security Manager and you'll work out of our Phoenix, AZ location on a hybrid work schedule.
At Honeywell, our people play a critical role in developing and assisting our employees to help them perform at their best and drive change across the company. Help to build a strong, diverse team by recruiting talent, identifying, and developing successors, driving retention and engagement, and fostering an inclusive culture.
KEY RESPONSIBILITIES
* Support secure lifecycle process activities for SaaS and On-Prem Offerings, including security requirements, threat modeling, risk assessment, analysis of findings from penetration tests, and tools
* Partner with engineering teams to drive the security by design and alignment to security policies & standards.
* Be a coach to Security Advocates to grow their product security skills
* Influence Product Management to drive down cyber security risk in a measurable way
* Evaluate the Secure Development Life Cycle (SDLC) activities to keep them lean in order to build solid working relationships between development and product security teams
* Perform threat modeling, review vulnerability assessment and penetration testing results to prioritize security work in development team backlog
BENEFITS OF WORKING FOR HONEYWELL
In addition to a performance-driven salary, cutting-edge work, and developing solutions side-by-side with dedicated experts in their fields, Honeywell employees are eligible for a comprehensive benefits package. This package includes employer-subsidized Medical, Dental, Vision, and Life Insurance; Short-Term and Long-Term Disability; 401(k) match, Flexible Spending Accounts, Health Savings Accounts, EAP, and Educational Assistance; Parental Leave, Paid Time Off (for vacation, personal business, sick time, and parental leave), and 12 Paid Holidays.
The application period for the job is estimated to be 40 days from the job posting date; however, this may be shortened or extended depending on business needs and the availability of qualified candidates.
YOU MUST HAVE
* 5+ years of experience in cyber security
* Strong knowledge of cybersecurity principles, technologies, and best practices.
* Knowledge of secure software development lifecycle
* Outstanding communication and interpersonal skills to collaborate with stakeholders at all levels.
* Understanding of operational technology, SCADA systems, distributed control system and process automation.
WE VALUE
* Proficiency in Microsoft threat modeling tool, and reviewing vulnerability assessment
* Product architecture and development background
* Software engineering or development experience
* Knowledge of penetration testing
* Familiarity of security regulations and standards
* Certifications in security such as CSSLP, (Azure/AWS) Certified Security Architect
* Understanding of security by design principles and architecture level security concepts
* Up to date knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities
* Strong interpersonal skills with the ability to facilitate diverse groups, help negotiate priorities, and resolve conflicts
* Excellent problem-solving skills and the ability to make critical decisions in a fast-paced environment.
ABOUT HONEYWELL
Honeywell International Inc. (Nasdaq: HON) invents and commercializes technologies that address some of the world's most critical demands around energy, safety, security, air travel, productivity, and global urbanization. We are a leading software-industrial company dedicated to introducing state-of-the-art technology solutions to improve efficiency, productivity, sustainability, and safety in high-growth businesses in broad-based, attractive industrial end markets. Our products and solutions enable a safer, more comfortable, and more productive world, enhancing the quality of life of people around the globe.
THE BUSINESS UNIT
The Corporate Strategic Business Group (CORP SBG) at Honeywell is a division focused on corporate-level functions and initiatives that facilitate the overall operations and strategy of the company. It is accountable for overseeing areas such as finance, legal, human resources, communications, and corporate governance, working closely with other business units and SBGs to ensure alignment and coordination across the organization. The CORP SBG plays a crucial role in the overall strategic direction and management of Honeywell's corporate functions and operations, assisting the company's business objectives.
Honeywell is an equal opportunity employer. Qualified applicants will be considered without regard to age, race, creed, color, national origin, ancestry, marital status, care or sexual orientation, gender identity or expression, disability, nationality, sex, religion, or veteran status.
Security Architect
Security Architect Job 176 miles from Sierra Vista
What you'll do: The Security domain Architect is accountable for the architecture, design, standards, & frameworks that keep our companys data, people, & systems secure. This challenging role integrates business and technology knowledge to develop the security architecture vision & drive to a future state security architecture that aligns to our security controls and risk posture. This role is a Security Domain Architect role within the Enterprise Architecture organization reporting to an Architecture Leader and requires active engagement with other Domain Architects, Solution Architects, Application Architects, Delivery & Operations teams.
Responsibilities:
- Develops and maintains a security architecture framework & process that enables the bank to develop and implement security capabilities and solutions that are clearly aligned with business, technology, and current & emerging threat drivers.
- Author and develop architecture artifacts such as standards, patterns, & architecture designs that can be leveraged in governance processes and align to enterprise security posture.
Tracks developments and changes in the digital business and threat environments to ensure that they're adequately addressed in security strategy plans and architecture artifacts.
- Translates business and technical requirements into an architectural blueprint to achieve business objectives and documents all solution architecture design and analysis work.
- Develops perspectives and points of view on buy vs. build offerings from various solution providers to develop differentiated solutions that support business growth plans.
- Participates in M&A efforts to assess use of security capabilities & develops integration approaches to integrate the acquisition into our security framework(s).
- Facilitates the evaluation and selection of software product and services, as well as the design of standard and custom software configurations.
- Monitors the current-state solution portfolio to identify deficiencies through aging of the technologies used by the application, or misalignment with business requirements.
We are a company committed to creating inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity employer that believes everyone matters. Qualified candidates will receive consideration for employment opportunities without regard to race, religion, sex, age, marital status, national origin, sexual orientation, citizenship status, disability, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ******************** . The EEOC "Know Your Rights" Poster is available here (*********************************************************************************************** .
To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: *************************************************** .
Skills and Requirements
- 10+ years of related experience, with 5+ years security architecture efforts and an expert level security specific certification such as CISSP.
- Bachelor's degree in computer science, information-technology, cybersecurity, engineering, system analysis or a related study, or equivalent experience. Masters degree preferred.
- Minimum of ten years of experience working in an architecture function with knowledge & experience developing reference architectures & patterns and supporting governance functions.
- Broad understanding of all security domains (e.g. I&AM, Network, End User Compute, Application, Platform, Data etc) with knowledge & experience depth in 1 or 2 of those domains.
- Experience designing security controls for the deployment of applications and infrastructure in to public cloud services.
- Deep understanding of strategic and new and emerging technology trends, and the practical application of existing, new and emerging technologies to new and evolving business and operating models.
- Deep understanding of product management, agile principles and development methodologies and capability of supporting agile and DevOps teams by providing advice and guidance on delivery opportunities.
- Excellent written and verbal communication skills and able to develop content for & communicate with Architecture Leader Level stakeholders as well as Engineering & Scrum teams.
- Ability to build trust and respect as a change agent who can influence and persuade business and IT leaders and development teams.
- Objective mindset that is able to think enterprise first and remain unbiased toward any specific technology or vendor choice, with decisions made based on data, analysis, & POC results.
- Ability to work effectively in a team environment and be a team player
- Experience with Azure, AWS and on-prem platforms.
- Knowledge and understanding of different modeling languages (e.g. ArchiMate).
- Experience delivering & operating in the Banking industry.
- Security Architect Level Certification null
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion,sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military oruniformed service member status, or any other status or characteristic protected by applicable laws, regulations, andordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to ********************.
Application Security Architect
Security Architect Job 160 miles from Sierra Vista
Summary of This Role Responsibilities range from auditing code, architecture and databases used in custom-developed web and cloud applications, to testing for common application level vulnerabilities, weaknesses, and providing both vulnerability analysis and development advise for application hardening.
Applicant must possess a strong background in software development, secure coding techniques, secure architecture, software security frameworks, common weaknesses and vulnerability analysis. Candidate should have experience securing web and mobile applications, APIs, micro-services, containers, cloud and cloud-hybrid architectures.
Responsibilities include:
• Working with application development and QA teams across multiple products to: Review, evaluate and prioritize vulnerability findings
• Provide SME support on secure code implementation, design and architecture.
• Threat-modeling & risk analysis
• Training
• Participate in providing annual OWASP & PCI training for developers
• Helps maintain updated Secure Coding Best Practices
• Common application level vulnerabilities
• Risk Management
• Findings/vulnerability prioritization
• Mitigation strategy
• Controls Evaluation - Review, validate, recommend and create standards
• Review of open-source development libraries for security risks
• Web application firewall (WAF) rule development and implementation
• Security technologies review and recommendations
REQUIREMENTS
• Qualifications: Bachelors of Computer Science or similar - 6 or more years of experience in applying Information Security best practices to Information Technology assets plus 5 or more years of experience with software development.
• Experience with static and dynamic vulnerability identification using industry leading scanning tools and manual code reviews -
• Experience with the Top 10 OWASP (Open Web Application Security Project) vulnerabilities (most critical web vulnerabilities) and how to identify and remediate them - Solid understanding of Information Security in general and the specific behaviors that would secure TSYS information assets -
• Ability to translate Information Security policies and procedures into language that a business and/or technical person can understand; and ability to effectively communicate with both non-technical and technical people -
• Strong problem solving with the ability to methodically and objectively analyze and resolve Information Security challenges - Ability to work well inside and outside the team.
******Please be inform that at this time all the positions do not have any relocation package, or the flexibility to work remotely, and do not offer any work permit, all the candidates must have their own authorization paper work.
Interested! Send your updated CV and answer the questions below:
1) Have you ever worked or applied to this company before?
2) How far are you from the location? Where are you located?
3) What are your salary expectations for this position?
4) Are you a US citizen or a green card holder? (the company will not provide any work visa, they must have their own)
5) How many years of experience do you have in this industry?
6) Why are you looking for a new opportunity
Industrial Security Analyst - Level 2 or 3
Security Architect Job 150 miles from Sierra Vista
RELOCATION ASSISTANCE: No relocation assistance available CLEARANCE TYPE: Top SecretTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Embark on a career putting innovative, reliable, and agile products and ideas into orbit, and beyond. Northrop Grumman has opportunities waiting for you that play a vital role in human space exploration, national defense, and scientific discovery, supporting multiple programs across the universe. With us, you'll discover a culture of curiosity and collaboration that will have you Defining Possible from the day you start. Our space systems connect and protect millions of people on earth every day, now and for the future. Explore your future and launch your career today.
Are you interested in expanding your career through experience and exposure, all while supporting a mission that seeks to ensure the security of our nation and its allies? If so, then Northrop Grumman Space Sector is the place for you. With us, you'll discover a culture of curiosity and collaboration that will have you Defining Possible from the day you start. Northrop Grumman is currently seeking an Industrial Security Analyst - Level 2 or 3, to join our team in Gilbert, AZ. This position is 100% onsite and cannot accommodate telecommute work. Join the Space revolution and make the impossible, possible. #definingpossible
This is a security position that will focus primarily on IC SCI program requirements as well as DoD program requirements. This position supports the Gilbert Site as well as Dulles and El Segundo via virtual connectivity.
This position can be filled at either a Level 3 or 3.
In this job, you will:
Create, maintain and leverage working relationships with internal and external customers
Provide oversight and security direction for construction projects, to include generation of accreditation paperwork for DoD and/or SAP and/or SCI facilities
Develops, and administers security programs and procedures for safeguarding classified or proprietary materials, documents, and equipment
Assist with readiness with government and company compliance audits
Manage and maintain UL-2050 Compliant Intrusion Detection Systems (IDS) and automated Access Control Systems (ACS)
Routinely support new business pursuits and classified solicitation activities
Experience in program security, with knowledge of implementing a multi-disciplined security program (access control, physical security, OPSEC, COMSEC etc.)
Properly evaluate industrial facility plans for physical security accreditation and protection of company and government assets
Develop physical security operating procedures and inspection checklists required by IC
Obtains rulings, interpretations, and acceptable deviations for compliance with regulations from government agencies
Conducts security education classes and related briefings
Working knowledge of ICD 705, and/or 32 CFR NISPOM applicable sponsor procedures
Assist with COMSEC Account Management
Control and accountability of COMSEC Material
Key load of CCI
Destruction of COMSEC Material
Assist and provide guidance COMSEC Requirements
Other duties as assigned
Basic Qualifications - Level 2:
Bachelor's degree with 2+ years of professional experience - OR - Master's degree
Will consider an additional 4+ years of experience in lieu of degree
ICD 705 Certified
Experience with secure phones (rekey and configuring)
Experience with Over The Air Transfers (OTAT)
Experience with 32 CFR Part 117 (NISPOM)
Knowledge of and experience with Intrusion Detection System (IDS)
Experience with Access Control Database
Experience with CCTV
Knowledge with NSA/CSS Policy Manual 3-16 and or AFMAN 17-1302-O
Knowledge of Safeguarding, control of accountability COMSEC material
Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance at time of application
Basic Qualifications - Level 3:
Bachelor's degree with 5+ years of professional experience - OR - Master's degree with 3+ years of professional experience
Will consider an additional 4+ years of experience in lieu of degree
ICD 705 Certified
Experience with secure phones (rekey and configuring)
Experience with Over The Air Transfers (OTAT)
Experience with 32 CFR Part 117 (NISPOM)
Knowledge of and experience with Intrusion Detection System (IDS)
Experience with Access Control Database
Experience with CCTV
Knowledge with NSA/CSS Policy Manual 3-16 and or AFMAN 17-1302-O
Knowledge of Safeguarding, control of accountability COMSEC material
Requires an active Top-Secret/Sensitive Compartmented Information (SCI) clearance at time of application
Preferred Qualifications - Both Levels:
Bachelor's degree with 5 years of related security experience
Experience with Lenel OnGuard
Experience with Scattered Castle
Experience with SIMS/ESIS
Experience and certified with Key Management Infrastructure (KMI) System
Experience with NSA Database DIAS
Experience with COMSEC Key Loading Device and COMSEC equipment
You'll be a great fit if you:
Organized and efficient at time management.
Computer and desktop Microsoft Office software products experience (Word, Excel etc.).
Must be detail-oriented, have meticulous record-keeping, and be responsible for accurate data input into multiple databases/spreadsheets.
Excellent communication, speaking, writing, and organizational skill to enable effective communication.
Ability to excel in a fast paced, deadline-driven environment.
About Tactical Space Systems:
Provider of small-and-medium class satellites for commercial and government customers and pioneer in human and robotic in-space satellite servicing and logistics systems. We support 4 orbits of satellites and national security and space security systems.
About Security:
Committed to protecting people, information, and assets; focusing on excellence through innovative solutions to an evolving threat environment and driving risk reduction by leveraging network environments, standardization, and customer requirements.
*************************************
Salary Range: $63,800.00 - $95,800.00Salary Range 2: $78,700.00 - $118,100.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
SAP BO Admin
Security Architect Job 160 miles from Sierra Vista
E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ******************
We have been retained for providing recruiting assistance, for direct hires, by one of the world-leading information technology consulting, services, and business process outsourcing organization that envisioned and pioneered the adoption of the flexible global business practices that today enable companies to operate more efficiently and produce more value.
Job Description
Roles and Responsibilities:
• Installing and configuring and managing multi-node cluster of Business Objects BI 4.X Enterprise Server
• Configuring Tomcat and web sphere application server
• Strong experience with infrastructure environments (e.gl. operating system, hardware, data center, security, network, voice, end user and server / web related applications).
• Monitor, communicate and troubleshoot issues with data integrity, data design, and functional and technical software issues.
• Perform routine program modifications, performance tuning, problem solving, debugging, and unit testing. Respond quickly to alerts.
• Work together with cross-functional and technical teams to provide advice and information to global groups and serve as an advocate to promote the benefits of the platform.
• Ability to deal with ambiguity, multiple priorities and stretch goals to deliver on the business objectives of the company.
• Develop, implement and document processes and standards for SAP Business Objects.
• Ability to debug Business Objects Server errors and implement fixes and patches.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Government Information Security
Security Architect Job 176 miles from Sierra Vista
Intel's Government Information Technology and Security (GITS) organization enables Intel to win United States Government business by providing secure products, solutions, and services which meet U.S. regulatory requirements. The GITS team is part of Intel's Information Security organization and supports the unique IT information Security and Compliance requirements for Intel Federal LLC, a subsidiary of Intel that delivers products and/or services to the US Government (USG). As part of the GITS team, you will help us grow our secure solution suite to meet U.S. Government requirements for data safeguarding.
Role Overview
We seek a highly skilled and cleared IT and Security Solution Integrator to join our dynamic team. The successful candidate will be pivotal in integrating new secure solutions to support our business capabilities fostering partnerships with business architects, technical program/project managers, and solution architects. This role is critical in enabling the development of secure solutions that streamline the flow of business value from customer request to delivery, with a keen focus on innovation, design, and construction of cutting-edge solutions and services. Candidates for the Government IT and Security Solution Integrator role should have a solid foundation in cybersecurity frameworks such as CMMC, NIST, and RMF. This ensures candidates have a deep understanding of cybersecurity standards and frameworks critical to the role and recognized credentials that validate their expertise.
Solution Integration
Your responsibilities will be, but not limited to:
Collaborate with business architects, solution architects, and project/program managers to thoroughly capture customer needs and objectives, integrating different systems to create unique and functional solutions that meet customer requirements.
Define, advocate, and drive the right architecture for integration solutions in the technology landscape.
Secure Solution Development
Develop secure solutions that increase business value, working closely with the Architecture team to explore, innovate, assemble, and test solutions/services to compete in the market and service the requests from the Portfolio Management Office.
Agile Collaboration
Integrate handoff to Agile Persistent Teams (APTs) and other business functions, ensuring seamless communication and integration across various systems, technologies, software, and hardware.
Customer Requirement Analysis
Understand customer objectives, requirements, and expectations to propose the most suitable solutions.
Solution Design And Implementation
Design the integrated solution, selecting appropriate components, defining technical and functional specifications, and overseeing the installation, configuration, and testing of solution components.
Own and develop testing methodologies and toolkit: static, dynamic, system, automated, security, usability, beta, user acceptance, and functionality testing.
Cross-disciplinary Skills
Possess a wide range of technical and cross-disciplinary skills to understand major operating systems, programming languages, communication protocols, application software, and emerging technologies relevant to the IT and Cybersecurity sectors.
Core Functions
Build, innovate, and evolve capabilities through forward engineering activities in partnership with architecture.
Possess exceptional skills to influence without direct authority. Demonstrate a keen understanding of how to navigate complex organizational structures and effectively advocate for innovative solutions.
Streamline procedures and business activities to optimize enterprise performance and quality.
Innovate business models and processes through integrated solutions.
Improve services with effective communication between different systems.
Coordinate architectural, engineering, and customer inputs for unified implementation and documentation management.
Mentor engineers to enable skills growth for faster and more consistent deployment and support, including monitoring, patching, and upgrade paths.
The ideal candidate should also exhibit the following behavioral traits:
Technical and business problem solving acumen.
Excellent collaboration and communication skills and willingness to work with and/or influence stakeholders.
Qualifications
Minimum qualifications are required to be initially considered for this position. Preferred qualifications are in addition to the minimum requirements and are considered a plus factor in identifying top candidates. Requirements listed would be obtained through a combination of industry relevant job experience, internship experiences and or schoolwork/classes/research.
Minimum Qualifications
You must possess the below minimum requirements and minimum required qualifications to be initially considered for this position. Additional preferred qualifications are in addition to the minimum requirements and are considered a plus factor in identifying top candidates.
This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. Specifically, this position supports United States government customers and is subject to certain citizenship-based restrictions.
Ability to obtain a U.S. Government Top Secret (TS-SCI) with Polygraph.
Bachelor's degree in computer science or computer engineering with 4 + years of industry work experience OR
Master's degree in computer science or computer engineering with 3+ years of industry work experience, including the following:
4+ years of experience building, securing, and supporting Windows and Linux systems in a highly secure on-premises and CSP environments.
4+ years of experience building, securing, and supporting security tools (Splunk, BigFix, Tenable, CrowdStrike, etc.).
2+ years of experience protecting CUI and ITAR in secured environments, using the NIST SP 800-171 standard.
3+ years of experience with mentorship and technical leadership.
3+ years of experience in Requirements gathering.
3+ years of experience with control and configuration testing methodologies,
3+ years of end user and technical documentation.
Preferred Qualifications
CMMC (Cybersecurity Maturity Model Certification),
RMF (Risk Management Framework) experience.
Windows server and client administration experience.
Linux server administration, Network security, and risk assessment/threat modeling experience.
FedRAMP cloud environments and solutions,
Secure system configuration and communication and systems architecture experience, including systems/flow testing and validation.
Inside this Business Group
Intel's Information Technology Group (IT) designs, deploys and supports the information technology architecture and hardware/software applications for Intel. This includes the LAN, WAN, telephony, data centers, client PCs, backup and restore, and enterprise applications. IT is also responsible for e-Commerce development, data hosting and delivery of Web content and services.
Other Locations
US, OR, Hillsboro; US, VA, Fairfax; US, AZ, Phoenix
Posting Statement
All qualified applicants will receive consideration for employment without regard to race, color, religion, religious creed, sex, national origin, ancestry, age, physical or mental disability, medical condition, genetic information, military and veteran status, marital status, pregnancy, gender, gender expression, gender identity, sexual orientation, or any other characteristic protected by local law, regulation, or ordinance.
Benefits
We offer a total compensation package that ranks among the best in the industry. It consists of competitive pay, stock, bonuses, as well as, benefit programs which include health, retirement, and vacation. Find more information about all of our Amazing Benefits here.
Annual Salary Range for jobs which could be performed in the US $105,797.00-$175,105.00
Salary range dependent on a number of factors including location and experience
Working Model
This role will be eligible for our hybrid work model which allows employees to split their time between working on-site at their assigned Intel site and off-site. In certain circumstances the work model may change to accommodate business needs.
SAP GRC/Security Consultant
Security Architect Job 176 miles from Sierra Vista
Job Title: SAP GRC/Security Consultant Company: Turnkey Consulting
Turnkey Consulting is a leading advisory and implementation organization with deep expertise in risk management, governance, and compliance & security. Having the ability to provide end-to-end solutions that integrate technology, process, and people. Our business started within the SAP ecosystem, however expansion into being an agnostic partner, now gives us a wider range of solutions to support our customers, while securing their wider estate. Turnkey Consulting helps businesses optimize their risk management, security and compliance programs, protect against Cyber threats, reduce costs, and improve their operational efficiency. With a team of seasoned risk professionals and a commitment to excellence, we empower businesses to proactively protect their critical assets and stay ahead of evolving threats.
Job Summary
The candidate will play a key role in handling client engagements, as well as utilizing strong technical experience to find solutions that best fit our clients' needs. We are looking for a team-player and strong all-rounder with at least 2 implementations and 2 years of practical experience in the following areas
Detailed understanding of the SAP authorization concept in one or more of the following areas: ECC, SAP S/4 HANA, HCM, CRM, SRM, BW, BI, BPC, SAP HANA
Experience of designing, building and implementing SAP security and authorization solutions
Exposure to various system user interfaces (UI), including SAP but also other relevant SaaS products
Detailed understanding of SAP GRC suite of applications, with a demonstrable specialism in core modules contained within (ideally v12 onward)
Experience of IDM solutions, either SAP's IDM solution, or non-SAP, such as SailPoint or Saviynt would be of advantage.
Experience of third-party solutions to secure SAP estates also an advantage
Experience of SAP Fiori catalogs, groups, pages and spaces
Experience of SAP IAG solutions would be an advantage, both IAS and IPS
Our experienced consultants are a key driver of our success as one of the most trusted names in the end-to-end security arena and we are committed to delivering to a consistently high standard. Key responsibilities of the role are:
Task management of large / complex implementations, especially in Application security or enterprise risk/identity projects
Implementation of GRC technology and supporting modules
Work with clients to understand "why" they're in need of such solutions, define requirements and configure solutions to best fit those needs
Perform controls and configuration reviews involving relevant application systems and processes
Advise clients on controls in their enterprise systems relating to regulatory or legislative compliance
Review and advise on security redesign and remediation projects
Provide a broader range of information risk management solutions to clients as required
Build relationships with new clients and maintain good relations with our existing client base
Integrate solutions into wider cybersecurity controls estates
We are looking ideally for someone with the following attributes:
The ability to troubleshoot and diagnose problems / issues and provide prompt, robust resolution
An enquiring mind to discover "why" clients need to introduce the controlling measures.
The ability to manage projects within varied client engagements and lead reviews and implementations
Knowledge of corporate business processes and their control points
Good understanding of various IT regulations and standards, including: Sarbanes Oxley, COBIT, ISO series & the GDPR
Bachelor's degree
Professional certification (e.g. CISA, M.Inst.ISP, CISSP, ISO)
SAP certification (Security, GRC)
Consulting background
Strong written and verbal communication skills
Integration experience
Ability to act as an SME to install, design, engineer and configure security solutions to meet client needs
Ability to effectively manage own time and priorities effectively and to work both as part of a team and individually.
Able to communicate technical and functional requirements to both the business and IT
Key responsibilities of the role will include:
Project manage large / complex SAP Security implementations, especially for S/4 HANA projects
Implementation of GRC Access Controls and supporting modules
Work with clients to understand requirements and configure solutions to best fit those needs
Perform controls and configuration reviews involving SAP systems
Advise clients on controls in SAP relating to regulatory or legislative compliance
Review and advise on SAP security redesign and remediation projects
Provide a broader range of information risk management solutions to clients as required
Build relationships with new clients and maintain good relations with our existing client base
Integrate solutions into wider cybersecurity controls estates
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state or local protected class. When we collect your personal information as part of a job application or offer of employment, we do so in accordance with industry standards and best practices and in compliance with applicable privacy laws.
Sr. Defense Assessment Analyst
Security Architect Job In Sierra Vista, AZ
This position description is subject to change at any time as needed to meet the requirements of the program or company. Working across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients, here and abroad, to tackle their most complex challenges with integrity, respect, responsibility, and professionalism.
V2X is seeking a motivated and dynamic Sr. Defense Assessment Analyst to serve as a key Technical Staff Leader in supporting the Army's Global Cyber Center (GCC). In this role, candidate applies strong scripting abilities, experience with systems security administration, and network security technologies. The Senior Defense Assessment Analyst will design, implement, automate, maintain, and optimize measures protecting systems, networks, and information. Requires an active Top Secret / SCI clearance and meeting Cyber Security Workforce requirements.
This position is contingent upon successful contract award to V2X.
#clearance
Responsibilities
Major Job Activities:
+ Responsible for conducting both local and remote penetration testing designed to emulate current threat models to the Army network to execute an assessment of the defensive security posture.
+ Evaluate for acceptance new penetration testing procedures as required for inclusion on approved penetration tools list.
+ Organize and conduct CDAP missions consisting of both NAV and PPT mission areas based on Government prioritization and direction.
+ Organize and conduct NDA missions. This includes validating suspected compromises and identifying the depth of intrusions to gain knowledge for use in mitigation, recovery, and future prevention of possible compromises.
+ Execute web assessments of all registered public facing web sites, within the CONUS theater.
+ Develops, publishes, and maintains penetration testing and network damage assessment techniques, tactics, and procedures (TTP).
Material & Equipment Directly Used:
Basic Office Equipment.
Working Environment:
+ Normal office environment.
+ May require support during periods of non-traditional working hours including nights or weekends.
Physical Activities:
Must be able to lift/push/pull 40 lbs. unassisted.
Qualifications
Education / Certifications:
This position supports DCWF Work Role 541 (Advanced) and accordingly per DoD 8140.03 the candidate must possess GIAC Certified Penetration Tester (GPEN) , OR Certified Ethical Hacker (CEH) , OR one of the following DCWF requirements:
DCWF 541
OR DOD / Military Training
OR Certification
DoD / Military Training 4-11-C32-255S (CP) or 4C-255N (CP) or 4C-255A (CP) or A-531-0009 or A-531-0022 or A-531-0045 or WSS 012
CISSO or CPTE or CySA+ or CFR or FITSP-A or GCSA or GPEN or CCE or CISA or CISM or GCIH or GSNA
+ ITIL v4 Foundation certification desired upon hire, required within three months of hiring date.
+ U.S. citizenship is required.
+ Active DoD TS/SCI (Top Secret/Sensitive Compartmentalized Information) Security Clearance.
Experience / Skills:
+ Five (5) years of applicable experience working with various data (network and system) technologies, with a minimum of two (2) of those years focused on penetration testing, information systems security and software tool development.
+ Excellent interpersonal, organization, writing, communicating, and briefing skills.
+ Excellent analytical and problem-solving skills.
+ Army Cyber Command & 2 Army (ARCYBER & 2Army) Computer Defense Assistance Program (CDAP) Penetration Tester and Cyber Intrusion Analysis Program (CIAP).
Supervisory / Budget Responsibilities:
Acts in a technical based supervisory capacity.
At V2X, we are deeply committed to both equal employment opportunity and fostering an inclusive and diverse workplace. We ensure all individuals are treated with fairness, respect, and dignity, recognizing the strength that comes from a workforce rich in diverse experiences, perspectives, and skills. This commitment, aligned with our core Vision and Values of Integrity, Respect, and Responsibility, allows us to leverage differences, encourage innovation, and expand our success in the global marketplace, ultimately enabling us to best serve our clients.
Senior Defense Assessment Analyst (Penetration Tester)
Security Architect Job In Sierra Vista, AZ
Senior Defense Assessment Analyst (Penetration Tester) Ft. Huachuca, AZ Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer's core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting-edge technology and take your career to the next level!
Chenega IT Enterprise Services (CITES) offers forward-thinking technology solutions to federal agencies and the DoD. Formed in 2016 to serve federal customers CONUS, CITES has grown quickly into a best practices leader for the modern federal enterprise.
The Senior Defense Assessment Analyst (Penetration Tester) shall plan for and conduct OT&E cyber survivability assessments on operationally representative system configurations, operated within operationally representative environments that include the coordinated involvement of NSA-certified Red Teams. In accordance with DOT&E cyber policies, the Contractor shall perform T&E planning, execution, data collection, analysis, and reporting for the conduct of cyber survivability assessment activities. This position is 100% on-site in a government facility.
Responsibilities
Cooperative Vulnerability and Penetration Assessment (CVPA) performed with the objective of identifying and providing a comprehensive characterization of the cybersecurity status of the SUT in an operational context for purposes of helping to mitigate the cybersecurity risks associated with that system. The Contractor shall review applicable system RMF information to identify the residual risks to be verified through the CVPA process.
Adversarial Assessment (AA) performed following a CVPA that utilize a NSA-certified Red Team to validate the operational significance of remaining system vulnerabilities for purposes of arriving at a system cyber survivability determination.
Cyber Economic Vulnerability Assessment performed as part of or following an AA to address DOT&E cybersecurity requirements for the OT&E of DoD financial and business systems.
Develop and present TCBs
Perform OTRR Reporting
Develop Cybersecurity T&E Plans
Develop Cybersecurity Quick Look Reports
Develop Cybersecurity Operational Assessments
Develop Cybersecurity T&E Reports
Qualifications
BA/BS from an accredited university required
Minimum of 12+ years of related IT experience
Substitution Allowance (MA/MS with 10+ years' experience can be substituted for the above requirements)
Must meet DoD 8140 DCWF 511 requirements (B.S., CySA+ or CBROPS or CFR or FITSP-O or GCIA or GDSA or GICSP or GCFA)
GIAC Certified Penetration Tester (GPEN)
EC Council Licensed Penetration Tester (LPT)
Certified Ethical Hacker (CEH)
An IAT II certification (CCNA-Security, CND, CySA+, GICSP, GSEC, Security+ CE, or SSCP)
TS/SCI clearance required
Knowledge, Skills and Abilities:
Excellent written and verbal communication and customer service skills.
Ability to work independently and as a team member.
Ability to handle large, complex workloads, effectively coordinate multiple resources, and multi-task in a fast-paced environment.
Knowledge and skill in applying analytical and evaluation methods and techniques.
Ability to handle controversial situations with tact and diplomacy.
Knowledge of cybersecurity and privacy principles.
Knowledge of computer networking concepts and protocols, and network security methodologies.
Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
How you'll grow
At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there's always room to learn.
We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers.
Benefits
At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits.
Learn more about what working at Chenega MIOS can mean for you.
Chenega MIOS's culture
Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives.
Corporate citizenship
Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities.
Learn more about Chenega's impact on the world.
Chenega MIOS News- *****************************
Tips from your Talent Acquisition Team
We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links:
Chenega MIOS web site - *******************
Glassdoor - ********************************************************************************
LinkedIn - *****************************************
Facebook - *************************************
#Chenega IT Enterprise Services, LLC
Our wide range of benefit options is designed to support and protect employees and their families. Based on eligibility, benefits include medical, dental, vision, prescription plans, wellness programs, income protection, paid leave, and retirement. Positions covered by the McNamara-O'Hara Service Contract Act, Davis-Bacon Act, or a Collective Bargaining Agreement (CBA) will comply with the statute or CBA requirements.
Chenega Corporation and family of companies is an EOE.
Equal Opportunity Employer/Veterans/Disabled
Native preference under PL 93-638.
We participate in the E-Verify Employment Verification Program
Sr. Analyst, Security - Tucson, AZ
Security Architect Job 56 miles from Sierra Vista
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
At Raytheon, the foundation of everything we do is rooted in our values and a higher calling - to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. Our team solves tough, meaningful problems that create a safer, more secure world.
The Senior Analyst (Special Access Programs) plays a vital role within the Special Programs team in the Security department. This position encompasses a variety of responsibilities, including: Processing personnel clearance requests for access to classified information, developing and administering personnel security procedures, and reporting crucial information to customers, such as adverse information, personnel status changes, foreign contacts, and foreign travel. The role also involves updating computer databases with critical security information, ensuring compliance with federal security regulations, and coordinating with government agencies for regulatory compliance rulings and interpretations. Protecting employees' personal information in accordance with the Privacy Act and other relevant Government regulations is also a key responsibility. A valid driver's license is required, as this position may involve escorting individuals across business locations.
What You Will Do
Provide customer service to employees related to personnel security questions and actions.
Administer security procedures (NISPOM, DoDM 5205.07 series, JSIG, and ICD 705) related to operating in a classified environment, including personnel processing, media control, marking and control of documents/materials, security education, visitor control, and destruction of classified materials.
Support specialized procedures for the transmission of classified and/or proprietary material/information.
Conduct and/or participate in internal reviews and/or Government inspections.
Investigate security infractions/violations and prepare reports specifying the potential for loss or compromise and the associated risk to the program(s).
Maintain personnel records and perform data entry tasks.
Assist in the indoctrination and education of approved personnel.
Collaborate with the Security Education point of contact to ensure annual refresher requirements are met.
Oversee the configuration management of required documentation for Government databases, regarding accesses.
Work extended hours as needed in a fast-paced, deadline-driven office environment.
Qualifications You Must Have
A University Degree or equivalent experience and minimum 2 years prior relevant experience, or advanced degree in a related field.
Experience with 32 CFR, Part 117 (NISPOM), DoDM 5205.07 series, JSIG, and ICD-705.
Active and transferable SECRET U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Qualification We Value
Working knowledge of Microsoft Excel, PowerPoint and Word.
Familiarity with DISS, JADE, eSecurity, and Access Commander are preferred.
Masters Degree major in Business Management, Security and/or Risk Management, Government Policy, Information Management, Criminal Justice, or other related field of study.
Possess a minimum of a current, final SECRET security clearance with an investigation not older than six (6) years, or enrolled in CE / CV on the first day of employment.
Related training with Defense Counterintelligence and Security Agency, Center for Development of Security Excellence, or equivalent security certification programs.
Willing to travel on company business.
What We Offer
Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Safety, Trust, Respect, Accountability, Collaboration, and Innovation.
This position is not eligible for Relocation assistance
Learn More & Apply Now!
Please consider the following role type definition as you apply for this role.
Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Senior Industrial Security Analyst - Tucson, AZ
Security Architect Job 56 miles from Sierra Vista
Country: United States of America Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Security Clearance: Top Secret - Current At Raytheon, the foundation of everything we do is rooted in our values and
a higher calling - to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. Our team solves tough, meaningful problems that create a safer, more secure world.
Special Programs Security Professionals work with customers and the government on security requirements for proprietary programs as well as providing guidance and support to employees working on such activities, helping them stay abreast of changes and updates in requirements. As the Senior Security Analyst, you will perform a wide variety of tasks as part of the Special Programs Security team.
What You Will Do
* Administering the security procedures (NISPOM, DoDM 5205.07, Intelligence Community Directive (ICD) 705, and JSIG), as they relate to operating in a classified environment for: personnel processing, media control, marking and control of documents / materials, security education, visitor control, destruction of classified materials.
* Implement local Standard Operating Procedures (SOP), Operations Security (OPSEC) Plans, and proprietary test plans utilizing risk management guidelines.
* Oversee specialized procedures for the transmission of classified and/or proprietary material/information.
* Conduct and/or participate in internal reviews and/or Government inspections.
* Investigate security infractions/violations and prepare reports specifying the potential for loss or compromise and the associated risk to the program(s).
* This position may require travel on company business and program support after normal business hours.
Qualifications You Must Have
* Typically requires bachelor's degree and a minimum of 2 years of prior relevant experience in industrial security or an advanced degree in related field.
* Active and transferrable final U.S. government issued TOP SECRET security clearance is required prior to start date with the ability to obtain program access after start. US citizenship is required, as only U.S. citizens are eligible for a security clearance.
* Experience Administering security procedures
Qualifications We Prefer
* Previous experience as a security professional supporting SAP and/or SCI programs.
* Related training with Defense Counterintelligence and Security Agency (DCSA), Center for Development of Security Excellence (CDSE) including.
What We Offer
* Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Trust, Respect, Accountability, Collaboration, and Innovation.
* This position is not eligible for relocation
Learn More & Apply Now!
* Please consider the following role type definition as you apply for this role. Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Cyber Security Analyst - Info. Assurance
Security Architect Job In Sierra Vista, AZ
div class="iCIMS_JobContent" h2 class="iCIMS_InfoMsg iCIMS_InfoField_Job" Responsibilities /h2 div class="iCIMS_InfoMsg iCIMS_InfoMsg_Job" div class="iCIMS_Expandable_Container" div class="iCIMS_Expandable_Text" p style="margin: 0px;"Cyber Protection, Assessment and Authorization, and Risk Management Framework (RMF). Provides cybersecurity functional support for assessments, authorizations, and documentation Enterprise-fielded systems managed by NETCOM HQ. Efforts include using the Enterprise Mission Assurance Support Service (eMASS) to record RMF activities such as control implementation of all applicable security controls as identified via information system security categorization in accordance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 and Committee on National Security Systems Instructions (CNSSI) 1253. The number of families and controls will vary depending on the security categorization, the application of overlays (privacy, classified, intel, etc.) and any security control tailoring. br/• Adhere to the DoD cybersecurity policy requirements set forth in DoDI 8500.01, “Cybersecurity,” and DoDI 8510.01, “Risk Management Framework (RMF) for DoD Information Technology (IT)” and their successors.br/• Provide personnel with knowledge in DoD security hardening, collection, and assessment tools (includes: Security Technical Implementation Guide (STIGs); Assured Compliance Assessment Solution (ACAS) SCAP; Nessus; or other currently Government-approved tools) and expertise with security architectures, firewalls, and network access.br/• Possess and retain knowledge of the RMF Knowledge Service - ********************************************* the DoD's official site for enterprise RMF policy and implementation guidelines.br/• Review any RMF activities on behalf of NETCOM ensuring adherence to the operational ETPs and Operations Orders hosted on the US Army Component Workspace - Operations tab of the RMF Knowledge Service. The ETPs provide amplifying guidance and process implementation for the Army regarding RMF./p
/div
/div
/div
h2 class="iCIMS_InfoMsg iCIMS_InfoField_Job"
Qualifications
/h2
div class="iCIMS_InfoMsg iCIMS_InfoMsg_Job"
div class="iCIMS_Expandable_Container"
div class="iCIMS_Expandable_Text"
p style="margin: 0px;"Basic Qualifications:/pulli6 years w/o BS/BA, 2 years with BS/BA, 0 years with MS/MA/lili Certifications: DCWF Code 722 Intermediate: Certified Chief Information Security Officer (CCISO) or Certified Cloud Security Professional (CCSP) or Certified in Governance Risk and Compliance (CGRC) or CompTIA Cloud+ or CompTIA Security+ or CompTIA SecurityX (formerly CASP+) or Systems Security Certified Practitioner (SSCP)/lili Possess a Secret Clearnace and the ability to obtain a Top Secret w/SCI security clearance/lili Ability to conduct vulnerability assessments and monitor networks to support test and operational environment requirements/lili Solid understanding of data transport, encryption, networking, IT systems, and cybersecurity fundamentals/li/ul
/div
/div
/div
h2 class="iCIMS_InfoMsg iCIMS_InfoField_Job"
Peraton Overview
/h2
div class="iCIMS_InfoMsg iCIMS_InfoMsg_Job"
div class="iCIMS_Expandable_Container"
div class="iCIMS_Expandable_Text"
p style="margin: 0px;"Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit a href="******************** rel="noopener" target="_blank"peraton.com/a to learn how we're keeping people around the world safe and secure./p
/div
/div
/div
h2 class="iCIMS_InfoMsg iCIMS_InfoField_Job"
Target Salary Range
/h2
div class="iCIMS_InfoMsg iCIMS_InfoMsg_Job"
div class="iCIMS_Expandable_Container"
div class="iCIMS_Expandable_Text"
$66,000 - $106,000. This represents the typical salary range for this position based on experience and other factors.
/div
/div
/div
h2 class="iCIMS_InfoMsg iCIMS_InfoField_Job"
EEO
/h2
div class="iCIMS_InfoMsg iCIMS_InfoMsg_Job"
div class="iCIMS_Expandable_Container"
div class="iCIMS_Expandable_Text"
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
/div
/div
/div
/div
Infrastructure Security Engineer
Security Architect Job 176 miles from Sierra Vista
Vital Care (****************** is the premier pharmacy franchise business with franchises serving a wide range of patients, including those with chronic and acute conditions. Since 1986, our passion has been improving the lives of patients and healthcare professionals through locally-owned franchise locations across the United States. We have over 100 franchised Infusion pharmacies and clinics in 35 states, focusing on the underserved and secondary markets. We know infusion services, and we guide owners along the path of launch, growth, and successful business operations. What we offer:
Comprehensive medical, dental, and vision plans, plus flexible spending, and health savings accounts.
Paid time off, personal days, and company-paid holidays.
Paid Paternal Leave.
Volunteerism Days off.
Income protection programs include company-sponsored basic life insurance and long-term disability insurance, as well as employee-paid voluntary life, accident, critical illness, and short-term disability insurance.
401(k) matching and tuition reimbursement.
Employee assistance programs include mental health, financial and legal.
Rewards programs offered by our medical carrier.
Professional development and growth opportunities.
Employee Referral Program.
Job Summary:
Vital Care is looking for an Infrastructure Security Engineer that will be instrumental in the continuous improvement of the operational security posture and IT ecosystem that enables the company's overall strategy. The qualified candidate will ensure solutions are implemented to the highest security and privacy standards working independently with various stakeholders across the organization. Working in a regulated environment, the security engineer is expected to have proficiency with endpoint protections, vulnerability management and data loss protection concepts. The candidate will be responsible for assuring enforcement of security policies, monitoring the information security threat lifecycle, analyzing, and responding to security events escalated by the Security Operations Center (SOC) and coordinating actions to limit risks identified.
Duties/Responsibilities:
Monitoring computer security including intrusion detection/intrusion prevention, firewalls, encryption, anti-virus, log reviews and other software or appliances.
Knowledgeable of NIST Cyber Policies and Governance, Risk.
Monitor the vulnerability management process.
Handle security escalations and analyzes information security threats, requests, and audit findings. Provides recommendations to resolve issues and/or findings.
Collaborates with external vendors and partners as necessary, to implement secure solutions and resolve issues/incidents.
Support the implementation of technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
Participate in security incident management and disaster recovery procedures and plans.
Develop and maintain information security policies and procedures adhering to HIPAA regulations and standards.
Coordinate security practices with Franchisees ensuring adequate coverage and timely response to security events.
Review and validate security alerts and incidents escalated by the SOC analysts, conducting in-depth analysis and investigation using threat intelligence and forensic tools.
Proactively identify and hunt for potential threats, security gaps, and vulnerabilities in the network, systems, and applications, using various tools and techniques.
Manage and configure the security monitoring tools, ensuring optimal performance and accuracy.
Create and update security documentation, such as policies, standards, guidelines, reports, and metrics.
Research and stay updated on the latest security trends, threats, and best practices.
Required Skills/Abilities:
Experience in building and maintaining security systems.
Detailed technical knowledge of infrastructure and operating system security.
Hands on experience in security systems, including vulnerability management, intrusion detection systems, anti-virus software, authentication systems, log management and content filtering.
Understanding of the latest security principles, techniques, and protocols.
Problem solving skills and ability to work under pressure.
Education and Experience:
Bachelor's or master's degree in computer science, Engineering, or 3-5 years of related experience.
Technical Leadership experience in data engineering, database development, or related roles, focusing on designing and building data pipelines and infrastructure.
Additional technical training, including CCSP, CISSP, or cybersecurity related certifications are preferred.
Healthcare background is preferred.
Physical Requirements:
Sitting: Prolonged periods of sitting are typical, often for the majority of the workday.
Keyboarding: Frequent use of a keyboard for typing and data entry.
Reaching: Occasionally reaching for items such as files, documents, or office supplies.
Fine Motor Skills: Precise movements of the fingers and hands for tasks like typing, using a mouse, and handling paperwork.
Visual Acuity: Good vision for reading documents, computer screens, and other detailed work.
Be part of an organization that invests in you! We are reviewing applications for this role and will contact qualified candidates for interviews.
Vital Care Infusion Services is an equal-opportunity employer and values diversity at our company. We do not discriminate on the basis of color, race, sex, age, religion, national origin, disability, genetic information, gender identity, sexual orientation, veterans' status, or any other basis protected by applicable federal, state, or local law.
Vital Care Infusion Services participates in E-Verify.
This position is full-time.
Information Systems Security Officer (ISSO)
Security Architect Job 176 miles from Sierra Vista
ISSOEmployment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.
CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.
Skills and attributes for success:- Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. - Maintain responsibility for managing cybersecurity risk from an organizational perspective. - Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.- Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.- Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).- Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.- Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.- Provide subject matter expertise for cyber security and trusted system technology. - Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.- Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. - Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.- Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.
Qualifications:- Bachelor's Degree.- A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.- eMASS experience.- Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.- Strong desktop publishing skills using Microsoft Word and Excel.- Experience with industry writing styles such as grammar, sentence form, and structure.- Ability to multi-task in a deadline-oriented environment.
Ideally, you will also have:- CISSP, CASP, or a similar certificate is preferred.- Master's Degree in Cybersecurity or related field.- Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.- Demonstrated ability to work well independently and as a part of a team.- Excellent work ethic and a high commitment to quality.
Our Commitment:Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.
For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.
Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.
We care about our employees. Therefore, we offer a comprehensive benefits package.Health, Dental, and VisionLife Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays
Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Join our team and become part of government innovation!Explore additional job opportunities with CGS on our Job Board:**************************************** more information about CGS please visit: ************************** or contact:Email: *******************$92,213.33 - $125,146.66 a year
Sr Security Analyst - Days (On-site, AZ)
Security Architect Job 175 miles from Sierra Vista
Senior Security Analyst - Days
Full-Time, Exempt
Salary: Competitive Base + Options!
Shift: 8am - 4pm/6am -2pm Mon to Fri OR 7am - 5pm Wed to Sat OR 5am - 3pm Sun to Wed OR 6am - 4pm Mon to Thur
We are looking for a Senior Security Analyst to join the Lumifi Cyber Analyst team. Senior Security Analysts are expected to handle customer facing investigations, mentoring, and training of fellow analysts, and to participate in interaction with customers and other teams through email or phone. This position is based out of our SOC located in Scottsdale, AZ.
Primary Duties
Triage alerts and determine if further investigation or action is required by the customer
Assist customers with the investigation and response of incidents throughout the incident response process
Perform investigations of customer requests and be able to provide further contextual information along with recommended actions
Proactively threat hunt using network and host data within customer environments
Mentor junior analysts
Required Qualifications
Ability to analyze packet captures/data and logs to perform incident response and identify potential compromises to customer networks
Possesses a solid understanding of the TCP/IP protocol suite, security architecture, and common TTP's (tactics, techniques, and procedures) used by threat actors
Experience analyzing both log and packet data in a SIEM (RSA NetWitness, Azure Sentinel, Splunk, etc.)
Strong understanding of incident response methodologies and reporting
Experience using ticketing systems for tracking (JIRA, Remedy, ServiceNow, etc.)
Strong verbal/written communication and interpersonal skills are required to document and communicate findings, escalate critical incidents, and interact with customers
Preferred Qualifications
Minimum of 3+ years of experience performing triage/incident response in enterprise environments
Minimum of 3+ years of experience performing forensic analysis of logs and packet captures to identify malicious artifacts
Higher level security certifications (CEH, GCIH, GCFA, GCFE, GCTI, GCIA, GREM, GPEN, GFNA, OCSP)
Strong research background and an analytical approach, especially with respect to event classification, event correlation, and root cause analysis
A mentoring/leadership background including mentoring other analysts and orchestrating team efforts for problem solving
Ability to manage projects to completion both individually and in a group
Benefits Include:
Health Insurance 80% or more paid by employer
Dental Insurance 80% paid by employer
Vision Insurance 80% paid by employer
Group Term Life and Long-term disability 100% paid by employer
Paid Sick, Vacation, and Holiday leave
Equity Options offered for all employees!
All candidates must be eligible to work in the U.S. for any employer.
Lumifi welcomes and encourages diversity in our workplace. All qualified applicants will receive consideration for employment without regard to race color, religion, sex, sexual orientation, gender identity, national origin or disability.
Information Security Manager
Security Architect Job 176 miles from Sierra Vista
AHCCCS
Arizona Health Care Cost Containment System Accountability, Community, Innovation, Leadership, Passion, Quality, Respect, Courage, Teamwork The Arizona Health Care Cost Containment System (AHCCCS), Arizona's Medicaid agency, is driven by its mission to deliver comprehensive, cost-effective health care to Arizonans in need. AHCCCS is a nationally acclaimed model among Medicaid programs and a recipient of multiple awards for excellence in workplace effectiveness and flexibility.
AHCCCS employees are passionate about their work, committed to high performance, and dedicated to serving the citizens of Arizona. Among government agencies, AHCCCS is recognized for high employee engagement and satisfaction, supportive leadership, and flexible work environments, including remote work opportunities. With career paths for seasoned professionals in a variety of fields, entry-level positions, and internship opportunities, AHCCCS offers meaningful career opportunities in a competitive industry.
Come join our dynamic and dedicated team.
IT Governance and Compliance Manager
Information Services Division (ISD)
Job Location:
Address: 801 E. Jefferson Street, Phoenix, AZ 85034
Posting Details:
Must reside in the state of Arizona. Salary: $85,000 - $95,000
Grade: 28
Closing Date: Open Until Filled This position is eligible for full-time remote work (including virtual office arrangement in Arizona).
Job Summary:
A career in public service awaits you. COME JOIN OUR TEAM!
A great benefit of working for the State of Arizona is a fantastic work/life balance. State employees enjoy challenging work, popular remote work options, comprehensive health and wellness benefits, and career growth opportunities.
What You'll Do To Contribute to Agency Success :
The IT Governance and Compliance Manager is responsible for leading the IT governance, compliance, and risk management programs for the agency. This position oversees the development and implementation of the IT governance framework, ensures regulatory compliance, and coordinates with IT leadership on IT risk management processes. The IT Governance and Compliance Manager reports to the IT Operations Officer and plays a critical role in aligning IT practices with agency goals and regulatory requirements.
Major duties and responsibilities include but are not limited to:
• Leadership and Program Oversight: Provide strategic oversight and leadership for IT governance, compliance, and risk management programs. Foster a collaborative and accountable culture, ensuring that governance and compliance initiatives are implemented and continuously improved.
• IT Governance and Policy Management: Maintain IT governance frameworks, policies, procedures, and processes to ensure alignment with agency goals and regulatory requirements. Regularly review and update policies to reflect evolving compliance requirements, risks, and industry standards. Ensure that governance processes are documented and communicated appropriately.
• IT Compliance Oversight: Oversee the IT compliance team to ensure adherence to applicable laws and regulations. Monitor compliance with both internal and external requirements. Coordinate and manage external IT audits conducted by regulators, ensuring timely responses to requests and accurate documentation of findings. Work with agency teams to address audit recommendations and enhance compliance processes.
• IT Risk Management Coordination: Collaborate with IT leadership to ensure risks are identified, assessed, documented and mitigated following IT risk management policies. Support efforts to automate risk management practices. Provide regular reporting on IT risks and mitigation efforts. Ensure third-party partners remain compliant with privacy and security requirements.
• Stakeholder Collaboration and Communication: Act as the primary point of contact for IT governance, risk and compliance matters, building strong relationships with internal and external stakeholders, including Federal and State regulators. Communicate effectively to technical and non-technical audiences. Provide training and education to ensure understanding of compliance requirements.
• Continuous Improvement: Develop and monitor key metrics to assess the effectiveness of IT governance, risk and compliance efforts. Identify opportunities for improvement and implement strategies to address gaps. Stay current on industry trends and regulatory changes to ensure efforts remain effective and aligned with agency goals.
Knowledge, Skills & Abilities (KSAs):
Knowledge:
• IT governance frameworks and risk management methodologies, including COBIT, ITIL, and NIST.
• Common security and privacy regulatory requirements and standards (e.g., PCI DSS, NIST 800-53, ISO2700x, etc.)
• Information security risk management frameworks and compliance practices
• Third-party risk management practices
• Laws and regulations affecting health care entities in the following areas:
• Protected Health Information (PHI)
• Health Insurance Portability and Accountability Act (HIPAA)
• CMS
• Research Compliance
• State Regulations
Skills:
• Strong leadership and program management skills, including leading cross- functional initiatives
• Strong customer service skills
• Excellent interpersonal, written and verbal communication skills, including the ability to explain technical concepts to non-technical stakeholders
• Excellent presentation skills, including formal report writing
• Advanced problem-solving and analytical skills
Abilities:
• Work effectively with diverse teams and stakeholders across the agency
• Interpret complex regulatory requirements and translating them into actionable policies and procedures
• Develop policies and processes based on regulatory requirements and industry standards
• Balance, prioritize and organize multiple tasks
• Synthesize feedback and adjust plans accordingly
• Operate with no supervision in a complex environment
• Apply creative solutions to business problems to ensure business needs are most effectively met
• Effectively articulate the relationship of the department to other business units in the organization
• Effectively manage teams in a remote environment
• Integrate new concepts, practices, and emerging technologies into strategic planning process
Qualifications:
Minimum:
• Bachelor's degree plus 5 or more years of related experience in related discipline (or equivalent experience).
Pre-Employment Requirements:
• Successfully pass fingerprint background check, prior employment verifications and reference checks; employment is contingent upon completion of the above-mentioned process and the agency's ability to reasonably accommodate any restrictions.
• Travel may be required for State business. Employees who drive on state business must complete any required driver training (see Arizona Administrative Code R2-10-207.12.) If this position requires driving or the use of a vehicle as an essential function of the job to conduct State business, then the following requirements apply: Driver's License Requirements.
All newly hired State employees are subject to and must successfully complete the Electronic Employment Eligibility Verification Program (E-Verify).
Benefits:
Among the many benefits of a career with the State of Arizona, there are:
• 10 paid holidays per year
• Paid Vacation and Sick time off (13 and 12 days per year respectively) - start earning it your 1st day (prorated for part-time employees)
• Paid Parental Leave-Up to 12 weeks per year paid leave for newborn or newly-placed foster/adopted child. Learn more about the Paid Parental Leave pilot program here.
• Other Leaves - Bereavement, civic duty, and military.
• A top-ranked retirement program with lifetime pension benefits
• A robust and affordable insurance plan, including medical, dental, life, and disability insurance
• Participation eligibility in the Public Service Loan Forgiveness Program (must meet qualifications)
• RideShare and Public Transit Subsidy
• A variety of learning and career development opportunities
By providing the option of a full-time or part-time remote work schedule, employees enjoy improved work/life balance, report higher job satisfaction, and are more productive. Remote work is a management option and not an employee entitlement or right. An agency may terminate a remote work agreement at its discretion.
For a complete list of benefits provided by The State of Arizona, please visit our benefits page.
Retirement:
Lifetime Pension Benefit Program
• Administered through the Arizona State Retirement System (ASRS)
• Defined benefit plan that provides for life-long income upon retirement.
• Required participation for Long-Term Disability (LTD) and ASRS Retirement plan.
• Pre-taxed payroll contributions begin after a 27-week waiting period (prior contributions may waive the waiting period).
Deferred Retirement Compensation Program
• Voluntary participation.
• Program administered through Nationwide.
• Tax-deferred retirement investments through payroll deductions.
Contact Us:
Persons with a disability may request a reasonable accommodation such as a sign language interpreter or an alternative format by emailing ********************.
Requests should be made as early as possible to allow time to arrange the accommodation. The State of Arizona is an Equal Opportunity/Reasonable Accommodation Employer.