Security architect jobs in West Des Moines, IA - 43 jobs
All
Security Architect
Security Engineer
Information Security Engineer
Senior Security Engineer
Information Security Director
Senior Security Analyst
Network Security Architect
Senior Information Security Engineer
Security Architect
Deloitte 4.7
Security architect job in Des Moines, IA
Are you an experienced, passionate pioneer in technology who wants to work in a collaborative environment? As an experienced SecurityArchitect you will have the ability to share new ideas and collaborate on projects as a consultant without the extensive demands of travel. If so, consider an opportunity with Deloitte under our Project Delivery Talent Model. Project Delivery Model (PDM) is a talent model that is tailored specifically for long-term, onsite client service delivery.
Recruiting for this role ends on 03/13/2026
Work you'll do/Responsibilities
* Responsible for supporting the team with secure network designs and regulatory requirements.
* Translate business objectives and risk management strategies into practical, secure technological solutions.
* Ensure security principles are infused at every level of the enterprise.
* Communicate regularly with Engagement Managers (Directors), project team members, and representatives from various functional and / or technical teams, including escalating any matters that require additional attention and consideration from engagement management
* Independently and collaboratively lead client engagement workstreams focused on improvement, optimization, and transformation of processes including implementing leading practice workflows, addressing deficits in quality, and driving operational outcomes
The Team
Our Cyber Operate offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.
Qualifications
Required
* Bachelor's degree, preferably in Computer Science, Information Technology, Computer Engineering, or related IT discipline; or equivalent experience
* 5+ years of proven experience as a SecurityArchitect
* Experience with information security engineering
* Experience with security compliance (NIST Cybersecurity Framework)
* Strong understanding of securearchitecture methodologies.
* Experience with incidence response
* Limited immigration sponsorship may be available
* Ability to travel 10%, on average, based on the work you do and the clients and industries/sectors you serve
Preferred
* Experience with Security Operations
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $90,000 to $150,000.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
Additional Requirements
Information for applicants with a need for accommodation: ************************************************************************************************************
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose
Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte Consulting LLP, a subsidiary of Deloitte LLP. Please see ********************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers
Requisition code: 321158
Job ID 321158
$90k-150k yearly 4d ago
Looking for a job?
Let Zippia find it for you.
Product Security Engineer, Instagram
Meta 4.8
Security architect job in Des Moines, IA
The Instagram Security Ecosystems team is seeking a product-focused security engineer interesting in enabling Instagram product teams to develop features with a focus on security and user safety. You will be relied upon to directly work with Instagram engineers, hardening both product features and our protective frameworks that make life harder for bad actors on the Instagram platform.
**Required Skills:**
Product Security Engineer, Instagram Responsibilities:
1. Threat Modeling and SecurityArchitecture: Work directly with product managers and technical leads on threat models and securityarchitecture for novel Instagram features or products
2. Security Reviews: Perform manual design and implementation reviews of web, mobile, and native code
3. Developer Guidance: Provide guidance and education to developers that help prevent the authoring of vulnerabilities
4. Automated Analysis and Secure Frameworks: Work with other security teams to improve Instagram's static and dynamic analysis and frameworks to scale coverage
5. Bug Bounty: Help provide technical guidance to our world class bug bounty program and independent security researchers
6. Industry Impact: Push the industry forward through conference talks and open source projects to contribute broadly to security for the world
**Minimum Qualifications:**
Minimum Qualifications:
7. B.S. or M.S. in Computer Science, Cybersecurity, or related field, or equivalent experience
8. 8+ years of experience finding vulnerabilities in interpreted languages (Python, PHP)
9. Extensive, proven experience in threat modeling and secure systems design
10. Experience with exploiting common security vulnerabilities
**Preferred Qualifications:**
Preferred Qualifications:
11. Product software engineering or product management experience
12. Experience in security consulting or other leadership-facing security advisory roles
13. Familiarity with cybersecurity investigations, abuse operations, and/or security incident response
14. Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
**Public Compensation:**
$184,000/year to $257,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
$184k-257k yearly 60d+ ago
Associate Information Security Director
Direct Staffing
Security architect job in Johnston, IA
Johnston
Exp 2-5 years
Degree Bachelors
Relo
Bonus
Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement.
As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations.
What You'll Do
Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will:
• Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company.
• Act as the single point to accountability and delivery for President, General Counsel and IT Director.
• Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets.
• Develop and implement information security strategy, assuring alignment with the GSEC security strategy.
• Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services.
• Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders.
• Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed.
• Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls.
• Participate in the strategic planning and budgeting processes.
• Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance.
• Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services.
• Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures.
• Partner with Supply Management and Legal organizations to review vendor contracts and suppliers.
• Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees.
• Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures.
• Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc.
Qualifications
We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require:
• 8+ years of direct information security experience within the finance and banking industry.
• Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function.
• Certified Information Systems Security Professional (CISSP) certification.
• Project management skills; financial / budget management, scheduling and resource management.
• Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences.
• High degree of initiative and dependability.
• High level of personal integrity, and the ability to professionally handle confidential matters.
• Good understanding of risk management methodologies and implementation in an IT organization.
• Proven ability to manage to financial goals, both in own area, and in support of a larger entity.
• Proven ability to build strong teams; recruit top talent and develop colleagues at all levels.
• Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done.
• Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat.
• Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications.
• Collaborative mindset, with ability to achieve creative, win-win solutions.
A strong candidate will also have:
• Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans.
• Strong interest in and proven track record with challenging assignments.
• Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc.
• Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc.
• Additional certifications such as CISA, CISM, CRISC, CPP, CFE.
What You'll Get
At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package.
Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile?
The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Direct Staffing Inc
$101k-152k yearly est. 60d+ ago
Senior Analyst, Security Compliance (SOX IT)
Coinbase 4.2
Security architect job in Des Moines, IA
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
Coinbase stores more digital currency than any company in the world, making us a top tier target on the internet. Security is core to our mission and has been a key competitive differentiator for us as we scale worldwide. Essential to scaling is building and running a security compliance program that reflects how we protect the data and assets in our care, to open the doors with customers, regulators, auditors, and other external stakeholders. If you love working with fast moving companies to grow and scale security compliance engines and create positive change across the business, we'd like to speak with you about joining our team. Coinbase is looking for a Security Compliance Senior Analyst to drive the second line of defense IT SOX initiatives and help mature the IT SOX program.
*What you'll be doing (ie. job duties):*
* Lead Security and IT initiatives to support the SOX roadmap and advance program maturity
* Assist with SOX planning activities, including scoping of IT systems and creating training material to owners in preparation for SOX audit
* Lead security control gap assessments over SOX control environment, recommend remediation plans and track through completion
* Assess SOX implications of new products, update relevant controls, and communicate requirements to product organization and other stakeholders
* Provide ongoing reporting to stakeholders and leadership on above responsibilities and communicate progress and escalations management
* Perform SOX audit and control impact analysis as a result of security and technology incidents and partner with owning teams on control uplift activities
* Build close relationships with stakeholder teams including Security, IT, Infrastructure, Engineering, Data, and Finance to advise on SOX requirements and ensure excellence in control ownership
* Create and improve SOX procedural documentation, including process documentation, data flow diagrams, and uplifting templates
* Work closely with internal and external auditors to educate them about a complex technology control environment
* Oversee quality of audit initiatives, identify and analyze process gaps, provide guidance and expertise to team members
* Develop creative solutions to prove risk mitigation and solve for complex audit problems faced by the crypto industry
* Identify opportunities to address systemic program challenges, recommend solutions and drive efficiency through AI and automation
*What we look for in you (ie. job requirements):*
* Minimum of 5+ years of security/IT compliance or equivalent experience
* Strong knowledge and hands-on experience in Internal Controls over Financial Reporting, SOX 404 frameworks, and testing to support compliance
* Prior experience at a big 4 accounting firm
* Experience leading compliance initiatives from start to finish
* Proven understanding and audit experience of cloud technologies, AWS preferred
* Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations with minimal supervision
* Strong oral and written communication skills
* Ability to multitask, direct cross functional work, and hold others accountable to committed deadlines in a fast paced environment
* Ability to communicate with technical / non-technical stakeholders to align on shared outcomes
* Experience in Financial services, Big Tech, or FinTech
*Nice to haves:*
* BA or BS in a technical field or equivalent experience
* Security certifications e.g. CISA, CISSP, CISM or other relevant certifications
* Experience auditing in Crypto space
Position ID: P73675
\#LI-Remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$167,280-$196,800 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
$167.3k-196.8k yearly 60d+ ago
Senior Information Security Engineer
Heartland Business Systems 4.1
Security architect job in West Des Moines, IA
This role will provide security Incident Response (IR) services for our customers. IR activities would include all aspects of analysis, containment, eradication, and recovery, and would entail actions such as log reviews, malware analysis, evidence collection, and other forensic activities that are part of a cybersecurity incident investigation.
This role will also advise on and deploy security technical solutions as well as perform internal and external oriented security assessments. These assessments range from deep technical security assessments, social engineering, broad-based risk, and security posture assessments. These assessments and services may be performed as individual projects or in a virtual Security Engineer (vSE) role. Additionally, this role will work with the Practice Manager - Digital Forensics & Incident Response to identify and develop new technical cybersecurity offerings.
Roles and Responsibilities/ Essential Functions:
Work as a member of the HBS Cybersecurity team that provides consultative and proactive security related support to Heartland's account base.
Lead Incident Response cases from beginning to end, providing consulting and remediation efforts.
Perform forensic analysis to identify systems artifacts which can be used as evidence of the “who, what, when, where, and how” during cybersecurity incident response activities or digital investigations.
Serve as a Virtual Security Engineer (vSE) for customers.
Obtain knowledge on other technologies, as directed by customer demand.
Effectively present and explain security solutions to customers.
Provide sales consultants and fellow Engineers with design assistance, review, validation, and optimization of security technologies and solutions.
Contribute to product selection and research, configuration standards and best practices and educate our sales teams on these products and services so that they can sell them.
Ability to work in a team atmosphere as both a leader and contributor, as assigned. Always maintaining a professional and respectful demeanor.
Cross-training/Mentoring of other HBS employees.
Participate in on-call to support the 24x7 IR services.
Minimum of 1,350 hours billed per fiscal year prorated based on start date. These charge hour requirements will be balanced against professional development and on the job training.
Requirements
Competencies
Accountability - Ability to accept responsibility and account for his/her actions.
Active Listening - Ability to actively attend to, convey, and understand the questions of others.
Adaptability - Ability to adapt to change in the workplace.
Communication - Oral and Written - Ability to communicate effectively with others.
Customer Oriented - Ability to take care of the customers' needs while following company policy.
Decision Making - Ability to make critical decisions while following company procedures.
Problem Solving - Ability to find a solution for or to deal proactively with work-related problems.
Working Under Pressure - Ability to complete assigned tasks during stressful situations.
Independence - Ability to work on your own to drive the desired results on assigned work.
Required Experience:
8+ years of related IT experience
3+ years of AD and Azure experience
Preferred Experience:
2+ years of experience handling and leading IR
Experience with Digital Forensic handling and analysis
Experience with Threat Hunting and analysis
Experience with Active Directory specifically domain recovery
Experience with Configuration on various firewall vendors and VPN
Experience with Office 365 and Exchange
Experience with Virtualization concepts and technologies (VMWare, Hyper-V)
Experience with Data Center Operations (Networking, SAN/NAS, Servers)
Required Skills, Education and/ or Certifications:
Bachelor's degree or equivalent experience
Preferred Skills, Education and/ or Certifications:
CEH and/or CHFI or current industry standard certifications in areas of security expertise
Equal Opportunity Employer - Including Disabled and Veterans
#HBS
$96k-124k yearly est. 60d+ ago
Network and Security Services Solutions Architect*
Accenture 4.7
Security architect job in Des Moines, IA
We Are: Navisite, part of Accenture, has evolved to become a trusted digital transformation partner for growing and established global brands. We provide global capabilities, customer-centric solutions, and flexible approaches that are specifically rightsized for the needs of mid-market and small enterprise customers. This team specializes in digital transformation and managed services with deep expertise in cloud, infrastructure and application services dedicated to assisting clients in building a strong digital core. With experience across multiple cloud providers, enterprise applications and digital technologies, Navisite serves clients in the health and industrial, life sciences, technology, consumer goods and retail industries. Given their customer-centric solutions and flexible approaches, this team is adept at scaling our services for clients seeking to modernize and build more agile, resilient, and scalable businesses. The Navisite team of more than 1,400 members globally joined Accenture in January 2024. As part of Accenture, you will be working with an ambitious, collaborative team more empowered than ever to help customers modernize their IT for the AI era.
You Are:
An Enterprise Solution Architect with deep expertise in network architecture and cybersecurity who can translate complex requirements into clear, value‑led solutions.
You engage confidently with C‑level executives and technical stakeholders, simplify risk and resilience decisions, and shape architectures that are secure, scalable, and compliant.
As a Presales Solution Architect specializing in Security and Network, you will serve as the technical expert and trusted advisor during the sales process, designing secure, scalable, and compliant network and cybersecurity solutions tailored to customer needs and business objectives.
You will collaborate closely with sales, engineering, product management, and customers (including C‑suite) to qualify opportunities, develop solution architectures, lead technical presentations/demonstrations, and ensure successful transition to delivery.
The Work:
You operate as a Solution Architect across opportunities from targeted upgrades to large multi‑tower managed services deals spanning enterprise networking (LAN/WAN/WLAN, SD‑WAN, cloud networking) and security stacks (NGFW, VPN/ZTNA/SASE, IDS/IPS, SIEM/XDR/SOAR, identity‑centric and Zero‑Trust models).
You will co‑create solutions with clients; define operating models, SLAs, and KPIs; and align proposals to compliance frameworks and enterprise governance.
Lead Pre‑Sales Architecture & Solutioning:
* Design and articulate high‑level network and cybersecurity architectures that align with customer requirements, compliance standards, and enterprise IT strategies.
* Define reference designs for SD‑WAN/SASE/Zero‑Trust, cloud networking (Azure/AWS/GCP), segmentation, firewalls, and secure remote access.
* Build delivery models (operate, enhance, transform) with clear SLAs, KPIs, RACI, and transition plans.
Qualify & Propose:
* Collaborate with sales stakeholders to qualify opportunities and craft compelling technical proposals addressing risk, security posture, and network resilience.
* Shape solution scope, assumptions, dependencies, and pricing inputs; contribute to SOWs and commercial terms with Legal/Commercial.
Client Engagements & Demonstrations:
* Lead client engagements, including technical demonstrations, proofs of concept, pilots, and security assessments to evidence value and feasibility.
* Present architecture rationale, trade‑offs, and value realization to IT leadership, CISOs, and business executives.
Trusted Advisory & Best Practices:
* Advise customers on security best practices, emerging threats, network modernization, and resilience improvements.
* Recommend controls and operating models aligned to ITIL, Zero‑Trust, and defense‑in‑depth principles.
Technology Mastery:
* Develop and maintain deep understanding of technologies such as firewalls, VPN/ZTNA, IDS/IPS, SIEM, XDR, SOAR, cloud security platforms, network observability, and automation.
Compliance, Governance & Risk:
* Ensure proposals meet enterprise security governance and regulatory compliance, including risk‑management frameworks and certifications relevant to customer environments (NIST, ISO 27001, PCI, SOC 2, FedRAMP, GDPR, etc.).
* Lead internal Technology Delivery sign‑off aligning scope, risks, commercials, and feasibility.
Cross‑Functional Handover & Delivery Readiness:
* Partner with engineering, delivery, and product teams to ensure smooth handover, readiness, and successful implementation.
* Where appropriate, support early deal stabilization to de‑risk transition.
Thought Leadership:
* Stay updated on industry trends, threat landscapes, and vendor roadmaps to continuously innovate offerings.
* Support technical training, marketing presentations, and participation in industry events.
Travel may range from 0% to 100% depending on deal stage, client discussions, and business need
Qualification
Here's what you need:
* Minimum 8 years in a technology environment, specifically in a Network and Cybersecurity capacity
* Minimum 5 years in solution planning, deal shaping, presales engineering, or enterprise solution architecture.
* Minimum of 2 years of hands‑on experience and knowledge of network architectures (LAN/WAN, SD‑WAN/SDN, cloud networking) and security technologies: firewalls (Palo Alto, Cisco, Fortinet, Check Point), endpoint protection, IDS/IPS, SIEM/XDR/SOAR, ZTNA/SASE, VPN, and cloud security controls.
* Understanding and familiarity with security frameworks and compliance standards (e.g., NIST, ISO 27001, FedRAMP, GDPR) and experience navigating customer accreditation processes.
* Bachelor's degree or equivalent (12 years of work experience). If Associate's Degree: 6 years minimum relevant experience required
Bonus Points if:
* You have relevant certifications (one or more preferred): CISSP, CCNP Security/CCIE Security, PCNSE, NSE, AZ‑500/AZ‑700, AWS Security/Specialty, GSEC/GCIH/GCIA.
* You have experience designing Zero‑Trust, SASE, micro‑segmentation, and cloud‑native securityarchitectures; familiarity with automation/orchestration (Terraform, Ansible, Python).
* You have strong understanding of ITIL service operations and managed‑service delivery models.
Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired as set forth below. We accept applications on an on-going basis and there is no fixed deadline to apply.
Information on benefits is here.
Role Location Annual Salary Range
California $73,800 to $218,800
Cleveland $68,300 to $175,000
Colorado $73,800 to $189,000
District of Columbia $78,500 to $201,300
Illinois $68,300 to $189,000
Maryland $73,800 to $189,000
Massachusetts $73,800 to $201,300
Minnesota $73,800 to $189,000
New York/New Jersey $68,300 to $218,800
Washington $78,500 to $201,300
Locations
$78.5k-201.3k yearly 6d ago
Sr. Security Analyst
Maximus 4.3
Security architect job in Des Moines, IA
Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned.
*This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. *
Essential Duties and Responsibilities:
- Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary.
- Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget.
- Work closely with management and work groups to create and maintain work plan documents.
- Track the status and due dates of projects.
- Manage relationships with project staff responsible for projects.
- Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed.
- Facilitate regular meetings and reviews.
- Adhere to contract requirements and comply with all corporate policies and procedures.
Job Specific Duties and Responsibilities:
-Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects.
-Review project documentation and client materials and provide analysis of technical and security related topics.
-Participate in client meetings and offer observations and insight on technical and security related topics.
-Identify risk areas and potential problems that require proactive attention.
-Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to:
*System Security Plan
*Plan of Action and Milestones (POA&M)
*Security Assessment Plan
*Risk Assessment reports
*CMS ARC-AMPE forms and documentation
*Data Conversion and Migration Management Plan
*Deployment and/or roll-out plans
-Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects.
-Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues.
-Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work.
-Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager.
-Complete project work in compliance with Maximus standards and procedures.
-Support team to complete assigned responsibilities as outlined in the Project schedule.
-Support all other tasks assigned by Senior Manager / Project Manager.
Minimum Requirements
- Bachelor's degree in related field.
- 7-10 years of relevant professional experience required.
- Equivalent combination of education and experience considered in lieu of degree.
Job Specific Requirements:
-Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required.
-Bachelor's degree from an accredited college or university, or equivalent work experience.
-7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry.
-5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks.
-Familiar with operating systems: Windows, Linux/UNIX, OS/X.
-Familiar with AI tools, capabilities.
-Strong command of cloud computing topics.
-Strong command of agile software development practices as well as waterfall development practices.
-Strong desktop software skills: proficient in MS Office, Excel, Word, Project.
-Ability to explain and communicate technical subjects to non-technical audiences.
-Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills.
-Ability to work independently.
-Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
-Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential.
-Excellent verbal and writing skills and be comfortable working with customers.
-Ability to multi-task with supervision.
-Self-motivated fast learner.
Preferred Skills:
-Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid).
-Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional).
EEO Statement
Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.
Pay Transparency
Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.
Accommodations
Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************.
Minimum Salary
$
120,000.00
Maximum Salary
$
140,000.00
$84k-113k yearly est. Easy Apply 6d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security architect job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 60d ago
Senior Technology Security Engineer (IAM)
Pointwest Technologies Corp
Security architect job in Des Moines, IA
About the job
Our client is all about working together to make an impact. As part of our team, you'll have the opportunity to grow, contribute, and gain experience that matters. We strive to be caring leaders, close partners, and responsive experts-always supporting each other to do our best work. Join us, and let's improve lives together.
The Senior Technology Security Engineer will be responsible for the design, build, deploy and support of our clients Privileged Access Management (PAM) platform implemented in CyberArk Cloud, including infrastructure, servers, services and privileged accounts that are part of the overall IT ecosystem.
The Senior Technology Security Engineer will collaborate with various teams to ensure the seamless integration and effective use of CyberArk for managing privileged access, monitoring, and securing sensitive accounts.
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements. Assesses information security risks, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs. Serves as PAM subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation and maintains the vendor relationship. Collects and provides documentation for internal and external audits and assessments. Oversees assigned security tools/services and vendor life cycle management.
Essential Functions
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements.
Identifies information security risks, provides recommendations, builds, and configures solutions, and troubleshoots issues.
Collaborates with IT and security teams on project plans and meets with stakeholders to assess impacts and dependencies.
Leads project activities to ensure timely deliverables and supports the establishment of a roadmap by evaluating and recommending new tools
Leads highly complex information security projects across all security teams.
Designs, builds, deploys, and maintains information security systems, including identity governance and access management solutions.
Ensures the efficient operation of information security systems and resolves intricate security problems.
Researches, evaluates, and proposes new information security solutions. Aligns information security systems with architectural requirements and strategies.
Provides implementation and cost estimates for new solutions, including training requirements and system administration processes
Collaborates with stakeholders to ensure the efficient operation of information security systems in alignment with architectural requirements and strategies
Identifies and documents of highly complex information technology risks, assesses risk levels, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs
Serves as the primary contact on assigned internal and third-party IT processes, risk assessments, and audits.
Provides advice to key stakeholders on the security-relevant impact of findings
Serves as security subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation
Leads troubleshooting sessions and knowledge transfers to resolve security issues including identity governance and access management
Recommends solutions for aligning technology areas with future needs
Collects and provides documentation for internal and external audits and assessments
Documents information security systems policies, procedures, standards, needed improvements, and guidelines
Maintains the document life cycle, including periodic reviews, updates, and approval cycles
Oversees assigned security tools/services and vendor life cycle management
Schedules vendor meetings to review products, services, and vendor/tool roadmaps
Drives renewals and new purchases through the our clients vendor management and purchase process
Education & Experience
Bachelor's degree, preferably in information security, information technology, or a related field, or equivalent relevant experience
Eight years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Master's degree, preferably in information security, information technology, or a related field or equivalent related experience and six years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Information security certifications (CISSP, CCSP, CCSK, AWS, Azure, Security+, CEH, GSEC) preferred
Prior experience in the insurance industry preferred
Knowledge, Skills, & Abilities
Advanced knowledge of information security and privacy standards, concepts, principles, technologies, and audit practices
Advanced knowledge of information technology including network, servers, cloud, and PKI/cryptography and identity and access management technologies
Excellent knowledge of identity and access management concepts, principles, technologies
Excellent ability to assess and report on information technology risks
Strong knowledge of Linux and Windows operating systems
Strong knowledge of secure cloud solutions within AWS, Google, and/or Azure cloud platforms
Strong ability to perform and create automation tasks with tools (i.e., PowerShell, Python) preferred
Experience in designing, building, and maintaining information security systems
Excellent analytical and problem-solving abilities
Strong verbal and written communication skills
Excellent ability to work effectively with others at varying levels
Excellent documentation skills
Ability to lead moderate to highly complex technology projects
Desired Skills
SailPoint File Access Manager
CyberArk Privileged Cloud
Atlassian BitBucket
Atlassian Confluence
AWS EC2, Lambda
SharePoint
$86k-116k yearly est. Auto-Apply 60d+ ago
Senior Security Engineer
Brale
Security architect job in Des Moines, IA
As a Security Engineer at Brale, you will work within an experienced, security-focused engineering team to help bolster existing defenses and use your industry experience to identify and reinforce weaknesses in applications, systems, and processes.
You enjoy threat modeling, designing security protocols, discovering vulnerabilities in software systems, and working closely with the team to document and resolve known issues. Staying up to date on the latest threats and trends enables you to evolve the company's security posture.
Your background in cryptography and secure coding will help Brale protect both on and off-chain assets by defining and building systems that leverage multi-party authorization and follow sound processes. (Bonus points if you have previously worked with blockchain technologies!)
As a security engineer at a small startup, you will need to wear a lot of hats. Your responsibilities will include:
Maintain threat models and other security-related system documentation.
Coordinate penetration testing with independent test team and triage and drive resolution of any identified issues.
Perform white-box security testing of security-critical features.
Participate in the design process for application features and AWS platform infrastructure by defining security requirements and reviewing designs to ensure requirements are met and best practices are followed.
Participate in the design and implementation of controls for regulatory and standards compliance.
Define internal best practices for secure development and data handling, including key material management.
Identify SIEM tooling needs and help select suitable solutions for our scale and budget.
Maintain the security incident response plan and lead incident response in case of a security event.
Understand the threat environment and establish and maintain monitoring for endpoints and application systems.
Share knowledge with other engineering roles to improve overall understanding of security topics.
Qualifications:
Five or more years experience in a security engineering or related role
Proven experience with a wide variety of different of aspects of security engineering, including network security, incident response, threat modeling, and identity and access management.
Ability to identify and lead initiatives to improve information security without direct oversight.
Strong communication skills for communicating with both technical and non-technical audiences in a remote environment.
$86k-116k yearly est. Auto-Apply 60d+ ago
Sr. Security Engineer 0126
Nexus It Group
Security architect job in Des Moines, IA
What You'll Do
Design, deploy, and manage enterprise-grade network security platforms, including next-generation firewall technologies and centralized policy management systems.
Implement and support secure remote access solutions to enable safe connectivity for distributed teams.
Create, maintain, and optimize security policies covering traffic filtering, network address translation, and application-level controls.
Lead the architecture and operation of advanced endpoint protection, detection, and response capabilities.
Apply adversary tactics and techniques frameworks to proactively identify threats and reduce attack surfaces.
Define and oversee identity and access management strategies, including permissions, role-based access controls, and auditing across cloud environments.
Monitor, analyze, and respond to sophisticated security events using log aggregation and security monitoring platforms.
Drive cloud security initiatives such as configuration reviews, risk assessments, compliance validation, and threat modeling.
Build and maintain automation to streamline security operations and incident response workflows.
Develop and deliver security awareness initiatives to improve end-user risk awareness and behavior.
Partner with technical and business stakeholders to align security priorities with organizational goals.
Own complex security initiatives end to end, operating with a high level of autonomy.
Provide guidance and mentorship to junior team members while promoting best practices and continuous improvement.
What We're Looking For
Bachelor's or Master's degree in Information Technology, Cybersecurity, or a related discipline, or equivalent hands-on experience.
5-10 years of experience in cybersecurity, with a strong emphasis on cloud-based environments.
3-5 years of experience in network security engineering within enterprise infrastructures.
Hands-on experience administering modern firewall platforms and secure remote access technologies.
Deep understanding of cloud security concepts including identity management, virtual networking, and compliance standards.
Experience working with endpoint security and security monitoring platforms.
Strong scripting and automation skills using languages such as PowerShell, Python, or similar.
Demonstrated leadership, communication, and cross-functional collaboration skills.
Proven ability to manage complex security initiatives and support the development of other security professionals.
Curiosity-driven mindset with a commitment to staying current on emerging threats and technologies.
$86k-116k yearly est. 13d ago
Information Security Engineer / Analyst
Mindlance 4.6
Security architect job in Johnston, IA
Mindlance is a national recruiting company which partners with many of the leading employers in IT, financial services, engineering, semiconductor, clinical and pharmaceutical domains. You can learn more about us at *****************
.
Job Description
·
3-7 years of experience in Information Security focusing on security solution design, engineering, implementation and assurance.
·
3-5 years of experience defining and managing the implementation of controls to address access security and IT control requirements.
·
3-5 years of experience working with Information Security and IT general controls, including experience defining and documenting controls using COBIT 4.1 or 5.0, the NIST Cybersecurity Framework, the ISO 27k framework, the SANS 20 critical controls or similar experience.
·
Deep understanding of Information Security technologies including firewalls, IDS/IPS, Password Vaults, CASBs, SIEM, IT GRC, DLP, etc.
·
Understanding of the regulatory environment and experience with regulators.
·
Comfort delivering tasks and assignments in an evolving and a maturing environment.
·
Application security experience and corresponding technologies (e.g. Jenkins).
·
Experience with the FFIEC Cyber Security Assessment Tool.
·
Applicable certifications (e.g. CISSP, CISA, CISM, CGEIT, CRISC).
Additional Information
All your information will be kept confidential according to EEO guidelines.
$64k-81k yearly est. 9h ago
Cloud Security Engineer
Ford Motor Company 4.7
Security architect job in Des Moines, IA
We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves?
The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them.
The Cloud Security team is responsible for identifying, evaluating, and recommending cloud security tools and functions to enhance security around Ford's public cloud. The team is also responsible for developing and managing the following Security Services in Ford's public cloud environments:
- Cloud Security Automation Development
- GCP/Azure Security Compliance
- GCP VPC Service Control
- GCP Cloud Armor/ Azure WAF
**What you'll do...**
+ Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..).
+ Lead evaluation and develop an understanding of tools needed to address security gaps.
+ Lead/Collaborate with EPEO Services teams on security gap remediation.
**You'll have...**
+ Bachelor's degree in Computer Science, Information Technology or related OR a combination of education and experience
+ 5+ years of scripting and automation experience
+ Proven experience in developing and implementing automation using scripting languages such as
+ Python, PowerShell, or Go, particularly for API integrations, security tool orchestration, and custom audit scripts.
+ Solid understanding and practical experience with Git and GitHub for version control, collaborative development, and security automation pipeline management.
+ Familiarity with CI/CD pipelines and automated deployment tools (e.g., Jenkins, Azure DevOps, GitHub Actions) to integrate security automation into the software development lifecycle.
+ Knowledge of Infrastructure-as-Code (IaC) principles and tools like Terraform.
+ Strong knowledge of security best practices and guidelines (at the enterprise-level) related to GCP and Azure Cloud deployments as well as common web application frameworks
+ Understand the functionality and secure usage of various GCP services: VPCs, IAM, security groups, compute engine, cloud storage, Security Command Center, VPC Service Control, Cloud DLP and Cloud Armor
+ Customer focused and strong team orientation
+ Self-starter and fast-learner
+ Strong communication and interpersonal skills
+ Strong problem solving and Analytical/Reasoning skills
+ Strong drive for results and ability to work independently
+ Demonstrated commitment to quality and project timing
+ Familiarity with the agile project planning process and use of Rally.
+ Document processes & procedures and developing other documentation.
**Even better, you may have...**
+ Understand the functionality and secure usage of various Azure services: Virtual Machines, Virtual Networks, Azure Active Directory, App Services, Azure SQL Databases, Storage Accounts, Kubernetes, Containers, Key vaults.
You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!
As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder...or all of the above? No matter what you choose, we offer a work life that works for you, including:
- Immediate medical, dental, vision and prescription drug coverage
- Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
- Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
- Vehicle discount program for employees and family members and management leases
- Tuition assistance
- Established and active employee resource groups
- Paid time off for individual and team community service
- A generous schedule of paid holidays, including the week between Christmas and New Year's Day
- Paid time off and the option to purchase additional vacation time.
For a detailed look at our benefits, click here:
*******************************
This position is a range of salary grades 7-8.
Visa sponsorship is not available for this position.
SOUTHEAST MI RESIDENTS: This role is posted as remote unless you reside within 50 miles of Dearborn, MI-in which case we request on-site presence up to 4 days a week.
Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************.
\#LI-Remote
**Requisition ID** : 54783
$69k-93k yearly est. 6d ago
Security Solution Engineer - Email Security
Proofpoint 4.7
Security architect job in Des Moines, IA
**About Us:** Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.
**How We Work:**
At Proofpoint you'll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values:
**Bold** in how we dream and innovate
**Responsive** to feedback, challenges and opportunities
**Accountable** for results and best in class outcomes
**Visionary** in future focused problem-solving
**Exceptional** in execution and impact
**POSITION SUMMARY**
The Security Solutions Engineer is an information security expert responsible for assessing and improving the security posture of customer environments.
The Security Solutions Engineer manages the technical aspects of customer systems and is primarily responsible for solution uptime, availability, policy development and problem troubleshooting. Security Solutions Engineers are also responsible for the technical development of various clients' security solutions such as: Proofpoint Protection Server, TAP, TRAP, and other Proofpoint products.
Platform Engineers serve as an escalation point and mentor for other members of the team. Platform Engineers also help develop internal process, procedure, and drive collaboration across business units to help streamline service delivery.
He or she must ensure that all tasks performed adhere to the firm's ISO 27001 Information Security Management System (ISMS). This includes participation in annual information and network security training and acceptance of spot checks on an ad hoc basis to guarantee that Proofpoint is constantly improving upon the organization's ISMS. Each member of our team must understand the importance of the ISMS and the corresponding handling of customer data.
**DUTIES & ESSENTIAL JOB FUNCTIONS:**
+ Serve as an escalation point for other engineers on the team
+ Optimize security policies to protect against emerging threats and adhere to industry best practices
+ Create and develop custom solutions for managed security systems
+ Maximize system uptime, availability, and performance
+ Utilize internal CRM for problem tracking and project development
+ Assist the team in meeting all customer SLAs
+ Unsurpassed attention to detail, analytical problem-solving skills, and ability to diagnose and troubleshoot technical issues
+ Maintain awareness of industry trends, security news, and best practices
+ Take on-call rotation after hours and on weekends, serving as a point of escalation as necessary
+ Provide flexibility with schedule to cover job requirements
+ Ability to quickly and efficiently resolve client issues while maintaining high levels of client satisfaction
+ Lead technical discussions with customers and partnering organizations
+ Research and analyze industry trends and security vulnerabilities, in order to effectively communicate to customers any risk to their
+ environments and implement solutions to mitigate the risk
+ Administer and support lab environment to include change request review and approval, maintenance, and design
**QUALIFICATIONS:**
+ Bachelor's Degree in Computer Science, Information Technology, or related discipline. Experience may be considered in lieu of a degree
+ Experience with Email Security
+ Corporate computer networking, technical support, system administration, Windows, Unix/Linux Operating System administration and/or
+ network security experience
+ Experience and proficiency in Proofpoint email security products, to include certification and training
+ Experience and proficiency designing and implementing Proofpoint solutions
+ High Level of critical thinking and proven ability to manage customer expectations high pressure situations
+ Proficiency in technical writing, diagraming, and communications.
+ Combine patience, determination, and persistence to troubleshoot client issues
+ Ability to work effectively with team members and clients
+ Desire to mentor junior engineers
+ Self-motivated, with ability to manage and follow up on multiple tasks simultaneously
+ Strong analytical capabilities, problem solving skills, providing solutions in a systematic and clear manner, and easily understood by
+ colleagues and customers
+ Strong time-management skills
**PREFERRED**
+ Experience with Proofpoint email security products - PoD/TAP/TRAP
+ Expert in information security or network security
+ SQL or Oracle database experience
+ Regular expression experience
+ Scripting knowledge of Perl, Python, Java, or Bash
+ Proofpoint product certifications
+ Industry certifications such as CISSP, Network+, Security+, etc.
+ Experience working in Managed Services.
\#LI-Remote
**Why Proofpoint?**
At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you'll love working with us:
+ Competitive compensation
+ Comprehensive benefits
+ Career success on your terms
+ Flexible work environment
+ Annual wellness and community outreach days
+ Always on recognition for your contributions
+ Global collaboration and networking opportunities
**Our Culture:**
Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.
We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com .
**How to Apply**
Interested? Submit your application along with any supporting information- we can't wait to hear from you!
Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.
**Base Pay Ranges:**
SF Bay Area, New York City Metro Area:
Base Pay Range: 98,900.00 - 155,430.00 USD
California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:
Base Pay Range: 78,800.00 - 123,805.00 USD
All other cities and states excluding those listed above:
Base Pay Range: 70,400.00 - 110,605.00 USD
Proofpoint has been honored with six Best Places to Work Awards in 2024 by workplace culture leader Comparably, including Best Company Career Growth, Best Company Outlook, Best Global Culture, Best Engineering Teams, Best Sales Teams, and Best HR Teams.
We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We're driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people.
Our BRAVE Values:
At Proofpoint, we are BRAVE in everything we do, and our values aren't just words-they shape how we work, collaborate, and grow.
We seek people who are bold enough to challenge the status quo, responsive in the face of ever-evolving threats, and accountable for delivering real impact.
We value those with a visionary mindset who anticipate what's next and push cybersecurity forward, and we celebrate exceptional execution that ensures we continue to defend data and protect people.
Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.
Find your network, your allies, and your biggest fans. We know that work is simply better when you're surrounded by people who inspire you-who share ideas, cheer you on, and genuinely want to see you succeed. That's why we offer social circles, sponsored networks, and connection points across teams and time zones-to help you find your people, build your community, and thrive together.
This isn't just a job-it's a mission to protect people and defend data in a world that never slows down. We're building the future of human-centric cybersecurity, and that future belongs to all of us. We take ownership, move fast, and hold ourselves accountable-because that's what it takes to stay ahead. And we do it together, winning as one.
Be empowered to reach your full potential through meaningful challenges and personalized support-designed around you and your goals. Whether you're growing as a leader or leveling up from great to exceptional as an individual contributor, we're here to help you get there.
Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.
$83k-109k yearly est. 7d ago
Security Engineer II
Trustmark 4.6
Security architect job in Des Moines, IA
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain securityarchitectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
$73k-93k yearly est. 60d+ ago
Product Security Engineer, AI
Meta 4.8
Security architect job in Des Moines, IA
Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys.
**Required Skills:**
Product Security Engineer, AI Responsibilities:
1. Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more
2. Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities
3. Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products
**Minimum Qualifications:**
Minimum Qualifications:
4. BS or MS in Computer Science or a related field, or equivalent experience
5. 8+ years of experience finding vulnerabilities in interpreted languages. Knowledge of best practice secure code development
6. Experience with exploiting common security vulnerabilities
7. Knowledge of common exploit mitigations and how they work
8. Coding and scripting experience in one or more general purpose languages
**Preferred Qualifications:**
Preferred Qualifications:
9. Experience creating software that enables security processes, especially those leveraging AI/ML for automation or augmentation
10. Experience integrating or building AI-powered tools to assist with vulnerability detection, code review, or threat modeling
11. Experience creating software that enables security processes
12. 8+ years of experience finding vulnerabilities in C/C++ code
13. Contributions to the security community (public research, blogging, presentations, bug bounty)
14. Demonstrated ability to collaborate with AI researchers or engineers to apply AI in security workflows
**Public Compensation:**
$184,000/year to $257,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
$184k-257k yearly 60d+ ago
Associate Information Security Director
Direct Staffing
Security architect job in Johnston, IA
Johnston Exp 2-5 years Degree Bachelors Relo Bonus Our company combines innovation and technology to produce exceptional equipment and services that delight our customers. We are a world leader in providing advanced products and services and are committed to the success of customers whose work is linked to the land - those who cultivate, harvest, transform, enrich and build upon the land to meet the world's dramatically increasing need for food, fuel, shelter and infrastructure. Since 1837, our company has delivered innovative products of superior quality built on a tradition of integrity. We make our company a great place to work through an emphasis on work-life balance and a values-based culture that encourages professional development and community involvement.
As a global organization with vast technological resources, our company can offer IT professionals a virtual world of opportunity. Whether your interest is application development, infrastructure, architecture or project management, our company can offer you challenges that will exceed your expectations.
What You'll Do
Our company is located in Johnston, IA, the Associate Information Security Director is the senior corporate security professional servicing the business unit. This role is the primary strategic voice to effectively negotiate the intersection of business pursuits, threat landscape, and Deere's centralized cybersecurity services. The role demands strong strategic focus, effective communication and collaboration skills, executive presence and a deep understanding of the finance industry. The Associate Information Security Director role encompasses key stakeholder relationships with Legal, Human Resources, Compliance, Information Technology, Audit, Supply Management and Executive Leadership functions. Additionally, you will:
• Provide critical leadership related to strategy, regulatory compliance; demand planning, project prioritization, specification and deployment of new services and operational oversight for all cybersecurity activities across our company.
• Act as the single point to accountability and delivery for President, General Counsel and IT Director.
• Be responsible for the oversight of Deere's Global Information Security (GSEC) metrics in service and soliciting & obtaining resources, both CORP GSEC to achieve approved targets.
• Develop and implement information security strategy, assuring alignment with the GSEC security strategy.
• Broker existing GSEC services to execute risk assessments against locations, infrastructure, applications, systems, and services.
• Coordinate with GSEC and Enterprise Security & Preparedness organization (ES&P) to address incident response and assure timely, accurate concise communications to key business leaders.
• Provide leadership and expertise to the Senior Leadership team on core functional business processes ensuring that key security priorities are addressed.
• Ensure that all business activities are performed in a secure and compliant manner, meeting all Deere internal and external standards and controls.
• Participate in the strategic planning and budgeting processes.
• Build and leverage existing finance industry relationships to identify industry leading practices, stay current on industry threats and benchmark cybersecurity services and performance.
• Manage cybersecurity architecture resources to: Assure compliance with existing policies and standards; Maintain security posture of existing infrastructure and applications; Engineer security into lifecycle of new infrastructure, applications, products and services.
• Manage cybersecurity risk and liability related to divestitures, acquisitions and joint-ventures.
• Partner with Supply Management and Legal organizations to review vendor contracts and suppliers.
• Provide subject matter expertise and cybersecurity leadership to our Enterprise Risk Committees.
• Partner with GSEC, ES&P, Legal, Compliance, Supply Management and business leaders to establish, deploy, and enforce cybersecurity policies and procedures.
• Provide oversight to global IT improvement projects and policy changes - Ex. Data Protection, Data Masking, Data Monitoring, Record Retention, etc.
Qualifications
We need an excellent communicator, who thrives on solving problems and working in a team environment. Ideally you will have a Bachelor's degree in Information Security, Management Information Systems, Computer Science, Computer Engineering or equivalent experience. In addition, we require:
• 8+ years of direct information security experience within the finance and banking industry.
• Experience as Manager of Information Security or Deputy Director of Information Security or other senior security-related function.
• Certified Information Systems Security Professional (CISSP) certification.
• Project management skills; financial / budget management, scheduling and resource management.
• Excellent verbal and written communication skills, persuasion, and the ability to communicate security and risk-related concepts to technical and non-technical audiences.
• High degree of initiative and dependability.
• High level of personal integrity, and the ability to professionally handle confidential matters.
• Good understanding of risk management methodologies and implementation in an IT organization.
• Proven ability to manage to financial goals, both in own area, and in support of a larger entity.
• Proven ability to build strong teams; recruit top talent and develop colleagues at all levels.
• Highly ethical, self-motivated, conceptual manager with a sense of ownership and creative drive to get things done.
• Deep security experience, a believable party with particular depth in one or more key areas, such as IP protection or securing distributed computing environments against insider threat.
• Good understanding of enterprise class technology, having worked with prior in career complex IT infrastructure and applications.
• Collaborative mindset, with ability to achieve creative, win-win solutions.
A strong candidate will also have:
• Demonstrable past working experience in identifying, assessing, and resolving complex information security problems, devising plans to address those problems, and successful execution of those plans.
• Strong interest in and proven track record with challenging assignments.
• Hands-on information security experience specific to the finance industry, point-of-sale systems, eCommerce, SAP, etc.
• Subject-Matter-Expert related to global financial regulatory requirements specific to cybersecurity, information technology, data privacy and legal compliance, i.e. PCI, GLBA, FRB, etc.
• Additional certifications such as CISA, CISM, CRISC, CPP, CFE.
What You'll Get
At our company, you are empowered to create a career that will take you to where you want to go. Here, you'll enjoy the freedom to explore new projects, the support to think outside the box and the advanced tools and technology that foster innovation and achievement. We offer comprehensive relocation and reward packages to help you get started on your new career path. Click here to find out more about our Total Rewards Package.
Can you imagine the challenge of a lifetime and a rewards package that makes it all worthwhile?
The information contained herein is not intended to be an exhaustive list of all responsibilities and qualifications required of individuals performing the job. The qualifications detailed in this job description are not considered the minimum requirements necessary to perform the job, but rather as guidelines. Our company is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to, among other things, race, religion, color, national origin, sex, age, sexual orientation, gender identity, status as a protected veteran, or status as a qualified individual with disability.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Direct Staffing Inc
$101k-152k yearly est. 9h ago
Offensive Security Engineer, Assessments (Web3)
Coinbase 4.2
Security architect job in Des Moines, IA
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior security engineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
$152.4k-179.3k yearly 60d+ ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security architect job in Des Moines, IA
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 60d ago
Senior Technology Security Engineer (IAM)
Pointwest Technologies Corp
Security architect job in Des Moines, IA
Job DescriptionAbout the job
Our client is all about working together to make an impact. As part of our team, you'll have the opportunity to grow, contribute, and gain experience that matters. We strive to be caring leaders, close partners, and responsive experts-always supporting each other to do our best work. Join us, and let's improve lives together.
The Senior Technology Security Engineer will be responsible for the design, build, deploy and support of our clients Privileged Access Management (PAM) platform implemented in CyberArk Cloud, including infrastructure, servers, services and privileged accounts that are part of the overall IT ecosystem.
The Senior Technology Security Engineer will collaborate with various teams to ensure the seamless integration and effective use of CyberArk for managing privileged access, monitoring, and securing sensitive accounts.
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements. Assesses information security risks, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs. Serves as PAM subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation and maintains the vendor relationship. Collects and provides documentation for internal and external audits and assessments. Oversees assigned security tools/services and vendor life cycle management.
Essential Functions
Serves as an information security subject matter expert on highly complex enterprise projects, software, and hardware enhancements.
Identifies information security risks, provides recommendations, builds, and configures solutions, and troubleshoots issues.
Collaborates with IT and security teams on project plans and meets with stakeholders to assess impacts and dependencies.
Leads project activities to ensure timely deliverables and supports the establishment of a roadmap by evaluating and recommending new tools
Leads highly complex information security projects across all security teams.
Designs, builds, deploys, and maintains information security systems, including identity governance and access management solutions.
Ensures the efficient operation of information security systems and resolves intricate security problems.
Researches, evaluates, and proposes new information security solutions. Aligns information security systems with architectural requirements and strategies.
Provides implementation and cost estimates for new solutions, including training requirements and system administration processes
Collaborates with stakeholders to ensure the efficient operation of information security systems in alignment with architectural requirements and strategies
Identifies and documents of highly complex information technology risks, assesses risk levels, recommends risk treatment, coordinates risk acceptance and remediation, and ensures appropriate remediation occurs
Serves as the primary contact on assigned internal and third-party IT processes, risk assessments, and audits.
Provides advice to key stakeholders on the security-relevant impact of findings
Serves as security subject matter expert, collaborates with stakeholders, offers guidance, and serves as main security point of contact during project planning and implementation
Leads troubleshooting sessions and knowledge transfers to resolve security issues including identity governance and access management
Recommends solutions for aligning technology areas with future needs
Collects and provides documentation for internal and external audits and assessments
Documents information security systems policies, procedures, standards, needed improvements, and guidelines
Maintains the document life cycle, including periodic reviews, updates, and approval cycles
Oversees assigned security tools/services and vendor life cycle management
Schedules vendor meetings to review products, services, and vendor/tool roadmaps
Drives renewals and new purchases through the our clients vendor management and purchase process
Education & Experience
Bachelor's degree, preferably in information security, information technology, or a related field, or equivalent relevant experience
Eight years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Master's degree, preferably in information security, information technology, or a related field or equivalent related experience and six years of experience in information security, identity and access management, or related roles, including at least four years of experience in information security
Information security certifications (CISSP, CCSP, CCSK, AWS, Azure, Security+, CEH, GSEC) preferred
Prior experience in the insurance industry preferred
Knowledge, Skills, & Abilities
Advanced knowledge of information security and privacy standards, concepts, principles, technologies, and audit practices
Advanced knowledge of information technology including network, servers, cloud, and PKI/cryptography and identity and access management technologies
Excellent knowledge of identity and access management concepts, principles, technologies
Excellent ability to assess and report on information technology risks
Strong knowledge of Linux and Windows operating systems
Strong knowledge of secure cloud solutions within AWS, Google, and/or Azure cloud platforms
Strong ability to perform and create automation tasks with tools (i.e., PowerShell, Python) preferred
Experience in designing, building, and maintaining information security systems
Excellent analytical and problem-solving abilities
Strong verbal and written communication skills
Excellent ability to work effectively with others at varying levels
Excellent documentation skills
Ability to lead moderate to highly complex technology projects
Desired Skills
SailPoint File Access Manager
CyberArk Privileged Cloud
Atlassian BitBucket
Atlassian Confluence
AWS EC2, Lambda
SharePoint
Powered by JazzHR
T0AM7pwqj5
How much does a security architect earn in West Des Moines, IA?
The average security architect in West Des Moines, IA earns between $76,000 and $156,000 annually. This compares to the national average security architect range of $92,000 to $179,000.
Average security architect salary in West Des Moines, IA
$109,000
What are the biggest employers of Security Architects in West Des Moines, IA?
The biggest employers of Security Architects in West Des Moines, IA are: