A leading financial institution is seeking a motivated professional to join its cybersecurity team focused on malware analysis. The role requires strong experience in malware analysis, creation of innovative tracking methods, and skills in analyzing web content. Work independently and collaborate with a team to enhance security measures. This position offers competitive pay and benefits in Denver, CO, with opportunities for professional growth.
#J-18808-Ljbffr
$74k-94k yearly est. 3d ago
Looking for a job?
Let Zippia find it for you.
Building Management Systems Engineer
Nupeople
Security engineer job in Denver, CO
Our client's mission is to accelerate the abundance of energy and intelligence. They are crafting the engine that powers a world where people can create ambitiously with AI - without sacrificing scale, speed, or sustainability.
This is your chance to be part of the AI revolution with sustainable technology. In this role, you'll drive meaningful innovation, make a tangible impact, and join a team that's setting the pace for responsible, transformative cloud infrastructure.
About the Role:
The BMS (Building Management System) / EPMS (Electrical Power Management System) Controls Engineer will lead the design, implementation, and management of critical control systems for next-generation data centers and infrastructure. You'll own the full lifecycle of these systems - from design through installation, optimization, and maintenance - ensuring reliable, efficient operations at scale.
This role requires a deep understanding of control systems, energy optimization, and data-driven decision making, with the ability to deliver scalable, sustainable solutions.
What You'll Be Working On
Lead design and development of BMS/EPMS controls for data center design, commissioning, and operations
Integrate controls across HVAC, electrical, and monitoring systems
Collaborate with engineers, contractors, and vendors to define scope, manage deliverables, and drive successful installations
Optimize BMS operations for energy efficiency and reliability
Perform audits, identify performance gaps, and implement improvements
Leverage system data for insights, reporting, and efficiency strategies
Mentor and lead a team of engineers and technicians; create training programs to upskill the team
Ensure compliance with industry standards, safety regulations, and sustainability goals
Integrate renewable energy and energy-saving measures into BMS strategy
What You'll Bring
Experience in a hyperscale data center environment
Bachelor's degree in Mechanical, Electrical, or Controls Engineering (Master's or certifications such as CEM, LEED, BAS Technician are a plus)
Significant experience in BMS/EPMS, controls engineering, or critical infrastructure systems, including 3+ years in a leadership role
Strong background in HVAC, electrical systems, PLCs, DDCs, and industrial controls
Proficiency with platforms like Schneider Electric, Siemens, Honeywell, Tridium Niagara, or Ignition
Familiarity with protocols such as BACnet, Modbus, OPC-UA, MQTT, LonWorks
Demonstrated success leading technical teams and cross-functional collaboration
Excellent communication skills for both technical and non-technical stakeholders
Proven problem-solving skills with innovative approaches to complex challenges
Passion for using data to optimize performance and efficiency
Why This Role
This is not just another construction management role. It's a chance to lead highly visible, mission-critical projects that will power the next generation of artificial intelligence. You'll be part of a leadership team pioneering sustainable, large-scale infrastructure with long-term impact.
🔒 This role is being managed exclusively by NuPeople. All inquiries will remain strictly confidential.
$66k-90k yearly est. 2d ago
Thermal System Engineer
Optigrid
Security engineer job in Longmont, CO
Department:
Mechanical Engineering
Reports to:
Chris Wilke
OptiGrid is an energy technology company accelerating fleet electrification with battery-integrated DC fast charging solutions. Our modular solution combines charging, energy storage, and grid management to eliminate costly infrastructure upgrades and cut deployment timelines from years to weeks. We're growing rapidly and need people who move quickly, think creatively, and find solutions to tough problems. If you want to make a real impact helping fleets go electric, we'd love to hear from you.
Position Overview:
As a Thermal System Engineer at OptiGrid, you'll be the architect behind the thermal systems that manage our next-generation battery and power electronics platforms. Your expertise will directly influence product performance, reliability, and customer satisfaction-opening new markets and driving our technology forward. This is a hands-on role driving designs from concept and early prototype testing to production with our manufacturing partners.
Key Responsibilities:
Design & Innovate: Engineer advanced thermal systems for electric vehicle DC fast charging, pushing the boundaries of efficiency and reliability.
Create & Build: Prepare detailed drawings and schematics, fabricate and assemble prototypes, and bring concepts to life.
Test & Validate: Develop test plans, conduct lab experiments, and translate results into actionable insights and robust test reports.
Collaborate & Lead: Work cross-functionally to launch new products, support compliance testing, and solve manufacturing and quality challenges.
Drive Excellence: Diagnose and resolve issues in production, ensuring every part and assembly meets the highest standards.
Qualifications:
Bachelor's degree in Mechanical Engineering or equivalent
5+ years of hands-on experience designing thermal management systems
Expertise in battery thermal systems and large-scale cooling (forced air, refrigerant)
Experience implementing mechanical and thermal solutions for power electronics
Track record of taking designs into volume production (sheet metal, extrusion, injection molding)
Advanced 3D CAD skills and knowledge of ASME Y14.5 standards
Exceptional written and verbal communication skills
Preferred Skills:
Master's degree in Mechanical Engineering or equivalent
10+ years in electronics packaging
Proven success with Computational Fluid Dynamics (CFD) modeling and validation
Background in EV supply equipment product design and lithium-ion battery systems
Mastery of PTC Creo Parametric CAD software
Proficiency with Arena and Windchill PLM
Why Join OpriGrid?
Make an Impact: Help accelerate fleet electrification and reduce carbon emissions by enabling faster, more affordable EV charging infrastructure deployment.
Work With Great People: Join a collaborative team that values diverse perspectives. We solve hard problems together and celebrate wins as a team.
Competitive Compensation & Benefits: Competitive salary and comprehensive benefits including health, dental, vision insurance, and PTO.
At OptiGrid, LLC, we offer fair and equal opportunities to all our candidates and team members regardless of race, color, religion, sex, pregnancy, sexual identity, national origin, citizenship, marital status, disability status, parental status, veteran status, or any other characteristics protected by law. OptiGrid, LLC believes in hiring individuals only based on their qualifications and experiences that meet our business requirements to fill the positions.
$66k-90k yearly est. 3d ago
Senior Manual Ethical Hacker
Bank of America 4.7
Security engineer job in Denver, CO
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
Job Description:
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity.
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
Developing Proof-of-concepts for exploitation.
Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
Prepare and present detailed technical information for various media including documents, reports, and notifications.
Provide clear and practical advice regarding managing risks.
Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
Detailed technical knowledge in at least 5 of the following areas:
securityengineering
application architecture
authentication and security protocols
application session management
applied cryptography
common communication protocols
mobile frameworks
single sign-on technologies
exploit automation platforms
Web APIs
Cloud environments
LLM security
Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
Experience performing manual code reviews for security relevant issues
Experience working with DAST and SAST tools to identify vulnerabilities
Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
Experience with vulnerability assessment tools and penetration testing techniques.
Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
Threat Analysis, threat modelling and SBOM analysis
Innovative thinking, threat actor simulation
Technology Systems Assessment
Technical Documentation
Advisory
Desired:
CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
Pay Transparency details
US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101), US - WA - Seattle - 401 Union St - Rainier Square (WA1510) Pay and benefits information Pay range$160,000.00 - $205,000.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligible This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
$160k-205k yearly Auto-Apply 60d+ ago
Classification Information Security Analyst
National Renewable Energy Laboratory 4.1
Security engineer job in Golden, CO
**Posting Title** Classification Information Security Analyst . . Type** Regular . **Hours Per Week** 40 . **Working at NLR** NLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation's primary laboratory for energy systems research and development.
Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth.
At NLR, you'll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being.
**Job Description**
The Office of Laboratory Protection (LP) is an organization focused on providing a secure, safe, and resilient NLR community. LP supports more than 4,000 staff located at four sites and the associated infrastructure. LP is comprised of a team of highly skilled managers and technical subject matter experts dedicated to personnel security, physical security, access control, information security, foreign national access management, emergency management, and protective force operations.
The Safeguards & Security Group Manager is seeking a skilled and motivated Classification Information Security Analyst to join our team. This pivotal role is primarily responsible for the continued implementation and management of the Controlled Unclassified Information (CUI) program, while also supporting Classified Matter Protection and Control (CMPC), and Operations Security (OPSEC) programs as necessary.
The successful candidate will ensure that CUI requirements are integrated into organizational operations and information management processes. This role requires close collaboration with Legal, Export Control, Business Development, Information Governance, IT, and other stakeholders to ensure compliance with DOE and other federal agencies information protection policies.
Responsibilities include:
**Policy Expertise:**
+ Maintain up-to-date knowledge of federal OPSEC, CUI, and Classification policies, laws, and regulations.
**Program Management:**
+ Lead the continued implementation and oversight of the CUI program, including policy, program, and procedure reviews and updates.
+ Collaborate with peer CUI specialists to develop and integrate CUI management solutions into NLR's broader information protection framework.
+ Support the OPSEC and CMPC programs in coordination with INFOSEC assurance analysts.
+ Provide strategic planning, risk management, and program oversight.
+ Mentor staff to ensure compliance with applicable requirements documents and procedures.
+ Coordinate CUI misuse determination, resolution, and reporting.
+ Conduct internal reviews and audits to ensure adherence to security requirements.
**Training & Education:**
+ Review and revise existing CUI training materials; participate in working groups to enhance awareness programs.
+ Provide guidance on proper marking, handling, and safeguarding of CUI, classified, and sensitive information.
+ Support onboarding and refresher training for NLR personnel.
**Analysis & Recommendations:**
+ Analyze information to determine appropriate CUI, OPSEC, and classification controls for NLR programs and initiatives.
+ Work to resolve security related issues that impact organizational goals.
**Document Review & Incident Management:**
+ Assist in the review of information as requested to identify and protect sensitive and classified information.
+ Assist with the oversight of proper labeling of CUI documents.
+ Participate in the analysis and investigation of incidents of security concern.
**Stakeholder Engagement and Relationship Building:**
+ Collaborate with internal stakeholders (Legal, IT, Program Management, project managers) to ensure consistent CUI compliance.
+ Build strong working relationships with DOE, lab leadership, and staff to balance security priorities with research and operations objectives in a customer focused manner.
**Additional Responsibilities:**
+ Prepare and maintain lab level procedures, training, and internal SOPs
+ Promote a culture of safety, respect, accountability, and professionalism.
+ Other duties as assigned by management.
.
**Basic Qualifications**
Relevant Bachelor's Degree and 5 or more years of experience or equivalent relevant education/experience. Or, relevant Master's Degree and 3 or more years of experience or equivalent relevant education/experience. Or, relevant PhD or equivalent relevant education/experience. Or, relevant JD or equivalent relevant education/experience. Complete understanding and wide application of technical principles, theories and concepts in the field. General knowledge of other related disciplines. Considerable knowledge of laws, regulations, principles, procedures and practices related to specific field. Strong leadership, project management and problem solving skills. Ability to use various computer software programs.
DOE Q or TS
Clearance: Must be able to obtain and maintain a DOE security clearance at the DOE (Q) and SCI access or DoD (TS) and SCI level. SCI access may require a polygraph examination.
Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE O 472.2A for additional information.
*** Must meet educational requirements prior to employment start date.**
**Additional Required Qualifications**
+ Bachelor's degree in a relevant field and at least 8 years of relevant experience in information security or reviewing research documents (or equivalent combination of education and experience).
+ Ability to respond to inquiries about document markings and accountability requirements.
+ Experience developing and delivering training on protecting CUI, proprietary, or classified information.
+ Motivated self-starter with the ability to work independently and as part of collaborative teams across the laboratory and DOE complex.
+ Strong problem-solving skills, with the ability to adapt to shifting priorities and meet deadlines.
+ Proficient in Microsoft Office.
+ Ability to use discretion and maintain strict confidentiality.
+ Ability to work both independently and collaboratively in a team-based environment.
+ Ability to obtain and maintain a TS clearance (see basic qualifications).
**Preferred Qualifications**
.
**Job Application Submission Window**
The anticipated closing window for application submission is up to 30 days and may be extended as needed.
**Annual Salary Range (based on full-time 40 hours per week)**
Job Profile: Professional III / Annual Salary Range: $81,500 - $146,700
NLR takes into consideration a candidate's education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee's salary history will not be used in compensation decisions.
**Benefits Summary**
Benefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement.
***** Based on eligibility rules
**Badging Requirement**
NLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation.
**Drug Free Workplace**
NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug.
If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn.
**Submission Guidelines**
Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application.
.
**Equal Opportunity Employer**
All qualified applicants will receive consideration for employment without regard basis of age (40 and over), color, disability, gender identity, genetic information, marital status, domestic partner status, military or veteran status, national origin/ancestry, race, religion, creed, sex (including pregnancy, childbirth, breastfeeding), sexual orientation, and any other applicable status protected by federal, state, or local laws.
**Reasonable Accommodations (*******************************************************
**E** **-Verify** ************************ **For information about right to work, click here (************************************************************************************************** for English or** **here (************************************************ for Spanish.**
E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.
The National Laboratory of the Rockies (NLR) is a leader in the U.S. Department of Energy's effort to secure an environmentally and economically sustainable energy future. With locations in Golden and Boulder, Colorado, and a satellite office in Washington, D.C., NLR is the primary laboratory for research, development, and deployment of renewable energy technologies in the United States.
NLR is subject to Department of Energy (DOE) access restrictions. All candidates must be authorized to access the facility per DOE rules and guidance within a reasonable time frame for the specified position in order to be considered for an interview and for hiring. DOE rules for site access during the interview process depend on whether the candidate is interviewed on-site, off-site, or via telephone or videoconference. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation. Additionally, DOE contractor employees are prohibited from participating in certain Foreign Government Talent Recruitment Programs (FGTRPs). If a candidate is currently participating in an FGTRP, they will be required to disclose their participation after receiving an offer of employment and may be required to disengage from participation in the FGTRP prior to commencing employment. Any offer of employment is conditional on the ability to obtain work authorization and to be granted access to NLR by the Department of Energy (DOE).
**Drug Free Workplace**
NLR is committed to maintaining a drug-free workplace in accordance with federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug.
If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn.
Please review the information on our Hiring Process (************************************************* website before you create an account and apply for a job. We also hope you will learn more about NLR (**************************** , visit our Careers site (****************************** , and continue to search for job opportunities (**************************************** at the lab.
$81.5k-146.7k yearly 32d ago
Classification Information Security Analyst
Nrel
Security engineer job in Golden, CO
Posting TitleClassification Information Security Analyst
.
.
TypeRegular
.
Hours Per Week40
.
Working at NLRNLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation's primary laboratory for energy systems research and development.
Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth.
At NLR, you'll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being.
Job Description
The Office of Laboratory Protection (LP) is an organization focused on providing a secure, safe, and resilient NLR community. LP supports more than 4,000 staff located at four sites and the associated infrastructure. LP is comprised of a team of highly skilled managers and technical subject matter experts dedicated to personnel security, physical security, access control, information security, foreign national access management, emergency management, and protective force operations.
The Safeguards & Security Group Manager is seeking a skilled and motivated Classification Information Security Analyst to join our team. This pivotal role is primarily responsible for the continued implementation and management of the Controlled Unclassified Information (CUI) program, while also supporting Classified Matter Protection and Control (CMPC), and Operations Security (OPSEC) programs as necessary.
The successful candidate will ensure that CUI requirements are integrated into organizational operations and information management processes. This role requires close collaboration with Legal, Export Control, Business Development, Information Governance, IT, and other stakeholders to ensure compliance with DOE and other federal agencies information protection policies.
Responsibilities include:
Policy Expertise:
Maintain up-to-date knowledge of federal OPSEC, CUI, and Classification policies, laws, and regulations.
Program Management:
Lead the continued implementation and oversight of the CUI program, including policy, program, and procedure reviews and updates.
Collaborate with peer CUI specialists to develop and integrate CUI management solutions into NLR's broader information protection framework.
Support the OPSEC and CMPC programs in coordination with INFOSEC assurance analysts.
Provide strategic planning, risk management, and program oversight.
Mentor staff to ensure compliance with applicable requirements documents and procedures.
Coordinate CUI misuse determination, resolution, and reporting.
Conduct internal reviews and audits to ensure adherence to security requirements.
Training & Education:
Review and revise existing CUI training materials; participate in working groups to enhance awareness programs.
Provide guidance on proper marking, handling, and safeguarding of CUI, classified, and sensitive information.
Support onboarding and refresher training for NLR personnel.
Analysis & Recommendations:
Analyze information to determine appropriate CUI, OPSEC, and classification controls for NLR programs and initiatives.
Work to resolve security related issues that impact organizational goals.
Document Review & Incident Management:
Assist in the review of information as requested to identify and protect sensitive and classified information.
Assist with the oversight of proper labeling of CUI documents.
Participate in the analysis and investigation of incidents of security concern.
Stakeholder Engagement and Relationship Building:
Collaborate with internal stakeholders (Legal, IT, Program Management, project managers) to ensure consistent CUI compliance.
Build strong working relationships with DOE, lab leadership, and staff to balance security priorities with research and operations objectives in a customer focused manner.
Additional Responsibilities:
Prepare and maintain lab level procedures, training, and internal SOPs
Promote a culture of safety, respect, accountability, and professionalism.
Other duties as assigned by management.
.
Basic QualificationsRelevant Bachelor's Degree and 5 or more years of experience or equivalent relevant education/experience. Or, relevant Master's Degree and 3 or more years of experience or equivalent relevant education/experience. Or, relevant PhD or equivalent relevant education/experience. Or, relevant JD or equivalent relevant education/experience. Complete understanding and wide application of technical principles, theories and concepts in the field. General knowledge of other related disciplines. Considerable knowledge of laws, regulations, principles, procedures and practices related to specific field. Strong leadership, project management and problem solving skills. Ability to use various computer software programs.
DOE Q or TS
Clearance: Must be able to obtain and maintain a DOE security clearance at the DOE (Q) and SCI access or DoD (TS) and SCI level. SCI access may require a polygraph examination.
Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE O 472.2A for additional information.
* Must meet educational requirements prior to employment start date.
Additional Required Qualifications
Bachelor's degree in a relevant field and at least 8 years of relevant experience in information security or reviewing research documents (or equivalent combination of education and experience).
Ability to respond to inquiries about document markings and accountability requirements.
Experience developing and delivering training on protecting CUI, proprietary, or classified information.
Motivated self-starter with the ability to work independently and as part of collaborative teams across the laboratory and DOE complex.
Strong problem-solving skills, with the ability to adapt to shifting priorities and meet deadlines.
Proficient in Microsoft Office.
Ability to use discretion and maintain strict confidentiality.
Ability to work both independently and collaboratively in a team-based environment.
Ability to obtain and maintain a TS clearance (see basic qualifications).
Preferred Qualifications
.
Job Application Submission Window
The anticipated closing window for application submission is up to 30 days and may be extended as needed.
Annual Salary Range (based on full-time 40 hours per week) Job Profile: Professional III / Annual Salary Range: $81,500 - $146,700
NLR takes into consideration a candidate's education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee's salary history will not be used in compensation decisions.
Benefits SummaryBenefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement.
* Based on eligibility rules
Badging RequirementNLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation.Drug Free Workplace
NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug.
If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn.
Submission Guidelines
Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application.
.
Equal Opportunity Employer
All qualified applicants will receive consideration for employment without regard basis of age (40 and over), color, disability, gender identity, genetic information, marital status, domestic partner status, military or veteran status, national origin/ancestry, race, religion, creed, sex (including pregnancy, childbirth, breastfeeding), sexual orientation, and any other applicable status protected by federal, state, or local laws.
Reasonable Accommodations
E-Verify ******************** For information about right to work, click here for English or here for Spanish.
E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.
$81.5k-146.7k yearly Auto-Apply 34d ago
Privacy, Cybersecurity, and Data Innovation (DE)
Safrest Resources
Security engineer job in Denver, CO
We are seeking entrepreneurial associates in law school class years 2013 through 2019 to join our privacy, cybersecurity, and data innovation practice group. Chambers USA 2020 recognized Gibson Dunn for Privacy & Data Security nationwide, highlighting the firms highly regarded privacy and cybersecurity offering. Our team is sought after and growing, and represents leading global platforms and disruptive technology companies on their most critical regulatory, litigation, product and business strategies and disputes. Candidates should have strong privacy, cybersecurity and/or technology company experience, and ideally have worked in a broad range of regulatory, technology and compliance counseling, government investigations, and related litigation matters. Experience with Federal Trade Commission consumer protection-related regulatory matters is also desirable. The team is collaborative and dynamic, and this opportunity offers great professional growth for the right candidate. Candidates to have three to seven years of substantive experience at a leading law firm and strong academic credentials.
The annual compensation range for this position is between $295,000 and $450,000. The salary offered within this range will depend upon qualifications and other operational considerations. Benefits offered for this position include health care; retirement benefits; paid days off, including sick time, and vacation time; parental leave; basic life insurance; Flexible Spending Accounts; as well as discretionary, performance-based bonuses.
360 IT Professionals is a Software Development Company based in Fremont, California that offers complete technology services in Mobile development, Web development, Cloud computing and IT staffing. Merging Information Technology skills in all its services and operations, the company caters to its globally positioned clients by providing dynamic feasible IT solutions. 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement.
Job Description
We are looking to fill a position for Data Security in Denver CO.
Qualifications
Short Description:
Selected person will be responsible to maintain systems to protect data from unauthorized users. Identifies, reports, and resolves security violations.
May require a bachelor's degree in area of specialty and at least 1 year or equivalent experience in the field or in a related area.
CCNA
CCNP+ (security)
CCSA (security)
Linux
Additional Information
Webcam interview is acceptable.
$68k-93k yearly est. 60d+ ago
Computer Network Defense Analyst (CNDA)
Cymertek
Security engineer job in Aurora, CO
Computer Network Defense Analyst (CNDA) LOCATIONAurora, CO 80014CLEARANCETS/SCI CI Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are seeking a skilled and detail-oriented Computer Network Defense Analyst (CNDA) to join our cybersecurity team. In this role, you will be responsible for monitoring, analyzing, and defending network systems against potential threats and vulnerabilities. You will work with advanced tools and technologies to identify security risks, respond to incidents, and implement strategies to safeguard critical information systems. If you are passionate about cybersecurity and enjoy solving complex challenges in a dynamic and collaborative environment, we encourage you to apply and contribute to the protection of vital network infrastructure.
*** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. ***
SIMILAR CAREER TITLESCybersecurity Analyst, Network Security Analyst, Information Security Analyst, Intrusion Detection Analyst, Threat Analyst, Security Operations Center (SOC) Analyst, Incident Response Analyst, Cyber Threat Intelligence Analyst, Penetration Tester, Vulnerability Analyst, etc.DEGREE (Level Desired) Bachelor's DegreeDEGREE (Focus) Cybersecurity, Computer Science, Information Technology, Network Security, Information Systems, Data Analytics, Software Engineering, Electrical Engineering, Risk Management, Security Studies, etc.ALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES
Monitor and analyze network activity for threats
Identify and respond to cybersecurity incidents
Implement strategies to mitigate vulnerabilities
Maintain and update intrusion detection systems
Generate detailed reports on security findings
Collaborate with teams to improve defense strategies
REQUIRED SKILLS
Proficiency in intrusion detection systems
Strong analytical and troubleshooting skills
Familiarity with network protocols and tools
Knowledge of malware analysis techniques
Ability to interpret security alerts
Experience with log and event analysis
DESIRED SKILLS
Knowledge of threat intelligence platforms
Experience with penetration testing tools
Understanding of zero-day attack vectors
Familiarity with endpoint protection solutions
Background in incident response frameworks
Exposure to advanced persistent threat (APT) mitigation strategies
PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE
Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development.
At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day.
We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave.
Ready to make your next move the best one? Join us and experience the difference.
BENEFITS
Excellent Salaries
Flexible Work Schedule
Cafeteria Style Benefits
10% - 401k Matching (Vested Immediately)
Additional 401k Profit Sharing
30 days Paid Leave/Holiday (No Use or Lose!)
The day off for your birthday
Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus)
HSA/FSA
AFLAC
Long Term/Short Term Disability - 100% employee coverage. No cost to you.
Life Insurance - 100% employee coverage. No cost to you.
Additional Discretionary Life Insurance
Paid Training
No long, wordy reviews with tons of paperwork!!!
Referral bonus program with recurring annual payments
HOW TO APPLY
Email us at ***************** or apply today: ****************
Want to see what our employees think? Click here .
EQUAL OPPORTUNITY EMPLOYER STATEMENT
Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
$64k-88k yearly est. Easy Apply 60d+ ago
Information Security Engineer
C4 Technical Services 3.4
Security engineer job in Broomfield, CO
Responsible for providing network security expertise related to any of the following: activation and turn up of customer security equipment, failover testing, monitoring network security devices, troubleshooting, investigation of events, debug, investigation of incidents, escalation or mitigation of incidents and events, network security analysis, or deployment of devices. 2-4 years of experience in IT, networking or cybersecurity required.
Targeted and Recommended Certifications and Skills:
Fortinet / Fortigate Security Experience Needed - Top skill
One of the following - NSE4, NSE 5-Analyzer, NSE 5 - Manager, NSE 7
CCNA
CCNP
Cisco Router/Routing Background
IRF- integrated router firewall background
Next-Generation Firewall background
Routing background
Project Date and Time needs:
Monday to Friday
** Standard Business Hours **
$67k-92k yearly est. 60d+ ago
Information Security Specialist Engineer
Avenue Technologies and Commodities
Security engineer job in Aurora, CO
Must Be A US Citizen Active TS/SCI w/Poly required Duties and Responsibilities: • Implement Information Assurance (IA) processes, provide guidance, and develop documentation throughout the system development life-cycle via the RMF tool in ServiceNOW. • Develop, implement, and document formal security policies and System Security Plans (SSP) throughout the program and monitor compliance to these policies during all phases of the Risk Management Framework (RMF) process.
• Utilize Enterprise Security Services to provide analysis of vulnerabilities and compliance risks in ACAS, Enterprise IT audit logs in ArcSight and Splunk, McAfee Host-Based Security Services (HBSS), User Activity Monitoring (UAM), and Cyber Terrain Mapping (CTM) on 100+ nodes.
• Monitor Heat Map Score matrix and evaluate cyber risk data, keeping the score at acceptable risk levels for the security categorization of the asset(s) and their Risk Evaluation Lanes (REL).
• Manage and deliver system authorization and accreditation packages, for 4 assets that span 3 different classification levels.
• Review and make recommendations on program-level documentation (e.g., requirements specification, system architecture, design documents, test plans, security plans, etc.).
• Assess/calculate risk based on threats, vulnerabilities, and shortfalls uncovered in routine analyzation of Continuous Monitoring (ConMon) controls and provide those results as Body of Evidence (BoE) to be evaluated in 7, 30, 90 and 365 day increments as the control metrics require.
• Direct activities required to remediate system-level information security weaknesses tracked via the FISMA (POA&M) process. Document the elements of the plans, milestones for correcting the weaknesses, and scheduled completion dates for the milestones, periodically reporting remediation progress as necessary.
• Brief leadership, as needed, on the status of action items and/or results of activities affecting the security posture of the program.
• Able to collaborate and communicate effectively with other system engineers, system administrators, software developers, and information assurance professionals.
Education & Qualifications:
• Bachelor's Degree in Information Technology, Information Systems Security, Cybersecurity, or related field. • DoD 8570.01 IAT level 2 or greater cybersecurity certification per DoD 8570.01
• Minimum of 10 years' related experience in Cybersecurity, Systems or Software Engineering, for the government or government contractor, if other than IC position.
$70k-100k yearly est. 60d+ ago
Information Security Analyst
Global Channel Management
Security engineer job in Broomfield, CO
Global Channel Management is a technology company that specializes in various types of recruiting and staff augmentation. Our account managers and recruiters have over a decade of experience in various verticals. GCM understands the challenges companies face when it comes to the skills and experience needed to fill the void of the day to day function. Organizations need to reduce training and labor costs but at same requiring the best "talent " for the job.
Qualifications
Information Security Analyst must work 3rd shift (Wed-Sat) 7pm - 6am MST
Information Security Analyst requires:
1-3 years of experience within the IT field
Bachelor's degree in computer science, information technology, or
related field is required Experience with enterprise information
security data management tools such as ArcSight or Splunk is preferred
Solid experience in scripting languages such as (or similar to) Python, PERL, and Ruby is a plus• Proficiency with RSA Archer
Experience with industry standard frameworks• Experience with YARA, regex, or other host/network-based signature development
Information Security Analyst duties:
Respond to network and host based security events
Minimize
the dwell time of threat actors by monitoring, triaging, and validating
security events, while maintaining thorough documentation in the case
management system
Operate with little-to-no direction and define relationships between seemingly unrelated events through deductive reasoning
Actively hunting for and dissecting previously unidentified threats in the environment
Participate in intelligence sharing and trust groups, then apply this knowledge to security controls
Additional Information
$38/hr
6 months
$38 hourly 14h ago
Malware Defense Malware Analyst
Stryker Corporation 4.7
Security engineer job in Denver, CO
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Bank of America is one of the world's leading financial institutions, serving over 66 million consumers and small businesses. Company success is only possible with a strong cyber defense, which enables Bank of America to safely conduct global operations across the United States and in approximately 35 countries. Our primary goal is to safeguard not only the company, but our clients and their trust. The Malware Defense Team is looking for top talent who would like to join one of the most advanced cybersecurity teams in the world.
Responsibilities
In-depth analysis of malware, including authoring analysis reports.
Tracking malware campaigns, malicious actors, and related infrastructure.
Creation of tools and scripts to assist in the analysis of malware analysis.
Field escalations of potentially malicious files and websites from teams within Malware Defense.
Required Qualifications
Strong direct experience of analyzing malware.
Intermediate to advanced malware analysis skills.
Experience creating innovative ways to track progression of malware families, infrastructure, and campaigns conducted by e-crime, and cyber espionage actors.
Experience creating tools and scripts to accelerate malware and threat analysis.
Background in network traffic analysis - WireShark, Fiddler, proxy logs, etc.
Experience analyzing malicious web content such as ClickFix, ClearFake, SocGholish, etc.
Experience authoring YARA, Suricata, and EKFiddle detection rules.
Experience with penetration testing and/or adversary emulation is a plus.
Able to work independently on tasks, but also work well within a team environment.
Desired Qualifications
Experience analyzing malware targeting Linux, Android, and IOT platforms.
Skills
Cyber Security
Data Privacy and Protection
Problem Solving
Process Management
Threat Analysis
Business Acumen
Data and Trend Analysis
Interpret Relevant Laws, Rules, and Regulations
Risk Analytics
Stakeholder Management
Access and Identity Management
Data Governance
Encryption
Information Systems Management
Technology System Assessment
Shift
1st shift (United States of America)
Hours Per Week
40
Pay Transparency details
US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)
Pay and benefits information Pay range
$95,700.00 - $144,900.00 annualized salary, offers to be determined based on experience, education and skill set.
Discretionary incentive eligible
This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.
Benefits
This role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
#J-18808-Ljbffr
$95.7k-144.9k yearly 3d ago
Building Management Systems Engineer
Nupeople
Security engineer job in Denver, CO
We are partnering with a leading innovator in sustainable cloud and data center infrastructure to identify a BMS Automation and Controls Engineer who will help shape the next generation of intelligent, energy-efficient facilities. This individual will lead the design and deployment of advanced Building Management System (BMS) and Electrical Power Monitoring System (EPMS) solutions that enable seamless automation, monitoring, and optimization of mission critical environments.
This is an opportunity to work at the forefront of technology, building systems that combine reliability, efficiency, and sustainability while supporting the rapidly expanding world of artificial intelligence infrastructure.
Key Responsibilities
• Lead the design and development of automation and visualization solutions for BMS and EPMS platforms across large scale data center projects
• Create intuitive dashboards, HMIs, and operator workflows that simplify the control of complex building and power systems
• Develop automation scripts, tags, templates, and reports to improve commissioning, testing, and operational efficiency
• Collaborate with multidisciplinary teams including engineering, construction, and OEM partners to scope, configure, and deploy automation solutions
• Integrate diverse control systems using industry standard protocols such as BACnet, Modbus, OPC UA, and MQTT
• Conduct system testing, simulations, and performance validation to ensure operational accuracy and reliability
• Use real time and historical data to enhance fault detection, predictive maintenance, and overall system insight
• Improve user interfaces to reduce alarm fatigue, enhance operator experience, and accelerate troubleshooting
• Provide clear and actionable reporting to leadership on system performance, uptime, and energy efficiency
• Mentor and train technical teams in best practices for automation development, programming, and visualization
Ideal Experience
• Bachelor's degree in Electrical Engineering, Controls Engineering, Computer Science, or a related field (advanced degree or certifications preferred)
• Deep hands on experience with BMS and EPMS platforms, programming, graphics, scripting, and SQL or data integration
• Proven success designing scalable, maintainable automation systems in mission critical environments such as data centers or industrial facilities
• Familiarity with HVAC, electrical systems, PLC and DDC logic, and industrial automation
• Strong understanding of control protocols including BACnet, Modbus, OPC UA, and MQTT
• Ability to transform operational needs into user friendly automation and visualization solutions
• Excellent collaboration and communication skills for engaging both technical teams and executive stakeholders
• Passion for using data visualization and automation to improve efficiency, sustainability, and user experience
$66k-90k yearly est. 2d ago
Senior Manual Ethical Hacker
Bank of America 4.7
Security engineer job in Denver, CO
Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Addison, Texas; Jersey City, New Jersey; Boston, Massachusetts; Charlotte, North Carolina; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.** Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (***********************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity.
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
+ Developing Proof-of-concepts for exploitation.
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications.
+ Provide clear and practical advice regarding managing risks.
+ Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
+ Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
+ Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 5 of the following areas:
+ securityengineering
+ application architecture
+ authentication and security protocols
+ application session management
+ applied cryptography
+ common communication protocols
+ mobile frameworks
+ single sign-on technologies
+ exploit automation platforms
+ Web APIs
+ Cloud environments
+ LLM security
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with DAST and SAST tools to identify vulnerabilities
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques.
+ Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
+ Threat Analysis, threat modelling and SBOM analysis
+ Innovative thinking, threat actor simulation
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
$86k-118k yearly est. 60d+ ago
Network Security Analyst
Cymertek
Security engineer job in Aurora, CO
Network Security AnalystLOCATIONAurora, CO 80014CLEARANCETS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are looking for a detail-oriented and proactive Network Security Analyst to join our cybersecurity team. In this role, you will monitor, analyze, and protect the organization's network infrastructure against potential threats and vulnerabilities. You will be responsible for identifying security risks, responding to incidents, and implementing measures to safeguard sensitive information. Collaborating with cross-functional teams, you will play a key role in enhancing the organization's overall network security posture. The ideal candidate is passionate about cybersecurity, thrives in a dynamic environment, and is committed to staying ahead of emerging threats and technologies.
*** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. ***
SIMILAR CAREER TITLESCybersecurity Analyst, Information Security Analyst, Security Operations Center (SOC) Analyst, Network Defense Analyst, Threat Intelligence Analyst, IT Security Specialist, Vulnerability Analyst, Incident Response Analyst, Security Monitoring Analyst, Cyber Defense Analyst, Infrastructure Security Analyst, etc.DEGREE (Level Desired) Bachelor's DegreeALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES
Monitor network traffic for anomalies
Investigate and resolve security incidents
Maintain and update security systems
Generate and analyze security reports
Assist in developing incident response plans
Ensure adherence to security policies
REQUIRED SKILLS
Proficiency in monitoring tools like IDS/IPS
Strong analytical and problem-solving skills
Understanding of network protocols (TCP/IP, DNS)
Knowledge of malware analysis tools
Ability to interpret security logs
Familiarity with vulnerability scanning tools
DESIRED SKILLS
Experience with advanced threat detection
Knowledge of forensics methodologies
Understanding of regulatory frameworks (e.g., GDPR, HIPAA)
Experience with SOC workflows
Familiarity with automation and scripting
Knowledge of threat intelligence platforms
PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE
Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development.
At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day.
We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave.
Ready to make your next move the best one? Join us and experience the difference.
BENEFITS
Excellent Salaries
Flexible Work Schedule
Cafeteria Style Benefits
10% - 401k Matching (Vested Immediately)
Additional 401k Profit Sharing
30 days Paid Leave/Holiday (No Use or Lose!)
The day off for your birthday
Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus)
HSA/FSA
AFLAC
Long Term/Short Term Disability - 100% employee coverage. No cost to you.
Life Insurance - 100% employee coverage. No cost to you.
Additional Discretionary Life Insurance
Paid Training
No long, wordy reviews with tons of paperwork!!!
Referral bonus program with recurring annual payments
HOW TO APPLY
Email us at ***************** or apply today: ****************
Want to see what our employees think? Click here .
EQUAL OPPORTUNITY EMPLOYER STATEMENT
Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
$60k-80k yearly est. Easy Apply 60d+ ago
Information Security Analyst
Global Channel Management
Security engineer job in Broomfield, CO
Global Channel Management is a technology company that specializes in various types of recruiting and staff augmentation. Our account managers and recruiters have over a decade of experience in various verticals. GCM understands the challenges companies face when it comes to the skills and experience needed to fill the void of the day to day function. Organizations need to reduce training and labor costs but at same requiring the best "talent " for the job.
Qualifications
Information Security Analyst must work 3rd shift (Wed-Sat) 7pm - 6am MST
Information Security Analyst requires:
1-3 years of experience within the IT field
Bachelor's degree in computer science, information technology, or
related field is required Experience with enterprise information
security data management tools such as ArcSight or Splunk is preferred
Solid experience in scripting languages such as (or similar to) Python, PERL, and Ruby is a plus• Proficiency with RSA Archer
Experience with industry standard frameworks• Experience with YARA, regex, or other host/network-based signature development
Information Security Analyst duties:
Respond to network and host based security events
Minimize
the dwell time of threat actors by monitoring, triaging, and validating
security events, while maintaining thorough documentation in the case
management system
Operate with little-to-no direction and define relationships between seemingly unrelated events through deductive reasoning
Actively hunting for and dissecting previously unidentified threats in the environment
Participate in intelligence sharing and trust groups, then apply this knowledge to security controls
Additional Information
$38/hr
6 months
$38 hourly 60d+ ago
Manual Ethical Hacker
Bank of America 4.7
Security engineer job in Denver, CO
Denver, Colorado;Seattle, Washington; Jersey City, New Jersey; Boston, Massachusetts; Washington, District of Columbia; Charlotte, North Carolina; Jacksonville, Florida; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (******************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.
This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications
+ Provide clear and practical advice regarding managed risks
+ Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills
Required Skills:
+ Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 3 of the following areas: securityengineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
+ SQL injection/XSS attack without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with SAST tools to identify vulnerabilities
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques
+ Solid programming/debugging skills
+ Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
+ Threat Analysis
+ Innovative Thinking
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
$86k-118k yearly est. 60d+ ago
System Security Engineer
Cymertek
Security engineer job in Aurora, CO
System SecurityEngineerLOCATIONAurora, CO 80014CLEARANCETS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are seeking a highly motivated and detail-oriented System SecurityEngineer to design, implement, and maintain security measures that protect our critical systems and data. In this role, you will work closely with cross-functional teams to identify vulnerabilities, develop robust security solutions, and ensure compliance with industry standards and regulations. The ideal candidate has a strong understanding of system architecture, a proactive approach to mitigating risks, and a passion for staying ahead of evolving cyber threats. If you are a problem-solver who thrives in a dynamic environment, we encourage you to apply and help us safeguard our organization's infrastructure.
*** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. ***
SIMILAR CAREER TITLESCybersecurity Engineer, Information SecurityEngineer, Network SecurityEngineer, IT SecurityEngineer, Cloud SecurityEngineer, Infrastructure SecurityEngineer, Endpoint SecurityEngineer, Security Operations Engineer, Security Systems Analyst, Data SecurityEngineer, Application SecurityEngineer, Identity and Access Management Engineer, Threat Detection Engineer, Vulnerability Management Engineer, Risk Assessment Engineer, Compliance SecurityEngineer, Incident Response Engineer, Secure Systems Architect, Security Automation Engineer, etc.DEGREE (Level Desired) Bachelor's DegreeDEGREE (Focus) Cybersecurity, Computer Science, Information Technology, Information Systems, Computer Engineering, Network Engineering, Software Engineering, Systems Engineering, Electrical Engineering, Data Science, Telecommunications, Information Assurance, Security Management, Digital Forensics, Cryptography, Cyber Operations, Applied Mathematics, Artificial Intelligence, Risk Management, Secure Systems Design, etc.ALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES
Design and implement secure system architectures
Monitor and respond to system security incidents
Develop and enforce system security policies
Conduct risk assessments and mitigate vulnerabilities
Ensure compliance with security standards and frameworks
Collaborate with teams to integrate security into system development
REQUIRED SKILLS
Proficiency in configuring firewalls and intrusion detection systems
Strong knowledge of operating system security (e.g., Linux, Windows)
Experience with endpoint protection tools
Familiarity with network protocols and security
Ability to perform vulnerability assessments and penetration tests
Expertise in implementing encryption and secure authentication methods
DESIRED SKILLS
Knowledge of cloud security practices (e.g., AWS, Azure)
Familiarity with automation tools for security (e.g., Ansible, Terraform)
Experience with security incident response and forensics
Understanding of DevSecOps principles
Strong communication and technical documentation skills
Ability to train and mentor team members on security best practices
PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE
Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development.
At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day.
We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave.
Ready to make your next move the best one? Join us and experience the difference.
BENEFITS
Excellent Salaries
Flexible Work Schedule
Cafeteria Style Benefits
10% - 401k Matching (Vested Immediately)
Additional 401k Profit Sharing
30 days Paid Leave/Holiday (No Use or Lose!)
The day off for your birthday
Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus)
HSA/FSA
AFLAC
Long Term/Short Term Disability - 100% employee coverage. No cost to you.
Life Insurance - 100% employee coverage. No cost to you.
Additional Discretionary Life Insurance
Paid Training
No long, wordy reviews with tons of paperwork!!!
Referral bonus program with recurring annual payments
HOW TO APPLY
Email us at ***************** or apply today: ****************
Want to see what our employees think? Click here .
EQUAL OPPORTUNITY EMPLOYER STATEMENT
Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
$75k-105k yearly est. Easy Apply 60d+ ago
Information Security Analyst 3rd shift
Global Channel Management
Security engineer job in Broomfield, CO
Global Channel Management is a technology company that specializes in various types of recruiting and staff augmentation. Our account managers and recruiters have over a decade of experience in various verticals. GCM understands the challenges companies face when it comes to the skills and experience needed to fill the void of the day to day function. Organizations need to reduce training and labor costs but at same requiring the best "talent " for the job.
Qualifications
3rd shift (mon, tues, thurs, fri) 7pm - 6am MST
Required Skills (Minimum knowledge, skills and abilities to enter the job):
• Minimum of 1-3 years of experience within the IT field
• Exceptional written and oral communication skills
• Strong critical thinking and analytical skills
• Attention to detail
• Experience handling security incidents, to include reviewing raw log files, data correlation, and analysis
• Experience with and thorough understanding of attack vectors, threat tactics, and attacker techniques
• Able to proactively perform duties and responsibilities with little-to-no direction
• Able to effectively and efficiently collaborate with a diverse and geographically distributed team
• Must be willing and able to work a shift routine
• Ensure successful handoff of procedures between shifts
Desired Skills (Preferred not required):
• Bachelor's degree in computer science, information technology, or related field is required
• Experience with enterprise information security data management tools such as ArcSight or Splunk is preferred
• Solid experience in scripting languages such as (or similar to) Python, PERL, and Ruby is a plus
• Proficiency with RSA Archer
• Experience with industry standard frameworks
• Experience with YARA, regex, or other host/network-based signature development
Additional Information
$38/hr
6 MONTHS
How much does a security engineer earn in Cherry Creek, CO?
The average security engineer in Cherry Creek, CO earns between $64,000 and $116,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.
Average security engineer salary in Cherry Creek, CO
$87,000
What are the biggest employers of Security Engineers in Cherry Creek, CO?
The biggest employers of Security Engineers in Cherry Creek, CO are: