Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform - and with it, the future global financial system.
To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.
Our ******************************** is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.
While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.
The Application Security organization at Coinbase is seeking to hire an experienced Offensive SecurityEngineer specializing in Web3 penetration testing and Web3 bug bounty program management and optimization. In this role, you will collaborate with the Bug Bounty Program Lead to drive Web3 bug bounty triage, validation, and strategic initiatives aimed at increasing program efficiency, maturity, and hacker engagement. You will work closely with whitehat hackers, securityengineers, and cross-functional teams to enhance Coinbase's security posture through an effective bug bounty program. Additionally, you will perform penetration tests on Web3 technologies and applications, ensuring the security of Coinbase's blockchain-based products and services.
*What you'll be doing (ie. job duties):*
* Conduct security assessments of Web3 products and services, including smart contracts, DeFi protocols, and blockchain infrastructure.
* Collaborate with partner teams to enhance detection and response capabilities for Web3 vulnerabilities.
* Stay informed on emerging security trends, advisories, and academic research in the Web3 space.
* Lead Web3 bug bounty triage and validation, ensuring timely and accurate assessments of reported vulnerabilities.
* Develop and implement strategies to incentivize high-quality bug bounty submissions and engage with the hacker community.
* Manage the Web3 bug bounty program, including scope updates, researcher communication, and payout disbursements.
* Analyze bug bounty data to identify trends, common vulnerabilities, and areas for improvement.
* Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
* Mentor and train junior securityengineers in Web3 bug bounty triage and analysis.
* Provide on-call support for critical Web3 bug bounty-related incidents.
* Document and report on Web3 bug bounty metrics and program effectiveness.
*What we look for in you (ie. job requirements):*
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
* 3+ years of experience in Web3 application security and penetration testing.
* Proven track record of identifying critical vulnerabilities across the blockchain protocol stack, Web2, and Web3 components.
* Extensive knowledge of the blockchain ecosystem, including L1/L2 networks, DeFi protocols, and staking mechanisms.
* Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
* Strong analytical skills to identify trends and patterns in vulnerabilities.
* Excellent communication skills for engaging with internal teams.
* Passion for security and a drive to improve Web3 security posture.
* Ability to work independently and take ownership of penetration testing initiatives.
* Energy and self-drive for continuous learning in the rapidly evolving crypto space.
* Excellence in clear, direct, and kind communication with technical and non-technical stakeholders.
* Experience building relationships with product, engineering, and security teams.
*Nice to haves:*
* Participation in CTFs, bug bounty programs, or open-source security research.
* Expertise in Application Security, Network Security, or Cloud Security.
* Relevant security certifications (e.g., OSCP, GPEN).
* Experience developing and implementing security tooling to support bug bounty triage and analysis.
* Experience with bug bounty programs and platforms, including triage, validation, and researcher communication.
* Strong analytical skills to identify trends and patterns in bug bounty submissions.
* Excellent communication skills to effectively engage with bug bounty researchers.
Position ID: P69494
\#LI-remote
*Pay Transparency Notice:* Depending on your work location, the target annual salary for this position can range as detailed below. Full time offers from Coinbase also include bonus eligibility + equity eligibility**+ benefits (including medical, dental, vision and 401(k)).
Pay Range:
$152,405-$179,300 USD
Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.
Commitment to Equal Opportunity
Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the *********************************************** in certain locations, as required by law.
Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations***********************************
*Global Data Privacy Notice for Job Candidates and Applicants*
Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available ********************************************************** By submitting your application, you are agreeing to our use and processing of your data as required.
*AI Disclosure*
For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.
For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.
*The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment*. To request a reasonable accommodation due to disability, please contact accommodations[at]coinbase.com
Meta Security is looking for a threat intelligence investigator with extensive experience in investigating cyber threats with an intelligence-driven approach. You will be proactively responding to a broad set of security threats, as well as tracking actor groups with an interest or capability to target Meta and its employees. You will also be identifying the gaps in current detections and preventions by long-term intelligence tracking and research, and working with cross-functional stakeholders to improve Meta's security posture. You will help the team establish, lead and execute multi-year roadmaps that improve research efficiency and quality across the team, and drive improvements to stakeholder management across a broad range of intelligence requirements.
**Required Skills:**
Detection & Response SecurityEngineer, Threat Intelligence Responsibilities:
1. Influence and align the team's vision and strategy. Collaboratively prioritize and deliver specific multi-year roadmaps and projects
2. Build, cultivate, and maintain impactful relationships with intelligence stakeholders to identify and facilitate solutions to increase the impact of the team's work
3. Refine operational metrics, key performance indicators, and service level objectives to measure Intelligence research and services
4. Lead cross-functional projects to improve the security posture of Meta's infrastructure, such as red team operations, surface detection coverage expansion and vulnerability management discussions
5. Track threat clusters posing threats to Meta's infrastructure and employees, and identify, develop and implement countermeasures on our corporate network
6. Investigate, mitigate, and forecast emerging technical trends and communicate effectively with actionable suggestions to different types of audiences
7. Work closely with incident responders to provide useful and timely intelligence to enrich ongoing investigations
8. Improve the tooling of threat cluster tracking and intelligence data integration to existing systems
**Minimum Qualifications:**
Minimum Qualifications:
9. 8+ years threat intelligence experience
10. B.S. or M.S. in Computer Science or related field, or equivalent experience
11. Be a technical and process subject matter expert regarding Security Operations and Threat Intelligence services
12. Experience developing and delivering information on threats, incidents and program status for leadership
13. Expertise with campaign tracking techniques and converting tracking results to long term countermeasures
14. Expertise with threat modeling frameworks, such as Diamond Model or/and MITRE ATT&CK framework
15. Experience intelligence-driven hunting to spot suspicious activities in the network and identify potential risks
16. Proven track record of managing and executing on short term and long term projects
17. Ability to work with a team spanning multiple locations/time zones
18. Ability to prioritize and execute tasks with minimal direction or oversight
19. Ability to think critically and qualify assessments with solid communications skills
20. Coding or scripting experience in one or more scripting languages such as Python or PHP
**Preferred Qualifications:**
Preferred Qualifications:
21. Experience recruiting, building, and leading technical teams, including performance management
22. Experience close collaborating with incident responders on incident investigations
23. Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigates suspicious behavior across networks and systems
24. Familiarity with malware analysis or network traffic analysis
25. Familiarity with nation-state, sophisticated criminal, or supply chain threats
26. Familiarity with file-based or network-based rules and signatures for detection and tracking of complex threats, such as YARA or Snort
27. Experience in one or more query languages such as SQL
28. Experience authoring production code for threat intelligence tooling
29. Experience conducting large scale data analysis
30. Experience working across the broader security community
**Public Compensation:**
$184,000/year to $257,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
$184k-257k yearly 60d+ ago
Staff AI Security Architect
Datavant
Security engineer job in Hartford, CT
Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format. Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care.
By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare.
**What We're Looking For**
As a Staff AI Security Architect at Datavant, you will lead the design, evolution, and adoption of secure by design principles across our AI and Machine Learning (ML) systems. This role sits at the intersection of AI innovation and security architecture. You will define and operationalize AI security strategy, embed security into the AI/ML development lifecycle, and partner deeply with data science, engineering, product, legal, and compliance teams to ensure our AI systems are secure, trustworthy, and scalable.
**What You Will Do**
+ Establish AI security architectural standards, design patterns, and best practices adopted across engineering teams.
+ Architect and advise on secure end-to-end AI systems, including data pipelines, model training, evaluation, deployment, runtime monitoring, and agentic workflows.
+ Lead threat modeling, architecture reviews, and risk assessments for AI-driven products, including LLMs, agent frameworks, and multi-agent systems.
+ Define and evolve a comprehensive AI/ML secure development lifecycle integrated into existing SDLC practices.
+ Develop reference architectures, documentation, and reusable security components to accelerate secure AI adoption.
+ Collaborate with legal, privacy, compliance, and responsible AI stakeholders to align security controls with regulatory and ethical requirements.
+ Act as a trusted advisor to senior leadership on AI security risks, trade-offs, and long-term strategy.
**What You Need to Succeed**
+ 8+ years of experience in security architecture, application security, or product security, with meaningful focus on AI/ML systems.
+ Hands-on experience securing AI/ML or LLM-based systems, including familiarity with modern AI architectures and agentic workflows.
+ Strong understanding of AI threat models, including adversarial ML, prompt injection, data poisoning, model theft, and abuse scenarios.
+ Proven ability to design and influence security architectures for large-scale, distributed systems.
+ Strong communication skills with the ability to translate complex technical concepts to both technical and non-technical stakeholders.
+ Have a strong understanding of security controls, both those that exist in audit standards as well as practical controls that can help reduce risk and increase safety.
**What Helps You Stand Out**
+ Hands-on experience building, testing, or tinkering with agentic AI workflows, with an understanding of the security risks they introduce.
+ Experience securing AI/ML workloads in Databricks, with a deep understanding of its platform-specific security risks.
+ You have experience with security in healthcare or other highly regulated space. Examples: HIPAA, HITRUST, SOC 2, PCI, FedRamp experience from an operational response standpoint.
We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status.
At Datavant our total rewards strategy powers a high-growth, high-performance, health technology company that rewards our employees for transforming health care through creating industry-defining data logistics products and services.
The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job.
The estimated total cash compensation range for this role is:
$224,000-$280,000 USD
To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and/or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and/or religion.
This job is not eligible for employment sponsorship.
Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here (************************************************** . Know Your Rights (*********************************************************************** , explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay.
At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren't even able to see whether you've responded.) Responding is entirely optional and will not affect your application or hiring process in any way.
Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please request it here, (************************************************************** Id=**********48790029&layout Id=**********48795462) by selecting the 'Interview Accommodation Request' category. You will need your requisition ID when submitting your request, you can find instructions for locating it here (******************************************************************************************************* . Requests for reasonable accommodations will be reviewed on a case-by-case basis.
For more information about how we collect and use your data, please review our Privacy Policy (**************************************** .
$224k-280k yearly 9d ago
Need for Cyber Security Threat Analyst/ IT Security Specialist on 1099 or C2C
Xperttech 3.8
Security engineer job in Hartford, CT
Job Title: Cyber Security Threat Analyst/ IT Security Specialist Duration: 6-12+ Months COMPLETE SKILL MATRIX : Cyber Security Threat Analyst/ IT SecuritySecurity aspects of multiple platforms, operating systems, software, communications, and network protocols
Security CISSP or CISM certification is a plus
What are the Job Responsibilities:
Use Tanium and other tools to view data, indicators of compromise-IOCs, collect inventory to identify threats and relate them to the areas of the organization.
Use the analytical information from a diverse set of tools - Splunk, ArcSight, syslog, Tanium, to name a few- to their best advantage to identify threats and trends in addition to current state reactive behavior.
Configure components to effectively detect and report incidents & and follow escalation workflows
Work with cross functional teams to perform activities including planning, providing technical leadership, and tracking projects and key task dates.
Uses Security monitoring tools to review, investigate, and recommend appropriate corrective actions for data security incidents.
Work with engineering to assist with recommendations regarding direction of tools and applications.
Who Is Our Ideal Candidate:
Bachelor's degree in Computer Science, Engineering, or a directly related field.
Four to six years of professional IT experience.
Experience in security aspects of multiple platforms, operating systems, software, communications, and network protocols.
Requires excellent analytical ability, consultative and communication skills, and strong judgment.
Must be highly skilled and proficient in problem solving, with an aptitude to learn new technologies.
Ability to regularly exercise independent judgment and discretion.
Excellent end users support skills
Ability to multitask and handle multiple priorities
Must be resourceful, creative, innovative, results driven, and adaptable
Nice to have:
Security CISSP or CISM certification is a plus
Additional Information
$82k-117k yearly est. 60d+ ago
Fire & Security Engineer
Perigon Search
Security engineer job in Worcester, MA
Fire & SecurityEngineer - Worcester Varied, local work and a supportive team environment.
If you know your way around fire, intruder, access, and CCTV systems, and you've got a particular knack for fire alarms, this one's worth a look.
You'll be covering well-maintained sites around Worcester and the M5 corridor. Expect a steady mix of servicing, fault-finding, and small works jobs. You'll be backed by a company that actually cares about quality and doing things properly.
What's in it for you:
£38,000-£45,000 base salary (realistically £50K+ with call-outs and overtime)
Door-to-door travel pay (only 15 minutes deducted each way)
Personal-use van - no restrictions
25 days holiday + bank holidays
Healthcare cash plan, life insurance, and accident cover
Above-average pension contribution
Recognition schemes like the Elite Driver Awards
Ongoing training: FIA, BAFE, BS5839, and manufacturer courses
What you'll be doing:
You'll be responsible for installing, commissioning, servicing, and maintaining fire, intruder, access, and CCTV systems across a defined local patch. Most of your work will involve addressable and conventional fire alarms, emergency lighting, and related systems - with all travel time paid.
What you'll need:
Experience with systems like Advanced, Kentec, C-Tec, Morley, or Gent
Solid understanding of BS5839 and general fire/security compliance
Full UK driving licence and ability to pass an enhanced DBS check
A reliable, professional approach and pride in your work
About the company:
You'll be joining a nationwide fire & security team of around 100 people who support sectors such as healthcare, education, care homes, utility companies, and logistics. They invest heavily in training, back their engineers properly, and reward good work with genuine progression opportunities.
What to do next:
Apply now or get in touch for a chat about the role.
$83k-114k yearly est. 56d ago
Information Security Solutions Analyst
Farm Credit East 4.5
Security engineer job in Enfield, CT
Join a team focused on the success of our customers, the success of our communities, and the success of each other. Farm Credit East (FCE) is the leading provider of loans and farm advisory services to farm, forest product, fishing, and other agricultural business owners across the northeast with $13.5 billion in total loan volume and $29 million in annual financial services revenue from 18,000 customers across our 8-state territory. We are One Team Working Together with a focus on our five pillars: Outstanding Customer and Employee Experience, Quality Growth, Operational Excellence, Commitment to our Communities, and Protecting Customer Information.
As part of our commitment to protecting customer information and enabling operational excellence, the Security Solutions Analyst plays a key role in supporting the secure design, implementation, and documentation of systems and cybersecurity initiatives.
This role serves as a technical liaison between the Information Security team and internal and external stakeholders, including Farm Credit Financial Partners, Inc. (FPI). The analyst represents Information Security in the Architecture Review Board (ARB), evaluates strategic projects for security alignment, and ensures that security requirements are embedded in technical decisions and implementation plans.
The analyst applies Security by Design principles, ensuring that systems and solutions are architected with security as a foundational principle. This includes adherence to internal standards, regulatory requirements, and industry best practices throughout the lifecycle of technology initiatives.
The value drivers for this role are as follows:
Secure Enablement of Initiatives
Data Protection and Governance Support
Alignment with Standards and Risk Appetite
Operational Resilience and Incident Readiness
Cross-Team Collaboration and Technical Alignment
Come join a collaborative, customer-focused team at Farm Credit East!
Duties and Responsibilities
Security Architecture, Standards & Project Evaluations
Represent Information Security in the Architecture Review Board (ARB) for all projects requiring architectural review.
Evaluate strategic and technical initiatives for alignment with security architecture, regulatory requirements and risk posture.
Conduct threat modeling to assess cybersecurity risk related to new projects and technologies.
Apply security by design principles to ensure security is embedded throughout project lifecycles.
Ensure solutions adhere to internal security standards, NIST CSF principles, and applicable regulatory frameworks.
Ensure security standards are defined, are accurate, up-to-date, and aligned with FCE's risk appetite and industry best practices.
Conduct security evaluations of internal and third-party systems, including encryption, patching, APIs, data residency, incident response, and third-party risk indicators.
Review configurations and security controls for AI-enabled systems, including generative, agentic, and embedded AI. Evaluate risks related to model behavior, data usage, integration points, and alignment with internal standards and responsible AI security practices.
Provide security oversight throughout the full lifecycle of systems, from design to deployment to decommissioning.
System Configuration Oversight & Technology Service Provider Collaboration
Provide guidance and maintain oversight for the configuration and security settings of all FCE systems.
Partner with FPI and/or other outside vendors to ensure system configurations, access policies, and integration points meet FCE's security requirements.
Participate in joint planning and review sessions to support shared initiatives and maintain architectural alignment.
Maintain visibility into FPI-managed implementations and ensure security expectations are clearly communicated, documented, and tracked.
Participate in change management process to assess the security impact of system changes, upgrades and new deployments.
Initiative Coordination, Implementation Support & Incident Readiness
Serve as a bridge between business and security to ensure cybersecurity initiatives are implemented effectively, securely and in alignment with organizational goals.
Facilitate secure implementation of systems in alignment with architectural principles and engineering best practices.
Monitor initiative progress and ensure readiness for integration with managed services.
Ensure systems are configurated to support incident detection, logging, and response capabilities.
Assist in tuning and optimizing security tools in collaboration with FPI or other external parties, such as data loss prevention (DLP), endpoint protection, and threat detection platform to improve visibility and reduce false positives.
Lead the implementation of data classification and labeling, including applying classification rules, tagging sensitive data, and testing configurations to ensure accuracy and effectiveness.
Contribute to incident readiness by validating that systems and integrations support timely response and containment of security events.
Documentation, Reporting & Governance
Develop and maintain technical documentation (e.g., workflows, configuration guides, implementation checklists).
Maintain dashboards and reporting tools to track progress and security posture.
Support audits, readiness assessments, and leadership reporting.
Contribute to the development and maintenance of architecture standards and security metrics.
Security by Design Enablement
Facilitate effective communication of security risks and best practices for both technical and non-technical audiences.
Champion Security by Design philosophy for embedding cybersecurity design thinking into organizational processes and enabling technologies.
Contribute to internal education efforts by developing technical guides, reference material, and awareness content to promote security best practices.
Promote a culture of security through collaboration, training, and knowledge sharing across departments.
Translate technical tasks into business impact for non-technical stakeholders to support decision-making
Support awareness and adoption of data classification and labeling frameworks, ensuring users understand how to handle sensitive information appropriately.
Job Qualifications and Requirements:
Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field required. Master's degree or equivalent experience preferred.
Minimum of 3-5 years of experience in cybersecurity, information security, or securityengineering roles.
Hands-on experience with security architecture or engineering support, including secure system design, configuration, and implementation.
Experience working with data protection technologies, such as data loss prevention (DLP), data classification and labeling, trainable classifiers, and endpoint protection.
Experience collaborating with managed service providers or external technology partners to implement and maintain secure systems.
Exposure to governance frameworks such as NIST CSF, CIS Controls, or ISO 27001, with an understanding of how to align security standards with organizational risk appetite.
Participation in architecture review boards (ARBs) or similar governance bodies is a strong plus.
Experience supporting change management processes, including security impact assessments for system changes and deployments.
Strong background in technical documentation, process mapping, and reporting to support visibility and compliance.
Security-related certifications such as CISSP, CCSP or equivalent are preferred. Certifications in architecture or engineering support (e.g., ITIL, TOGAF, cloud security) are a plus.
We offer hybrid work options after two weeks of employment with Farm Credit East. Hybrid work options are determined based on job role and balancing the needs of the customers, the team, and individual work performance. This will be reviewed based on manager discretion.
Compensation and Benefits:
Salary Range: $80,000 to $120,000 commensurate with experience
Short-Term Incentive to reward business results
Retirement Contributions :
401k match up to 6% of salary; or for those unable to take full advantage of the 401(k) match, verified student loan payments may qualify for an employer match in your 401(k) up to 6% of salary
Defined Contribution retirement plan funded at 2-9% of salary depending on years of service
Time Off:
15-25 days of vacation leave per year, depending on years of service
12 days of holiday leave per year
7.5 days of sick leave in your first year, followed by 12 days of sick leave per year thereafter; unlimited rollover of unused sick leave year to year
Paid Parental Leave: Up to 80 hours of paid leave for birthing, non-birthing, and adoptive parents
Family Care Leave: Additional leave options available under FMLA and company policy
Health and Insurance:
Comprehensive medical, dental, and vision plans, including preventive care and wellness programs to support your overall health and well-being
Health Savings Account
Life insurance at 2x base pay
Accidental Death and Dismemberment insurance at 2x base pay
Long-term disability insurance at 2/3 base pay
Additional Benefits:
Tuition reimbursement
Continuing education and training
Employee Assistance Program offering a wide variety of tools and resources
Benefits Eligibility:
Eligibility Begins: First of the month following your hire date
Eligible Employees: Full-time employees working 30+ hours per week; Part-Time employees working 20+ hours per week.
Farm Credit East is an Equal Opportunity Employer. As an Equal Opportunity Employer, we do not discriminate on the basis of race, color, religion, national origin, sex, sexual orientation, gender identity or expression, age, marital status, parental status, political affiliation, disability status, protected veteran status, genetic information or any other status protected by federal, state or local law. It is our goal to make employment decisions that further the principle of equal employment opportunity by utilizing objective standards based upon an individual's qualifications for a specific job opening. In compliance with the Americans with Disabilities Act (“ADA”), if you have a disability and would like a reasonable accommodation in order to apply for a position with Farm Credit East, please call ************** or e-mail ************************************
$80k-120k yearly 11d ago
Application Security Engineer
Vbest Software
Security engineer job in Springfield, MA
Must have: Application security, Relevant security certifications , Devops, OWASP
Duties: The Opportunity
We are seeking an experienced Application SecurityEngineer to join our Software Security team and take charge of ensuring the security and integrity of our software applications.
The ideal candidate will have advanced knowledge of secure software development, extensive experience with identifying vulnerabilities, and the ability to implement robust security solutions.
This role will require collaboration with development teams, security architects, and other stakeholders to integrate security best practices into all stages of the software development lifecycle.
Description:
Your key responsibilities will consist of the following to ensure applications are resilient against emerging threats, reducing potential financial and reputational damage from security incidents.
Conduct in-depth security assessments, including vulnerability scanning, and code reviews.
Leverage automated tools and manual testing techniques to identify, risk assess and prioritize and propose mitigation strategies for identified threats and application-level vulnerabilities (e.g., OWASP Top 10, etc.) ensuring our applications meet security standards and reducing exposure to data breaches.
Collaborate with security architects to design secure application architectures that align with industry best practices.
Ensure secure coding practices are followed, and security controls are incorporated into software designs.
Conduct detailed threat modeling to identify attack vectors and potential weaknesses.
Collaborate with our SDLC Council to develop and maintain secure coding standards, empowering developers to integrate security into the development process.
Partner with DevOps teams to implement security within CI/CD (continuous integration & delivery) pipelines for automated and seamless deployment of secure code.
Assist in incident response activities related to application security breaches, providing rapid identification and mitigation guidance.
Ensure compliance with security regulations, frameworks, and industry standards such as OWASP.
Leverage reporting tools to demonstrate the overall risk through metrics (KPIs, KRIs, OKRs) of vulnerabilities and code defects to MassMutual's cyber assets for various team leaders and executive leadership for risk prioritization and enablement of risk-based decision-making.
Stay up to date with the latest security threats, vulnerabilities, and industry trends to inform and improve security strategies.
Strong problem-solving abilities and analytical thinking.
Excellent communication skills to explain security issues to both technical and non-technical stakeholders.
A team player with the ability to work in a collaborative, fast-paced environment.
Office location worker is associated with: Springfield, MA, Boston, MA, or NY, NY.
Skills:
Bachelor's or master's degree in computer science, Information Security, or a related field.
Minimum of 5+ years of experience in application security, penetration testing, or secure software development.
The Ideal Qualifications
Relevant security certifications such as CEH, OSCP, or GWAPT) from an industry recognized certifier (e.g., SANS/GIAC, CompTIA, ISACA, ISC2, etc.) Strong knowledge of secure software development methodologies, including threat modeling, code reviews, and static/dynamic analysis.
Experience in integrating security into DevOps (DevSecOps) and CI/CD environments.
Strong technical knowledge of web application security, cloud security (AWS, Azure, GCP), mobile security, infrastructure as code (IaC), container security, and API security.
Familiarity with SAST, DAST, and IAST tools.
Deep understanding of common vulnerabilities (e.g., OWASP Top 10) and their mitigations.
Advanced understanding and experience with writing source code (e.g., JavaScript, Java, C/C++/C#, Python, etc.) and familiarity with software security frameworks (e.g., Maven, Node, Gradle, etc.).
Experience with identifying security vulnerabilities/defects in dockers, containers, and Kubernetes.
Experience with cloud deployment and automation tools (Terraform, GitHub Actions, Jenkins, AWS Cloud Formation Templates, Secrets Managers).
Knowledge of compliance and regulatory frameworks (SOC 2, etc.).
Job Description
We are seeking an experienced Application SecurityEngineer to join our Software Security team and take charge of ensuring the security and integrity of our software applications. The ideal candidate will have advanced knowledge of secure software development, extensive experience with identifying vulnerabilities, and the ability to implement robust security solutions. This role will require collaboration with development teams, security architects, and other stakeholders to integrate security best practices into all stages of the software development lifecycle.
The Impact
Your key responsibilities will consist of the following to ensure applications are resilient against emerging threats, reducing potential financial and reputational damage from security incidents.
Conduct in-depth security assessments, including vulnerability scanning, and code reviews.
Leverage automated tools and manual testing techniques to identify, risk assess and prioritize and propose mitigation strategies for identified threats and application-level vulnerabilities (e.g., OWASP Top 10, etc.) ensuring our applications meet security standards and reducing exposure to data breaches.
Collaborate with security architects to design secure application architectures that align with industry best practices.
Ensure secure coding practices are followed, and security controls are incorporated into software designs.
Conduct detailed threat modeling to identify attack vectors and potential weaknesses.
Collaborate with our SDLC Council to develop and maintain secure coding standards, empowering developers to integrate security into the development process.
Partner with DevOps teams to implement security within CI/CD (continuous integration & delivery) pipelines for automated and seamless deployment of secure code.
Assist in incident response activities related to application security breaches, providing rapid identification and mitigation guidance.
Ensure compliance with security regulations, frameworks, and industry standards such as OWASP.
Leverage reporting tools to demonstrate the overall risk through metrics (KPIs, KRIs, OKRs) of vulnerabilities and code defects to cyber assets for various team leaders and executive leadership for risk prioritization and enablement of risk-based decision-making.
Stay up to date with the latest security threats, vulnerabilities, and industry trends to inform and improve security strategies.
Strong problem-solving abilities and analytical thinking.
Excellent communication skills to explain security issues to both technical and non-technical stakeholders.
A team player with the ability to work in a collaborative, fast-paced environment.
The Minimum Qualifications
Bachelor's or master's degree in computer science, Information Security, or a related field.
Minimum of 5+ years of experience in application security, penetration testing, or secure software development.
The Ideal Qualifications
Relevant security certifications such as CEH, OSCP, or GWAPT) from an industry recognized certifier (e.g., SANS/GIAC, CompTIA, ISACA, ISC2, etc.) Strong knowledge of secure software development methodologies, including threat modeling, code reviews, and static/dynamic analysis.
Experience in integrating security into DevOps (DevSecOps) and CI/CD environments.
Strong technical knowledge of web application security, cloud security (AWS, Azure, GCP), mobile security, infrastructure as code (IaC), container security, and API security.
Familiarity with SAST, DAST, and IAST tools.
Deep understanding of common vulnerabilities (e.g., OWASP Top 10) and their mitigations.
Advanced understanding and experience with writing source code (e.g., JavaScript, Java, C/C++/C#, Python, etc.) and familiarity with software security frameworks (e.g., Maven, Node, Gradle, etc.).
Experience with identifying security vulnerabilities/defects in dockers, containers, and Kubernetes.
Experience with cloud deployment and automation tools (Terraform, GitHub Actions, Jenkins, AWS Cloud Formation Templates, Secrets Managers).
Knowledge of compliance and regulatory frameworks (SOC 2, etc.).
Education:
Bachelor's or master's degree in computer science.
Skills and Experience:
Required Skills:
MITIGATION
CLOUD SECURITY
METRICS
SCANNING
GCP
Additional Skills:
SOC
INFORMATION SECURITY
API
DYNAMIC ANALYSIS
C
JAVA
MAVEN
AMAZON WEB SERVICES
PROBLEM-SOLVING
GITHUB
DEPLOYMENT
REPORTING TOOLS
INCIDENT RESPONSE
C/C++
CONTINUOUS INTEGRATION/DELIVERY
TERRAFORM
CODING
DEV OPS
EXCELLENT COMMUNICATION SKILLS
JAVASCRIPT
SOFTWARE SECURITY
COMPTIA
PYTHON
STRUCTURED SOFTWARE
GIAC
SDLC
JENKINS
CODING STANDARDS
TEAM PLAYER
GRADLE
KUBERNETES
We Are Accenture Cybersecurity helps organizations prepare, protect, detect, respond, and recover along with all points of the security lifecycle. Cybersecurity challenges are different for every business in every industry. Leveraging our global resources and advanced technologies, we create integrated, turnkey solutions tailored to our client's needs across their entire value chain. Whether we're defending against known cyberattacks, detecting and responding to the unknown, or running an entire security operations center, we will help companies build cyber resilience to grow with confidence. Our team of the security sector's brightest people uses the coolest tech to out-hack the hackers and help clients build resilience from within. We blend risk strategy, digital identity, cyber defense, application security, and managed service solutions to rethink the entire security lifecycle.
Do you have the deep functional and technical experience to help implement security solutions that align with our clients' business objectives? Do you have the expertise to design and deliver solutions for establishing system user's credentials, and processes for applying those credentials to access enterprise systems and applications?If so, read on and apply. Accenture's more than 2,000 security professionals deliver holistic and proactive security solutions in 47 countries, and we'd love to discuss our open Identity and Access Management (I&AM) Security role with you
You Are
A cyber security savant. You've got the skills and experience to keep data safe from black hat hackers or other threats, whether by coding a threat intrusion module or sharing your latest ideas with the team. Day-to-day, you're all about solving security problems for clients and using your people skills to make sure everyone on your team is working well and happily.
You are passionate about security, love what you do and have a genuine desire to outsmart the bad guys. You have the experience to analyze a clients' security posture, anticipate security requirements and help find right-sized solutions based on industry leading practices. You have a proven track record working successfully in a fast-paced, team-oriented environment. You're a creative, analytical problem solver with above average documentation skills who can speak to both technical and non-technical audiences. You are eager to put your skills to use by helping us help our clients inject security at every level of their organization.
The Work
Working directly with clients and Accenture teams in a multi-disciplined team structure, you will design and implement I&AM solutions using ForgeRock and Ping Identity products. You will develop deep working relationships with Senior Executives and Senior Managers across the client account team and client, understanding the business direction of companies and creating optimized I&AM architectures to meet their business needs.
As a Ping Identity/ForgeRock Consultant, you will:
+ Design, configure, and implement Ping Advanced Identity platform components including Ping AM, Ping IDM, Ping DS, and Ping Identity Gateway, and Ping Advanced Identity Cloud and Remote Connector Server
+ Lead and manage multiple workstreams
+ Design and code custom decision nodes using JavaScript and/or Java
+ Implement custom object models based on client requirements
+ Configure user stores with custom attributes and policies
+ Develop implementation and migration plans focusing on service continuity
+ Implement and configure Single Sign-On (SSO) solutions across diverse application portfolios
+ Understand and advise clients on secure communication techniques; requires an understanding of SSH, TLS
+ Work with application owners to integrate applications onto the SSO platform using factory models and bespoke integration techniques
+ Work with directory services and identity provisioning platforms
+ Collaborate with cross-functional teams to integrate IAM solutions with existing enterprise systems
+ Provide technical leadership and guidance on IAM best practices and industry standards
+ Create comprehensive technical documentation and knowledge transfer materials
+ Troubleshoot complex IAM issues and provide production support
+ Work with clients and Accenture colleagues to understand requirements and estimate work efforts
+ Develop and maintain an implementation work plan using Agile and waterfall methodologies
Travel may be required for this role. The amount of travel will vary from 0 to 100% depending on business need and client requirements.
Here's What You Need
+ Bachelor's degree or equivalent (minimum 12 years) work experience. (If Associate's Degree, must have minimum 6 years work experience)
+ Minimum of 3 years of experience with Ping Identity (formerly ForgeRock) and specific platforms, Ping AM (Access Management), Ping IDM (Identity Management), Ping DS (Directory Services), Ping Identity Gateway (Identity Gateway) and Ping Advanced Identity Cloud
+ Minimum of 3 years of experience with IAM Functional Skills Access Management, Identity Governance, Directory Services, Identity Provisioning, Identity Management and Identity Management as a Service.
+ Minimum of 3 years of experience with identity standards and protocols (SAML, OAuth 2.0, OpenID Connect, LDAP, SCIM)
+ Minimum of 3 years of experience with scripting and programming skills (Java, JavaScript, Groovy, Python, Shell scripting)
Bonus points if you have:
+ Experience with other IAM platforms (Ping Identity suite: PingFederate, PingAccess, PingDirectory, PingID, PingOne)
+ Strong functional understanding of CIAM or Workforce Access Management
+ Industry-adopted security certifications (e.g., CISSP, CISM) or IAM vendor certifications
+ Understanding of DevOps and CI/CD practices for IAM deployments
+ Experience with API development and integration
+ Knowledge of containerization and orchestration technologies (Docker, Kubernetes)
+ Mobile development knowledge with experience in iOS and Android platforms
+ Front development experience
+ Demonstrate success building and scaling SaaS products with a focus on customer experience and operational efficiency.
+ Strong understanding of cloud-based systems and integrations (e.g., APIs, microservices architecture).
Compensation at Accenture varies depending on a wide array of factors, which may include but are not limited to the specific office location, role, skill set, and level of experience. As required by local law, Accenture provides a reasonable range of compensation for roles that may be hired as set forth below.We accept applications on an on-going basis and there is no fixed deadline to apply.
Information on benefits is here. (************************************************************
Role Location Annual Salary Range
California $63,800 to $205,800
Cleveland $59,100 to $164,600
Colorado $63,800 to $177,800
District of Columbia $68,000 to $189,300
Illinois $59,100 to $177,800
Maryland $63,800 to $177,800
Massachusetts $63,800 to $189,300
Minnesota $63,800 to $177,800
New York/New Jersey $59,100 to $205,800
Washington $68,000 to $189,300
Requesting an Accommodation
Accenture is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired.
If you would like to be considered for employment opportunities with Accenture and have accommodation needs such as for a disability or religious observance, please call us toll free at **************** or send us an email or speak with your recruiter.
Equal Employment Opportunity Statement
We believe that no one should be discriminated against because of their differences. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Our rich diversity makes us more innovative, more competitive, and more creative, which helps us better serve our clients and our communities.
For details, view a copy of the Accenture Equal Opportunity Statement (********************************************************************************************************************************************
Accenture is an EEO and Affirmative Action Employer of Veterans/Individuals with Disabilities.
Accenture is committed to providing veteran employment opportunities to our service men and women.
Other Employment Statements
Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States.
Candidates who are currently employed by a client of Accenture or an affiliated Accenture business may not be eligible for consideration.
Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. Further, at Accenture a criminal conviction history is not an absolute bar to employment.
The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information.
California requires additional notifications for applicants and employees. If you are a California resident, live in or plan to work from Los Angeles County upon being hired for this position, please click here for additional important information.
Please read Accenture's Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process.
$68k-189.3k yearly 15d ago
Mid Career Systems Engineer - Nuclear Weapons Security
General Dynamics Mission Systems 4.9
Security engineer job in Pittsfield, MA
Basic Qualifications
Requires a Bachelor's degree in Systems Engineering, or a related Science, Engineering, Technology or Mathematics field. Also requires 2+ years of job-related experience, or a Master's degree and 6 months of job-related experience.. Agile experience preferred.
CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is obtainable within a reasonable amount of time after hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required.
Responsibilities for this Position
ROLE AND POSITION OBJECTIVES:
As a Systems Engineer for the Nuclear Weapons Security program, you'll be a member of a cross functional team responsible for designing advanced security and information systems, as well as helping to maintain deployed systems.
We encourage you to apply if you have any of these preferred skills or experiences:
IBM DOORS
MATLAB
Simulink
Requirements Decomposition
Test Procedure Development
Windows Powershell
Cisco Networking
Operating System Administration (Linux, Windows)
Virtualization
Cybersecurity Tool implementation and administration
Database Administration (Mongo preferred)
What sets you apart:
Clear understanding of systems engineering concepts, principles, theories, and technical standards
Clear understanding of requirements management and system modeling tools
Creative thinker with ability to grasp and apply new information quickly and handle increasing responsibilities with growing complexity
Team player who thrives in collaborative environments and revels in team success
Commitment to ongoing professional development for yourself and others
Our Commitment to You:
An exciting career path with opportunities for continuous learning and development.
Research oriented work, alongside award winning teams developing practical solutions for our nation's security
Flexible schedules with every other Friday off work, if desired (9/80 schedule)
Competitive benefits, including 401k matching, flex time off, paid parental leave, healthcare benefits, health & wellness programs, employee resource and social groups, and more
See more at gdmissionsystems.com/careers/why-work-for-us/benefits
Workplace Options:
This position is Hybrid/Flex, but will require periods of 100% on site.
While on-site, you will be a part of the Pittsfield, MA facility.
#CJ2
#LI-Hybrid
Salary Note This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled. Combined Salary Range USD $97,754.00 - USD $108,445.00 /Yr. Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
$97.8k-108.4k yearly Auto-Apply 60d+ ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security engineer job in Hartford, CT
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 42d ago
Mid Career Systems Engineer - Nuclear Weapons Security
General Dynamics 4.7
Security engineer job in Pittsfield, MA
Mid Career Systems Engineer - Nuclear Weapons Security USA-MA-Pittsfield Required Clearance: Secret, obtainable within reasonable time based on requirements
Employment Type: Full Time
Hiring Company: General Dynamics Mission Systems, Inc.
Basic Qualifications
Requires a Bachelors degree in Systems Engineering, or a related Science, Engineering or Mathematics field. Also requires 2+ years of job-related experience or a Master's degree. Agile experience preferred.
CLEARANCE REQUIREMENTS: Department of Defense Secret security clearance is obtainable within a reasonable amount of time after hire. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility requirements for access to classified information. Due to the nature of work performed within our facilities, U.S. citizenship is required.
Responsibilities for this Position
ROLE AND POSITION OBJECTIVES:
As a Systems Engineer for the Nuclear Weapons Security program, youll be a member of a cross functional team responsible for designing advanced security and information systems, as well as helping to maintain deployed systems.
We encourage you to apply if you have any of these preferred skills or experiences:
* IBM DOORS
* MATLAB
* Simulink
* Requirements Decomposition
* Test Procedure Development
* Windows Powershell
* Cisco Networking
* Operating System Administration (Linux, Windows)
* Virtualization
* Cybersecurity Tool implementation and administration
* Database Administration (Mongo preferred)
What sets you apart:
* Clear understanding of systems engineering concepts, principles, theories, and technical standards
* Clear understanding of requirements management and system modeling tools
* Creative thinker with ability to grasp and apply new information quickly and handle increasing responsibilities with growing complexity
* Team player who thrives in collaborative environments and revels in team success
* Commitment to ongoing professional development for yourself and others
Our Commitment to You:
* An exciting career path with opportunities for continuous learning and development.
* Research oriented work, alongside award winning teams developing practical solutions for our nations security
* Flexible schedules with every other Friday off work, if desired (9/80 schedule)
* Competitive benefits, including 401k matching, flex time off, paid parental leave, healthcare benefits, health & wellness programs, employee resource and social groups, and more
* See more at gdmissionsystems.com/careers/why-work-for-us/benefits
Workplace Options:
This position is Hybrid/Flex, but will require periods of 100% on site.
While on-site, you will be a part of the Pittsfield, MA facility.
#CJ2
#LI-Hybrid
Salary Note
This estimate represents the typical salary range for this position based on experience and other factors (geographic location, etc.). Actual pay may vary. This job posting will remain open until the position is filled.
Combined Salary Range
USD $97,754.00 - USD $108,445.00 /Yr.
Company Overview
General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans
$97.8k-108.4k yearly 60d+ ago
Security Engineer II
Trustmark 4.6
Security engineer job in Hartford, CT
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber SecurityEngineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
$85k-107k yearly est. 60d+ ago
Sr. Cyber Security Analyst -40 hours Full Time
Connecticut Children's Medical Center 4.7
Security engineer job in Hartford, CT
Connecticut Children's is the only health system in Connecticut that is 100% dedicated to children. Established on a legacy that spans more than 100 years, Connecticut Children's offers personalized medical care in more than 30 pediatric specialties across Connecticut and in two other states. Our transformational growth establishes us as a destination for specialized medicine and enables us to reach more children in locations that are closer to home. Our breakthrough research, superior education and training, innovative community partnerships, and commitment to diversity, equity and inclusion provide a welcoming and inspiring environment for our patients, families and team members.
At Connecticut Children's, treating children isn't just our job - it's our passion. As a leading children's health system experiencing steady growth, we're excited to expand our team with exceptional team members who share our vision of transforming children's health and well-being as one team.
Manage and continuously improve a Cyber Security Compliance program. This would include conducting security business and infrastructure compliance reviews, security risk assessments for internal/external information assets.
Education and/or Experience Required:
* Education Required: Bachelor's degree in Information Systems or equivalent
* Experience Required: Minimum of six (6) years of enterprise security related work experience. Minimum of four (4) years incident response/forensics experience. Previous 24 x 7 operations experience
License and/or Certification Required:
Required: Certified Information Systems Security Professional (CISSP) within 1 year of hire.
Preferred: CISM, PCI QSA, GIAC Certified Incident Handler (GCIH), GIAC Certified Forensic Analyst (GCFA).
Knowledge, Skills and Abilities:
Knowledge
* Experience and proficiency with: Anti-Virus, HIPS, IDS/IPS, Network Captures, Host-Based & Network Forensics.
* Knowledge of Linux, UNIX, Windows OS, Active Directory and other operating systems.
* Knowledge of database platforms such as MS SQL, Oracle, and MySQL.
* Experience with a scripting language (e.g. Powershell, Python)
Skills:
* Excellent written communication and presentation skills with the ability to present complex security issues to a variety of audiences, including senior executives
Abilities:
* Must be self-directed, able to manage individual projects or act as part of a larger team
* Experienced in performing security audits, risk analysis, forensics and penetration testing. Actively monitor systems and networks for potential intrusions. Lead, conduct and maintain security risk assessments, identify security vulnerabilities, develop recommendations, document findings and remediation plans. Manage remediation plans toward closure. Define security standards & incident response plans to detect, respond and recover from security incidents using a risk based methodology.
* Develop and document security policies and procedures, training and awareness. Serve as a security expert reviewing and recommending security controls for network, application designs, operating systems, endpoint protection, mobile device implementations of new/updated applications and services.
* Ensure business and technical requirements are aligned to security policies and are implemented within regulatory and corporate compliance. Maintain current knowledge of tools and best-practices in advanced persistent threats; tools, techniques, and procedures of attackers; related to forensics and incident response.
$67k-85k yearly est. Auto-Apply 23d ago
Google Cloud Security Architect
Slalom 4.6
Security engineer job in Hartford, CT
Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies
As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions.
What You'll Do
* Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor.
* Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles.
* Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance.
* Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools.
* Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data.
* Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap.
* Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients.
* Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients.
* Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities.
What You'll Bring
* Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor.
* Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments.
* Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud.
* Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture.
* Experience in security and risk advisory consulting, particularly related to cloud security transformations.
* Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs.
* Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices.
* Relevant certifications are strongly desired, including (but not limited to):
* GCP Professional SecurityEngineer
* GCP Professional Cloud Architect
* CISSP
* Security+
About Us
Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all.
Compensation and Benefits
Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance.
Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time.
East Bay, San Francisco, Silicon Valley:
* Consultant: $120,000-$177,000
* Senior Consultant: $140,000-$203,000
San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC:
* Consultant: $110,000-$162,000
* Senior Consultant: $130,000-$186,000
All other locations:
* Consultant: $105,000-$148,000
* Senior Consultant: $115,000-$171,000
EEO and Accommodations
Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process.
We are accepting applications until 12/31.
$140k-203k yearly 11d ago
IT Security and Compliance Engineer
Top Prospect Group LLC
Security engineer job in East Hartford, CT
Are you a cybersecurity pro ready to lead security operations and compliance initiatives? Join our team today FT, Direct HireOnsite$105-125KNetwork infrastructure, servers, cloud platforms, compliance frameworks such as NIST, security technologies-firewalls, VPN, SIEM, Gap assessments, Incident response
Are you a cybersecurity professional who thrives on protecting organizations and guiding them through complex compliance requirements? Join our team as a Security and Compliance Engineer and help clients secure their environments across cloud, on-prem, and hybrid infrastructures.
In this role, you'll:
Design, implement, and manage security architectures and controls.
Guide clients through compliance frameworks like NIST, CMMC, PCI, and ISO 27001.
Manage and optimize security tools (EDR, MDR, SIEM, MFA, firewalls, VPNs).
Respond to incidents, conduct risk assessments, and develop remediation strategies.
Maintain policies, procedures, and documentation while delivering security awareness training.
Guide clients through frameworks such as NIST, CMMC, PCI, and ISO 27001.
Conduct gap assessments and recommend remediation strategies.
Support audits with evidence collection, reporting, and documentation.
Perform vulnerability scans, risk assessments, and configuration reviews
Requirements:
4+ years in cybersecurity engineering (MSP/MSSP/SOC experience preferred).
Experience with cloud security (AWS, Azure, GCP) and IAM.
Knowledge of compliance frameworks (NIST, PCI, ISO 27001, CMMC).
Strong troubleshooting, communication, and problem-solving skills.
Relevant certifications preferred: CISSP, CISM, Security+, GIAC, ISO 27001 Lead Implementer.
#INDTPG
$76k-103k yearly est. 60d+ ago
IT Security and Compliance Engineer
Aquinas Consulting 4.3
Security engineer job in East Hartford, CT
Job Description
Aquinas Consulting is currently looking to fill an IT Security and Compliance Engineer job for our direct client in East Hartford, CT. In this role, you will design, implement, and manage security controls across cloud and on-prem environments while guiding clients through compliance requirements. You will support audits, assess gaps, and respond to incidents - ensuring clients maintain strong security postures.
IT Security and Compliance Engineer Job Responsibilities:
Design and implement security architectures across cloud, on-prem, and hybrid client environments
Manage and optimize security tools including EDR, MDR, MFA, SIEM, firewalls, and VPNs
Collaborate with NOC/SOC partners to monitor threats and respond to incidents
Conduct gap assessments and advise on remediation plans for compliance frameworks such as NIST, CMMC, and PCI
Support client audits by coordinating evidence collection and documentation
Perform vulnerability scans, risk assessments, and configuration reviews
Create and maintain security policies, procedures, and environment documentation
Deliver security awareness training for internal teams and client personnel
Develop and execute incident response playbooks and handle security events
Improve security processes and tools, ensuring audit readiness and SLA compliance
Stay current on industry trends and recommend new security measures
Qualifications:
Strong knowledge of servers, network infrastructure, and security technologies (firewalls, VPNs, MFA, SIEM, MDR, EDR)
Experience securing cloud platforms such as AWS, Azure, or GCP, including IAM and native controls
Familiarity with compliance frameworks such as NIST, CMMC, PCI, ISO 27001, etc.
Excellent troubleshooting skills and experience supporting incident response
Strong written and verbal communication skills with both technical and non-technical audiences
Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience)
4+ years in cybersecurity engineering (MSP/MSSP/SOC experience preferred)
Relevant certifications such as CompTIA Security+, CISSP, CISM, GIAC, or ISO 27001 Lead Implementer preferred
If you are interested in this IT Security and Compliance Engineer job in East Hartford, CT, please apply now to be connected with a member of our team.
Please note: Applying to this role is an agreement to have your information entered into our database and acknowledgement that a recruiter will reach out to you either by phone, email, and/or text message regarding this and similar job opportunities.
Aquinas Consulting is a woman and minority owned company headquartered in Milford, CT that provides Engineering, Information Technology (IT), and Manufacturing staffing solutions throughout the US. We take pride in 20 years of service to our clients, our hiring managers, our consultants, and our local community. Aquinas is an affirmative action, equal opportunity employer and committed to considering all qualified applications without regard to race, genetic information, sex, age, color, religion, national origin, veteran status, disability or any other characteristic protected by law. *************************
$71k-91k yearly est. 28d ago
Network Security Engineer
Noblis 4.9
Security engineer job in Hartford, CT
Responsibilities We are looking for highly technical professionals with a strong foundation in network architecture, design, and security - individuals who are ready to step up from traditional network engineering roles to take ownership of strategic, architecture-level responsibilities. Ideal candidates will have deep understanding of networking, security architecture and design, and experience applying Federal security guidelines (e.g, NIST 800-53, FISMA, etc.) to harden and secure systems.
These are the types of professionals who understand both the big-picture architecture and the hands-on technical details, and who are prepared to make security-focused architectural recommendations in complex environments.
The TIS SecurityEngineer will support the FAA Telecommunications and Integrated Services (TIS) Group and provide expert-level securityengineering across the FAA's FTI environment. This includes:
+ Analyzing and guiding network architecture to ensure cybersecurity is built-in from the ground up.
+ Performing hands-on reviews of system configurations, firewall rules, and network paths to align with FAA Orders, NIST 800-53, and federal cybersecurity standards.
+ Leading efforts in transitioning technologies (e.g., IPv4 to IPv6, microwave radio refreshes) from a cybersecurity and network architecture perspective.
+ Supporting the integration of Zero Trust, Software-Defined Networking (SDN), and defense-in-depth strategies into enterprise-level solutions.
+ Acting as a technical bridge between FAA cyber stakeholders and infrastructure providers (network, security, cloud).
+ Evaluating vendor-proposed architectures and making expert-level recommendations based on federal policy, security principles, and industry best practices.
Required Qualifications
+ Experience supporting federal government programs, ideally within the FAA or transportation sector.
+ Proven experience with hands-on network engineer or architecture and understands network design, configurations, firewalls, VPNs, IDS/IPS, and load balancing.
+ Knowledge of telecommunications infrastructure, including IPv4/IPv6, and WAN/LAN environments.
+ Understand federal cybersecurity frameworks (NIST RMF, FISMA, NIST SP 800-53 rev 5).
+ Can evaluate network and system security concepts for large-scale, safety-critical systems like those in the National Airspace System (NAS).
+ Comfortable advising on defense-in-depth architectures, Zero Trust CONOPS, SD-WANs, and emerging tech.
+ Have experience collaborating with engineers, PMs, and cybersecurity stakeholders to support ATO packages and continuous monitoring.
+ Ability to develop system security plans, risk assessments, and related security documentation.
+ U.S. Citizenship or Permanent Residency with 3+ years U.S. residency.
+ Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
+ 12+ years of experience in cybersecurity or network security roles
+ Subsitutions: For anything requiring a substitution, the governemnt customer is subject to further review and either approve or deny the request.
+ A High School degree with a total of 18 years of experience in cybersecurity or network security roles
+ Masters degree with a total of 9 years of experience in cybersecurity or network security roles
**Compensation Ranges** : for D.C., NJ, Remote: $105,100 - $164,125
Desired Qualifications
+ CISSP, Security+, CCNA, or similar certification.
+ FAA or transportation sector experience preferred.
+ Familiarity with Zero Trust Architecture, Security Orchestration, and network virtualization (e.g., NFV).
+ Strong written, verbal, and interpersonal skills.
Overview
Noblis (*********************** and our wholly owned subsidiaries, Noblis ESI , and Noblis MSD tackle the nation's toughest problems and apply advanced solutions to our clients' most critical missions. We bring the best of scientific thought, management, and engineering expertise together in an environment of independence and objectivity to deliver enduring impact on federal missions. Noblis works with a wide range of government clients in the defense, intelligence and federal civil sectors. Learn more at Noblis -About Us (*****************************************
**Why work at a Noblis company?**
Our employees find greater meaning in their work and balance the other things in life that matter to them. Our people are our greatest asset. They are exceptionally skilled, knowledgeable, team-oriented, and mission-driven individuals who want to do work that matters and benefits the public. Noblis has won numerous workplace awards (************************************ . Noblis maintains a drug-free workplace.
* _Remote/hybrid status is subject to change based on Noblis and/or government requirements_
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.
If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact us (*************************************** .
EEO is the Law (************************************************* | E-Verify (********************************************************************************************************************** | Right to Work (****************************************************************
Total Rewards
At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the Benefits (************************************* page on our Careers (**************************** site.
Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.
Posted Salary Range
USD $105,100.00 - USD $164,125.00 /Yr.
$105.1k-164.1k yearly 3d ago
Risk Management Security Analyst
Connecticut Health Insurance
Security engineer job in Hartford, CT
Full-time Description
The Risk Management Security Analyst is responsible for assisting Access Health CT (AHCT) with its Information Security Risk Management Program, satisfying both regulatory compliance requirements and managing security risk to an acceptable level. This role is a hands-on role that will be responsible for actively identifying, detecting, monitoring, maintaining, analyzing, advising, and responding to ongoing IT security and compliance needs under the guidance of the Associate Director, IT Security & Compliance.
The individual selected for this role will collaborate with various cross-functional teams inclusive of partners and vendors in identifying, evaluating, categorizing, tracking and monitoring enterprise IT security risk and will assist with development and maintenance of IT security controls in adherence with federal and other government required cyber security frameworks.
Furthermore, the individual in this role will be responsible for assisting with development, automation, and ongoing maintenance of end-to-end risk register and related risk management work streams and processes (i.e., risk assessments, risk mitigation strategies, etc.) by utilizing existing Archer Governance, Risk, and Compliance (GRC) platform and other state-of-the-art security tools. This role reports to the Associate Director of IT Security and Compliance and has no direct reports.
*Please note that this position is available to individuals authorized to work in the U.S. without the need for sponsorship
.
Responsibilities
Conduct third-party security risk assessments and security reviews in accordance with regulatory requirements.
Collaborate with IT, Legal, product owners, and business teams to ensure appropriate IT Security and Compliance requirements are incorporated into new and ongoing engagements and initiatives.
Support development, maintenance, and operation of a centralized enterprise cyber risk register and associated activities in Archer GRC platform.
Define and report on key risk metrics to Management on regular basis.
Liaise with IT, Legal, product owners, and business teams to provide accurate and timely responses to internal and external IT Security and Compliance inquiries and related activities.
Assist with technical vulnerability assessments and security reviews of infrastructure, network, applications, and databases, utilizing Nessus scanning software and other state- of- the- art security tools.
Facilitate, track, and manage vulnerability remediation based on risk categorization, with timely assessing and communicating risk, documenting, and reporting on mitigation status.
Actively monitor, analyze, and generate reports on company's security landscape utilizing SIEM and other state- of- the- art security tools.
Provide guidance, technical expertise, and training to the enterprise to ensure optimal use of the Archer GRC platform.
Develop and maintain technical documentation, such as security control implementations, System Security Plan (SSP), user guides, process documentation, and configuration details.
Identify opportunities for process optimization, automation, and streamlining tasks.
Participate actively in frequent regulatory submissions and inquiries.
Manage and continuously monitor remediation plans for compliance and mitigation of risk.
Assist with responding to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches.
Bridge information security requirements with business processes and IT systems and projects.
Analyze and recommend security controls and procedures in business processes related to use of information systems and assets, and monitor for compliance.
Develop, administer, and provide advice, evaluation, and oversight for information security training and awareness programs.
Maintain a current and comprehensive understanding of relevant industry standards to incorporate into the risk management strategy, framework, and program.
Completes other tasks, as assigned.
Requirements
Qualifications
Bachelor's degree in Management Information Systems, Cybersecurity, Computer Science or related Information Technology field and/or equivalent industry experience.
A minimum of 3-5 years of combined hands-on experience in Information Security, Information Technology, Audit, or Governance, Risk, and Compliance.
One or more of the following security certifications is preferred or in process:
Certified Information Systems Auditor (CISA)
Certified Information Systems Security Professional (CISSP)
Certified in Risk and Information Systems Control (CRISC)
Global Information Assurance Certification (GIAC)
Working knowledge of common Cybersecurity Frameworks including the National Institute of Standards and Technology Cybersecurity Framework (NIST-CSF), NIST SP 800-53, FedRAMP, and Center for Internet Security (CIS) Critical Security Controls.
Hands-on experience with GRC platforms and other state-of-the-art security tools.
Experience with development and management of metrics and reporting.
Applied knowledge with data mapping, risk assessments, third-party risk management, audits, compliance tracking, and security controls management.
Solid understanding of cybersecurity best practices and how to implement and apply at a business setting.
Demonstrated success in problem solving, project management, business analysis, and data analysis.
Solid organizational and excellent verbal and written communication skills.
Detail oriented and highly organized, with the ability to thrive in a fast-paced environment and prioritize accordingly.
Ability to successfully multi-task while working independently or within a group environment.
Ability to collaborate with internal and external stakeholders in an effective manner that produces desired results.
Physical Demands: the physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is frequently required to sit, stand, hear, use hands to type data, and utilize a phone or other electronic communication devices. This employee may occasionally have to operate business machines. Specific vision abilities required in this job include close vision and the ability to adjust focus.
Work Environment: this is an in-office role on Tuesdays and Wednesdays and a remote role 3 days per week. The noise level in the work environment is usually low to moderate. The role requires the ability to work offsite with stakeholders at their locations, e.g., BITS, DSS. Requires fast-paced deadlines and has a high stress at times. Occasional local travel and some travel within the U.S.
Affirmative Action and Equal Opportunity Employer
Salary Description $79,000 to $88,000 DOE
$79k-88k yearly 15d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security engineer job in Hartford, CT
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
How much does a security engineer earn in Chicopee, MA?
The average security engineer in Chicopee, MA earns between $72,000 and $132,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.
Average security engineer salary in Chicopee, MA
$97,000
What are the biggest employers of Security Engineers in Chicopee, MA?
The biggest employers of Security Engineers in Chicopee, MA are: