Information Technology Security Manager
Security engineer job in Fort Mill, SC
CULTURE SNAPSHOT:
Broad River Retail is an organization of integrity, diversity and culture working together for the purpose of ‘
Furnishing Life's Best Memories'
. At Broad River, we call all our employees “Memory Makers.” We do this because we know everyone that works for our Company has the power to make positive memories not only for our Guests, but also for their families, co-workers, and communities.
We take pride in training and developing our teams so that they can provide a premier customer experience to every Guest. Our Memory Makers are the driving force that has led us to being the largest and fastest growing Ashley licensee in the U.S. and landing us on the Top Places to Work list two years in a row in our industry.
AT A GLANCE:
The IT Security Manager reports directly to the VP of IT/BI and is part of the IT/BI Department. The IT Security Manager is responsible for safeguarding the organization's digital assets by managing and monitoring, detecting, and responding to security threats. This role involves conducting risk assessments, managing incident responses, and implementing security protocols to ensure the integrity, confidentiality, and availability of enterprise systems and data.
DAY IN THE LIFE AS THIS MEMORY MAKER:
Monitor security networks and systems for breaches or suspicious activity.
Respond to security incidents and conduct thorough investigations.
Perform vulnerability assessments and penetration testing.
Develop and implement security measures and protocols.
Analyze security alerts and determine appropriate response actions.
Collaborate with IT teams to ensure secure system configurations.
Prepare regular security reports for management.
Conduct security awareness training for staff.
Lead and manage security-related projects and initiatives.
WHAT YOU'LL NEED TO SUCCEED:
Bachelor's degree in Computer Science, Information Technology, or related field.
5+ years of experience in cybersecurity or related roles.
3+ years of Information Technology Management or related field
Certifications such as CISSP, CISM, CEH, or GIAC preferred.
Strong understanding of cybersecurity frameworks (e.g., NIST, ISO-27001, PCI-DSS).
Experience with SIEM, IDS/IPS, firewalls, and endpoint protection tools.
Excellent analytical, problem-solving, and communication skills.
Ability to lead security-related projects and initiatives.
Clearly convey ideas, expectations, and feedback to teams, ensuring transparency and alignment across all levels.
Build strong relationships and a positive work culture.
Address and resolve conflicts within the team, mediating differences and finding mutually beneficial solutions.
Inspire and encourage team members, fostering a sense of purpose and driving performance toward shared goals.
Respond to change with flexibility and a positive outlook, guiding teams through transitions and unforeseen challenges.
Distribute tasks effectively based on team strengths, ensuring optimal workload balance and empowering others to take ownership.
Mentor and provide constructive feedback to help team members grow, enhancing their skills and career development.
WORKPLACE ENVIRONMENT:
While performing the duties of this job the employee is:
Prolonged periods sitting at a desk and working on a computer.
Must be able to lift up to 15 pounds at a time.
WORK SCHEDULE OUTLINED ON SITE, HYBRID, REMOTE WITH EXPECTATIONS
Ability to work independently, as well as, in a collaborative team environment within an office setting.
Physical requirements such as extended periods of sitting and computer use may be required.
Physical requirements such as extended periods of standing may be required.
Ability to communicate effectively verbally, in writing, and/or electronically.
Ability to use logical reasoning for simple and complex problem solving.
Travel up to 20% of your time.
In accordance with the Americans with Disabilities Act (ADA), reasonable accommodations may be made to empower individuals with disabilities to undertake the essential duties and responsibilities of the position.
MEMORY MAKER PERKS & BENEFITS:
Salary Range based on background, skill, and experience
Medical, dental, vision, and life insurance options
Paid time off and 401K matching contribution
Employee discount (40%) at BRR locations
Internal Opportunities for career growth and advancement
OUR COMMITMENT TO YOU:
Broad River Retail is committed to creating a place where everyone feels respected, valued, and able to reach their full potential. Regardless of race, gender, religion, sexual orientation, age, disability, or if you're parenting the next generation of Memory Makers, we firmly believe our work is at its best when everyone feels free to be their most authentic self.
Network Engineer
Security engineer job in Charlotte, NC
How to Maximize
your opportunity to do rewarding work,
your future leadership potential,
and your career growth?
Join an industry leader.
[Become one, too!]
Octapharma Plasma offers professional opportunities that make a meaningful difference. We enhance the lives of patients who need our life-saving medicines. We reward the donors who provide the plasma we collect to make them. And we inspire growth and development in the teams at our donation centers, offices, and labs. We invite you to do the same in this role:
Network Engineer
Onsite Charlotte, NC
This Is What You'll Do:
Plan, design, implement and manage network systems and their corresponding or associated software in a primarily Cisco environment, including firewalls, VoIP and unified communications, wireless, switching/routing and end-point protection while assuring system performance and
Work with WAN provider, coordinate WAN activities, and manage communications vendor
Assist in the documentation and implementation of best practices for network design and management, LAN switching, cable management, and fault detection and correction under the leadership of the Manager of Operations and Delivery.
Monitor and maintain overall network/infrastructure health and performance.
Perform network and Server administration
Perform performance reporting and analysis on both Network and Windows server systems.
Support integration of new businesses in both planning and field work.
Provide augmentation for help desk Support Analysts in answering and resolving reported Tier One and Tier Two Is able to resolve most user reported infrastructure issues, but may require the assistance of Senior Engineers to resolve Tier 3 problems. If needed, work with the hardware/software vendor support for problem resolutions.
Able to define advanced troubleshooting techniques to quickly isolate and resolve reported infrastructure issues, except those requiring advanced Network or Server skills.
Support both a corporate office environment and a significant number of remote locations. Complete installation of all donor center, server, or network equipment or the installation of
Understand the various networking principals including data center architecture, LAN configuration, WAN configurations using MPLS and VPN, QoS, VoIP etc. to support corporate office and remote locations. Provide technical thought leadership and evaluate different solutions/vendors/designs to determine the best solution for the business needs.
Provide routine reporting and analysis of network information and performs root cause analysis of recurring problems.
Develop performance and service level objectives under the direction of the Manager, IT
Provide IT operations support, which may include: collecting and reporting performance data, outage data, review of error logs and backup logs, and other monitoring as assigned and can provide assessment of results and recommendations for improvement.
Configure test environments on a continual basis. Control and maintain an up-to-date library of product releases, service packs, hot fixes, patches, Installs new equipment as it arrives. Place support calls with vendors as needed on new and existing equipment. Maintains all lab equipment - troubleshoots and repairs faulty equipment as needed whether it be hardware or software related.
Assist in the scheduling of out of town assignments, on-call support, and off-hour change requirements.
Assist in the implementation and documentation of best practices in infrastructure maintenance and support.
This Is Who You Are:
Strong leadership and organizational development skills
Deep understanding of enterprise IT systems, software, and data management
Expertise in infrastructure architecture and security governance
Proficient in project and budget management
Strong negotiating and vendor management capabilities
Excellent written, verbal, and interpersonal communication skills
Ability to present technical concepts in business-friendly language
Self-motivated with exceptional problem-solving and analytical abilities
Committed to delivering high-quality service and continuous improvement
Knowledge of applicable data privacy, security, and compliance laws
Collaborative, with a demonstrated ability to lead cross-functional teams
This Is What It Takes:
Bachelors Degree in Information Technology or related field of study, or equivalent industry
Minimum of four (4) years experience performing Network support in a comparable
Experience with Cisco router, switch, and VoIP installation and
Demonstrated administration of Cisco Call Manager, Unity, and IOS.
Knowledge of Cisco ASAs, ACLs, IDS and other security functions.
Demonstrated participation in the on-call support schedules for Network and/or
Knowledge of IP, OSI model, MPLS, Frame Relay, VLANs, VOiP, quality of service, as well as PC, and Server hardware.
Ability to acquire an understanding of the needs and restrictions of a FDA, GxP
Excellent verbal, written and interpersonal communications
Experience in performing root cause analysis for service interruption recovery; create preventative measures on complex projects.
Demonstrated flexibility to changing priorities.
Will be required to work outside of Normal Business hours, primarily in the event of an emergency or implementation of new systems/upgrades which will need to be done after hours.
On-call support that may involve night or weekend coverage as
CCNA (Routing & Switching) certification required.
CCNA (Voice) certification preferred.
Do Satisfying Work. Earn Real Rewards and Benefits.
We're widely known and respected for our benefits and for leadership that is supportive and hands-on.
Formal training
Outstanding plans for medical, dental, and vision insurance
Health savings account (HSA)
Employee assistance program (EAP)
Wellness program
401 (k) retirement plan
Paid time off
Company-paid holidays
Personal time
More About Octapharma Plasma, Inc.
With donation centers and team members throughout the U.S., Octapharma Plasma, Inc. collects plasma to create life-saving medicines for patients worldwide. We are growing at an impressive pace, and so is the positive impact of our work. Our community relies on teamwork, compassion, and expertise to get things done the right way, while making a meaningful difference in the lives we touch.
Interested? Learn more online and apply now at:
octapharmahiring.com
And if you know someone else who'd be a great fit at Octapharma Plasma, Inc., please forward this posting along.
INNER SATISFACTION.
OUTSTANDING IMPACT.
Security Engineer - Secure Software Development
Security engineer job in Charlotte, NC
By joining Sedgwick, you'll be part of something truly meaningful. It's what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your career with us, experience our caring culture, and enjoy work-life balance. Here, there's no limit to what you can achieve.
Newsweek Recognizes Sedgwick as America's Greatest Workplaces National Top Companies
Certified as a Great Place to Work
Fortune Best Workplaces in Financial Services & Insurance
Security Engineer - Secure Software Development
Security Engineer - Secure Software Development
**PRIMARY PURPOSE OF THE ROLE:** To manage the implementation of security measures to protect company data, networks, and computer systems. To focus on executing security fundamentals for threat detection, investigation, and response efforts.
**ARE YOU AN IDEAL CANDIDATE?** We are looking for enthusiastic candidates who thrive in a collaborative environment, who are driven to deliver great work, are customer-oriented and are naturally empathetic.
**ESSENTIAL RESPONSIBLITIES MAY INCLUDE**
+ Engineers, implements and monitors security measures for the protection of computer systems, networks and information.
+ Identifies and defines system security requirements.
+ Designs computer security architecture and develops detailed cyber security designs.
+ Prepares and documents standard operating procedures and protocols.
+ Configures and troubleshoots security infrastructure devices.
+ Develops technical solutions and new security tools to assist in mitigating security vulnerabilities and automating repeatable tasks.
+ Leads IT groups and business units as necessary in troubleshooting compatibility issues between security tools and business or productivity programs.
+ Performs analysis of suspected malicious code and other software or programs and provides written or verbal analysis to management.
+ Analyzes client and customer needs as required and provides clear and concise reports to leadership.
+ Works closely with management on assigned projects from inception through implementation ensuring adequate internal communication and user involvement is maintained.
**QUALIFICATIONS**
Eight (8) years of encryption technologies/algorithms, digital forensics, network topologies, and access controls experience or equivalent combination of educated and experience required.
**Skills & Knowledge**
+ Knowledge of TCP/IP services
+ Knowledge of audit and compliance
+ Knowledge of vulnerability management
+ Knowledge of penetration testing
+ Knowledge of various operating systems
+ Knowledge of desktop productivity software
+ Knowledge of Carbon Black Protection
+ Knowledge of Symantec Endpoint Protection and host data loss prevention
+ Knowledge of information technology security frameworks
+ Excellent oral and written communication skills, including presentation skills
+ PC literate, including Microsoft Office products
+ Analytical and interpretive skills
+ Strong organizational skills
+ Excellent interpersonal skills
+ Ability to create and complete comprehensive, accurate and constructive written reports
+ Ability to work in a team environment
+ Ability to meet or exceed Performance Competencies
**Proficient in Snyk for Application Security:** Demonstrated expertise in integrating Snyk into CI/CD pipelines to proactively identify and remediate vulnerabilities in open-source dependencies, container images, and infrastructure as code. Skilled in leveraging Snyk's developer-first tools to maintain secure codebases, enforce security policies, and ensure compliance with industry standards. Experienced in configuring automated scans, interpreting results, and collaborating with development teams to implement effective remediation strategies, contributing to a robust DevSecOps culture.
**TAKING CARE OF YOU**
+ Career development and promotional growth opportunities
+ A diverse and comprehensive benefits offering including medical, dental vision, 401K, PTO and more
\#LI-TS1
Work environment requirements for entry-level opportunities include -
Physical: Computer keyboarding
Auditory/visual: Hearing, vision and talking
Mental: Clear and conceptual thinking ability; excellent judgement and discretion; ability to meet deadlines
Travels as required
The statements contained in this document are intended to describe the general nature and level of work being performed by a colleague assigned to this description. They are not intended to constitute a comprehensive list of functions, duties, or local variances. Management retains the discretion to add or to change the duties of the position at any time.
Sedgwick is an Equal Opportunity Employer and a Drug-Free Workplace.
**If you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, consider applying for it anyway! Sedgwick is building a diverse, equitable, and inclusive workplace and recognizes that each person possesses a unique combination of skills, knowledge, and experience. You may be just the right candidate for this or other roles.**
**Sedgwick is the world's leading risk and claims administration partner, which helps clients thrive by navigating the unexpected. The company's expertise, combined with the most advanced AI-enabled technology available, sets the standard for solutions in claims administration, loss adjusting, benefits administration, and product recall. With over 33,000 colleagues and 10,000 clients across 80 countries, Sedgwick provides unmatched perspective, caring that counts, and solutions for the rapidly changing and complex risk landscape. For more, see** **sedgwick.com**
Staff Security Engineer (Detection Engineering)
Security engineer job in Charlotte, NC
We are seeking a talented Detection Engineer to join our Security Incident Response Team (SIRT) and help us protect our organization from cyber threats. The ideal candidate will have a deep understanding of security detection techniques and be able to design, implement, and maintain detection controls that detect and respond to security incidents. As a member of our SIRT, you will work closely with other engineers to identify and mitigate threats, shape detection strategy, and provide guidance on the design and implementation of security controls.
**Responsibilities**
+ Develop and maintain detection controls to monitor and detect security events that threaten the confidentiality, integrity, and availability of our organization's data and systems
+ Analyze telemetry data from diverse sources to detect known and unknown security incidents using various security tools, such as SIEM (Splunk), EDR (Crowdstrike Falcon), CSPM (Wiz) and network traffic analysis
+ Engage with threat hunting, event analysis and incident response squads to identify threats and vulnerabilities seen internally
+ Build and implement security automation workflows using SOAR tools to streamline and enhance SIRT analysis and incident resolution.
+ Proactively research, identify, and understand the latest security threats and emerging trends, including their potential impact on our organization
+ Collaborate with other engineers to design, implement, and maintain security controls based on security standards, best practices, policies, and regulatory requirements
+ Provide guidance to enhance the creation, documentation, implementation, and adherence of security policies and procedures
+ Participate in security incident response activities and help develop mitigation and remediation strategies
+ Communicate security results and findings to technical audiences and management stakeholders through detailed analysis, briefings, and reports
_Intuit provides a competitive compensation package with a strong pay for performance rewards approach. The expected base pay range for this position is:_
Bay Area California $206,000 - $278,500
San Diego Area California $187,000 - $252,500
_This position will be eligible for a cash bonus, equity rewards and benefits, in accordance with our applicable plans and programs (see more about our compensation and benefits at Intuit : Careers | Benefits (************************************************************** _)._
_Pay offered is based on factors such as job-related knowledge, skills, experience, and work location. To drive ongoing pay equity for employees, Intuit conducts regular comparisons across categories of ethnicity and gender._
**Qualifications**
+ BS/MS in Computer Science or related field or equivalent relevant experience. Experience in Cybersecurity and/or Identity and Access Management is strongly desired.
+ 7+ years of professional experience on/leading policy or analytics teams in a compliance, security, risk, or financial fraud environment
+ Developer experience in Python or comparable language preferred
+ Expert in producing user-friendly data visualizations and adept at communicating with data
+ Demonstrated project management skills for planning/driving tasks across organizations while keeping initiatives on track to achieve desired outcomes
+ Ability to understand and demonstrate empathy for opposing points of view on highly complex issues
+ Excellent written and verbal communication skills; ability to succinctly communicate technical and business requirements, business cases and other findings across organizational levels
+ Proven ability to use productivity/collaboration tools such as MS Office, Google Suite, and Slack
If you have a passion for cybersecurity and a proven track record in security detection and incident response, we invite you to apply for this role. Join our SIRT team and help us protect our organization and customers from cyber threats.
Intuit provides a competitive compensation package with a strong pay for performance rewards approach. This position will be eligible for a cash bonus, equity rewards and benefits, in accordance with our applicable plans and programs (see more about our compensation and benefits at Intuit : Careers | Benefits (************************************************************* ). Pay offered is based on factors such as job-related knowledge, skills, experience, and work location. To drive ongoing fair pay for employees, Intuit conducts regular comparisons across categories of ethnicity and gender. The expected base pay range for this position is:
EOE AA M/F/Vet/Disability. Intuit will consider for employment qualified applicants with criminal histories in a manner consistent with requirements of local law.
Offensive Security Engineer, Assessments (Web3)
Security engineer job in Charlotte, NC
Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, security engineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior security engineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Physical Security Design Engineer
Security engineer job in Charlotte, NC
The NV5 Security Practice is seeking a
Design
Engineer
to work with a team to design and oversee the installation and integration of advanced physical security systems for Nuclear Power Generation Facilities. The ideal candidate will be familiar with the nuclear standard design process.
Work Environment:
Location: Hybrid client location in Charlotte, NC & work from home (no relocation assistance provided)
Travel: 20% of the time
May require flexible hours to accommodate customer needs and for travel requirements
NV5 is a global technology solutions and consulting services company with a workforce of over 4,500 professionals in more than 100 offices worldwide. NV5's continued growth has been spurred through strategic investments in firms with unique capabilities to help current and future customers solve the world's toughest problems. The NV5 family brings together talent across a wide range of markets and fields, including Professional Engineers, Professional Land Surveyors, Architects, Photogrammetrists, GIS Professionals, Software Developers, IT, Project Management Professionals, and more.
Responsibilities
Designing physical security systems, including access control, surveillance cameras, alarms, and sensors.
Collaborating with architects, engineers, and stakeholders to integrate security measures into building plans and infrastructure.
Qualifications
Requirements:
Bachelor's degree in electrical or mechanical engineering
Knowledge of Nuclear industry standards and best practices.
Competencies & Skills:
Excellent communication and collaboration skills.
Attention to detail and a proactive approach to security.
Excellent problem-solving and analytical abilities.
Ability to work independently and manage multiple tasks simultaneously.
Employment is contingent upon successful completion of a background check and drug screening.
NV5 offers a competitive compensation and benefits package including medical, dental, life insurance, PTO, 401(k) and professional development/advancement opportunities.
NV5 provides equal employment opportunities (EEO) to all applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws. NV5 complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.
#LI-Hybrid
#LI-JG1
#Nuclear
Auto-ApplySubstation Physical Engineer
Security engineer job in Charlotte, NC
The Substation Physical Engineer will design high-voltage substation projects for utilities and renewable energy clients, producing detailed physical layouts, calculations, equipment specifications, and construction documents. This role requires strong technical competency, collaboration across multidisciplinary teams, and the ability to manage multiple projects in a fast-paced environment. Ideal candidates bring 3-5 years of experience, an EIT (preferred), and familiarity with NESC, NEC, grounding studies, and high-voltage equipment.
Perform physical design for high-voltage (4 kV-230 kV) and EHV (>230 kV) substations.
Apply NESC, NEC, and utility standards to develop high-quality engineering deliverables.
Produce plan views, elevation views, grounding analyses, conduit and cable trough layouts, fault studies, and AC/DC station service and battery calculations.
Prepare equipment specifications, bills of materials, and construction documentation.
Collaborate with internal teams, external partners, and clients to meet project milestones and expectations.
Provide technical guidance and support throughout procurement and construction phases.
Locations: Charlotte, NC • Raleigh, NC • Madison, WI • Austin, TX
Job Function
Design Responsibilities:
Develop general arrangements, plan and elevation views, grounding plans, and conduit/cable trough designs.
Prepare specifications for major primary equipment (transformers, breakers, switches, etc.).
Produce design calculation documentation, bills of materials, and construction documents (RFPs, work sequences).
Engineering Studies:
Perform grounding and lightning studies.
Conduct AC and DC calculations for station service and battery sizing.
Perform bus fault stress analysis.
Technical Support:
Support procurement and construction activities as needed.
Active Coordination:
Work seamlessly with Physical Designers to develop required drawings.
Coordinate with internal and external stakeholders, including transmission, distribution, civil, geotechnical, and survey teams.
Other Expectations:
Produce high-quality work and support continuous improvement efforts.
Manage multiple projects in a dynamic environment.
Identify client interests and communicate these to project teams.
Provide technical guidance related to system protection and communication.
Remove obstacles affecting engineering team progress and advise leadership on maximizing ROI.
Attend all client technical review meetings.
Education and Experience
Bachelor's degree in Electrical Engineering from an accredited program.
Minimum 3 years of experience in high-voltage substation design (physical and/or P&C).
Proficiency with CDEGS, WinIGS, or similar grounding and lightning study tools.
Ability to evaluate mechanical forces and thermal impacts from high fault currents on rigid bus.
Strong knowledge of industry trends, standards, and best practices for substations.
Familiarity with NEC and National Electrical Safety Code.
Qualifications
EIT certification preferred.
PE license or ability to obtain one within 2 years (preferred).
Knowledge of construction practices and constructability.
Experience with proposal writing and project estimating.
Working knowledge of scheduling and project controls.
Appealing Facts About Living in These Locations
Charlotte, NC:
One of the fastest-growing cities in the U.S. with strong job markets.
Affordable cost of living compared to major metro areas.
Access to professional sports, museums, outdoor activities, and diverse dining.
Raleigh, NC:
Located in the Research Triangle, known for innovation and technology.
Highly rated for quality of life, safety, and family-friendly amenities.
Thriving food, arts, and outdoor recreation scene.
Madison, WI:
Consistently ranked among the best places to live.
Strong outdoor culture with lakes, trails, and year-round activities.
Known for excellent schools, healthcare, and community events.
Austin, TX:
A growing technology and cultural hub with strong career opportunities.
Warm climate, outdoor activities, and nationally known food and music.
No state income tax and a booming economy across industries.
By completing an application, you give us permission to send you text messages regarding this position and future opportunities. You can opt out at any time.
Global Talent Resources, Inc. (GTR) is a power industry recruiting firm specializing in substation, transmission, and distribution careers. With 15+ years of experience, we connect engineering and leadership professionals to top roles with leading utilities, cooperatives, EPCs, and consulting firms nationwide.
Many opportunities aren't listed publicly. Contact the GTR team for insider access, expert guidance, and the next step in your electric utility career.
Windows Security Engineer - Rapid7 Expert for America's largest recycler
Security engineer job in Charlotte, NC
The Talent Mine is recruiting for a Windows Security Engineer with strong Rapid7 skills for an immediate FTE role in the Charlotte area. This is for the nation's #1 recycler of any product, and a company with unmatched job security and stable growth.
This is for an immediate FTE role in the Charlotte, Dallas and Cincinnati ares (At work 3-4 days/week, home 1-2 days/week)
If you are the kind of engineer that wants to be a part of the circular economy, enjoys hardening systems from an application and infrastructure standpoint, and has a growth, team first mindset, read on!
Overview:
In this role you will monitor endpoint and end user security and respond to alerts generated within our client's tools and from their MSSP SOC. You will work with operations and infrastructure teams to coordinate response to teammates. You will also work within the security team and with operations teams to support our vulnerability management tools and processes. All members of the security team participate in incident response and on-call rotation providing coverage after hours and on weekends. This role will require some travel as needed.
Safety is the most important part of all jobs with our client. Candidates must be able to demonstrate the ability to initiate, lead, and uphold safety policies, practices, procedures, and housekeeping standards at all times.
The best candidates should have most of the following credentials:
3+ years of professional experience with endpoint management and security tools (Microsoft InTune, Defender for Endpoint, Defender for Servers, and Carbon Black App Control)
Experience with SIEM tools (Microsoft Sentinel, Splunk, or similar)
Experience with open-source tools particularly as applied to cybersecurity incident response.
Strong with vulnerability management tools (Rapid 7 InsightVM, QualysGuard, Nessus)
Knowledge of common cyber threats, attack methods, defense practices, and interest in continuously learning in these areas.
Professional experience with endpoint management and security tools (Microsoft InTune, Defender for Endpoint, Defender for Servers, and Carbon Black App Control)
COMPENSATION
NOTE: A nice Re-location package IS available!
TOTAL COMPENSATION =
$128,000- $168,000
, broken down as follows
:
Base salary range -
$100,000 - $120,000
Annual bonus of 28-32% over the past 5 years!
Educational assistance (up to $10K per year for you and your family members)
Other Benefits:
Medical and dental
Scholarship and tuition reimbursement
Hybrid work schedule
If you feel qualified and interested in this immediate FTE role, let's chat! The team at the Talent Mine has a stellar track record of placing very successful security engineers with this client, and knows all the nuances of this role to help you successfully interview prep and land this exciting role. Leverage our 17+ years of tech recruiting success to your advantage, and let's chat today!
Application Security Engineer
Security engineer job in Charlotte, NC
As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions.
Job Description
Are you looking for your next opportunity?
Sompo has a unique opportunity for an Application Security Engineer in our Information Security team.
Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers.
Our business, your impact, our opportunity:
What you'll be doing:
* Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations.
* Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection.
* Maintain a strong familiarity with:
* Sompo's full stack of security technologies and common application architectures
regulatory requirements for security and privacy technologies.
* The various Sompo teams who are non-technical subject matter experts on those regulations.
* Industry-standard approaches for aligning development, operations, and security.
* Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls.
* Application security review (development lifecycle, technology selection)
* Application security testing and instrumentation (production operations)
* Support of security tooling and automation
What you'll bring:
* Minimum of 5 years of experience in information security.
* Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages.
* Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria.
* Strong understanding of:
* HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight.
* Development and direct work experience with:
* Languages for automation, especially Python and Powershell, Query tools.
* Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis.
* Packet captures for low level network troubleshooting
* Application development building blocks, Web application security components
* Native security controls in the Microsoft stack (OS, Office, Edge)
* Ability to write ad hoc queries using one or more of the following:
* Splunk, Powershell, Regular expressions, SQL, XPATH
* Ability to write practical audience-relevant documentation related to troubleshooting.
* B.S. in Computer Science or Software Engineering
Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience.
At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees.
Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance.
We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs:
* Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
* Pharmacy benefits with mail order options
* Dental benefits including orthodontia benefits for adults and children
* Vision benefits
* Health Care & Dependent Care Flexible Spending Accounts
* Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
* Company-paid Disability benefits with very competitive salary continuation payments
* 401(k) Retirement Savings Plan with competitive employer contributions
* Competitive paid-time-off programs, including company-paid holidays
* Competitive Parental Leave Benefits & Adoption Assistance program
* Employee Assistance Program
* Tax-Free Commuter Benefit
* Tuition Reimbursement & Professional Qualification benefits
In today's world, what do we stand for?
Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo.
Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.
Auto-ApplyEMPLOYEE PRIVACY & DATA PROTECTION PROFESSIONAL (HYBRID-CHARLOTTE, NC)
Security engineer job in Charlotte, NC
Job Description
A family of companies and experiences
As the leading foodservice and support services company, Compass Group USA is known for our great people, great service and our great results. If you've been hungry and away from home, chances are you've tasted Compass Group's delicious food and experienced our outstanding service. We have over 284,000 US associates who work in award-winning restaurants, corporate cafes, hospitals, schools, arenas, museums, and more in all 50 states. Our reach is constantly expanding to shape the industry and create new opportunities for innovation. Join the Compass family today!
great people. great services. great results.
Each and every individual plays a key role in the growth and legacy of our company. We know the next big idea can come from anyone. We encourage developing and attracting expertise that differentiates us as a company as we continue to raise the bar.
Job Summary:
Compass Group USA is seeking an experienced Privacy Professional to join our Legal & Compliance team. This role will focus on ensuring compliance with applicable US state and federal privacy laws governing the collection, processing, and use of employee/associate personal information. The ideal candidate will have a strong understanding of privacy frameworks and experience working in organizations with diverse industry exposure, and the ability to coordinate across multiple teams.
Responsibilities:
Regulatory Compliance:
Monitor and interpret state privacy and Artificial Intelligence laws (e.g., CCPA, CPRA, VCDPA, and similar) impacting employee personal information.
Advise business units on compliance obligations related to personal information collection, processing, and sharing.
Help build and maintain strong privacy controls and systems to maintain privacy compliance.
Manage the company DSAR process and tooling.
Policy Development & Implementation:
Draft, review, and maintain privacy policies, notices, and consent mechanisms across websites and mobile applications.
Embed privacy-by-design principles into marketing and technology initiatives and applications purchased and created by the company.
Risk Management:
Conduct Privacy Impact Assessments (PIAs) and maintain Records of Processing Activities (RoPA).
Support incident response and breach management in collaboration with IT and cybersecurity teams.
Training & Awareness:
Deliver privacy training to human resources, talent acquisition, benefits, and other teams, and educate the company around core privacy principles.
Promote a culture of compliance across diverse business units.
Qualifications:
Education & Experience:
A bachelor's from an accredited US college or university in related studies.
Minimum 3-5 years of experience advising US entities on topics of privacy, data protection, or similar compliance roles at a company governed by state and federal US privacy laws.
Privacy Expertise:
Required: Strong knowledge of U.S. state privacy laws.
Preferred: Experience with HIPAA compliance.
CIPP/US, CIPM, or similar privacy certification.
Skills:
Excellent analytical, communication, and project management skills.
The ability to translate complex privacy laws into business-applicable advice and controls.
Ability to work in fast-paced environments with diverse industry exposure.
Apply to Compass Group today!
Click here to Learn More about the Compass Story
Compass Group is an equal opportunity employer. At Compass, we are committed to treating all Applicants and Associates fairly based on their abilities, achievements, and experience without regard to race, national origin, sex, age, disability, veteran status, sexual orientation, gender identity, or any other classification protected by law.
Qualified candidates must be able to perform the essential functions of this position satisfactorily with or without a reasonable accommodation. Disclaimer: this job post is not necessarily an exhaustive list of all essential responsibilities, skills, tasks, or requirements associated with this position. While this is intended to be an accurate reflection of the position posted, the Company reserves the right to modify or change the essential functions of the job based on business necessity. We will consider for employment all qualified applicants, including those with a criminal history (including relevant driving history), in a manner consistent with all applicable federal, state, and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, and the New York Fair Chance Act. We encourage applicants with a criminal history (and driving history) to apply.
Compass Corporate maintains a drug-free workplace.
Applications are accepted on an ongoing basis.
Associates at Corporate are offered many fantastic benefits.
Medical
Dental
Vision
Life Insurance/ AD
Disability Insurance
Retirement Plan
Paid Time Off
Paid Parental Leave
Holiday Time Off (varies by site/state)
Personal Leave
Associate Shopping Program
Health and Wellness Programs
Discount Marketplace
Identity Theft Protection
Pet Insurance
Commuter Benefits
Employee Assistance Program
Flexible Spending Accounts (FSAs)
Associates may also be eligible for paid and/or unpaid time off benefits in accordance with applicable federal, state, and local laws. For positions in Washington State, Maryland, or to be performed Remotely, click here for paid time off benefits information.
Req ID: 1480673
Compass Corporate
Julia Vogel
[[req_classification]]
SAP Security & GRC admin - Only local consultants
Security engineer job in Charlotte, NC
E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ******************
Job Description
FULL TIME PERM JOB-GC/GC EAD/US Citizens
As a key contributor of the Finance Systems Roadmap Security and Controls team, individual will be responsible for working with project teams to obtain security and control requirements for an end state SAP ERP solution. Business requirements will be used to configure a role based security design within various SAP applications. These SAP applications include ECC, BI, BPC, PI, Enterprise Portal, CE, Bank Analyzer, Solution Manager, and GRC. Individual will be responsible for day to day system security configuration tasks and user administration throughout all project lifecycles and production support. Individual should have strong communication skills, ability to lead or participate in project workshops, and ability to share or transfer technical knowledge to less experienced team members
Qualifications
Relevant Years of Experience: 4+
Total IT experience: 5-7 years (or lesser with technical knowledge)
Must Have Technical Qualifications:
- Strong communication skills to facilitate working in a dynamic project environment
- Role design, configuration, testing, and deployment methodology within SAP application architecture
- Detailed knowledge of ABAP and Java based authorizations within SAP applications
- SAP ECC Profile Generator (single roles, master / derived roles, composite roles)
- SAP BI analysis authorization concepts
- SAP BPC security and administration
- SAP Central User Administration configuration and administration
- SAP GRC configuration and administration
- SAP Enterprise Portal UME administration
Additional Information
All your information will be kept confidential according to EEO guidelines.
Cyber Security Analyst - Associate
Security engineer job in Charlotte, NC
**Role Description** This role is part of a team responsible for administering security tools and projects for the safeguarding of the firm's information systems. The Security Engineer focuses on working closely with various stakeholders in IT and development communities across SMBC Group Companies to ensure the overall Cyber Security of the firm. The Security Engineer will also act as a subject matter expert of various tools who uses expertise to resolve complex problems in consideration of established policies, guidelines or processes.
**Role Objectives**
You will be part of a Cyber Security team responsible for ensuring IT Security systems are configured, deployed, and maintained in accordance with polices and standards. The position requires participation in technical research and development to enable continuing innovation for Cyber Security and Information Risk Management.
+ Application Security and DevSecOps
+ Understanding of OWASP Top 10
+ Application Whitelisting
+ Cloud Computing and Security
+ Incident Response in the cloud.
+ Database security and monitoring
+ Email security
+ SPF, DKIM, DMARC and third party email providers
+ EndPoint Detection and Response
+ File Share access and Group Membership access reviews and certification
+ Firewall reviews and access and certification
+ Identity and Access Management & Governance
+ Incident Response end to end
+ Multi Factor Authentication
+ Zero Trust principles
+ Network Access Control
+ Network anomaly detection and response
+ Deep packet analysis experience required using wireshark/tcpdump.
+ Network Segmentation
+ Privileged Access Management
+ Python/Bash/PowerShell scripting required
+ Secure Browsing
+ Security Information and Event Management
+ Vulnerability scanning, security compliance and vulnerability management
+ Linux and Windows Security principles and Microsoft Active Directory.
**Qualifications and Skills**
+ 3-5+ Years of hands-on architecting, implementation and design experience required, designing globally scalable security solutions.
+ Solid Technical hands-on Cyber Security experience with implementation and management of several of the core security solutions mentioned above.
+ Strong knowledge of enterprise Information Security pillars, including Perimeter security, Identity Management and Governance, Privileged Account Management, Compliance, Penetration testing, Encryption, Cloud Security, Incident Response, Vulnerability Management.
+ Excellent communication skills, writing skills, and the ability to work with internal teams.
+ Be a performance-driven team player with an excellent attitude.
+ Able to follow priorities set by management.
+ Strong ability to deliver on time.
+ Strong ability to deliver quality.
+ One of the following certifications is required - CISSP, CISM, CCSP, OSCP, GIAC GCIH, GCTIA, GDSA or equivalent.
+ Ability to multi-task and work on several projects at the same time.
+ Ability to work in a fast-paced environment.
+ Ability to analyze vulnerabilities within the internal infrastructure and oversee timely remediation.
+ Ability to communicate information security concepts across a broad range of technical and non-technical staff.
+ Ability to translate business requirements into technical solutions.
+ Ability to adapt information delivery based on audience.
+ Good influencing, relationship and stakeholder management skill.
**Additional Requirements**
EOE, including Disability/veterans
Cyber Security Analyst - Associate
Security engineer job in Charlotte, NC
Job Level: Associate Job Function: Business Resilience & Security Employment Type: Full Time Role Description This role is part of a team responsible for administering security tools and projects for the safeguarding of the firm's information systems. The Security Engineer focuses on working closely with various stakeholders in IT and development communities across SMBC Group Companies to ensure the overall Cyber Security of the firm. The Security Engineer will also act as a subject matter expert of various tools who uses expertise to resolve complex problems in consideration of established policies, guidelines or processes.
Role Objectives
You will be part of a Cyber Security team responsible for ensuring IT Security systems are configured, deployed, and maintained in accordance with polices and standards. The position requires participation in technical research and development to enable continuing innovation for Cyber Security and Information Risk Management.
* Application Security and DevSecOps
* Understanding of OWASP Top 10
* Application Whitelisting
* Cloud Computing and Security
* Incident Response in the cloud.
* Database security and monitoring
* Email security
* SPF, DKIM, DMARC and third party email providers
* EndPoint Detection and Response
* File Share access and Group Membership access reviews and certification
* Firewall reviews and access and certification
* Identity and Access Management & Governance
* Incident Response end to end
* Multi Factor Authentication
* Zero Trust principles
* Network Access Control
* Network anomaly detection and response
* Deep packet analysis experience required using wireshark/tcpdump.
* Network Segmentation
* Privileged Access Management
* Python/Bash/PowerShell scripting required
* Secure Browsing
* Security Information and Event Management
* Vulnerability scanning, security compliance and vulnerability management
* Linux and Windows Security principles and Microsoft Active Directory.
Qualifications and Skills
* 3-5+ Years of hands-on architecting, implementation and design experience required, designing globally scalable security solutions.
* Solid Technical hands-on Cyber Security experience with implementation and management of several of the core security solutions mentioned above.
* Strong knowledge of enterprise Information Security pillars, including Perimeter security, Identity Management and Governance, Privileged Account Management, Compliance, Penetration testing, Encryption, Cloud Security, Incident Response, Vulnerability Management.
* Excellent communication skills, writing skills, and the ability to work with internal teams.
* Be a performance-driven team player with an excellent attitude.
* Able to follow priorities set by management.
* Strong ability to deliver on time.
* Strong ability to deliver quality.
* One of the following certifications is required - CISSP, CISM, CCSP, OSCP, GIAC GCIH, GCTIA, GDSA or equivalent.
* Ability to multi-task and work on several projects at the same time.
* Ability to work in a fast-paced environment.
* Ability to analyze vulnerabilities within the internal infrastructure and oversee timely remediation.
* Ability to communicate information security concepts across a broad range of technical and non-technical staff.
* Ability to translate business requirements into technical solutions.
* Ability to adapt information delivery based on audience.
* Good influencing, relationship and stakeholder management skill.
Additional Requirements
Nearest Major Market: Charlotte
Cyber Security Analyst
Security engineer job in Charlotte, NC
Job Description
We is seeking a talented Cyber Security Analyst. As a Cyber Security Analyst, you will play a key role in ensuring the security and integrity of our organization's data and systems.
Requirements
Responsibilities:
Monitor, detect, and respond to cyber threats and security incidents,
Conduct vulnerability assessments and penetration testing to identify potential weaknesses in our systems,
Develop and implement security measures and best practices to protect against cyber attacks,
Stay up-to-date with the latest cyber security trends and technologies,
Collaborate with cross-functional teams to identify security risks and implement appropriate solutions,
Provide training and guidance to employees on cyber security awareness and best practices.
Requirements:
Bachelor's degree in Computer Science, Information Security, or a related field,
Proven experience in cyber security or a related role,
Strong knowledge of security protocols and tools,
Ability to analyze and interpret complex data and make informed decisions,
Excellent problem-solving and communication skills,
Relevant certifications (e.g. CISSP, CISM) are preferred but not required.
Benefits
About Us
Zone IT Solutions is an Australia-based Recruitment Company. We specialise in Digital, ERP and larger IT Services. We offer flexible, efficient and collaborative solutions to any organisation that requires IT, experts. Our agile, agnostic and flexible solutions will help you source the IT Expertise you need. If you are looking for new opportunities, your profile at *******************************.
Also, follow our LinkedIn page for new job opportunities and more.
Zone IT Solutions is an equal-opportunity employer, and our recruitment process focuses on essential skills and abilities.
Easy ApplyManual Ethical Hacker
Security engineer job in Charlotte, NC
Denver, Colorado;Seattle, Washington; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Charlotte, North Carolina; Jacksonville, Florida; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (******************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.
This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications
+ Provide clear and practical advice regarding managed risks
+ Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills
Required Skills:
+ Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
+ SQL injection/XSS attack without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with SAST tools to identify vulnerabilities
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques
+ Solid programming/debugging skills
+ Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
+ Threat Analysis
+ Innovative Thinking
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Information Security Engineer
Security engineer job in Charlotte, NC
CHARLOTTE, North Carolina **Hybrid** Contract $53.56/hr - $60.35/hr Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Engineer in Raleigh, NC (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is a long-term contract opportunity that includes a competitive benefit package! Our client has been around for over 150 years and is continuously innovating in today's digital age. If you want to work for a company that is not only a household name, but also truly cares about satisfying customers' financial needs and helping people succeed financially, apply today.
Contract Duration: 24 Months
**Required Skills & Experience**
+ 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
+ 4+ years of information security applications and systems experience
+ 2+ Experience in installing, configuring, and supporting SSO platforms such as Okta or Ping
+ Demonstrated ability supporting applications in a distributed, highly available, mission-critical environment
+ Proficient in Agent Based, Web Based and Federated Authentication and Authorization standards
+ Strong hands-on experience with industry standard SSO technologies and protocols (OAuth, OpenID Connect, FIDO, SAML 2.0)
**Desired Skills & Experience**
+ Strong verbal, written, and interpersonal communication skills
+ Knowledge of LDAP and Active Directory services, MFA, Risk based authentication and privileged access management
+ Familiarity with deployments and integration of IAM solutions within the cloud (Azure, AWS or Google Cloud)
+ Knowledge and understanding of complex enterprise systems and frameworks including frontends, middleware, services layer, database, backend and downstream interfaces
+ Knowledge and understanding of technical writing: storage, middleware, or virtualization
+ Strong negotiation and leadership abilities
+ Knowledge of Kubernetes containerization strategy
**What You Will Be Doing**
+ Consult on or participate in moderately complex initiatives and deliverables within Information Security Engineering and contribute to large-scale planning related to Information Security Engineering deliverables.
+ Review and analyze moderately complex Information Security Engineering challenges that require an in-depth evaluation of variable factors.
+ Contribute to the resolution of moderately complex issues and consult with others to meet Information Security Engineering deliverables while leveraging solid understanding of the function, policies, procedures, and compliance requirements.
+ Collaborate with client personnel in Information Security Engineering.
**You will receive the following benefits:**
+ Medical Insurance - Four medical plans to choose from for you and your family
+ Dental & Orthodontia Benefits
+ Vision Benefits
+ Health Savings Account (HSA)
+ Health and Dependent Care Flexible Spending Accounts
+ Voluntary Life Insurance, Long-Term & Short-Term Disability Insurance
+ Hospital Indemnity Insurance
+ 401(k) including match with pre and post-tax options
+ Paid Sick Time Leave
+ Legal and Identity Protection Plans
+ Pre-tax Commuter Benefit
+ 529 College Saver Plan
Motion Recruitment Partners (MRP) is an Equal Opportunity Employer. All applicants must be currently authorized to work on a full-time basis in the country for which they are applying, and no sponsorship is currently available. Employment is subject to the successful completion of a pre-employment screening. Accommodation will be provided in all parts of the hiring process as required under MRP's Employment Accommodation policy. Applicants need to make their needs known in advance.
**Posted by:** Jennifer Reynolds
**Specialization:**
+ Security Engineering
Cloud Security Engineer
Security engineer job in Charlotte, NC
Cloud Security Engineer needs 7+ years experience
Cloud Security Engineer requires:
Cloud security
Cyber security
Implement cloud security strategy, standards, procedures, best practices, and DevSecOps.
Implement processes and technical controls supporting cloud security standards including integration of cloud services and workloads into corporate cybersecurity services.
Collaborate with operations and engineering teams to implement and tune cloud-native security monitoring, tooling and reporting
Implement CSPM tools such as wiz.io across multiple cloud platforms
Define cloud security policies, standards, and best practices in a multi-cloud environment
Promote awareness of corporate cybersecurity policy, standards and guidelines
Design cloud-based network traffic flows to drive anomaly detection capability
Mentor engineering and operations staff on unique cloud-based security controls
Develop tools to improve cloud specific anomaly detection requirements
Foster a culture of security by partnering with solutions architects & other business teams to balance key performance and security
Perform regular reviews of cloud infrastructure for security, and cloud best practices.
Develop threat models to identify risks and prioritize improvements to our architecture.
Drive the adoption of Authentication and Authorization reference architectures for managing cloud infrastructure.
Educate peers on applying the latest cloud native technologies when developing new services, systems and applications.
Contribute to a secure/compliant cloud-native service catalog, repositories
Maintain Compliance across our Production, Development and Corporate systems hosted in the public clouds
Collaborate with engineering and operations teams toward implementing controls and processes that address identified gaps
Cyber Security Engineer
Security engineer job in Charlotte, NC
Cyber Security Engineer Job Description: The Cyber Security Engineer is responsible for second level security event/incident response along with the collection, analysis, and dissemination of cyber threat intelligence. These capabilities will include timely collection of advanced warning of impeding IT vulnerabilities or threats, a thorough correlation, analysis, and storage of threat intelligence information, and operational support of the incident response process. The candidate They will deliver and sustain the enterprise management strategy and solutions from a governance, process, discipline and technology standpoint, to support enterprise environments and our presence in various cloud instances and on-premises data centers covering threats / FIM / configuration management / incident response / vulnerability management. Secondary roles include IPS, EDR, TIP tools, and other information security solutions.
Essential Functions of the Job:
Responding to SOC alerts performing an analysis, and containment of security events.
Provide tier II support for escalated security incidents.
Support the Cyber Incident Response Team (CIRT) in the effective detection, analysis, and containment of attacks.
Operate the configuration management program to track configuration drift over time, working with asset custodians to correct any configuration deviation from baseline.
Operate the File Integrity Management program to track changes to file systems on critical systems.
Operate the processes necessary to collect threat intelligence, analyze the data for patterns and actionable information, and create intelligence products for other teams to consume using MITRE ATT&CK Framework.
Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents.
Integrate appropriate systems and logs into the global threat management platform or Security Event and Incident Management system to properly protect critical assets.
Design, test and develop specific content and alerting to identify threats against critical assets.
Document incident response playbooks for new threat content and alerts.
Maintain an understanding of attacks, vectors and emergent threats.
Obtain and share cyber security intelligence with security partners, vendors and law enforcement as necessary.
Produce weekly and monthly operational metrics.
Work with vendors and internal customers to respond to escalations.
Recommends Preventative Security Actions.
Recommends Corrective Security Actions.
Knowledge and Skills Requirements:
Three-year minimum working in cyber threat or information security.
Vulnerability Scanning & Assessment: Perform vulnerability scans using tools like Tenable Nessus, analyze results, and prioritize findings for remediation.
Configuration Assessment: Evaluate system configurations against industry standards (e.g., CIS benchmarks) and ensure compliance.
File Integrity Monitoring (FIM): Implement and maintain FIM solutions, analyze file changes, and investigate suspicious activities.
Familiar with compliance regulations such as SOX, PCI-DSS, GLBA, and Federal Banking regulations.
Proficient with cloud security and monitoring capabilities in Azure
Proficient with Incident Response in Azure
Proficient with configuration management scanning tools.
Knowledgeable with Tripwire or other file integrity management tools.
Excellent team skills and integrity in a professional environment.
Ability to Map threats and vulnerabilities to MITRE.
Familiar with STRIDE.
Familiar with the Open Systems Interconnection (OSI) model.
Understanding of security technologies: IDS/IPS, firewalls, AV, proxies, EDR.
Understanding of scripting languages like JavaScript, Perl, etc.
Understanding of cloud configuration and vulnerability scanning tools.
CISSP, GSEC, GCIH, CEH or other security certifications preferred, but not required.
Powered by JazzHR
TgYUGCicn0
Identity & Access Management Security - Ping Identity/ForgeRock Consultant
Security engineer job in Charlotte, NC
We Are Accenture Cybersecurity helps organizations prepare, protect, detect, respond, and recover along with all points of the security lifecycle. Cybersecurity challenges are different for every business in every industry. Leveraging our global resources and advanced technologies, we create integrated, turnkey solutions tailored to our client's needs across their entire value chain. Whether we're defending against known cyberattacks, detecting and responding to the unknown, or running an entire security operations center, we will help companies build cyber resilience to grow with confidence. Our team of the security sector's brightest people uses the coolest tech to out-hack the hackers and help clients build resilience from within. We blend risk strategy, digital identity, cyber defense, application security, and managed service solutions to rethink the entire security lifecycle.
Do you have the deep functional and technical experience to help implement security solutions that align with our clients' business objectives? Do you have the expertise to design and deliver solutions for establishing system user's credentials, and processes for applying those credentials to access enterprise systems and applications?If so, read on and apply. Accenture's more than 2,000 security professionals deliver holistic and proactive security solutions in 47 countries, and we'd love to discuss our open Identity and Access Management (I&AM) Security role with you
You Are
A cyber security savant. You've got the skills and experience to keep data safe from black hat hackers or other threats, whether by coding a threat intrusion module or sharing your latest ideas with the team. Day-to-day, you're all about solving security problems for clients and using your people skills to make sure everyone on your team is working well and happily.
You are passionate about security, love what you do and have a genuine desire to outsmart the bad guys. You have the experience to analyze a clients' security posture, anticipate security requirements and help find right-sized solutions based on industry leading practices. You have a proven track record working successfully in a fast-paced, team-oriented environment. You're a creative, analytical problem solver with above average documentation skills who can speak to both technical and non-technical audiences. You are eager to put your skills to use by helping us help our clients inject security at every level of their organization.
The Work
Working directly with clients and Accenture teams in a multi-disciplined team structure, you will design and implement I&AM solutions using ForgeRock and Ping Identity products. You will develop deep working relationships with Senior Executives and Senior Managers across the client account team and client, understanding the business direction of companies and creating optimized I&AM architectures to meet their business needs.
As a Ping Identity/ForgeRock Consultant, you will:
+ Design, configure, and implement Ping Advanced Identity platform components including Ping AM, Ping IDM, Ping DS, and Ping Identity Gateway, and Ping Advanced Identity Cloud and Remote Connector Server
+ Lead and manage multiple workstreams
+ Design and code custom decision nodes using JavaScript and/or Java
+ Implement custom object models based on client requirements
+ Configure user stores with custom attributes and policies
+ Develop implementation and migration plans focusing on service continuity
+ Implement and configure Single Sign-On (SSO) solutions across diverse application portfolios
+ Understand and advise clients on secure communication techniques; requires an understanding of SSH, TLS
+ Work with application owners to integrate applications onto the SSO platform using factory models and bespoke integration techniques
+ Work with directory services and identity provisioning platforms
+ Collaborate with cross-functional teams to integrate IAM solutions with existing enterprise systems
+ Provide technical leadership and guidance on IAM best practices and industry standards
+ Create comprehensive technical documentation and knowledge transfer materials
+ Troubleshoot complex IAM issues and provide production support
+ Work with clients and Accenture colleagues to understand requirements and estimate work efforts
+ Develop and maintain an implementation work plan using Agile and waterfall methodologies
Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements.
Here's What You Need
+ Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate's Degree, must have minimum 6 years work experience)
+ Minimum of 3 years of experience with Ping Identity (formerly ForgeRock) and specific platforms, Ping AM (Access Management), Ping IDM (Identity Management), Ping DS (Directory Services), Ping Identity Gateway (Identity Gateway) and Ping Advanced Identity Cloud
+ Minimum of 3 years of experience with IAM Functional Skills Access Management, Identity Governance, Directory Services, Identity Provisioning, Identity Management and Identity Management as a Service.
+ Minimum of 3 years of experience with identity standards and protocols (SAML, OAuth 2.0, OpenID Connect, LDAP, SCIM)
+ Minimum of 3 years of experience with scripting and programming skills (Java, JavaScript, Groovy, Python, Shell scripting)
Bonus points if you have:
+ Experience with other IAM platforms (Ping Identity suite: PingFederate, PingAccess, PingDirectory, PingID, PingOne)
+ Strong functional understanding of CIAM or Workforce Access Management
+ Industry-adopted security certifications (e.g., CISSP, CISM) or IAM vendor certifications
+ Understanding of DevOps and CI/CD practices for IAM deployments
+ Experience with API development and integration
+ Knowledge of containerization and orchestration technologies (Docker, Kubernetes)
+ Mobile development knowledge with experience in iOS and Android platforms
+ Front development experience
+ Demonstrate success building and scaling SaaS products with a focus on customer experience and operational efficiency.
+ Strong understanding of cloud-based systems and integrations (e.g., APIs, microservices architecture).
Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired as set forth below.We accept applications on an on-going basis and there is no fixed deadline to apply.
Information on benefits is here. (************************************************************
Role Location Annual Salary Range
California $63,800 to $205,800
Cleveland $59,100 to $164,600
Colorado $63,800 to $177,800
District of Columbia $68,000 to $189,300
Illinois $59,100 to $177,800
Maryland $63,800 to $177,800
Massachusetts $63,800 to $189,300
Minnesota $63,800 to $177,800
New York/New Jersey $59,100 to $205,800
Washington $68,000 to $189,300
Requesting an Accommodation
Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.
If you would like to be considered for employment opportunities with Accenture and have accommodation needs such as for a disability or religious observance, please call us toll free at **************** or send us an email or speak with your recruiter.
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.
For details, view a copy of the Accenture Equal Opportunity Statement (********************************************************************************************************************************************
Accenture is an EEO and Affirmative Action Employer of Veterans/Individuals with Disabilities.
Accenture is committed to providing veteran employment opportunities to our service men and women.
Other Employment Statements
Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.
Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. Further, at Accenture a criminal conviction history is not an absolute bar to employment.
The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.
California requires additional notifications for applicants and employees. If you are a California resident, live in or plan to work from Los Angeles County upon being hired for this position, please click here for additional important information.
Please read Accenture's Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process.
RSA Security Analyst
Security engineer job in Charlotte, NC
TechnoGen, Inc. (formerly known as SYSCOM Technologies) is a Proven Leader in providing full IT Services, Software Development and Solutions for 12+ years.TechnoGen is a Small & Woman Owned Minority Business with GSA Advantage Certification. We have offices in VA,MD & Offshore development centers in India.We have successfully excuted 100+ projects for clients ranging from small business and non-profits to Fortune 50 companies and federal, state and local agencies.
TechnoGen leadership has experience guiding highly skilled and certified professionals delivering end to end IT and Business consulting services projects in public and commercial sectors across the globe.
Job Description
Title: RSA Security Analytics
Location: Charlotte, NC (20% on site (more at first) then 80% remote)
Duration: 4+ months
Required Skills/ Experience:
BS in Engineering or Computer Science related discipline or equivalent work experience.
5+ years' experience as a consultant developing enterprise level network security solutions
Expertise in RSA SA products as it relates to the following:
Operation of a Security Incident & Event Management (SIEM) solution based on RSA SA.
Driving complex deployments of RSA SA in an operational environment.
Experience with data analysis, logging solutions, system/network monitoring.
Strong knowledge of security risk procedures, security patterns, authentication technologies, and security attack pathologies.
Knowledge of current security threats and vulnerabilities, how to detect and mitigate them, ability to understand their possible consequences on the customer's environment and provide advisory to customers.
Experience assessing and advising clients on long and short term SIEM related issues.
Experience creating roadmaps, conceptual designs, and transition plans.
Leading security specific industry certifications or training to include one or more of the following:
o RSA SA
CISSP
SANS
CISM
CEH
Experience of preparing solution documentation using typical MS tools (Word, Excel, Visio…).
Excellent verbal and written communication skills to deliver customer presentations aimed at aligning technical solutions with business value.
Responsibilities:
Drive complex deployments of RSA SA.
Support customer engagements end-to-end to include implementation, configuration, operations, maintenance and management of RSA SA Security Incident & Event Management (SIEM) solutions
Provide expertise on common types of malware and infection vectors. Identify malware and infection vectors using network and host based tools. Eradicate malware and infection vectors and verify the success of eradication efforts.
Identify, assess, and develop solutions for customer information technology security infrastructure regarding risks and vulnerabilities.
Understand architecture and design to perform Security Incident & Event Management (SIEM) assessments.
Ensure the project scope is correctly delivered and that the threat management practice requirements are defined/delivered.
Additional Information
All your information will be kept confidential according to EEO guidelines.