Senior Security Engineer
Security architect job in Boston, MA
Senior Security Engineer (US)
New York & Boston candidates: Office-based
Other listed states: Remote employees considered
Contract: Full-time, Hybrid / Flexible | 35-hour week
Salary: $175,000 base + 15% bonus
Overview
We are seeking a hands-on, senior security engineer to proactively strengthen our security posture across cloud-native and hybrid environments. This highly technical, strategic role will lead security platform integration, governance, threat detection, and mentoring, while influencing security-first practices across the organisation.
Key Responsibilities
Security Architecture & Engineering
Lead integration and optimisation of Zscaler, Wiz (EDR/CSPM/CNAPP), and endpoint protection (EDR/XDR) to maximise prevention, detection, and response.
Develop detection rules and manage analytics in Microsoft Sentinel and Wiz.
Conduct proactive threat hunting, posture management, and remediation validation.
Administer Zscaler Internet Access (ZIA), including policy tuning, SSL inspection, forwarding profiles, and authentication flows.
Troubleshoot traffic flows and collaborate with DevOps, IT, and R&D to integrate security into CI/CD pipelines and infrastructure-as-code.
Compliance, Audit & Governance
Ensure compliance with NIST SP 800-53, NIST SP 800-171, SOC 2, ISO/IEC 27001:2022, and client-specific requirements.
Lead audits, penetration testing, and maintain continuous audit readiness.
Security Operations & Incident Response
Develop, tune, and manage detection rules and playbooks across Wiz, Zscaler, and other platforms aligned with MITRE ATT&CK.
Hunt threats, triage alerts, and lead incident investigations.
Manage advanced email security with Microsoft Defender for Office 365.
Drive automation and orchestration initiatives to improve operational efficiency.
Stakeholder Engagement & Leadership
Act as a technical advisor on Zero Trust, cloud security, and operations.
Mentor junior staff and foster a security-first culture.
Communicate complex security concepts clearly to technical and non-technical stakeholders, including senior leadership.
Mandatory Platform Expertise
GitGuardian
CyberHaven
Wiz Advanced & Defend
Zscaler
Email Security (various platforms)
Education & Preferred Certifications
Master's degree in Information Security, Computer Science, or related field.
GIAC certifications: GCIA, GCED, GCIH, GDAT, GDSA, GMON
Microsoft Cloud Security certifications: AZ-500, AZ-305, SC-300
Cloud Security Engineer
Security architect job in Merrimack, NH
Immediate need for a talented Cloud Security Engineer. This is a 12 months contract opportunity with long-term potential and is located in Westlake, TX/ Merrimack, NH(Onsite). Please review the job description below and contact me ASAP if you are interested.
Job Diva ID: 25-95092
Pay Range: $70 - $75 /hour. Employee benefits include, but are not limited to, health insurance (medical, dental, vision), 401(k) plan, and paid sick leave (depending on work location).
Key Responsibilities:
Designing, scaling, and deploying various cloud security controls and services
Building processes and workflows along with a consolidated and collaborative integration of IaaS, SaaS, and PaaS cloud services
Ensuring seamless user experience with advanced security and compliance of our cloud infrastructure
Maintaining and containing business risk as it pertains to the Azure cloud infrastructure
Working across teams and Business Units to define requirements and deliver solutions
Building comprehensive security controls to enforce policy
Supporting business unit technologists deploying to the public cloud
Key Requirements and Technology Experience:
Key skills; Azure Policy Exp
Azure Security Services - Security Center, Key Vault, Log Analytics
Identity and Access Management Exp
Prior Software Engineering background, any language is fine but someone coming from a Sys Admin/Devops background won't be the right fit here.
6-9 years of experience in IT infrastructure, security, compliance
A strong understanding of Azure services and security capabilities
Solid hands-on experience with at least two of the following:
Engineering/operational support of cloud account configuration in AWS or Azure
Software Development, Linux Systems Administration, Data Networking
Hands-on configuration of CI/CD pipelines for cloud-native deployments
Very strong with scripting languages, including integration with CSP APIs; python preferred
Azure Networking
Identity and Access Management - RBAC
Azure Policies
Azure Security Services - Security Center, Key Vault, Log Analytics
Azure ARM/PowerShell
Ability to work with application and security teams to promote a secure posture in the cloud
You can mentor and train other team members to work effectively in the cloud
You are a self-starter who can independently by reading technical documentation
Advanced Azure Certifications
Our client is a leading financial Industry, and we are currently interviewing to fill this and other similar contract positions. If you are interested in this position, please apply online for immediate consideration
Pyramid Consulting, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, colour, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.
By applying to our jobs, you agree to receive calls, AI-generated calls, text messages, or emails from Pyramid Consulting, Inc. and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here.
Performance Architect
Security architect job in Newton, MA
The Performance Architect will analyze system performance metrics and identify bottlenecks, providing recommendations for optimization and improvement. They will collaborate with development and operations teams to integrate performance considerations into the software development lifecycle, ensuring performance is a key focus from the outset. This role will develop and maintain performance testing frameworks and tools, ensuring they are up-to-date with the latest technologies and best practices.
Essential Functions/Responsibilities
Troubleshoots, isolates and resolves applications code issues and other technical problems (hardware, software, Infra and network).
Implement and recommend performance improvements on cloud (GCP/Azure) and on-prem for tiered environments.
Establish and enable golden signal for Application Health, build dashboards, identifying and establishing SLA's, set up alerting, logging and tracing as required.
Use network profiling using tools like WireShark, Fiddler as necessary to troubleshoot issues
Perform root cause analysis of Production performance issues and recommend fixes to developers on corrective actions.
Work with other performance engineers on implementing a Continuous Performance program to support long-term application reliability and growth.
Should be able to set up and run automated performance tests using Docker image to spin up, build and destroy load test infrastructure.
Design, script, configure and run performance tests to validate system performance and stability.
Conduct performance analysis, benchmarking, and modeling to identify performance bottlenecks, optimize system parameters, and guide architectural enhancements.
Actively monitors the systems in PROD/non-prod environments and alerts the core group to prevent issues from happening.
Creation, maintain Performance Test Strategy and roadmap for the org, Automated Test data creation strategy & Reporting strategy etc.
Should be able to research on latest industry trends and enhancements to keep our tech stack latest and up to mark.
Minimum requirements:
Bachelor's Degree in Computer or software engineering
10 years Performance / Software Engineering
Experience in working with enterprise level large systems tuning & troubleshooting.
3+ years of experience in Performance Monitoring tool like Dynatrace , App Dynamics or New Relic.
7+ years of experience in load testing tools like Load Runner , JMeter or Neoload.
1+ years of experience in log monitoring tools like ELK , Splunk , ServiceNow
2+ years of experience working on tools like Jenkins , Github Actions etc.
Preferred qualifications:
Master's Degree in Computer or software engineering
3+ year of experience working database tuning like MongoDB or Oracle or SQL.
2+ years of experience analyzing top running queries in DB & tuning indexes.
1+ years of working experience in application memory management & tuning etc
Director of Information Technology & Security
Security architect job in Lowell, MA
The Company
Privately held company headquartered Northern Massachusetts (Rt 495) the company operates an integrated light manufacturing and distribution center, with two third-party overflow warehouses in the U.S. With approximately $150 million in annual revenue, over 450 employees.
The Position
The company is seeking a Director of Information Technology & Security to be responsible for leading the company's technology foundation across IT operations, infrastructure, cybersecurity, and software engineering. This senior leader will oversee the day-to-day performance, reliability, security, and efficiency of all IT systems and services, while ensuring the successful delivery of custom software solutions that support manufacturing and broader business operations. Reporting to the Chief Technology Officer, this role will also serve as a member of company's Senior Leadership Team. The Director will partner closely with the Director of Digital Transformation and the Director of the Project Management Office (PMO) to drive innovation and digital transformation initiatives, ensuring that technical execution aligns with business goals. As a senior technology leader, this individual will provide leadership continuity and support executive decision-making when needed, helping to keep operations and strategic initiatives on track.
The Director of Information Technology & Security will provide strategic and operational leadership across IT infrastructure, cybersecurity, and software engineering to ensure reliable, secure, and high-performing technology services. This individual will guide the evolution of Company's technology environment, strengthen system reliability and security, and enable scalable digital capabilities that support the needs of a growing manufacturing organization. The Director will also provide strategic guidance to the CTO on operational and technical matters, contributing to long-term IT strategy, technology roadmaps, and budget planning, while championing continuous improvement through analysis of incident trends and service performance. Through cross-functional collaboration and forward-looking leadership, the Director will help ensure Company's technology ecosystem remains robust, efficient, and positioned for long-term success.
Principal Responsibilities & Duties:
Lead IT operations, including infrastructure, networking, system administration, and the Help Desk, ensuring high availability, performance, security, and timely issue resolution while managing IT assets across their lifecycle.
Expand and mature IT service management (ITSM) processes and enforce SLAs/OLAs, driving accountability, continuous improvement, capacity planning, availability management, and disaster recovery aligned with business continuity goals.
Serve as the senior cybersecurity leader, overseeing policies, controls, incident response, and compliance to protect company systems and data.
Provide strategic direction and leadership for software engineering, managing development projects, automation, systems integration, and the Software Development Manager while fostering a high-performance, collaborative culture.
Partner with the Directors of Digital Transformation and PMO to align IT operations and development with innovation priorities, including AI adoption, factory floor automation, advanced analytics, process optimization, and timely project delivery
The Candidate
The company is seeking an experienced and strategic Director of Information Technology & Security to lead and evolve their technology foundation in support of our growing manufacturing organization. The ideal candidate will be an experienced and strategic technology leader with a strong background in IT operations, cybersecurity, infrastructure management, and software engineering. The company seeks a collaborative, proactive, and adaptable leader who can drive operational excellence while fostering innovation and cross-functional alignment. This individual will have a proven track record of leading high-performing IT teams, navigating both operational and project-based work, and influencing stakeholders across departments to deliver measurable results.
This role requires a hands-on, customer-focused, and risk-conscious leader with excellent communication and collaboration skills. A successful candidate will bring strong problem-solving abilities, curiosity, accountability, and a stakeholder-centric mindset, while integrating IT operations with digital transformation initiatives, manufacturing systems, and ERP platforms. This is a flexible hybrid role, with an expectation of at least three days per week in office. During the initial six months, on-site presence will be required four to five days per week to support onboarding and integration.
Summary of Requirements:
Bachelor's degree in Information Technology, Computer Science, or a related field; advanced or security-related certifications (CISSP, CISM, CSSM, CompTIA Security+, ITIL Foundation or higher) a plus.
15+ years of progressive IT operations leadership experience, including infrastructure, cybersecurity, and software engineering.
Proven ability to expand and optimize ITIL-based processes and leverage ITSM platforms to drive process maturity and operational excellence.
Strong understanding of manufacturing systems, ERP platforms, and IT/OT integration.
Hands-on experience leading software engineering teams, managing development projects, automation, and systems integration initiatives.
Skilled in capacity planning, disaster recovery, and business continuity aligned with organizational growth.
Experience managing IT assets, Help Desk operations, and SLAs/OLAs to ensure high availability, performance, and service reliability.
Hybrid role but must be in office at HQ three days per week and four-to-five during first six months of employment.
Oracle Apex Architect
Security architect job in Boston, MA
Responsibilities:
Architect and build scalable, high-availability, cloud-native applications
Lead full-stack development work using Oracle APEX, Java, JavaScript frameworks, and modern backend services.
Design and implement secure RESTful APIs and integration patterns across enterprise systems.
Develop and optimize PL/SQL packages, stored procedures, and functions that implement complex business logic in the Oracle Database.
Perform advanced Oracle APEX development using Universal Theme customization and Redwood design best practices.
Provide Oracle APEX administration services including workspace and user management, performance monitoring, application lifecycle support, and schema maintenance.
Install, configure, upgrade, and manage ORDS to ensure performance, security, and stability of APEX deployments.
Support Snowflake data warehouse development, including creating/maintaining databases, schemas, tables, and views.
Information Security Analyst and Engineer
Security architect job in Boston, MA
ABOUT OUR CLIENT
Our Client is a leader in energy management and power trading, leveraging cutting-edge platforms to deliver secure and resilient operations. With a strong focus on protecting systems, data, and intellectual property, they are committed to building a world-class information security program that supports business growth while staying ahead of emerging cyber threats.
ABOUT THE ROLE
The Information Security Analyst and Engineer will play a key role in safeguarding mission-critical systems, ensuring compliance, and advancing the organization's security maturity. This hybrid role blends hands-on security engineering with proactive monitoring, incident response, and program improvement. The position will collaborate with consultants, managed service providers (MSPs), and internal stakeholders to realize a highly effective security strategy. Reporting directly to the Director of Information Security, the role also provides occasional support to the Infrastructure team with basic system administration and help desk duties.
RESPONSIBILITIES
Develop and implement processes and technologies to enhance the security program and protect business platforms
Monitor security systems and analyze alerts, logs, and reports
Analyze vulnerability reports and track remediation across teams and systems
Provide metrics to evaluate security program effectiveness
Support security training and awareness programs, including phishing campaigns and in-person sessions
Research emerging IT security trends, attack techniques, and defensive measures
Assist in designing secure architectures across applications and infrastructure
Support internal and external risk assessments, vendor reviews, and security audits
Analyze penetration test results and drive remediation
Contribute to security roadmaps and maturity assessments
Safeguard IT assets and intellectual property by recommending best practices and solutions
Participate in incident response planning, investigations, and compliance reviews
Enhance data loss prevention technologies and processes
Respond rapidly to incidents, conduct root cause analysis, and recommend mitigations
Support business continuity and disaster recovery planning and testing
Validate MSP-delivered security solutions to ensure alignment with standards
Use automation to improve efficiency and effectiveness of security processes
Maintain and improve information security policies and ensure compliance
QUALIFICATIONS
Bachelor's degree in Computer Science, Information Security, or a related technical field
3-5 years of IT security experience, with hands-on implementation and analysis
Proficiency with EDR or SIEM solutions for configuration and investigations
Competency with firewalls, email gateways, internet filters, and VPNs
Strong background in network security, protocols, and best practices
Understanding of operating system, network, and application security concepts
Familiarity with the NIST Cybersecurity Framework
Working knowledge of network and data center operations
Experience with hybrid, public cloud (Azure preferred), and SaaS environments
Strong analytical, troubleshooting, and problem-solving skills
Excellent communication skills and attention to detail
Adaptability and eagerness to learn new technologies in a collaborative environment
PREFERRED QUALIFICATIONS
Experience in the energy or financial services industries
Familiarity with regulatory compliance frameworks such as NERC CIP or SOX
Relevant certifications such as CISSP, CompTIA, or GIAC
Experience in Agile and DevSecOps environments
Scripting knowledge in PowerShell and/or Python
Guidewire Architect
Security architect job in Boston, MA
We are seeking a Guidewire Solutions Architect to lead the design and delivery of Guidewire InsuranceSuite solutions (PolicyCenter, BillingCenter, ClaimCenter). The candidate will define technical architecture, guide development teams, and ensure alignment with business, functional, and integration requirements.
Responsibilities:
Architect end-to-end Guidewire solutions aligned with business needs.
Lead design of configurations, customizations, integrations, and data models.
Apply Guidewire best practices, including SBT and cloud-ready patterns.
Collaborate with business and technical teams to refine requirements.
Oversee integration with external systems using REST/SOAP, messaging, and event frameworks.
Review technical designs, code, and ensure quality delivery.
Support release planning, upgrades, and cloud implementations.
Required Skills:
8+ years IT experience; 5+ years on Guidewire (PC/CC/BC).
Strong knowledge of Gosu, PCF, data model, rating, and integrations.
Experience with Guidewire Cloud and SBT.
Strong understanding of P&C insurance processes.
Excellent communication and technical leadership skills.
About ValueMomentum:
ValueMomentum is a leading solutions provider for the global property and casualty insurance industry, supported by deep domain and technology capabilities. We help insurers stay ahead with sustained growth and high performance for enhancing stakeholder value and fostering resilient societies. Trusted by over 100 insurers, ValueMomentum is one of the largest services providers exclusively focused on property and casualty. ValueMomentum is headquartered in Piscataway, NJ, with state-of-the-art delivery centers in Piscataway, NJ; Hyderabad, Pune, and Coimbatore in India; Toronto in Canada; and London in the United Kingdom.
Cloud Architect
Security architect job in Quincy, MA
Dear Candidate,
We do have an job opportunity, pls go through the JD mentioned below and apply if you are interested.
Job Title: AWS Cloud Engineer, SSO (OIDC/SAML), Application Development
Job type: FTE /CWR
Experience: 12+ years (with strong hands-on AWS and Application Development experience)
Role Summary
We are seeking an experienced AWS Cloud Engineer with deep expertise in Single Sign-On (SSO) integrations using OIDC/SAML, and strong software development skills. This role will design, build, secure, and operate scalable cloud-native data platforms, with a focus on identity federation, access governance, and application development.
The ideal candidate combines cloud infrastructure engineering, identity and access management (IAM), and hands-on development to deliver secure, reliable, and automated solutions.
Key Responsibilities
Cloud & Data Platform Engineering
Implement network architectures using VPCs, subnets, security groups, NACLs, VPC endpoints, and private connectivity.
SSO & Identity Federation
Design and implement Redshift SSO using OIDC and/or SAML 2.0.
Integrate Redshift with enterprise IdPs (e.g., Okta, Azure AD, Ping, Auth0, AWS IAM Identity Center).
Configure IAM roles, policies, and trust relationships for federated access.
Implement role-based access control (RBAC) and fine-grained authorization within Redshift.
Troubleshoot authentication, authorization, token, and federation issues end-to-end.
Development & Automation
Develop cloud-native applications, services, or utilities using Python, Java, or similar languages.
Build automation for infrastructure provisioning using IaC (Terraform, AWS CDK, or CloudFormation).
Develop CI/CD pipelines for infrastructure and application deployments.
Create APIs, Lambda functions, and event-driven workflows to support data and identity use cases.
Security, Governance & Compliance
Apply AWS security best practices, including least privilege, encryption at rest and in transit, and secure secrets management.
Implement audit logging and monitoring using CloudTrail, CloudWatch, and AWS Config.
Support compliance requirements (SOC2, HIPAA, PCI, or similar, as applicable).
Required Qualifications
10+ years of hands-on experience in AWS cloud engineering.
Proven experience implementing SSO using OIDC and/or SAML 2.0.
Proficiency in at least one programming language (Python preferred; Java acceptable).
Strong knowledge of AWS IAM, STS, role assumption, and federated identity models.
Experience with Infrastructure as Code (Terraform, CDK, or CloudFormation).
Solid understanding of networking concepts (DNS, TLS, VPC routing, private endpoints).
Experience with Linux-based environments and scripting.
Preferred / Nice-to-Have Skills
Experience with AWS IAM Identity Center (SSO).
Familiarity with Okta, Azure AD, PingFederate, or Auth0 integrations.
Exposure to containerization (Docker) and orchestration (ECS/EKS).
Regards,
Suhas Gharge
Cloud Architect
Security architect job in Boston, MA
AWS Migration Architect
Duration: Contract
About Smart IT Frame:
At Smart IT Frame, we connect top talent with leading organizations across the USA. With over a decade of staffing excellence, we specialize in IT, healthcare, and professional roles, empowering both clients and candidates to grow together.
Note: Need exp on migration with cloud formation
Job Description:
Design and deploy highly available fault tolerant and secure applications on AWS Develop architecture diagrams and solution blueprints aligned with business requirements
Infrastructure Automation
Implement Infrastructure as Code lac using Terraform or AWS CloudFormation Automate deployments and enforce consistency across environments
Migration Modernization
Lead migration of on premise workloads to AWS cloud
Optimize cloud spend and implement cost control strategies
Security Compliance
Apply today or share profiles at **********************
AI Architect (Pharma Manufacturing)
Security architect job in Boston, MA
Experience: 10+ years (12-15+ preferred)
About the Role
Maitsys Inc. is seeking a highly skilled AI Architect with strong experience in pharmaceutical manufacturing, GxP/GMP environments, and enterprise-scale AI solution design. This role will define AI architecture frameworks, lead the technical design of GenAI and intelligent automation platforms, and ensure full alignment with regulatory and compliance requirements.
The AI Architect will support strategy, solutioning, and technical delivery across AI initiatives that include GenAI, agentic AI, RAG systems, manufacturing intelligence, and data-driven decision automation. This role requires deep architecture expertise, strong cross-functional collaboration, and the ability to translate complex business needs into scalable AI solutions.
Key Responsibilities
AI Architecture & Technical Leadership
Architect end-to-end AI solutions leveraging:
GenAI, LLMs, agentic AI
RAG architectures and vector databases
MLOps platforms and cloud AI services
Develop enterprise AI blueprints, design patterns, and reusable frameworks.
Ensure architecture meets GxP/GMP, ALCOA+, 21 CFR Part 11, and Annex 11 requirements.
Support AI platform integration across MES, LIMS, QMS, ELN, SCADA, ERP, and manufacturing data systems.
Provide architectural governance and lead technical design reviews.
AI Strategy Support & Business Advisory
Partner with manufacturing, QA/QC, labs, and supply chain stakeholders to identify high-value AI use cases.
Translate business needs into AI-enabled workflows and automation opportunities.
Support preparation of AI roadmaps, maturity models, and implementation strategies.
Facilitate workshops to drive AI readiness and operational adoption.
Solution Delivery & Technical Translation
Convert business processes into detailed architectural and technical requirements.
Guide engineers, data scientists, and platform teams throughout model development and deployment.
Ensure best practices for:
Model performance & reliability
Explainability
Validation & compliance
Secure and scalable deployment
Oversee implementation of AI agents, copilots, knowledge assistants, and domain-specific automation solutions.
Compliance, Governance & Data Integrity
Architect AI systems aligned with:
GMP/GxP
21 CFR Part 11
EU Annex 11
CSV/CSA guidelines
ALCOA+ principles
Collaborate with QA, validation, cybersecurity, and compliance teams to ensure proper documentation and controls.
Practice Enablement & Cross-functional Leadership
Mentor junior architects and engineering teams.
Contribute to accelerators, playbooks, reusable assets, and architectural standards.
Support proposal development, pre-sales activities, and client advisory discussions.
Represent Maitsys in industry forums and thought leadership initiatives.
Required Qualifications:
10-15+ years of experience in Pharma, Biotech, or other regulated manufacturing environments.
Strong understanding of GxP/GMP, CSV/CSA, and regulatory compliance frameworks.
Deep expertise in designing enterprise AI/ML, GenAI, and agentic AI architectures.
Hands-on experience with:
OpenAI, Azure OpenAI, Anthropic, or similar LLM platforms
RAG architectures, prompt engineering, vector databases
AWS, Azure, or GCP cloud ecosystems
MLOps, model governance, CI/CD, monitoring, and validation
Proven ability to influence senior stakeholders and communicate with both technical and business teams.
Experience leading cross-functional solution delivery teams.
Preferred Qualifications:
Experience with GAMP 5, AI validation frameworks, or regulated system integration.
Familiarity with:
MES (Werum/Siemens)
LIMS (LabWare/STARLIMS)
QMS (TrackWise/Veeva)
Manufacturing data lakes and historian systems
Background in consulting, digital transformation, or enterprise architecture.
Certifications such as TOGAF, MBA, or an advanced degree in AI/ML/Data Science.
Why Join Maitsys?
Drive AI transformation in global pharmaceutical manufacturing.
Lead enterprise-level GenAI and automation initiatives.
Collaborate with a fast-growing, innovation-focused organization.
Opportunity to shape and scale Maitsys's AI architecture practice.
Work closely with executive leadership in a strategic role.
Corporate Security (Pharmaceutical Client): $19.50/hour
Security architect job in Boston, MA
Security Officer
We help make your world a safer place.
Securitas is a global company that offers the most advanced and sustainable security solutions in the industry. We are located in 47 countries and have 355,000 employees worldwide and over 150,000 clients.
Securitas plays an essential role for our clients and in society. The Security Officer position helps maintain a safe and secure environment for our clients by actively monitoring the premises, including patrolling a variety of locations. They preserve order while enforcing regulations and directives for a client site pertaining to personnel, visitors, and the area. Frequently our Security Officers will provide customer service and information to the client's employees and customers.
We are driven by a clear corporate culture and purpose, which helps us live according to our values of Integrity, Vigilance, and Helpfulness. These values are at the heart of our culture, help define who we are and guide our actions.
No experience necessary! If you have retail, food service or hospitality industry background you are a great fit for this role; if not, we will provide you with the training and everything you need for a great introduction to a career in the security industry.
Are you interested in being part of our Team?
Apply quickly and efficiently online
Interview from the convenience of your own home
Weekly pay
Competitive benefits
Flexible schedules
With over 80 years of protecting the things that matter, we've seen more than most. That's why Securitas is the partner of choice for companies and an employer of choice for candidates worldwide.
See a different world.
EOE/M/F/Vet/Disabilities
#MetroBoston
#J-18808-Ljbffr
SAP Architect
Security architect job in Lakeville, MA
We are looking for SAP Architect with SAP Basis, Security, SAP RISE, IBP and SAC .
Responsibilities include SAP BASIS and integrations Center of excellence (COE) aligned with the new RISE implementation, optimizing SAP Active Attention services to mitigate project risks, and ensuring adherence to clean-core best practices.
SAP Security model and License review. Help us make sure we are effectively setting up roles to stay within (or close to) of SAP license count:
Monitoring
Planning and executing patches and changes
Communication of changes and downtime and escalations
Thank You
Kanishk Pratap
***************************
Google Cloud Security Architect
Security architect job in Boston, MA
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional Security Engineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
Director, Information Security
Security architect job in Boston, MA
Extensive knowledge of HIPAA and HITECH. Knowledge of and experience with Information Security frameworks such as HiTRUST, NIST, or ISO 27001. Bachelor's degree in information security, information assurance, information technology, computer science, or a related discipline.
Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or related certification.
Five (5) years in an information security operations or management role.
Passion for the mission of Health Leads and strong commitment to Health Leads' core values: belief in collective strength and the power of shared work, constant and courageous learning, celebrating our victories and each other, and stepping up leaders in a common vision.
Experience with information security for cloud environments and/or software-as-a-service (SaaS) platforms.
Knowledge of security-related technologies and processes, including but not limited to: data loss prevention (DLP), identity and access management (IAM), endpoint security, vulnerability and configuration management, security information and event management (SIEM), incident response and digital forensics, disaster recovery/business continuity planning, network security (LAN/WAN).
Ability to communicate complex ideas and information both
verbally
and writing, in a clear, concise, and effective manner to technical and non-technical audiences including customers and colleagues.
Superior capabilities for partnering;
ability to be effective as both a team member and as a leader of teams in defining objectives, staying on task and reaching consensus;
soliciting participation, challenging ideas and summarizing accomplishments and planned actions.
Show integrity and ethical behavior; respect confidentiality, business ethics and organizational standards.
Ability to
formulate
the cost benefit of security initiatives in the context of
overall
business risk mitigation and the organization's operational objectives.
Ability to compare, contrast and
prioritize
among alternative approaches to meet those objectives.
Systems Security Engineer
Security architect job in Taunton, MA
Basic Qualifications
RRequires a Bachelor's degree in Systems Engineering, or a related Science, Engineering, Technology or Mathematics field. Also requires 5+ years of job-related experience, or a Master's degree plus 3 years of job-related experience. Agile experience preferred.
CLEARANCE REQUIREMENTS:
Department of Defense Secret security clearance is required at time of hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibilityrequirements for access to classified information. Due to the nature of work performed within our facilities, U.S.citizenship is required.
Responsibilities for this Position
We are seeking a Systems Security Engineer who has experience in the design and development of NSA-certified Cybersecurity devices.
Key Responsibilities:
Design and develop specifications for mission-critical NSA-certified Cybersecurity devices
Collaborate with software and validation engineering teams to deliver high-speed data solutions
Develop real-time multi-threaded Embedded System architecture using Model-based Systems Engineering (MBSE) tools and techniques
Analyze and maintain system security requirements throughout product development lifecycle
Conduct trade studies, perform functional analysis, and design system security.
Preferred Skills and Experiences:
NSA approved Cryptography/Encryption
Security requirements analysis
Real-Time multi-threaded Embedded System architecture and development
Model-based Systems Engineering (MBSE)
CISSP certification or similar
INCOSE ASEP, CSEP, or ESEP certification
We value candidates who possess:
Drive to expand knowledge and experience in designing complex systems
Ability to define project scope, schedule, and expected results
Initiative to complete assignments and ability to engage in technical direction and leadership
Our Commitment to You:
An exciting career path with opportunities for continuous learning and development
Research-oriented work with award-winning teams
Competitive benefits package
#CJ3
Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $127,432.00 - USD $140,000.00 /Yr. Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
Auto-ApplyInformation Security Manager
Security architect job in Boston, MA
Are you a Cybersecurity compliance expert ready to take the lead in a dynamic, high-impact role? Join a globally recognized firm where you'll play a key role in shaping and strengthening our cybersecurity strategy. This is your chance to make a difference in a fast-paced, professional environment that values innovation, collaboration, and technical excellence.
Why You'll Love This Role:
Drive Security Initiatives - Lead firmwide cybersecurity programs, ensuring compliance with ISO 27001 and other industry standards.
Be a Decision-Maker - Approve security risks, implement best practices, and enhance policies to safeguard critical systems.
Third-Party & Risk Management - Oversee vendor risk assessments, vulnerability management, and client security audits.
Lead & Mentor - Supervise a Compliance Analyst and provide strategic guidance across teams.
Innovate & Protect - Collaborate with IT leadership to integrate cutting-edge security solutions into firm operations.
What You Bring to the Table:
5+ years of cybersecurity experience in a complex IT environment.
Strong knowledge of security frameworks (ISO 27001, NIST, etc.).
Hands-on experience with security tools, compliance audits, and risk assessments.
Leadership experience with a passion for mentoring and developing security professionals.
Bachelor's degree in Cyber Security, Computer Science, or a related field. Security certifications (CISSP, CRISC, etc.) strongly preferred.
Offer includes:
Competitive salary: $145,000 - $170,000
Hybrid work environment
Excellent benefits package
A culture of excellence, diversity, and professional growth
Ready to step into a leadership role where your expertise will make a real impact? Apply today and be a key player in securing the future of a top international firm.
Apply to this post or email your resume directly to Dan Gilliam, email: ****************************
Tags: Cybersecurity, IT, ISO, Compliance, Security Manager
Easy ApplySecurity Research Architect
Security architect job in Burlington, MA
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
The Research Architect for Dynamic Application Security Testing (DAST) is responsible for overseeing the security capabilities of Veracode's dynamic scanner offerings.
Responsibilities
· Conduct research and development for automating web application attacks.
· Conduct research for improving techniques for detection of vulnerabilities.
· Develop attack signatures for specific classes of vulnerabilities.
· Define developer focused specifications for new attacks.
· Work with management to set priorities and goals for Veracode's DAST offerings.
· Keep up to date with the latest features in web browsers, web application development techniques, and web application vulnerabilities.
· Develop test cases to demonstrate vulnerabilities and ensure products' ability to identify them in an automated fashion.
· Actively engage with the security research community through speaking at industry conferences, publishing independent research, posting on the Veracode blog, and other means.
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
Skills & Requirements
This is a deeply technical role that requires significant knowledge around modern web development technologies and practices. You not only understand common web vulnerabilities, but understand how to find them in an automated fashion. You will need to follow upcoming trends and how they may have implications for security. It's also crucial that you're an effective communicator, as you'll collaborate frequently with engineers to guide them in implementing the specifications you create. You'll also need:
· 5+ years of practical application security work experience, preferably including some or all of the following: source code auditing, penetration testing, product assessments, vulnerability research, reverse engineering, and related pursuits.
· 3+ years of software development experience.
· Deep understanding of web browsers (i.e. security features, DOM, JavaScript, etc.).
· Deep understanding of common client side and server side web application vulnerabilities and how to exploit them (e.g. SQL injection, cross-site scripting, etc.).
· Ability to learn new programming languages and/or technologies quickly and independently
· Ability to balance novelty of attacks with the restrictions automation demands.
· Experience with automated application security testing products (SAST, DAST, etc.) a plus.
· Genuine enthusiasm, not just aptitude, for application security. Up to 20% of your time will be allocated for independent research, and this means you'll need interesting, relevant project ideas.
· Prototyping ability - the skill to hack something together quick and dirty to solve a problem and demonstrate feasibility.
· Excellent attention to detail, quality, and customer satisfaction. Consulting experience a plus.
· Strong analytical, organizational, and technical writing skills.
· B.S. in Computer Science or equivalent industry experience.
Physical Security Systems Engineer
Security architect job in Wilmington, MA
Overview
Join Allied Universal Technology Services, a global leader in transforming the security industry. We integrate advanced technology - video surveillance, electronic access control, alarm monitoring and augmented solutions with physical security to help people feel safe. Whether you're an installation technician, service technician, engineer, or project manager, you'll discover rewarding opportunities to grow your career as part of a valued team.
Apply today and be phenomenal-build a meaningful career while protecting what matters most through innovative security technology.
Job Description
Allied Universal is looking to hire a Solution Engineer. The Solution Engineer creates all post-sale security systems design, engineering, value engineering, and documentation. The position is part of the Solutions Engineering department, which is responsible for translating, expanding, finalizing, and documenting pre-sales proposals and technical designs produced by Sales and Solutions Architecture in pre-sale systems architecting and quoting. This position works closely with Sales, Solutions Architecture, Operations, and external customers as required.
The primary work products for the Solution Engineer are security system and construction technical drawings, including custom installation drawings and instructions, network design diagrams, riser diagrams, typical installation diagrams, point-to-point system schedules, door hardware schedules, document redlining, functional narratives describing systems operations, and as-built documentation.
RESPONSIBILITIES:
Creates and updates comprehensive post-sale engineering packages illustrating device locations, IDF/MDF room layouts, SOC/GSOC layouts, console designs, installation diagrams, riser diagrams, network designs, etc.
Creates and updates performance-based and product-based specifications
Creates and updates pre-fabrication submittal packages as specified by architects and engineers for their approval prior to installation
Develops and maintains as-built record documentation over the life cycle of various projects and follow-on MAC work
Utilizes and contributes to a comprehensive library of standard post-sale engineering documents, templates, and standards, as well as project-specific and customer-specific submittals
Ensures effective value engineering by assuring technical compliance while at the same time reducing Allied Universal Technology Services costs whenever possible
Reviews AUTS proposals both pre-sale and post-sale to scrutinize selected products for applicability and specification compliance
Collaborates with AUTS's product suppliers to ensure the desired functionality of selected products.
Consistently applies AUTS's standards for installation
Contributes to AUTS internal guidelines for Solutions Engineering engagement and post-sale systems engineering
QUALIFICATIONS (MUST HAVES):
A minimum of five (5) years of experience in electronic security systems design / engineering
In-depth knowledge of security system design best practices and product applicability, including products like:
Video surveillance and related technologies (Analog, IP, Codecs, VMS)
Access control and related technologies (card access, biometrics, PIV, FIPS-201, HSPD-12, various processor panels, electric locking hardware, etc.)
Physical intrusion detection (Bosch, DMP, etc.)
Software House, Lenel, Amag, Brivo, Genetec, and Avigilon systems architectures
Computer software skills to include: AutoCAD and associated rendering applications, MS Office, Acrobat Writer, and Visio
Ability to read and understand complex architectural and engineering drawings
Working knowledge of AC and DC circuitry, voltage drop calculations, and wire sizing
Ability to collaborate with diverse teams of technical designers and engineers
Ability to simultaneously work on multiple large, complex projects
Good written and verbal communication skills
Strong analytical decision-making capabilities
Self-motivated with the ability to influence others
PREFERRED QUALIFICATION (NICE TO HAVES):
Manufacture certifications
PMP/PSP certifications
A bachelor's or associate's degree in electrical engineering or equivalent is considered a plus
Ability to plan, size, and design enterprise-class IT network and storage solutions, including products like:
Virtualization technologies such as VMware vSphere and View
Data-center networking technologies such as Cisco Nexus
Storage Area Network technologies such as NetApp or EMC
Load balancing / firewalling technologies such as Cisco ACE or Cisco ASA
Data-center protocols such as Fibre Channel, NFS, IP, iSCSI, DCE
Physical Security Information Management (PSIM)
BENEFITS:
Salary: $80,000 - 115,000 / annually
Medical, dental, vision, retirement plan, basic life, AD&D, and disability insurance
Eight paid holidays annually, five sick days, and four personal days
Vacation time offered at an accrual rate of 3.08 hours biweekly. Unused vacation is only paid out where required by law
#LI-EL1
Closing
Allied Universal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. For more information: ***********
If you have difficulty using the online system and require an alternate method to apply or require an accommodation, please contact our local Human Resources department. To find an office near you, please visit: ***********/offices.
Requisition ID
2025-1495451
Manager, Information Security
Security architect job in Boston, MA
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
* Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
* Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
* Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
* Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
* Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
* Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
* Oversee security awareness training programs for all employees to promote a culture of security consciousness.
* Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
* Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
* Work on "special projects" as assigned by the Chief Information Officer.
* Other duties as assigned.
Requirements
* Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
* Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
* Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
* Experience leading security incident response and forensic analysis.
* Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
* Knowledge of networking principles, including wireless networking.
* Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
* Experience working with Active Directory and Google Cloud Platform.
* Ability and willingness to learn new technologies.
Preferred Background/Skills
* Professional certifications such as CISSP, CISM, or relevant SANS certifications.
* Experience with Governance, Risk, and Compliance (GRC) tools and processes.
* Exceptional organizational skills, with the ability to prioritize projects and tasks.
* Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
* Ability to write reports and document steps for knowledge sharing.
* Ability to work efficiently and independently with minimal supervision.
* Excellent customer service and communications skills.
Education
* Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
* A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
* 3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
* Mental Health and Wellness benefits
* BCBS Dental
* Discounted vision services
* 13 paid holidays and generous paid time off for sick, vacation, and personal days
* Employer-paid life insurance, and short-term and long-term disability
* Voluntary Insurance: life, critical illness, hospital indemnity, accident,
* Voluntary Benefits: employee discounts and pet insurance
* 9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
* Qualified Public Service Loan Forgiveness Employer
Manager, Information Security
Security architect job in Boston, MA
Full-time Description
New England College of Optometry seeks an entry level Information Security Manager to develop, implement, and oversee a robust information security strategy and program. This critical role involves establishing and enforcing policies, procedures, and technologies to protect the confidentiality, integrity, and availability of institutional and student data. The Information Security Manager will be responsible for risk assessment, incident response, security operations, and ensuring compliance with all relevant regulations and standards. This role requires strong leadership, technical expertise, and excellent communication skills to collaborate effectively across the institution.
Responsibilities
Develop, implement, and oversee a robust information security strategy and program in alignment with institutional goals and industry best practices.
Establish and maintain institutional information security policies, standards, and guidelines, ensuring they are regularly reviewed, updated, and communicated.
Manage security operations, including monitoring, detection, prevention, response, and analysis of security threats and vulnerabilities.
Lead and coordinate the information security incident response team, managing security breaches & ensuring timely and effective resolution and post-incident analysis.
Conduct regular risk assessments and penetration testing to identify and mitigate potential security vulnerabilities across systems, networks, and applications.
Ensure compliance with national and international regulatory frameworks (e.g., FERPA, HIPAA, ISO 27001, SOC 2) relevant to the organization.
Oversee security awareness training programs for all employees to promote a culture of security consciousness.
Manage the security budget and evaluate, select, and implement appropriate security tools and technologies.
Report on the status of the security program, vulnerabilities, and incidents to executive leadership.
Work on "special projects" as assigned by the Chief Information Officer.
Other duties as assigned.
Requirements
Experience in designing, implementing, and managing enterprise-level information security programs and strategy.
Technical knowledge of network security, application security, cloud security (e.g., AWS, Azure, GCP), and endpoint protection technologies.
Understanding of risk management methodologies and security frameworks (e.g., ISO 27001, NIST, CIS Controls).
Experience leading security incident response and forensic analysis.
Strong communication and interpersonal skills, with the ability to explain complex security issues to technical and non-technical audiences.
Knowledge of networking principles, including wireless networking.
Excellent written and verbal communication skills, professional appearance, punctuality and a sense of urgency.
Experience working with Active Directory and Google Cloud Platform.
Ability and willingness to learn new technologies.
Preferred Background/Skills
Professional certifications such as CISSP, CISM, or relevant SANS certifications.
Experience with Governance, Risk, and Compliance (GRC) tools and processes.
Exceptional organizational skills, with the ability to prioritize projects and tasks.
Familiarity with scripting languages (e.g., Python, PowerShell) for security automation.
Ability to write reports and document steps for knowledge sharing.
Ability to work efficiently and independently with minimal supervision.
Excellent customer service and communications skills.
Education
Bachelor's degree in Computer Science, Information Technology, Information Security, or a related technical field.
Experience
A minimum of 2 years of progressive experience in the field of information security.
NECO is an Equal Opportunity employer and encourages all qualified candidates to apply.
New England College of Optometry offers a robust benefits program including:
3 plan options for BCBS medical coverage (employer subsidized at 75% or greater)
Mental Health and Wellness benefits
BCBS Dental
Discounted vision services
13 paid holidays and generous paid time off for sick, vacation, and personal days
Employer-paid life insurance, and short-term and long-term disability
Voluntary Insurance: life, critical illness, hospital indemnity, accident,
Voluntary Benefits: employee discounts and pet insurance
9% employer contribution to a 403(b) retirement plan after 1 year of service with no vesting schedule or match requirement
Qualified Public Service Loan Forgiveness Employer