Bank Information Security Governance Senior
Security engineer job in Plano, TX
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
We are seeking a dedicated Bank Information Security Governance Senior.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in our Phoenix, AZ; San Antonio, TX; Plano, TX; Colorado Springs, CO; Chesapeake, VA; Charlotte, NC or Tampa, FL offices. Relocation assistance is not available for this position.
What you'll do:
Supports the first line of defense in ensuring the effectiveness of Information Security (IS) governance, IS risk management, and compliance programs within the Bank Technology Office. Collaborates with Information Technology (IT) and IS teams, business stakeholders, Compliance, Risk Management, Audit Services, and external parties to support IS governance and IS risk and compliance-based initiatives. Acts as a key liaison between the Association's IS function and various Bank business units, ensuring alignment with enterprise security policies and standards.
Continuously monitors IS environments to identify emerging risks related to cybersecurity, infrastructure, applications, and third-party services. Provides consultative services across Bank.
Provides expert insights on the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the Bank organization's specific needs and strategic objectives.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Conducts forward-looking risk assessments for new technology initiatives, system changes, and digital transformation projects.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Partners with and leads IT/IS teams to embed IS risk considerations early in the project lifecycle and ensure timely mitigation strategies.
Leads the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the organization's specific needs and strategic objectives.
Defines, maintains, and enforces IS policies, standards, and procedures to ensure compliance with relevant laws, regulations, and industry best practices.
Ensures IS risk compliance with legal, regulatory, and contractual requirements, coordinating audits and assessments.
Provides governance oversight for IS related initiatives, ensuring they adhere to established standards, policies, and risk management practices.
Mentors junior members of the IS governance team, providing guidance and support in their professional development.
Enhances, and maintains awareness of the risk governance framework and its elements (RCSA).
Performs root cause analysis to determine likelihood, impact, and mitigation approaches of identified risks.
Prepares metrics reporting and participates in the metrics refresh process.
Maintains awareness of cloud computing principles and AI and understands potential IS risks inherent within this discipline.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years experience supporting IS governance, IS risk management, compliance, or IT audit activities
In-depth knowledge and application of IT governance frameworks such as COBIT, ITIL, ISO 27001, and NIST, CIS Controls and CMMC
Experience working on and implementing IT and/or IS policies, standards, and procedures.
Experience leading and coordinating IS audits and assessments and ensuring compliance with regulatory requirements.
A strong understanding of regulatory and compliance requirements applicable to the organization.
Ability to interpret complex IT/IS environments and detect early warning signals.
Experience in identifying potential failure points and simulating risk scenarios.
Proficiency in using data to identify trends, anomalies, and emerging risks.
Understanding of cloud, cybersecurity, and digital transformation risks.
Ability to articulate risk insights and influence stakeholders to take preventive actions.
Familiarity with GRC platforms, vulnerability management tools, and risk dashboards.
What sets you apart:
Information Technology or Security certifications (e.g., CISA, CRISC, CISM, CISSP, CGEIT, CIA, NIST, COBIT, etc.).
Familiarity with financial institutions regulations (GLBA, FFIEC Handbooks, PCI DSS)
Work experience in highly regulated work environments including other large financial institutions
Experience with data-driven analysis using AI tools and collaborating to drive process innovation
Highly self-motivated individual capable of working independently and proactively handling their workload with minimal direct supervision.
Strong analytical skills and demonstrated experience collaborating effectively with leadership at all levels within an organization.
Compensation range: The salary range for this position is: $114,080-$218,030.
USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).
Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.
Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Auto-ApplyCyber Security Architect
Security engineer job in Dallas, TX
Privileged Access Management (PAM) Architect
Westlake, TX
Responsibilities:
10+ years of experience in defining and delivering cybersecurity architecture, strategies and solutions with demonstrated experience in the financial services industry or other highly regulated sectors.
Bachelor's degree in Information Security, Computer Science, or a related field; a Master's degree is preferred.
Strong industry experience in architecting and designing PAM solutions and deployment across the enterprise.
Deep technical understanding of PAM capabilities, controls and security technologies in areas related to identity and access management to address privilege-based risk.
Familiarity with regulatory requirements related to PAM, such as PCI DSS, HIPAA, or GDPR.
Expertise with build vs. buy solution options.
Working knowledge and experience with Cloud Architectures and the ability to address the security considerations of secure cloud computing including IAM with enterprise services, SSDLC, data protection, cryptography and key management.
Demonstrate leadership and consensus building skills with which you influence decisions and engage across Fidelity and at all levels of the organization
Exceptional communication and interpersonal skills, with the ability to effectively communicate complex technical concepts to non-technical stakeholders.
Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC) are highly desirable.
They need a minimum of 10 years of Architecture experience, and someone who has recent experience working with Secrets Management (Hashi Vault)
Looking for a true Architect, someone who can look at problem, how they can address the problem, and map it out. Someone is an Agent of Change and Patience.
They'll be dealing with some high level info within Fidelity, so someone who is open minded, and non emotional when debating thoughts and opinions is key.
ERP SAP Application Security Analyst
Security engineer job in Irving, TX
Your Work Shapes the World at Caterpillar Inc. When you join Caterpillar, you're joining a global team who cares not just about the work we do - but also about each other. We are the makers, problem solvers, and future world builders who are creating stronger, more sustainable communities. We don't just talk about progress and innovation here - we make it happen, with our customers, where we work and live. Together, we are building a better world, so we can all enjoy living in it.
ERP SAP Application Security Analyst
The Caterpillar Information Technology ERP SAP Application Security team is seeking a Senior IT Applications Analyst.
As a member of the ERP Application Security team, you will be responsible for safeguarding the integrity, confidentiality, and availability of ERP systems by designing, implementing, and managing security policies and procedures. This role involves analyzing business requirements, configuring ERP roles and authorizations, monitoring user access, and ensuring compliance with internal and external regulations.
What You Will Do:
* Design, implement, and maintain SAP ERP security roles and authorizations to meet business and compliance requirements.
* Use established ERP change and transport management methodology to promote approved changes to production.
* Monitor and manage user access, segregation of duties (SoD), and privileged accounts within the ERP environment.
* Track and resolve incidents, service requests, and system changes, ensuring proper documentation and compliance with change control processes.
* Identify opportunities to optimize current processes, enhance system performance, and improve user experience.
* Support technical and operational go-lives for deployments and software upgrades.
* Participate in regular security audits, risk assessments, and vulnerability analyses to identify and address potential issues.
* Collaborate with business stakeholders, IT teams, and auditors to ensure security controls align with organizational policies and regulatory standards.
* Provide support for request and incident response, troubleshooting, and resolution of security-related ERP issues.
* Maintain documentation of security policies, procedures, and changes within the ERP landscape.
* Drive internal projects as needed to maintain client integrity.
Top Candidates Will Have:
* Excellent analytical, problem-solving, and communication skills.
* AI skills for automation of manual team tasks
* Expertise with audit processes, SOX compliance, and risk management principles.
* Ability to support Sap Governance Risk and Control AC/PC
* ECC to S4 conversion knowledge
Skills Descriptors:
* Core Application Systems: Knowledge of major production application systems used for delivery services to internal and external clients; ability to leverage major production application systems in diverse situations.
* IT Standards, Procedures & Policies: Knowledge of Information Technology (IT) standards and policies; ability to utilize a variety of administrative skills sets and technical knowledge to manage organizational IT policies, standards, and procedures.
* Business Process Improvement: Knowledge of business process improvement best practices and ability to use methods for identifying, evaluating, introducing, and implementing more efficient approaches to performing business related activities.
* Accuracy and Attention to Detail: Understanding the necessity and value of accuracy; ability to complete tasks with elevated levels of precision.
* Problem Solving: Knowledge of approaches, tools, techniques for recognizing, anticipating, and resolving organizational, operational or process problems; ability to apply knowledge of problem solving appropriately to diverse situations.
* Application Design, Architecture: Knowledge of basic activities and deliverables of application design; ability to utilize application design methodologies, tools and techniques to convert business requirements and logical models into a technical application design.
Implementation: Knowledge of how to run applications for organizations; ability to implement application software within an organization and help end-users perform specific tasks (ex: accounting or graphic design).
* Requirements Analysis: Knowledge of tools, methods, and techniques of requirement analysis; ability to elicit, analyze and record required business functionality and non-functionality requirements to ensure the success of a system or software development project.
* System Testing: Knowledge of system and software testing; ability to design, plan and execute system testing strategies and tactics to ensure the quality of software at all stages of the system life cycle.
* Technical Troubleshooting: Knowledge of technical troubleshooting approaches, tools, and techniques; ability to anticipate, recognize, and resolve technical issues on hardware, software, application or operation.
Additional Information:
* Location for this role is Peoria, IL, Dallas, TX or Nashville, TN
* This role requires 5 days onsite.
* SPONSORSHIP IS NOT AVAILABLE.
* This position may require 10% travel.
* Relocation is not available.
What You Will Get:
* Our goal at Caterpillar is for you to have a rewarding career. Our teams are critical to the success of our customers who build a better world.
* Here you earn more than just a salary because we value your performance. We offer a total rewards package that provides benefits on day one (medical, dental, vision, RX, and 401K) along with the potential of an annual bonus. Additional benefits include paid vacation days and paid holidays.
* All qualified individuals - Including minorities, females, veterans, and individuals with disabilities - are encouraged to apply.
About Caterpillar -
Caterpillar Inc. is the world's leading manufacturer of construction and mining equipment, off-highway diesel and natural gas engines, industrial gas turbines and diesel-electric locomotives. For nearly 100 years, we've been helping customers build a better, more sustainable world and are committed and contributing to a reduced-carbon future. Our innovative products and services, backed by our global dealer network, provide exceptional value that helps customers succeed.
Summary Pay Range:
$110,520.00 - $165,840.00
Compensation and benefits offered may vary depending on multiple individualized factors, job level, market location, job-related knowledge, skills, individual performance and experience. Please note that salary is only one component of total compensation at Caterpillar.
Benefits:
Subject to plan eligibility, terms, and guidelines. This is a summary list of benefits.
* Medical, dental, and vision benefits*
* Paid time off plan (Vacation, Holidays, Volunteer, etc.)*
* 401(k) savings plans*
* Health Savings Account (HSA)*
* Flexible Spending Accounts (FSAs)*
* Health Lifestyle Programs*
* Employee Assistance Program*
* Voluntary Benefits and Employee Discounts*
* Career Development*
* Incentive bonus*
* Disability benefits
* Life Insurance
* Parental leave
* Adoption benefits
* Tuition Reimbursement
* These benefits also apply to part-time employees
Posting Dates:
December 1, 2025 - December 11, 2025
Any offer of employment is conditioned upon the successful completion of a drug screen.
Caterpillar is an Equal Opportunity Employer, Including Veterans and Individuals with Disabilities. Qualified applicants of any age are encouraged to apply.
Not ready to apply? Join our Talent Community.
Auto-ApplySAP - Security Administrator
Security engineer job in Plano, TX
Who we are Collaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world's most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We're looking for talented team members who want to Dream. Do. Grow. with us.
An important part of the Toyota family is Toyota Financial Services (TFS), the finance and insurance brand for Toyota and Lexus in North America. While TFS is a separate business entity, it is an essential part of this world-changing company- delivering on Toyota's vision to move people beyond what's possible. At TFS, you will help create best-in-class customer experience in an innovative, collaborative environment.
To save time applying, Toyota does not offer sponsorship of job applicants for employment-based visas or any other work authorization for this position at this time.
Who we're looking for
This role is responsible of the design, implementation, and maintenance of SAP security across multiple platforms. This role is critical to ensure secure access, compliance, and operational integrity of our SAP landscape, including S/4 HANA, Fiori, and MDG.
What you'll be doing
* Design and manage SAP security roles and authorizations across S/4 HANA, Fiori, Solution Manager, MDG.
* Configure and maintain SAP GRC Access Control modules (ARA, ARM, BRM).
* Implement and monitor segregation of duties (SOD) policies and controls.
* Troubleshoot and resolve authorization issues across SAP modules.
* Collaborate with functional and technical teams to align security with business processes.
* Support SAP upgrades, migrations, and transformation initiatives.
* Conduct periodic audits and ensure compliance with internal and external regulations.
* Document security procedures, role matrices, and access control policies.
What you bring
* Bachelor's degree in computer science, Information Systems, or related field.
* 10+ years of hands-on SAP security experience.
* Strong knowledge of SAP GRC, Fiori authorization concepts, and HANA DB security.
* Experience with SAP Activate methodology and UI/UX aspects of SAP Security.
* Familiarity with compliance frameworks (SOX, GDPR, etc.).
* Excellent problem-solving, communication, and documentation skills.
Added bonus if you have
* SAP Certified Technology Associate - System Security.
* Experience with SAP BTP and cloud-based security models.
* Knowledge of identity management tools and integration.
What We Bring
During your interview process, our team can fill you in on all the details of our industry-leading benefits and career development opportunities. A few highlights include:
* A work environment built on teamwork, flexibility, and respect.
* Professional growth and development programs to help advance your career, as well as tuition reimbursement.
* Team Member Vehicle Purchase Discount.
* Toyota Team Member Lease Vehicle Program (if applicable).
* Comprehensive health care and wellness plans for your entire family.
* Toyota 401(k) Savings Plan featuring a company match, as well as an annual retirement contribution from Toyota regardless of whether you contribute.
* Paid holidays and paid time off.
* Referral services related to prenatal services, adoption, childcare, schools, and more.
* Tax-Advantaged Accounts (Health Savings Account, Health Care FSA, Dependent Care FSA).
* Relocation assistance (if applicable).
Belonging at Toyota
Our success begins and ends with our people. We embrace all perspectives and value unique human experiences. Respect for all is our North Star. Toyota is proud to have 10+ different Business Partnering Groups across 100 different North American chapter locations that support team members' efforts to dream, do and grow without questioning that they belong.
Applicants for our positions are considered without regard to race, ethnicity, national origin, sex, sexual orientation, gender identity or expression, age, disability, religion, military or veteran status, or any other characteristics protected by law.
Have a question, need assistance with your application or do you require any special accommodations? Please send an email to *****************************.
Auto-ApplyManual Ethical Hacker
Security engineer job in Addison, TX
Denver, Colorado;Seattle, Washington; Addison, Texas; Jersey City, New Jersey; Boston, Massachusetts; Charlotte, North Carolina; Washington, District of Columbia; Jacksonville, Florida; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (******************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.
This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications
+ Provide clear and practical advice regarding managed risks
+ Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills
Required Skills:
+ Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
+ SQL injection/XSS attack without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with SAST tools to identify vulnerabilities
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques
+ Solid programming/debugging skills
+ Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
+ Threat Analysis
+ Innovative Thinking
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Information Security Analyst
Security engineer job in Plano, TX
Artech Information Systems is the #12 Largest IT Staffing Company in the U.S. and an employer of choice for over 7,000 consultants. We recruit world-class talent for IT, engineering, and other professional jobs at 70+ Fortune and Global 500 companies coast-to-coast across the U.S., India, and China. We are one of the fastest-growing companies in the US and we welcome you to search the thousands of jobs in our cutting-edge GEM system for employment opportunities that fit your qualifications.
At the forefront of the staffing industry, Artech is a minority and women-owned business enterprise (MWBE) committed to maximizing global workforce solutions on behalf of its clients. Artech's deep heritage, proven expertise and insightful market intelligence has secured long-term partnerships with Fortune 500 and government clients seeking world-class professional resources.
Job Description
• Respond to inbound phone and electronic requests for technical assistance from customers • Perform all tasks required per shift including reporting, monitoring, and turnover • Evaluate threats and determine impact to customer's environment • Assess incident severity and escalate to the next level as needed • Perform additional event/incident investigation and research as needed • Utilize internal guidelines for effective call processing and escalation and client service • Interact with network intrusion detection devices and other security systems via proprietary and commercial consoles, both local and remote • Manage customer accounts and confidently communicate technical information to Dell Services client base and internal technical team members • Maintain keen understanding of evolving Internet threats to ensure the security of Dell Services Client networks • Participate in knowledge sharing with other analysts and develop customer solutions efficiently • Coordinate or participate in individual or team projects to ensure quality support for our clients • Perform other essential duties as assigned Requirements • Working knowledge of analyzing events from SPLUNK SIEM. • Ability to work shift work in a 24/7/365 environment • 1+ years of experience in technical role with notable exposure to security (or have a Technical Degree) • Experience with Microsoft Windows and related security concepts • Experience with network connectivity and protocols such as TCP/IP, VPNs, VLAN, NAT, DHCP • Experience / Knowledge of variety of Intrusion Detection/Prevention platforms • Experience with/knowledge of IT security devices such as: Security Information & Event Management (SIEM) systems, firewalls, and/or antivirus management • Investigative and analytical problem solving skills • Understanding of security threats and attack countermeasures • Knowledge of current security events and a demonstrated passion to stay informed Preferences • Bachelor's Degree or equivalent in an IT/Technical field or equivalent work experience • 1+ years of experience in security role • Coding or scripting experience • Familiarity with Unix/Linux • Security+, GIAC, GCIA, GCIH, GCFW, GHTO, GSEC or similar certification • CISSP, CCNA, CCSP, CSPFA certifications a plus
Qualifications
MUST HAVES:
• 2+ years of experience in technical role with notable exposure to security
• Working knowledge of analyzing events from SPLUNK SIEM.
• Ability to work shift work in a 24/7/365 environment.
• Experience with/knowledge of IT security devices such as: Security Information & Event Management (SIEM) systems, firewalls, and/or antivirus management
This is a Bulk hiring position for our direct client.
Additional Information
For More Information, Please Contact
Siva Kumar
************
Network Security - Cisco ASA Checkpoint
Security engineer job in Plano, TX
Job DescriptionJob Title: Network Security - Cisco ASA / Checkpoint
Type: Contract
We are seeking a highly skilled Network Security Engineer with deep expertise in Security Service Edge (SSE) and Secure Access Service Edge (SASE) to lead the design, deployment, and lifecycle management of cloud-delivered security services. This role is critical in implementing Zero Trust Network Access (ZTNA), securing hybrid BFSI infrastructure, and integrating identity-aware, policy-driven controls across distributed environments.
Primary Technical Skills
SSE/SASE Platforms: Advanced configuration and policy orchestration on Palo Alto Prisma Access, Fortinet Universal ZTNA, Zscaler ZIA/ZPA, Broadcom, and Bluecoat.
Cloud-Delivered Security Functions: Deep understanding of SWG, CASB, ZTNA, DNS security, FWaaS, and SSL/TLS inspection.
Identity-Aware Access Control: Integration with SAML/OAuth2/OpenID Connect, device posture enforcement, and risk-based access policies.
Policy Lifecycle Management: Design and tuning of access control policies, URL filtering, application control, and data protection rules.
Post-Deployment Optimization: Continuous tuning using telemetry, policy hit/miss analysis, latency metrics, and user experience feedback.
Advanced Threat Protection: Integration with sandboxing engines, cloud-delivered threat intelligence, and real-time traffic analysis.
High Availability Resilience: Design of redundant tunnels, failover strategies, and multi-tenant segmentation in SSE environments.
Traffic Steering Breakout Policies: Implementation of local internet breakout (LIB), selective tunneling, and QoS-aware routing.
Certificate Management: Handling PKI integration, certificate pinning, and SSL decryption policies across user and app flows.
User Experience Assurance: Use of digital experience monitoring (DEM) tools to baseline and optimize end-user performance.
Secondary Technical Skills
SD-WAN VPN Integration: Deep familiarity with overlay routing, dynamic path selection, IKEv2/IPSec/GRE tunnels, and BGP/OSPF redistribution.
Cloud Security Architecture: Design of hub-and-spoke, transit VPC, and cloud-native firewalling across AWS, Azure, and GCP.
Automation APIs: Development of Python/Ansible/Terraform scripts for policy automation, bulk onboarding, and compliance checks.
SIEM SOAR Integration: Event forwarding, custom log parsing, UEBA correlation, and automated response playbooks in Splunk, QRadar, or Sentinel.
Endpoint EDR Integration: Policy coordination with CrowdStrike, Microsoft Defender, or SentinelOne for device trust enforcement.
DNS DLP Integration: Enforcement of DNS-layer security and data exfiltration controls using inline DLP and cloud-native inspection.
Multi-Factor Conditional Access: Integration with Azure Conditional Access, Okta Adaptive MFA, and device compliance policies.
Network Segmentation: Implementation of microsegmentation using identity-based policies and application-aware zoning.
Cloud Logging Audit Trails: Centralized logging via CloudWatch, Azure Monitor, or GCP Logging, mapped to compliance controls.
Security Baseline Enforcement: Use of CIS Benchmarks, NIST 800-53, and custom hardening scripts for posture validation.
Required Experience
8-12 years in enterprise network and security engineering, with 3+ years in SSE/SASE design and operations.
Proven experience in Zero Trust architecture, identity-aware segmentation, and cloud-delivered security enforcement.
Strong exposure to regulated verticals (preferably BFSI), with emphasis on data protection, audit readiness, and risk mitigation.
Hands-on with multi-vendor SSE ecosystems, including policy migration, interoperability testing, and performance benchmarking.
Experience in incident response, forensics, and policy rollback in production SSE environments.
Preferred Qualifications
Experience with hybrid cloud security models and multi-cloud segmentation strategies.
Familiarity with EDR/XDR, sandboxing, and threat intelligence platforms (TIPs).
Understanding of compliance frameworks: ISO 27001, NIST 800-53, RBI, GDPR, and PCI-DSS.
Exposure to DevSecOps pipelines, CI/CD security gates, and IaC security scanning.
Knowledge of SASE convergence models, including WAN edge, cloud edge, and identity edge integration.
Nice to Have
Zscaler Certified Cloud Professional (ZCCP-IA / ZCCP-PA)
AWS/Azure Security Specialty
CISSP or CCSP
Physical Security Systems Engineer #2982
Security engineer job in Dallas, TX
Physical Security Systems Engineer Contract Length: 6+ Month Contract The Consultant must physically reside in Texas and be available for onsite interviews and daily onsite work.
We are seeking a Physical Security Systems Engineer to support and maintain critical applications that power our client's Physical Security Operations Center (PSOC). This position will focus on the configuration, administration, and ongoing management of Lenel OnGuard and Genetec platforms. The ideal consultant will be a detail-oriented professional with a strong foundation in Windows/Linux server administration, automation scripting, and real-time application support.
Qualifications/Requirements:
Bachelor's degree in Computer Science, Engineering, or related field.
Must have 5+ years in systems engineering, application support, or IT infrastructure administration.
Strong background and hands-on experience configuring and supporting Lenel OnGuard and/or Genetec security systems.
Proficiency with Windows and Linux server environments including patching, upgrades, and troubleshooting.
Experience writing or running scripts using PowerShell, Bash, or Python to automate maintenance and monitoring tasks.
Familiarity with JIRA or similar ticketing tools for issue management and workflow tracking.
Strong attention to detail, documentation habits, and ability to create runbooks or SOPs.
Excellent collaboration and communication skills; ability to work with internal teams and external vendors.
Must be available for 100% onsite work in Dallas, TX, and occasional weekend coverage as required.
Duties/Responsibilities:
Configure, install, and maintain Lenel OnGuard and Genetec applications across Windows and Linux servers.
Serve as the primary point of contact for physical security applications, ensuring uptime, stability, and compliance with client standards.
Manage JIRA tickets, prioritize workload, and provide timely resolution for application and server issues.
Collaborate with the Client's Physical Security Team and software vendors to coordinate patches, upgrades, and system enhancements.
Perform system performance checks, backups, and monitoring to ensure reliability and security.
Develop and maintain runbooks, configuration documents, and detailed technical procedures.
Support the PSOC environment with after-hours or weekend coverage as needed.
Genius Road, LLC is proud to be a Certified Women's Business Enterprise, an Equal Opportunity Employer and values diversity. All employment is decided on the basis of qualifications, merit and business need.
Sr First Line Defense Analyst (On-site)
Security engineer job in Coppell, TX
Exceed the expectations of our residential mortgage borrowers & business partners through superior service, simple processes, and effective communications. We deliver on this mission by empowering our employees by encouraging and recognizing superior performance and innovative solutions, by promoting teamwork and divisional cooperation.
Primary Function
The Sr First Line Defense Analyst is responsible for utilizing their GSE servicing guide knowledge to prepare Business Performance testing, communicating those results to the manager and assist with remediation efforts identified through testing. In addition, compilation of audit materials requested as well as policy and procedure review will be expected. Issues identified through testing and audit feedback will be researched and resolved by the individual.
Principal Duties
Department point of contact for internal and external audit requests; compiles internal and external audit documentation.
Prepare Business Performance testing, which includes (but is not limited to) Fannie Mae, Freddie Mac, Ginnie Mae or Private investor remittances, cutoff reporting, and reconciliations.
Manage remediations, through to completion, in response to audit and/or business performance testing findings with respective departments.
Test policies and procedures to ensure the process performs as expected and suggest potential automation or improvements.
Maintains and follows procedures and controls within the monthly process.
Heavy use of Microsoft Excel for data analysis and reporting.
Handle ad-hoc reporting or research as directed by management.
Demonstrate flexibility to ever-changing business needs and requirements.
Possess an understanding of GSE servicing guides and a willingness to interpret pooling and servicing agreements.
Researches and resolves data issues, proposes solutions for future process enhancements.
Performs related duties as assigned by management.
Education and Experience Requirements
High School Diploma or equivalent required, Bachelor's Degree in Accounting or Finance preferred.
5+ years of Mortgage Servicing experience required; 2+years prior Investor Reporting experience required.
Knowledge, Skill, and Ability Requirements
Advanced MS Excel experience required.
SQL or other database reporting experience preferred.
Servicing Director knowledge a plus.
Knowledge of basic accounting principles and practices.
Solid analytical skills, particularly regarding assessing the probability and impact of an internal control weakness.
Proven ability to build strong relationships with stakeholders, learn quickly, be flexible and think strategically.
Strong communication skills to interact with Senior Management and other business units.
Working understanding of operational risks and related controls.
Strong organizational and time management skills necessary.
Ability to manage multiple tasks and shift priorities as appropriate to meet reporting deadlines and maintain reporting accuracy and analysis abilities with strong attention to detail.
Self-motivated with strong attention to detail and excellent organization skills.
While this description is intended to be an accurate reflection of the position's requirements, it in no way implies/states that these are the only job responsibilities. Management reserves the right to modify, add or remove duties and request other duties, as necessary.
Additional Information:
While this description is intended to be an accurate reflection of the position's requirements, it in no way implies/states that these are the only job responsibilities. Management reserves the right to modify, add or remove duties and request other duties, as necessary.
All employees are required to have smart phones that meet Company security standards with the ability to install apps such as Okta Verify and Microsoft Authenticator. Employment will be contingent on this requirement.
Company Benefits:
Newrez is a great place to work but we are only as strong as our greatest asset, our employees, so we believe in rewarding them!
Medical, dental, and vision insurance
Health Savings Account with employer contribution
401(k) Retirement plan with employer match
Paid Maternity Leave/Parental Bonding Leave
Pet insurance
Adoption Assistance
Tuition reimbursement
Employee Loan Program
The Newrez Employee Emergency and Disaster Fund is a new program to support our team members
Newrez NOW:
Our Corporate Social Responsibility program, Newrez NOW, empowers employees to become leaders in their communities through a robust program that includes volunteering, philanthropy, nonprofit grants, and more
1 Volunteer Time Off (VTO) day, company-paid volunteer day where all eligible employees may participate in a volunteer event with a nonprofit of their choice
Employee Matching Gifts Program: We will match monetary employee donations to eligible non-profit organizations, dollar-for-dollar, up to $1,000 per employee
Newrez Grants Program: Newrez hosts a giving portal where we provide employees an abundance of resources to search for an opportunity to donate their time or monetary contributions
Equal Employment Opportunity
We're proud to be an equal opportunity employer- and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. Different makes us better.
CA Privacy Policy
CA Notice at Collection
Auto-ApplyNetwork Security Audit
Security engineer job in Irving, TX
Founded in 2009 and headquartered in Ann Arbor, MI, TEKWISSEN™ provides a unique portfolio of innovative capabilities that seamlessly combines clients insights, strategy, design, software engineering and systems integration. Our tightly integrated offerings are tailored to each client's requirements and span the services spectrum from Application Development/Maintenance, testing, Technology Consulting & staffing. The company is primarily focused on information technology, engineering, healthcare, financial technology and contingent workforce solutions. It operates in seven business segments including Commercial, Professional & Technical, EMEA Commercial, and EMEA Professional & Technical. The company provides professional and technical expertise in the fields of Telecom, Education, Banking, Retail, e-commerce, Automotive, Life Science, Insurance, legal, healthcare, among others. It also offers outsourcing, consulting, recruitment, career transition, and vendor management services.
We strongly believe:
" If something cannot be measured, it cannot be managed. "
TEKWISSEN™ measures all of these processes and applies corrective interventions to manage the quality process at its core.
We are an Equal Employment Opportunity Employer M/F/V/D
Recognitions:
2015 -America's Fastest Growing Company by Inc.com
2015- SPARK FastTrack Award from Ann Arbor SPARK
2015 -Honoree of Diversity Focused Company by Corp! Magazine
2014- America's Fastest Growing Company by Inc.com
2014- Michigan 50 Companies to Watch
2014 - DiSciTech Award in Technology by Corp! Magazine
2014- DiSciTech TECHNOLOGY Company of the year by Corp! Magazine
2014- SPARK FastTrack Award from Ann Arbor SPARK
Specialties:
Enterprise Solutions, Web Development, Data Warehousing, Systems Integration, IT Security, Storage Technologies, Development and Delivery, Business Intelligence, Telecommunications, Consulting and Planning, Network design, Implementation &Administration
Position details:
Senior Systems Engineer - Network Security Audit
Location: Irving TX
Duration: 6+ months
Job Description:
Current CCNP, CCNA, CISSP or equivalent
- Experience in auditing network security compliance
- 8+ years' experience with IIS
- 8 + years' experience in Windows System Administration and Active Directory
- Experience in network design, operational support, hands-on implementation and configuration of network infrastructure
- Strong knowledge and experience in VPN, Firewall, load-balancing, network security, and network management platforms
- Experience in configuring and installing technologies such as switched Ethernet/Fast Ethernet/Gigabit Ethernet and various routing
Additional Information
Regards,
Swati
swati(dot)**********************
************
Easy ApplyInformation Security GRC Specialist
Security engineer job in Dallas, TX
We're not just a workplace - we're a Great Place to Work certified employer!
Proudly certified as a Great Place to Work, we are dedicated to creating a supportive and inclusive environment. At Sonic Healthcare USA, we emphasize teamwork and innovation. Check out our job openings and advance your career with a company that values its team members!
Position Summary
The Information Security GRC Specialist supports Sonic Healthcare USA's Cybersecurity program by implementing and maintaining governance, risk, and compliance (GRC) practices that protect sensitive data and ensure regulatory alignment. This role leads internal audits, risk assessments, and policy development efforts, while serving as a technical resource across departments and external partners. The ideal candidate brings a strategic mindset, strong working knowledge of security frameworks, and a collaborative approach to problem-solving.
Key Responsibilities
Implement and monitor security controls aligned with HIPAA, ISO27001:2022, and NIST CSF
Conduct internal and third-party risk assessments; support remediation and audit readiness
Develop and maintain cybersecurity policies, procedures, and awareness training programs
Respond to vendor security assessments and manage documentation for external audits
Maintain GRC tools, dashboards, and evidence artifacts; define control ownership and track corrective actions
Provide cross-functional guidance on compliance requirements and stay current with regulatory changes
Qualifications
Bachelor's degree in Computer Information Systems or related field (preferred)
4+ years of experience in cybersecurity risk assessments, audits, policy development, and compliance
Familiarity with HIPAA, ISO27001:2022, and NIST CSF v2.0 frameworks
Certifications such as CISA, CISSP, CISM, or CRISC (preferred)
Core Competencies
Strong understanding of security governance, compliance frameworks, and regulatory requirements
Familiarity with IT infrastructure, data architecture, and cybersecurity technologies
Skilled in GRC strategy development, data analysis, reporting, and maintaining technical standards
Ability to communicate complex technical concepts clearly to varied audiences, including senior leadership
Proven capacity to apply risk-based approaches to audits and assessments
Comfortable working independently and collaboratively across teams and geographies
Adaptable in fast-paced environments with shifting priorities
Scheduled Weekly Hours:
40
Work Shift:
Job Category:
Information Technology
Company:
Sonic Healthcare USA, Inc
Sonic Healthcare USA is an equal opportunity employer that celebrates diversity and is committed to an inclusive workplace for all employees. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, age, national origin, disability, genetics, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.
Auto-ApplyIT Network / Security Analyst
Security engineer job in Fort Worth, TX
The IT Network/Security Analyst is responsible for safeguarding and supporting the organization's IT infrastructure by blending network operations expertise with cybersecurity best practices. This hybrid role ensures both the reliability of network services and the protection of data across enterprise systems and cloud services. The analyst will monitor, analyze, and respond to incidents while maintaining the performance, availability, and security of network systems in a dynamic threat landscape.
Duties and Responsibilities:
Network Operations & Monitoring
Monitor and support daily network operations, ensuring uptime, availability, and performance across routers, switches, firewalls, VPN's, and other network components.
Continuously monitor network traffic and performance metrics, using NMS (Network Management Systems), IDS/IPS, and SIEM tools to identify anomalies, outages, or threats.
Collaborate with customers to optimize configurations and resolve connectivity issues impacting business operations.
Travel as required (up to 25%) to support field locations.
Incident Response & Troubleshooting
Investigate, contain, and remediate cybersecurity incidents involving network components (e.g., DDoS attacks, unauthorized access, malware propagation).
Perform root cause analysis on network-related issues and security events to reduce recurrence and improve resilience.
Participate in on-call rotations for critical incident response.
Network Security Administration
Configure and maintain network devices i.e. firewalls, routers, switches, access points with an emphasis on security hardening and policy enforcement.
Implement and support network segmentation, access controls, and VPN technologies to protect sensitive data.
Oversee security patching and firmware upgrades across network infrastructure.
Vulnerability & Compliance Management
Conduct vulnerability assessments and penetration testing on network systems, tracking and remediating identified weaknesses.
Support compliance with frameworks such as NIST or CIS as they apply to both network and security operations.
Assist with periodic audits, reporting findings, and driving corrective actions.
Threat Intelligence & Reporting
Stay up to date on evolving attack vectors, especially those targeting enterprise networks.
Leverage threat intelligence to proactively adjust network defenses.
Produce operational dashboards and executive-level reports detailing network health, incidents, and security posture.
Collaboration & Training
Work closely with IT infrastructure, Security Architect, and Application teams to integrate security into network design and operations.
Provide guidance and training to IT staff and end-users on secure network practices, phishing awareness, and incident reporting.
Knowledge, skills, and abilities:
Technical Knowledge
Strong foundation in networking protocols (TCP/IP, BGP, OSPF, VLANs, DNS, DHCP) and enterprise network architectures.
Hands-on experience with network monitoring and analysis tools (e.g., Wireshark, SolarWinds, Nmap, Nessus).
Familiarity with security technologies such as SIEM (Splunk, ELK) a plus.
Hands-on experience with enterprise network firewalls and network equipment.
Experience with enterprise endpoint protection.
Understanding of threat detection, DDoS mitigation, VPNs, and secure remote access.
Familiarity of compliance requirements Sarbanes-Oxley Act of 2002 (SOX) as they apply to both network and security operations.
Skills
Proficiency in troubleshooting complex network and security issues in enterprise environments.
Strong analytical mindset with the ability to distinguish between performance-related issues and security threats.
Clear communication skills for cross-team collaboration and reporting to both technical and non-technical audiences.
Effective multitasking and prioritization in 24/7 operations environments.
Abilities
Ability to balance proactive network performance management with rapid cyber threat response.
Commitment to continuous learning in both network operations and cybersecurity trends.
Adaptability to shifting operational demands and evolving attack landscapes.
Strong teamwork skills with the discretion to handle sensitive information responsibly.
Education and Experience
Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field (or equivalent practical experience) preferred.
3-5 years of combined experience in network operations and cybersecurity, with at least 2 years in a security-focused network role preferred.
Relevant certifications highly desirable, such as:
Network-focused: CCNA, CCNP, CompTIA Network+
Security-focused: CISSP, CompTIA Security+, CEH, GIAC (GCIA, GCIH)
Equal Opportunity Employer
Prospective employees will receive consideration without discrimination because of race, color, religion, marital status, sex (including pregnancy, gender identity, and sexual orientation), national origin, age, veteran status, disability, or genetic information.
Edit job description
Auto-ApplyInformation Security Analyst
Security engineer job in Irving, TX
Mid-Senior career position responsible for supporting defense of information from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording, or destruction via support, maintenance and enhancement of our client's Oracle application.
Qualifications
Minimum of three years of hands-on experience implementing or maintaining Oracle EBS & GRC security controls, rules, responsibility design and administration
Oracle EBS security user and role administration duties
CISA, CRISC or CGEIT, or equivalent certification preferred.
Functional knowledge of Oracle EBS and GRC and Oracle Cloud
Strong understanding of current and developing information security administration practices and technologies
Strong knowledge of role-based access management controls and practices
Additional Information
All your information will be kept confidential according to EEO guidelines.
Security Systems Field Engineer
Security engineer job in Dallas, TX
Digi Security Systems is an industry leader in the design, installation and support of custom video surveillance, electronic access control, and intrusion detection solutions for public and private partners. We've built our reputation on innovation and reliable service, and we're known as the industry's experts.
Position Overview
We are seeking an experienced Field and Service Engineer to join our operations in the Dallas, TX area. This person will be responsible for performing the most skilled security technician work in the service, troubleshooting, alternation and programming of all security related systems. Field Engineers, also known as Elite Resource Technicians at Digi, are service providers who support Digi's internal and external operations by providing custom programming, training, and technical advisement. This individual must have a expert background in installing and servicing Access Control, CCTV, and Burglar/Intrusion Alarm Systems and at least seven (7) years of experience working in the commercial security systems field.
Please note, this role will require regular travel to the Houston, TX area. Rate of pay is dependent on experience, but is typically $35+/hour.
Main Responsibilities:
Service: Responsible for the professional service of access control, CCTV, and burglar/intrusion alarm systems.
Programming: Ensures project systems are programmed to the highest standard and organized to work well for the client. Often includes customized programming to meet specific Partner needs.
Networking: Complete high level integration and programming of systems, using both networks and servers.
Quality Control: Complete internal audits of Digi's projects, and ensures that highest standard of installation is upheld. Write course content and provide technical expertise for Digi's internal learning and development initiatives.
Leadership: Provide on-the-job training and mentoring on-site to technicians on their team. Collaborate with other Elite Resources to create standard operating procedures, work exemplars, and training sessions.
Communication: Respectfully communicates with all local Partner and internal staff on daily progress and all necessary information on any service call or project.
Documentation: Completes project close out documentation, including as-built drawings, head end and installation quality pictures. Documents installation quality and completes all required close out documents.
Benefits:
2 weeks vacation accrual rate and PTO rate
3 weeks vacation accrual rate after first year of employment
7 company-wide paid holidays throughout the year
On-call bonuses
401k plan w/corporate matching structure
Full health benefits offered - medical, dental and vision
Included life insurance, additional available for purchase
Accident/critical illness insurance available for purchase
Full set of Hilti tools
All hand tools and consumables paid for by company
Required training/licensing paid for by company
Voluntary professional development opportunities
Company laptop, company phone, uniforms and gear
Company vehicle or personal vehicle allowance
Yearly stipend for steel-toed boots and work pants
Great opportunities for bonus pay
Physical Requirements:
Ability to lift/move equipment and tools weighing up to 50 lbs.
Ability to work from ladders or man lifts at extended heights.
Must be able to differentiate colors.
Must be comfortable standing for long periods of time and complete overhead work for long periods of time.
Must have a current, valid driver's license in the state of which you are applying and have the ability to meet our company driving standards.
Disclaimer: This job description is not all encompassing of job responsibilities and is not in any way a binding document. It does not affect the at will nature of employment at Digi Security Systems.
#LI-TW1
Auto-ApplyInformation Security Risk Analyst (GRC)
Security engineer job in Terrell, TX
The Information Security Risk Analyst role is responsible for critical assessment, analysis, and support necessary to maintain the Information and Cyber Security Program.
Conduct comprehensive risk assessments to identify and evaluate potential threats and vulnerabilities to information systems, assets, programs, and practices
Analyze controls for weaknesses in security, business resiliency, data protection, privacy, and compliance frameworks
Leverages quantitative analysis and qualitative narrative to thoroughly document and report all identified risks and gaps to Information Security leadership
Conduct Information and Cyber Security due diligence to support the Third-Party Risk Management program
Support Information Security leadership with facilitation of program management efforts including but not limited to risk register maintenance, issue management, security awareness, vulnerability management, policies, procedures, metrics and reporting
Interface and collaborate with internal stakeholders and external auditors as necessary to support the Information Security Program and other critical business efforts
Perform horizon scanning and stay up to date with regulatory changes, emerging threats, vulnerabilities, security standards and best practices
Participates in and support incident response activities as necessary
Perform other duties as assigned
Required Experience:
Bachelor's degree in cyber security, information technology, business, or finance, or equivalent industry experience. Professional certifications such as ISC2 Certified in Governance Risk & Compliance (CGRC), ISC2 Systems Security Certified Practitioner (SSCP), Comp TIA Security+
2-3 years of Information Security risk management or audit experience. Experience and understanding of regulatory requirements and laws, including but not limited to; GLBA, HIPAA, PCI, GDPR, and TDPSA. Experience with security and control framework including but not limited to; NIST, CIS, CSA, SSAE10 SOC2, and HITRUST
Preferred experience with vulnerability management, security awareness, and GRC systems or platforms. Prior Information/Cyber Security of Information Technology practitioner experience in the financial industry or other highly regulated industry is helpful
Skills:
Exceptional written and verbal communication skills; including ability to translate security and risk to all levels of the business. Strong analytical skills with proven attention to detail. Strong organization and time management skills
Work occasionally requires more than 40 hours per week to perform the essential functions of the position
Lifting in an office setting may be required up to 30lbs.
ANBTX strongly encourages candidates that are fluent in English and Spanish to apply. Jobs that specifically require candidates to be bilingual will be posted as a requirement.
Information Security Compliance Specialist
Security engineer job in Irving, TX
The Information Security (IS) Compliance Specialist will be responsible for supporting the management of compliance processes to help OVHcloud meet industry standard cloud computing certifications and applicable legal and regulatory compliance requirements with a high concentration on information security. As a part of the compliance team, you will play a strategic role in coordinating and executing OVHcloud US certification & compliance strategy for programs like ISO 27001, PCI-DSS, HIPAA, and SOC.
Base pay range: $85,000 - $95,000 (based on relevant experience).
Essential Duties & Responsibilities
Support the execution of certification & compliance roadmap working with cross-functional teams and external auditing agencies.
Accurately interpret, map, and communicate information systems compliance regulations and requirements within the organization, leveraging best practices.
Conduct internal assessments and audits at planned intervals and on an ad hoc basis to evaluate and validate the design and operational effectiveness of policies, standards, and internal control framework to help reduce risk in the organization.
Organize and support internal audits and external compliance/certification audits for the organization.
Monitor open audit items from internal audits and external compliance/certification audits to ensure completion of remediation activities defined in the agreed action plans and risk treatment plans.
Continuously search for ways to improve and optimize current processes related to compliance policies, standards, and external requirements.
Provide compliance-focused support to sales, product, and legal teams.
Minimum Requirements
Bachelor's degree in information systems or a related technical field preferred; equivalent experience considered in lieu of degree.
4+ years of experience working in an information security, information technology or information risk management related field possessing thorough understanding of industry standards and regulations including ISO 27001, SSAE18 SOC 1, 2 & 3, Payment Card Industry (PCI-DSS), HIPAA, Cloud Star Alliance (CSA) and Sarbanes-Oxley (SOX).
Experience with compliance programs in a service provider market preferred.
Must be a self-starter and possess the qualities to work efficiently, effectively, and autonomously with general supervision
Demonstrated ability to multi-task, respond to needs quickly and efficiently and prioritize work with a strong attention to detail
Ability to work well under pressure and respond to tight deadlines while exercising sound judgment
Demonstrated experience in managing compliance programs for financial services organization or organizations with similar information security needs and requirements
Familiarity and understanding of broad range of IT technical controls, hardware and software products, cloud computing, or hosting services
Must have excellent analytical skills; extensive Microsoft Excel experience a plus
Working Conditions
Standard office environment
Company Description - About OVHcloud
OVHcloud US is a subsidiary of OVHcloud, a global cloud provider that specializes in delivering industry-leading performance and cost-effective solutions to better manage, secure, and scale data. OVHcloud US delivers bare metal servers, hosted private cloud, hybrid and public cloud solutions. OVHcloud manages 43 data centers across 12 sites on four continents, manufacturing its own servers, building its own data centers and deploying its own fiber-optic global network to achieve maximum efficiency. Through the OVHcloud spirit of challenging the status quo, the company brings freedom, security and innovation to solve data challenges - today and tomorrow. With a 25-year heritage, OVHcloud is committed to developing responsible technology and strives to be the driving force behind the next cloud evolution. ************************
EEO Statement
OVHcloud is committed to providing equal employment opportunities to all employees and applicants without regard to race, ethnicity, religion, color, sex (including childbirth, breast feeding, and related medical conditions), gender identity or expression, sexual orientation, national origin, ancestry, citizenship status, uniform service member and veteran status, marital status, pregnancy, age, protected medical condition, genetic information, disability, or any other protected status in accordance with all applicable federal, state and local laws.
Powered by JazzHR
lOtzBWvXWg
Senior Manual Ethical Hacker
Security engineer job in Addison, TX
Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Addison, Texas; Jersey City, New Jersey; Boston, Massachusetts; Charlotte, North Carolina; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.** Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (***********************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity.
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
+ Developing Proof-of-concepts for exploitation.
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications.
+ Provide clear and practical advice regarding managing risks.
+ Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
+ Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
+ Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 5 of the following areas:
+ security engineering
+ application architecture
+ authentication and security protocols
+ application session management
+ applied cryptography
+ common communication protocols
+ mobile frameworks
+ single sign-on technologies
+ exploit automation platforms
+ Web APIs
+ Cloud environments
+ LLM security
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with DAST and SAST tools to identify vulnerabilities
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques.
+ Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
+ Threat Analysis, threat modelling and SBOM analysis
+ Innovative thinking, threat actor simulation
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Security Systems Analyst
Security engineer job in Plano, TX
Artech is the 10th Largest IT Staffing Company in the US, according to Staffing Industry Analysts' 2012 annual report. Artech provides te chnical expertise to fill gaps in clients' immediate skill-sets availability, deliver emerging technology skill-sets, refresh existing skill base, allow for flexibility in project planning and execution phases, and provide budgeting/financial flexibility by offering contingent labor as a variable cost.
Job Description
• Deploy and maintain a full suite of endpoint security products.
• Responsible for ensuring high level of systems security compliance.
• Maintain pertinent site location details to ensure proper incident management ticket routing.
• Perform incident triage and handling by determining scope, urgency and potential impact
• Provide support for vulnerability assessments tools across multiple vendors.
• Coordinate with and act as subject matter expert to resolve incidents by working with other information security specialists.
• Maintain and expand related information security metrics.
Qualifications
• 5+ years supporting workstation and server operating systems.
• 1 year incident response and malware removal experience
• 1 to 2 years' experience supporting endpoint security tools, McAfee, Symantec, Trend Micro, etc.
• Basic knowledge of network and perimeter security methodologies and tools.
Additional Information
Looking only for W2, No C2C ( Referral and H1B Transfer will work )
First Line Defense Analyst II (On-site)
Security engineer job in Coppell, TX
Exceed the expectations of our residential mortgage borrowers & business partners through superior service, simple processes, and effective communications. We deliver on this mission by empowering our employees by encouraging and recognizing superior performance and innovative solutions, by promoting teamwork and divisional cooperation.
POSITION SUMMARY
The First Line Defense Analyst II is responsible for utilizing investor servicing knowledge to prepare Business Performance testing for multiple areas in investor servicing, communicate those results to the manager and assist with remediation efforts identified through testing. In addition, compilation of audit materials requested as well as policy and procedure review will be expected. The analyst will also ensure department controls and policies and procedures are updated when there are either audit findings or updates to department processes.
DESCRIPTION
Duties and Responsibilities
Department point of contact for internal and external audit requests; compiles internal and external audit documentation.
Prepare Business Performance testing for multiple departments, which includes (but is not limited to) Fannie Mae, Freddie Mac, Ginnie Mae or Private investor remittances, cutoff reporting, and reconciliations.
Manage remediations, through to completion, in response to audit and/or business performance testing findings with respective departments.
Propose process improvements as a result of Business Performance testing and/or audit findings.
Test policies and procedures to ensure the process performs as expected.
Maintains and follows procedures and controls within the monthly process.
Heavy use of Microsoft Excel for data analysis and reporting.
Handle ad-hoc reporting or research as directed by management.
Demonstrate flexibility to ever-changing business needs and requirements.
Possess an understanding of GSE and/or GNMA servicing guides and a willingness to interpret pooling and servicing agreements.
Researches and resolves data issues, proposes solutions for future process enhancements.
Performs related duties as assigned by management.
Qualifications and Education Requirements
High School Diploma or equivalent required.
Bachelor's Degree in Accounting or Finance preferred.
3+ years of Mortgage Servicing experience required; 2+ years prior Investor Reporting experience required.
Skills, Abilities, and Knowledge
Advanced MS Excel experience required.
SQL or other database reporting experience preferred.
Servicing Director knowledge a plus.
Knowledge of basic accounting principles and practices.
Solid analytical skills, particularly regarding assessing the probability and impact of an internal control weakness.
Proven ability to build strong relationships with stakeholders, learn quickly, be flexible and think strategically.
Strong communication skills to interact with Senior Management and other business units.
Working understanding of operational risks and related controls.
Strong organizational and time management skills necessary.
Ability to manage multiple tasks and shift priorities as appropriate to meet reporting deadlines and maintain reporting accuracy and analysis abilities with strong attention to detail.
Self-motivated with strong attention to detail and excellent organization skills.
Additional Information
While this description is intended to be an accurate reflection of the position's requirements, it in no way implies/states that these are the only job responsibilities. Management reserves the right to modify, add or remove duties and request other duties, as necessary.
All employees are required to have smart phones that meet Company security standards with the ability to install apps such as Okta Verify and Microsoft Authenticator. Employment will be contingent on this requirement.
By applying to this position candidate acknowledges that this is not a remote role and is required to be on-site.
Additional Information:
While this description is intended to be an accurate reflection of the position's requirements, it in no way implies/states that these are the only job responsibilities. Management reserves the right to modify, add or remove duties and request other duties, as necessary.
All employees are required to have smart phones that meet Company security standards with the ability to install apps such as Okta Verify and Microsoft Authenticator. Employment will be contingent on this requirement.
Company Benefits:
Newrez is a great place to work but we are only as strong as our greatest asset, our employees, so we believe in rewarding them!
Medical, dental, and vision insurance
Health Savings Account with employer contribution
401(k) Retirement plan with employer match
Paid Maternity Leave/Parental Bonding Leave
Pet insurance
Adoption Assistance
Tuition reimbursement
Employee Loan Program
The Newrez Employee Emergency and Disaster Fund is a new program to support our team members
Newrez NOW:
Our Corporate Social Responsibility program, Newrez NOW, empowers employees to become leaders in their communities through a robust program that includes volunteering, philanthropy, nonprofit grants, and more
1 Volunteer Time Off (VTO) day, company-paid volunteer day where all eligible employees may participate in a volunteer event with a nonprofit of their choice
Employee Matching Gifts Program: We will match monetary employee donations to eligible non-profit organizations, dollar-for-dollar, up to $1,000 per employee
Newrez Grants Program: Newrez hosts a giving portal where we provide employees an abundance of resources to search for an opportunity to donate their time or monetary contributions
Equal Employment Opportunity
We're proud to be an equal opportunity employer- and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. Different makes us better.
CA Privacy Policy
CA Notice at Collection
Auto-ApplySecurity Systems Field Engineer
Security engineer job in Dallas, TX
Digi Security Systems is an industry leader in the design, installation and support of custom video surveillance, electronic access control, and intrusion detection solutions for public and private partners. We've built our reputation on innovation and reliable service, and we're known as the industry's experts.
Position Overview
We are seeking an experienced Field and Service Engineer to join our operations in the Dallas, TX area. This person will be responsible for performing the most skilled security technician work in the service, troubleshooting, alternation and programming of all security related systems. Field Engineers, also known as Elite Resource Technicians at Digi, are service providers who support Digi's internal and external operations by providing custom programming, training, and technical advisement. This individual must have a expert background in installing and servicing Access Control, CCTV, and Burglar/Intrusion Alarm Systems and at least seven (7) years of experience working in the commercial security systems field.
Please note, this role will require regular travel to the Houston, TX area. Rate of pay is dependent on experience, but is typically $35+/hour.
Main Responsibilities:
Service: Responsible for the professional service of access control, CCTV, and burglar/intrusion alarm systems.
Programming: Ensures project systems are programmed to the highest standard and organized to work well for the client. Often includes customized programming to meet specific Partner needs.
Networking: Complete high level integration and programming of systems, using both networks and servers.
Quality Control: Complete internal audits of Digi's projects, and ensures that highest standard of installation is upheld. Write course content and provide technical expertise for Digi's internal learning and development initiatives.
Leadership: Provide on-the-job training and mentoring on-site to technicians on their team. Collaborate with other Elite Resources to create standard operating procedures, work exemplars, and training sessions.
Communication: Respectfully communicates with all local Partner and internal staff on daily progress and all necessary information on any service call or project.
Documentation: Completes project close out documentation, including as-built drawings, head end and installation quality pictures. Documents installation quality and completes all required close out documents.
Benefits:
2 weeks vacation accrual rate and PTO rate
3 weeks vacation accrual rate after first year of employment
7 company-wide paid holidays throughout the year
On-call bonuses
401k plan w/corporate matching structure
Full health benefits offered - medical, dental and vision
Included life insurance, additional available for purchase
Accident/critical illness insurance available for purchase
Full set of Hilti tools
All hand tools and consumables paid for by company
Required training/licensing paid for by company
Voluntary professional development opportunities
Company laptop, company phone, uniforms and gear
Company vehicle or personal vehicle allowance
Yearly stipend for steel-toed boots and work pants
Great opportunities for bonus pay
Physical Requirements:
Ability to lift/move equipment and tools weighing up to 50 lbs.
Ability to work from ladders or man lifts at extended heights.
Must be able to differentiate colors.
Must be comfortable standing for long periods of time and complete overhead work for long periods of time.
Must have a current, valid driver's license in the state of which you are applying and have the ability to meet our company driving standards.
Disclaimer: This job description is not all encompassing of job responsibilities and is not in any way a binding document. It does not affect the at will nature of employment at Digi Security Systems.
#LI-TW1