Network Engineer
Security Engineer job 12 miles from Downey
As Network Engineer, you will provide technical support to customers and partners, focused on pre-sales test support, partner training and project implementation, meanwhile you also need to be responsible for service delivery quality in coverage territory.
To be successful in this role, a motivated self-starter and self-learner is preferred, possess strong customer service and technical problem solving skills.
Job Responsibilities:
Provide back-end technical support and assistance to system integrators, distributors, and channel partners;
Establish and continuously improve the service process system, including technical support and RMA procedures, while ensuring the quality of service delivery;
Organize and manage regular after-sales technical training sessions (including certification programs) and technical seminars to enhance the technical capabilities of partners and resellers;
Respond promptly to support requests from channel partners and end customers, ensuring timely and effective resolution;
Conduct POC testing and functionality validation for new products.
Requirements:
Minimum of 3 years of experience in sales support or enterprise networking product maintenance (from any major vendor), preferably with experience working for a system integrator or distributor;
Strong sense of responsibility and ability to coordinate and integrate resources effectively;
Proficient in both spoken and written English; Mandarin proficiency is a plus;
Solid technical skills in switches, routers, wireless LANs, and network orchestration/integration;
Possession of any of the following certifications is preferred: CCNP/CCIE, ASE/Master ASE, Aruba Certified Mobility Professional, HCNP/HCIE, JNCIP/JNCIE;
Excellent interpersonal and communication skills, with the ability to collaborate with stakeholders at all levels.
Cyber Security Engineer III
Security Engineer job 44 miles from Downey
The Embedded Cyber Security Engineer III is a talented professional who will address the security of the embedded systems in our products. This key cybersecurity role is for a hands-on professional who is big picture sensitive, detail-oriented, and driven to deliver secure high-quality products. Qualified candidates will contribute to the security of our products by working with developers and engineers throughout the R&D and Operations organizations to ensure our products comply with relevant security standards and contract requirements.
Position Responsibilities
Collaborate with the product R&D teams to help them understand the security mindset, guiding them to implement specific security controls for product/system wide security needs.
Coordinate with Electrical and Hardware engineering to ensure security requirements are addressed in the hardware selection and design.
Support embedded system Architect and Developers to ensure the security controls are implemented as intended.
Support consistent implementation of the embedded system security practices across projects.
Coordinate with SW Developers & manufacturing engineering to ensure security needs are met.
Identify security needs for embedded hardware, firmware, software, and microprocessors.
Support selection of hardware components, third-party software, security tools and vendors. Identify security vulnerabilities and weaknesses in the system design and architecture.
Contribute to the development of tools, processes, and policies to prevent, detect, and resolve classes of issues across the entire development lifecycle, including supply chain and manufacturing.
Conduct embedded product and device cybersecurity activities including incident response, vulnerability assessments, and mitigation implementation.
Continuously evaluate the effectiveness of implemented cybersecurity controls.
Implement new approaches and countermeasures for emerging threats to embedded systems.
Provide security-related deliverables for regulatory bodies and contracts.
Assess software applications and control procedures.
Other duties as assigned
Basic Qualifications (Required Skills & Experience)
Bachelor's degree required in Cybersecurity, Electrical or Computer Engineering, Computer Science, or similar or related field, or equivalent combination of education, training, and experience.
Five years of experience in Cybersecurity and embedded hardware.
CompTIA Security+, GIAC Security Essentials (GSEC) or equivalent verifiable credentialed certification.
Other Qualifications & Desired Competencies
Strong written and verbal communication skills.
Strong analytical, time management and organizational skills.
Strong computer skills and proficiency with office software and productivity tools.
Works well with little or no supervision and exercises independent judgement on a regular basis.
Ability to gain cooperation of others, conducting presentations of technical information concerning specific projects or schedules.
Computer Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), CompTIA Advanced Security Practitioner (CASP) or equivalent verifiable credentialed certification.
Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OCSP), or equivalent verifiable credentialed certification.
Experience achieving ISO 27001 certification.
Experience complying with NIST Cybersecurity standards and guidance
Experience complying with the requirement of the National Industrial Security Program Operating Manual (NISPOM)
Experience with one or more of the following technical areas:
Wireless and/or network communications
Basic knowledge of common hardware components, packaging, and PCBA level integration
Basic knowledge of common cryptographic algorithms and protocols, implementation attacks (i.e., side-channel and fault injection)
Hardware security implementation analysis and exploitation (cryptography, side-channel analysis, and/or fault injection)
Testing and validation of cybersecurity control implementation, using manual methods and automated tools (e.g., ACAS, Tenable.sc, Nessus, Nexpose, etc.)
Physical Demands
Ability to sit, stand, stoop, reach, lift (up to 25 lbs.), bend, etc. Hand and wrist dexterity to utilize the computer.
May require travel to sites/program and special functions.
Environmental Conditions Critical to Performance:
Work is in an office environment, climate controlled through central air conditioning/heating.
Occasional work on the production floor may be required.
May have some exposure to outside environment while traveling.
Special Requirements
U.S. Citizen, U.S. Permanent Resident (Green Card holder) or
asylee/refugee status as defined by 8 U.S.C. 1324b(a)(3) required.
Must be able to travel within the Continental U.S. and internationally when required.
Must have a DoD Secret security clearance or be eligible to obtain one.
The salary range for this role is:
$102,708 - $145,530
AeroVironment considers several factors when extending an offer, including but not limited to, the location, the role and associated responsibilities, a candidate's work experience, education/training, and key skills.
ITAR Requirement:
T
his position requires access to information that is subject to compliance with the International Traffic Arms Regulations (“ITAR”) and/or the Export Administration Regulations (“EAR”). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment's determination that it will be able to obtain an export license in a time frame consistent with AeroVironment's business requirements. A “U.S. person” according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR § 120.15. Some positions will require current U.S. Citizenship due to contract requirements.
Benefits: AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown. For more information about our company benefit offerings please visit: **********************************
We also encourage you to review our company website at ******************** to learn more about us.
Principals only need apply. NO agencies please.
Who We Are
Based in California, AeroVironment (AVAV) is a global leader in unmanned aircraft systems (UAS) and tactical missile systems. Founded in 1971 by celebrated physicist and engineer, Dr. Paul MacCready, we've been at the leading edge of technical innovation for more than 45 years. Be a part of the team that developed the world's most widely used military drones and created the first submarine-launched reconnaissance drone, and has seven innovative vehicles that are part of the Smithsonian Institution's permanent collection in Washington, DC.
Join us today in developing the next generation of small UAS and tactical missile systems that will deliver more actionable intelligence to our customers so they can proceed with certainty - and succeed.
What We Do
Building on a history of technological innovation, AeroVironment designs, develops, produces, and supports an advanced portfolio of unmanned aircraft systems (UAS) and tactical missile systems. Agencies of the U.S. Department of Defense and allied military services use the company's hand-launched UAS to provide situational awareness to tactical operating units through real-time, airborne reconnaissance, surveillance, and target acquisition.
We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data, sexual orientation, gender identity or other legally protected status.
ITAR
U.S. Citizenship is required. Secret or Top Secret clearance, or the ability obtain a clearance is desired.
Staff Product Security Engineer - AI
Security Engineer job 17 miles from Downey
Match Group is on a mission to change the world, bringing people together and facilitating millions of connections that otherwise might not have been possible. With tens of millions of users and an expansive global presence, our reach is expansive - and rapidly growing.
We're looking for an AI focused Staff Product Security Engineer to join our team.
As an AI Product Security Engineer you will help ensure the highest standard of security for Match Group products and our members. The scope of the role spans applications, infrastructure, devices, vendors, and anything else potentially at risk to the organization. Candidates that will excel in the role have technical backgrounds within security and are well-versed in manually identifying vulnerabilities as well as having a track record of writing security-adjacent code. Experience with various prompt engineering techniques, models, and strategies is strongly preferred.
Know where you belong. Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Match, Hinge, PlentyOfFish, The League, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn't stop at our products - it's the foundation of every team we hire.
We are flexible and offer remote or hybrid working models in the United States as options to accommodate our team. Match Group is headquartered in Dallas, TX, with offices in LA, Palo Alto, and New York.
How You'll Make an Impact:
Develop tooling leveraging AI to identify security vulnerabilities in code and configuration oversights.
Pursue strategies to reduce tooling noise and false positives, leaving actionable security vulnerabilities to prioritize with the brand teams.
Interface with engineering teams and effectively convey impact and provide remediation guidance for vulnerabilities.
Take ownership of the security research function to contribute to the security blog and speak at security conferences.
We Could Be a Match if You Have:
At least 5 years of professional experience in application security.
A track record of manually testing for and identifying impactful vulnerabilities.
The ability to effectively partner and communicate with Engineering and Product teams.
Experience securing large-scale web/mobile applications, including performing security code reviews, vulnerability assessments, and manual testing for logic flaws.
Experience with various prompt engineering techniques and AI models to effectively develop tooling.
Ability to write clean and maintainable code integrating across various systems.
Experience publicly writing about or presenting security related work.
Bachelor's Degree in Computing Science or related field.
Strong Candidates Will Have:
Experience submitting high impact vulnerabilities to bug bounty programs, responsible disclosures, or published CVEs.
Public work in the security space such as tooling, blog posts, or conference talks outlining novel techniques.
The ability to identify gaps and pain points scaling application security and develop low-friction solutions through automation.
$180,000 - $210,000 a year
The compensation range listed above is representative of the base salary offered.
Factors such as scope and responsibilities of the position, candidate's work experience, education/training, job-related skills, internal peer equity, as well as market and business considerations may influence base pay offered. This salary range is reflective of a position based in the United States. This salary will be subject to a geographic adjustment (according to a specific city and state), if an authorization is granted to work outside of the location listed in this posting.
#LI-CENTRAL
#LI-CH1
Why Match Group?
Our mission is simple - to help people find love and happiness! We love our employees too and understand the importance of all life's milestones. Here are some of the benefits we are proud to offer:
Mind & Body
- Medical, mental health, and wellness benefits to support your overall health and well-being
Financial Wellness
- Competitive compensation, 100% employer match on 401k contributions up to 10% (cap at $10,000), as well as an employee stock purchase program to help you feel supported in your financial security
Unplug
- Generous PTO and 18 paid holidays so you can unplug
Career
- Annual training allowance for professional development and ERG membership opportunities and events so you feel connected and empowered in your work
Family
- Families come in all shapes and sizes so we offer 20 weeks of 100% paid parental leave, fertility, adoption, and child care resources, as well as pet insurance and discounts
Company Gatherings
- We host fun happy hours and company events where our employees get to know each other and build a sense of connection and belonging!
We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, or any other legally protected characteristic. Period.
If you require a reasonable accommodation to participate in the hiring process - such as during pre-employment testing or interviews - please indicate this by selecting “Yes” in the accommodation request field. We'll reach out to discuss your needs if you're selected for the interview stage.
#MG
Senior Principal/Principal Industrial Security Analyst (3/4)
Security Engineer job 17 miles from Downey
At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
Put your skills to the test by pushing the boundaries of what's possible. From global defense to sustainment and modernization to mission readiness, your experience and ability will make it a reality. Our programs are built on equal parts of curiosity and collaboration. Our combined efforts mean that our customers can connect and defend millions of people around the world. With Northrop Grumman, you'll have the opportunity to be an essential part of projects that will define your career, now and in the future.
Northrop Grumman is seeking a **Senior Principal/Principal** **Industrial Security Analyst** to join our team in **Northridge, CA as a Contract Program Security Officer (CPSO).** **_This position requires the selected candidate to be on-site._**
**Responsibilities:**
+ Develops, and administers security programs and procedures for classified or proprietary materials, documents, and equipment.
+ Studies and implements federal security regulations that apply to company operations.
+ Obtains rulings, interpretations, and acceptable deviations for compliance with regulations from government agencies. Prepares manuals outlining regulations, and establishes procedures for handling, storing, and keeping records, and for granting personnel and visitors access to restricted records and materials.
+ Conducts security education classes and security audits. Investigate security violations and prepare reports specifying preventive action to be taken.
+ The CPSO (Contractor Program Security Officer) will lead Security Operations for multiple Special Access Programs (SAP).
**Principal Industrial Security Analyst** (Level 3) **:**
**Basic Qualifications:**
+ High school diploma and 8 plus years of SAP Security experience; or 5 plus years of SAP Security with a bachelor's degree; or 3 plus years SAP Security experience with a master's degree.
+ Fully proficient and knowledgeable with the Department of Defense Manual 5205.07 Vol 1-4; National Industrial Security Program Operating Manual (NISPOM), Department of Defense (DoD) Manual (DoDM) 5205.07, Volume 1, DoD Special Access Program (SAP) Security Manual; General Procedures, 18 June 2015, Incorporating Change 1, Effective 12 February 2018 DoDM 5205.07, Volume 2, DoD Special Access Program (SAP) Security Manual.
+ Proficient in Communications Security (COMSEC) Manual NSA/CSS 3-16, Director of National Intelligence (DNI), Intelligence Community Directives (ICDs), program specific Program Security Directives (PSD) and associated corporate and government policies and directives.
+ Organized and efficient with time management
+ Computer and desktop Microsoft Office software products experience (Word, Excel etc.)
+ Detail-oriented, have meticulous record-keeping, and be responsible for accurate data input into multiple databases/spreadsheets
+ Current DOD **Secret** clearance which has been adjudicated in the past 5 years
+ Must be able to obtain program access(es) required for the position within a reasonable period of time of hire
**Senior Principal Industrial Security Analyst** (Level 4) **:**
**Basic Qualifications:**
+ High school diploma and 10 plus years of SAP Security experience; or 6 plus years of SAP Security with a bachelor's degree; or 4 plus years SAP Security experience with a master's degree.
+ Fully proficient knowledge of a strong security program in compliance with the Department of Defense Manual 5205.07 Vol 1-4; National Industrial Security Program Operating Manual (NISPOM), Department of Defense (DoD) Manual (DoDM) 5205.07, Volume 1, DoD Special Access Program (SAP) Security Manual; General Procedures, 18 June 2015, Incorporating Change 1, Effective 12 February 2018 DoDM 5205.07, Volume 2, DoD Special Access Program (SAP) Security Manual.
+ Proficient in Communications Security (COMSEC) Manual NSA/CSS 3-16, Director of National Intelligence (DNI), Intelligence Community Directives (ICDs), program specific Program Security Directives (PSD) and associated corporate and government policies and directives
+ Organized and efficient with time management
+ Computer and desktop Microsoft Office software products experience (Word, Excel etc.)
+ Detail-oriented, have meticulous record-keeping, and be responsible for accurate data input into multiple databases/spreadsheets
+ Current DOD **Secret** clearance adjudicated within the past 5 years
+ Must be able to obtain program access(es) required for the position within a reasonable period of time of hire
**Preferred Qualifications:**
+ Contractor Program Security Officer (CPSO) experience
+ Self-starter with minimal supervision
+ ICD 704 eligibility in DISS
+ Experience/familiarity with ICD 705 requirements
+ Personnel and Program Security Experience
+ Ability to display tact, discretion, and diplomacy in a variety of program areas
+ Ability to excel in a fast-paced, deadline-driven environment
+ Excellent communication, speaking, writing, and organizational skills to enable effective communication
+ Experience with SIMS, DISS, and JADE
+ Counterintelligence, Insider Threat and OPSEC program experience
+ Current and working knowledge of the DoD and Intelligence Community
+ Current DOD **Top** **Secret** clearance adjudicated within the past 5 years
Salary Range: $91,200.00 - $136,800.00Salary Range 2: $113,500.00 - $170,300.00
The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.
Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.
The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.
Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Staff Security Engineer
Security Engineer job 21 miles from Downey
Enterprise Technology is an organization within Disney that has a mission to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. The Enterprise Technology organization drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.
Our business customers encompass all domestic and international businesses and brands across The Walt Disney Company including Disney Studios, Walt Disney Parks & Resorts, ESPN, ABC, Marvel Studios, & Pixar to name a few.
Who we are:
Disney Streaming's Security Engineering (DESecEng) team provides engineering and tooling support for the Information Security team, Product teams, and Operations teams within Disney Entertainment and ESPN Technology (DE&ET). The team builds applications and automations, manages infrastructure, and directly supports Information Security initiatives for DEEPT and the wider Walt Disney Company's Global Information Security (GIS) team.
What you will do:
Design, develop, and deploy scalable automation strategies to secure systems, products, networks, and Disney content.
Manage, maintain, document, train on, and improve Information Security tools and their operation within the DE&ET environment.
Research and introduce technologies and procedures to assist and improve the DE&ET information security posture.
Collaborate with partner teams to understand security needs and dependencies, and assist those teams in meeting GIS security goals.
Follow secure coding and review practices for code development and configuration deployment.
Develop and maintain code branches and environments for DESecEng owned code and tooling, utilizing best practice code hygine.
Assist with Incident Response as an escalation resource and subject matter expert.
Establish and implement procedures and mechanisms for protecting physical, digital, and media assets; safeguard accounts and access for users and data within the network and DE&ET assets; and protect Guest accounts and data.
Guide and train junior engineers in code development, security strategy and policy, and security response as needed.
Qualifications:
A minimum of 7 years' experience in the Information Security field.
Proficient in object-oriented design and familiarity with Python or similar programming languages.
Strong verbal and written communication skills (e.g. white boarding/diagramming system behavior, documenting playbooks, writing incident reports).
Knowledge and familiarity with infrastructure-as-code products and principles, and its implementation with cloud environments. - Experience working with version control software (e.g. GitHub) and issue/project tracking software (e.g. Jira).
Required Education:
Bachelor's degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience
The hiring range for this position in Santa Monica, CA is $138,900 to $186,200 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.
Job Posting Segment:
Enterprise Technology
Job Posting Primary Business:
Corporate Global Information Security
Primary Job Posting Category:
Security Engineering
Employment Type:
Full time
Primary City, State, Region, Postal Code:
Santa Monica, CA, USA
Alternate City, State, Region, Postal Code:
Date Posted:
2025-05-08
Cybersecurity System Security Engineer (CSSE) -III
Security Engineer job 16 miles from Downey
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. Description & Requirements Currently, ManTech is actively seeking a motivated, customer oriented CSSE III to join our team in the El Segundo, CA area.
The Cybersecurity System Security Engineer's primary function is working within Special Access Programs (SAPs) supporting SMC and AFSPC acquisition programs. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities to meet NIST Cybersecurity requirements for system assessment & authorization.
Performance Shall Include
Lead a team of System Security Engineers and Certification and Accreditation Analysts responsible for ensuring the customer's national and international security interests are protected as acquisition systems are designed and tested.
Chair and or Co-Chair customer and SAP community Cybersecurity working groups, participate in SSE IPT reviews.
Perform oversight of the development, implementation, and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures.
Provides expert level consultation and technical services on all aspects of Information Security.
Review SSE related designs and provides security compliance recommendations.
Develop and provide Cybersecurity risk management recommendations to the customer.
Provide SSE support for Mission and Training systems design and development.
Assist with development and maintenance of the Program Protection Plan & Cybersecurity Strategy.
Assist with site activation activities and design reviews, to include test & evaluation of systems.
Represent the Government Program Manager in various SSE related working groups, advisory groups, and advisory council meetings.
Work directly with approval/accreditation authorities to obtain systems' Authorization to Operate.
Basic Qualifications
Bachelor's degree in a related discipline an additional 4 years of related experience may be accepted in lieu of degree.
Minimum of 12 years total experience
8 years' experience with SCI or SAR environment.
4 years of SAP relevant experience highly desired.
Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 3 and Information Assurance Manager Level 3 within 6 months of the date of hire. CISSP Recommended.
Must be familiar with security policy/manuals and the appropriate ICDs/JAFANs/DOD Manuals and other guiding policy documents.
Full understanding of Risk Management Framework (RMF) and Joint SAP Implementation Guide (JSIG) processes for system accreditation, along with legacy (DITSCAP, DIACAP) processes.
Security Clearance Requirements
Current Top Secret Clearance with SCI Eligibility
Eligibility for access to Special Access Program Information
Willingness to submit to a polygraph.
Preferred Requirements
Must have the ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners.
Working knowledge of Microsoft Office (Word, PowerPoint, and Excel)
Possess a high degree of originality, creativity, initiative requiring minimal supervision.
Willingness to travel within the organizational Area of Responsibility (AOR) (note - could be extensive, and will include both air and ground transportation)
Physical Requirements
Must be able to remain in a stationary position 50%.
Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.
Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
The projected compensation range for this position is $134,700.00-$224,700.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, ManTech invests in it's employees beyond just compensation. ManTech's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.
For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.
ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.
If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at **************. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.
If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access ***************************************** as a result of your disability. To request an accommodation please click ******************* and provide your name and contact information.
Cyber Security Analyst
Security Engineer job 27 miles from Downey
Monitor and investigate suspicious activity in SIEMs
Perform user and system access reviews
Help develop cybersecurity policies and procedures
Evaluate, develop and implement security controls across infrastructure, systems, application and data.
Maintain and administer email security systems
Collaborate with team members to implement security controls
Review Azure resources for secure configurations
Assist with incident response by gathering and investigating information
Assist with cybersecurity audits and penetration testing
Maintain and administer Microsoft network security
Maintain and administer Microsoft endpoint security
Document and review secure configurations for unauthorized changes and compliance
Help develop and maintain disaster recovery, business continuity and incident response procedures
Assist with company-wide cybersecurity training and awareness
POSITION PREREQUISITES:
Education and Experience:
Undergraduate degree in an applicable professional, business, or technical discipline preferred
CISSP certification preferred
Three to five years of experience administering Microsoft cloud technologies (M365, Azure, Server and Storage, Exchange, SharePoint)
Three to five years of experience working in a cybersecurity role
Three to five years of experience in administering cybersecurity systems:
Email security
Endpoint security
Network security
Security Appliances
Enterprise Mobility
Patch Management
SIEM
Skills and Abilities:
Strong organization and process-oriented skills
Strong project management
Attention to detail and excellence
Demonstrated ability to multi-task in a high-paced environment
Strong written and verbal communication skills
Strong Help Desk customer service skills
Ability to logically and methodically breakdown and resolve complex issues
Ability to work independently on aggressive schedules
Must work well in a remote team environment
Strong Microsoft cloud technologies experience required
Physical Requirements:
Moderate lifting of computers and IT related equipment
Ability to work nights and weekends as needed
Travel to locations across the US as needed
At LEAPROS™, we are committed to our core values and guiding ethical principles, to conducting business in a non-discriminatory manner, and to operating in strict compliance with applicable federal and state laws pertaining to Equal Employment Opportunity. This commitment enhances our ability to conduct business with the highest level of integrity, solidifying our position as the most trusted workforce solutions partner. To learn more about LEAPROS™ or to speak with one of our recruitment partners, call 866-920-LEAP or visit our website at ****************
Analyst, Information Security
Security Engineer job 16 miles from Downey
The Information Security Analyst supports the development and execution of content, branding, and communication strategies to enhance information security awareness across the organization. The role combines technical security knowledge with creative and communication skills to develop and deliver content that drives security awareness across all departments.
The analyst will create engaging visual and written materials for security training, internal communications, and phishing simulations while ensuring brand consistency. They will support the planning and execution of security awareness campaigns and educational events designed to measurably improve security behaviors organization wide, while contributing to program effectiveness metrics and compliance requirements.
Success in this position requires strong collaboration with team members and stakeholders, attention to detail, and the ability to translate complex security concepts into accessible content . The analyst will actively contribute to our team environment by participating in knowledge sharing, supporting colleagues, and demonstrating our core values in all interactions.
This role directly strengthens our security posture by helping employees recognize and respond appropriately to security threats, ultimately reducing our vulnerability to human-focused attacks and strengthening organizational resilience.
Responsibilities:
+ Develop and edit written and visual assets for training materials, phishing simulations, and internal communications to ensure clarity, consistency, and alignment with the information security brand.
+ Support crafting security awareness communications, develop presentation content, and create written materials that support organizational security initiatives.
+ Support the project coordination and successful delivery of information security awareness initiatives, including training sessions, campaigns, and related events, ensuring timelines and quality standards are met.
+ Analyze security awareness program metrics and contribute to program effectiveness reporting
+ Research emerging security threats and trends to incorporate into awareness materials and ensure content remains relevant and timely
Qualifications:
+ BA/BS Preferred
+ Experience with Adobe Illustrator, Photoshop, InDesign, Canva
+ Creating visual & written content, infographics, or branded materials for internal/external communications.
+ 1-3 years of experience in Use of visual design tools such as Adobe Illustrator, Photoshop, InDesign, Canva, or similar.
+ Background in marketing, communications, graphic design, or a related field.
+ Familiarity with corporate brand guidelines and applying them consistently across materials.
+ Exposure to cybersecurity, compliance, or corporate risk communications.
+ Strong problem-solving skills and a solution-oriented mindset .
+ Excellent visual storytelling and design sensibility, with the ability to create engaging and accessible content.
+ Strong oral, written, and presentation communication skills.
+ Ability to distill and communicate complex information in a clear and professional manner.
+ Familiarity with content creation tools such as Adobe Creative Suite, Canva, or similar platforms.
+ High attention to detail and commitment to accuracy in both visual and written communications.
+ Strong organizational and time management skills, with the ability to handle multiple projects simultaneously.
+ Collaborative team player with a proactive and flexible approach to work.
+ Understanding of brand consistency and the ability to apply visual identity standards across various formats.
+ Solid understanding of Information Security principles, frameworks, and best practices.
+ Willingness to continue to grow technical knowledge over time.
+ Knowledge of relevant security regulations and compliance requirements (GDPR, PCI DSS, ISO, etc.)
+ Experience with learning management systems and awareness platforms.
Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics. To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.
Security Engineer II
Security Engineer job 17 miles from Downey
Duties and Responsibilities
Assist in implementing Security Information and Event Management (SIEM), which includes but is not limited to; identifying deployment solutions, maintaining logs, assisting in developing company best practices for security alert correlations, perform root case analysis after incidents
Assist with Endpoint Detection and Response (EDR) vendor analysis and deployment, which includes, but is not limited to; partnering with IT to develop a decision matrix for EDR vendor selection, assist with deployment, develop patterns for automatic response to identified threats
Conduct structured and unstructured data scans, testing, and debugging of applications by using a variety of technical privacy tools to increase compliance and documentation of procedures and information assets
Write and deploy SQL to archive and or purge data from databases and to locate, review, explain and document data for privacy requirements
Perform regular privacy assessments and impact analysis on databases and operational processes by developing effective tools, training, and guidance to help identify and mitigate risk. This includes data anonymization, pseudonymization and encryption
Perform detection, analysis, and containment of an incident
Identify key performance metrics for security IR and implement instrumentation for those metrics
Maintain, manage and prioritize hardware, software, systems and/or product backlog, while actively identifying risks, constraints, and dependencies that would impact roadmap
Demonstrate, integrate, and collaborate on enhancing existing security solutions and services to address any gaps or deficiencies
Perform security incident response drill scenarios and lead table top exercises
Ensure proper training for stakeholders regarding their incident response roles and responsibilities in the event of a breach
Collaborate with internal teams to ensure the data retention or system requirements, user-facing privacy controls, new or existing software, and big data solutions enable the business to be data driven while protecting the data assets
Work with the legal department to produce data both internally and externally and ensure any legal request or litigation hold requirements are met
Assist with projects and enhancements, including gathering requirements, conducting research, task management and updating key partners and stakeholders with the goal of developing solutions to help mitigate privacy vulnerabilities and future privacy risks
Studies and interprets past privacy events and current privacy threats to improve privacy compliance using advanced technologies and design principles to develop and implement new tools and processes
Assist both internal and external teams on data governance strategy, updates to legal regulations, and direction on future roadmaps
Collaborate with vendors on data and privacy standards
Qualifications & Requirements
Bachelor's Degree in computer science, IT, systems engineering, or related qualification
2+ years of experience in the security industry working in any combination of the following areas: Risk management, cloud operations and engineering, network security monitoring, log analysis, static and dynamic malware analysis, NIST Kill Chain, MITRE ATT&CK framework, threat hunting, SIEM, EDR
Experience responding to security events
Writing and reviewing code (Java, Python, Node or similar)
Excellent written and verbal communication, facilitation, and presentation skills to collaborate effectively with software engineering teams
Implementing security detection capabilities
Proven ability to make decisions and perform complex problem-solving activities under pressure
Some knowledge of AWS cloud infrastructure and their threat landscape
Security Engineer
Security Engineer job 17 miles from Downey
Responsibilities:
Monitor security systems, logs, and alerts to detect and respond to potential security incidents promptly.
Assist in investigating and analyzing security breaches, unauthorized access attempts, and suspicious activities to mitigate risks and prevent future incidents.
Collaborate with the IT Security team to coordinate incident response efforts and implement appropriate measures to contain and remediate security incidents.
Educate employees on best security practices, including data protection, password management, and phishing awareness.
Assist in managing KnowBe4 training platform.
Assist in the implementation and configuration of security technologies such as firewalls, antivirus software, and intrusion detection/prevention systems.
Aid in conducting regular vulnerability assessments and scans on network devices, applications, and systems.
Assist in ensuring compliance with internal security policies and industry regulations by helping to conduct periodic audits and reviews.
Requirements:
Bachelor's degree in computer science, Information Security, or a related field is preferred, but relevant work experience or certifications will also be considered.
Familiarity with security tools and technologies such as firewalls, antivirus software, and SIEM (Security Information and Event Management) systems is advantageous.
Strong attention to detail and the ability to follow established security protocols.
Any relevant security certifications (Sec+) is a plus
Basic understanding of cybersecurity principles, concepts, and technologies.
Experience with the following is preferred:
Office 365, Entra, M365 Defender, Exchange
Active Directory, GPO
Azure Sentinel or other SIEM
Fortinet/FortiOS
SOC Experience
Behaviors/Competencies:
Integrity-Respect and accountability at every level and every interaction
Customer Service-Provide the highest level of customer service while building customer satisfaction and retention
Innovation-Develops and displays innovative approaches and ideas to our business
Teamwork-Contributes to building a positive team spirit and supports everyone's efforts to succeed
Physical & Environmental
Information Security Analyst
Security Engineer job 23 miles from Downey
The Company: VeSync is a portfolio company with brands that cover different categories of health & wellness products. We wouldn't be surprised if you have one of our Levoit air purifiers in your living room or a COSORI air fryer whipping up healthy and delicious meals for you every night.
We're a young and energetic company, we've had tremendous success, and we are constantly growing our team. As we garner more industry attention - just check out our accomplishments and awards by CES Innovation, iF Design, IGA, and Red Dot - we also need driven and talented people to join our team.
That brings us to you, and what you'll be joining. Our teams are smart and diligent and take ownership of their work - they're confident in their work but know how to collaborate with open ears and a spirit of learning. If you're down-to-earth, approachable, and easy to strike up a conversation with, this may be a great fit for you.
Check out our brands:
levoit.com | cosori.com | etekcity.com
The Opportunity:
As an Information Security Analyst, this role is vital in protecting the organization's IT infrastructure and ensuring the confidentiality, integrity, and availability of systems and data. The position plays a key part in maintaining a secure and resilient digital environment, safeguarding sensitive information, ensuring compliance with regulatory standards, and proactively addressing potential risks.
This role directly supports the organization's ability to defend against emerging cyber threats, respond swiftly to incidents, and uphold the trust of customers and stakeholders. Through collaboration with cross-functional teams, the Information Security Analyst helps develop and implement comprehensive security strategies, drives ongoing improvements in the organization's security posture, and ensures alignment with industry best practices.
What you will do at VeSync:
Information Security Planning
• Develop and implement comprehensive information security plans to safeguard the security of company data and assets, including on-premise and cloud environments.
• Thoroughly analyze the company's business processes and data characteristics, and combine industry best practices and frameworks such as NIST Cybersecurity Framework (CSF)to create customized security plans, ensuring the confidentiality, integrity, and availability of information assets in various scenarios.
Policy Development and Compliance
• Create security policies and ensure that the company's operations are in strict compliance with industry standards (e.g., ISO 27001, NIST, GDPR) and regulatory requirements.
• Continuously monitor industry trends and regulatory changes, and adjust security policies in a timely manner to provide a solid security and compliance framework for the company's business operations.
System, Network and Cloud Security
• Maintain and enhance security measures for systems, networks , and public cloud platforms (e.g., AWS, Azure, GCP) to prevent potential threats.
• Utilize advanced technical means and tools to conduct real - time monitoring and risk early warning of systems, networks, and cloud environments, promptly detect and block various attack behaviors, and ensure the stable and secure operation of IT infrastructure.
Security Monitoring and Incident Response
• Monitor security events in real - time, respond promptly to emergencies, and effectively mitigate risks.
• Build an efficient security monitoring platform, use intelligent analysis technology to promptly capture abnormal behaviors, activate emergency response plans, and minimize the impact of security incidents.
Security Awareness and Training
• Develop and deliver security training programs to enhance employees' security awareness and encourage their adherence to best practices.
• Design targeted training courses according to the needs of different positions and use diverse training methods to ensure that employees have a deep understanding of and implement security requirements.
Access Control and Identity Management
• Oversee user access controls, regularly review permissions, and ensure secure identity management.
• Implement a strict access control mechanism, Conduct regular audits of user permissions, and use reliable identity management systems to prevent unauthorized access and ensure the security of company resources.
Risk Assessment and Management
• Conduct comprehensive risk assessments, identify vulnerabilities, and implement effective mitigation strategies.
• Use scientific risk assessment methods and frameworks such as NIST CSF to evaluate potential threats and vulnerabilities, formulate corresponding mitigation measures based on the assessment results, and continuously improve the company's security defense capabilities.
What you bring to the role:
• Bachelor's degree in Information Security, Computer Science, or a related field.
• 5+ years of experience in information security, with a strong background in security event analysis, incident response, vulnerability management, and risk assessment.
• Hands-on experience with public cloud security (e.g., AWS, Azure, GCP), including cloud-native security tools and best practices.
• Familiarity with security regulatory compliance standards and frameworks such as NIST CSF, ISO 27001, and CIS.
• Knowledge of network security principles, intrusion detection/prevention systems (IDS/IPS), firewalls, and endpoint protection.
• Understanding these aspects is essential for ensuring the company's security compliance and building a robust security defense system.
• Strong analytical and problem - solving skills, with the ability to quickly identify and mitigate security threats.
• Relevant security certifications such as CISSP, CISM, CEH are a plus.
Location: This is an on-site, office-based role in Tustin, CA.
Salary: Starting at $110,000 annually
Perks and Benefits:
• Company covers 100% for Medical/Dental/Vision insurances for employee AND spouse + dependents!
• 401K with 4% employer match (eligible after 90 days of employment) and immediate 100% vesting
• Generous PTO policy + paid holidays
• Life Insurance
• Voluntary Life Insurance
• Disability Insurance
• Critical Illness Coverage
• Accident Insurance
• Healthcare FSA
• Dependent Care FSA
• Travel Assistance Program
• Employee Assistance Program (EAP)
• Fully stocked kitchen
Health Hacker - Los Angeles
Security Engineer job 17 miles from Downey
About Us At Next Health, we are redefining health optimization by integrating cutting-edge medical innovation with preventative, data-driven wellness. Through our technology-forward platform and luxury clinical environments, we empower our members to take control of their well-being with personalized longevity solutions. We are rapidly expanding across the U.S., and we are seeking visionary leaders to help scale our digital infrastructure and member experience.
Your Impact
As the Front Desk Receptionist at Next Health, you will be the first point of contact for our patients, visitors, and vendors. You will play a critical role in creating a positive patient experience and ensuring that our operations run smoothly.
Job Description
As the Front Desk Receptionist, you will be responsible for:
Greeting patients and visitors with a welcoming and professional demeanor
Checking in patients and verifying their demographic and payment information
Scheduling appointments and managing the clinic schedule
Assisting patients with questions and concerns
Maintaining patient records and updating them as needed.
Coordinating with other departments and healthcare providers to ensure seamless patient care.
What to Expect
In this role, you can expect to:
Interact with a diverse group of patients and visitors
Manage multiple tasks and responsibilities simultaneously
Use electronic medical records and scheduling software
Work closely with other departments and healthcare providers
Provide excellent customer service and patient care
What You'll Bring
We're looking for someone who has:
1+ years of experience in a medical office or healthcare setting
Excellent communication and interpersonal skills
Strong attention to detail and organizational skills
Ability to manage multiple tasks and ************************************** Super Admin
Experience with electronic medical records and scheduling software
Knowledge of medical terminology and insurance billing practices
A passion for providing exceptional customer service and patient care
Aptitude for sales
Passion for and knowledge of health & wellness services.
Exceptional at customer service.
Display a genuine interest in helping other people.
Excited to learn new things and be on the cutting edge of health & wellness.
Our Culture & Perks
We're a patient-centered healthcare clinic with a culture that values empathy, respect, and teamwork. We offer:
Competitive salary and benefits package
Opportunities for professional growth and development
A supportive and inclusive work environment
Meaningful work that makes a difference in patient's lives
Expected Compensation
The expected compensation for this position is $21 per hour, plus benefits.
Pay offered may vary depending on multiple individualized factors, job-related knowledge, skills, and experience. The total compensation package for this position may also include other elements dependent on the position offered. Details of participation in these benefit plans will be provided if an employee receives an offer of employment.
Additional Information:
As part of our selection process, all candidates may be required to participate in an in-person interview with a Next Health representative at one of our locations, whenever possible, prior to a final hiring decision.
Next Health is an Equal Opportunity employer, committed to promoting a diverse and inclusive workplace. All qualified applicants will be considered for employment without regard to race, color, religion, sex, sexual orientation, age, national origin, disability, protected veteran status, gender identity or expression, or any other characteristic protected by applicable federal, state, or local laws.
We are dedicated to ensuring equal employment opportunities for all applicants and employees, including those with criminal histories, arrest records, or conviction records, in accordance with relevant laws. This includes compliance with the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.
Qualified individuals with a disability who require assistance during the application or recruitment process, have the right to request a reasonable accommodation. Please submit your request to ********************.
We kindly ask that applicants refrain from calling our office regarding job inquiries. All application-related questions should be directed to ********************. Thank you for your understanding.
Information Security Analyst
Security Engineer job 33 miles from Downey
This position is responsible for ensuring that the Bank's Security operations and preventive controls are managed and maintained in accordance with established Information Security policies, standards and procedures, published regulations and industry best practices.
Primarily responsible for the constant review of vendor security controls in comparison with policies and industry frameworks, risk assessments, determination of control gaps and their remediation.
ESSENTIAL FUNCTIONS
* Performs vendor security risk assessments to determine inherent risk on proposed projects and assesses vendor security controls to determine residual risk.
* Evaluates the potential exposure to application security risks and threats based on industry security frameworks and recommends appropriate mitigation.
* Periodically assesses the information security controls design and execution applied by vendors for completeness and efficacy.
* Assesses vendor security practices including Information Security governance, Identity and access control, Incident monitoring and response, Vulnerability assessment and Penetration tests, Network Security and Endpoint Security, among others.
* Acts as liaison with Third Party Risk Management, Information Technology and business department Relationship Managers related to vendor risk assessments.
* Remediate audit and regulatory findings and recommendations related to Information Security and Vendor Risk Management.
* Participates in the implementation of Endpoint and Network Security solutions and monitors their correct usage.
* Supports the execution of Penetration tests, contacts the appropriate parties and arranges the information and resources needed.
* Supports the review of security baselines and ensures their implementation in network devices and endpoints.
* Supports the review of vulnerability management metrics and proposes improvements to the control process.
QUALIFICATIONS
Education:
* College degree in Information Technology or Information Security or equivalent.
* Security+, SSCP, CISSP, CISM or similar information security certifications preferred.
Experience:
* Minimum 3 years of experience in Information Security Risk, Information Security Operations or Security Auditing.
* Proven experience on third-party risk management and vendor security assessments.
* Proven experience operating and/or implementing SIEM, EDR/XDR, NAC, IDS/IPS, WAF, IAM, FW, AD, EntraID and AVs.
* Experience in securing and implementing policies for Cloud Technologies (M365, Azure, AWS) and the Microsoft (E5) technology stack including Microsoft Defender, Microsoft Intune or similar preferred.
* Experience working with Vendor Risk Management (VRM) applications preferred.
* Working knowledge of other security practices in the Endpoint Security, Network Security, Security Operations and Security Governance areas required.
Skills/Ability:
* Proven ability to initiate and manage projects.
* Excellent communication and problem-solving skills.
* Strong inter-personal communication and collaboration skills.
* Self-starter, highly motivated, and able to work with general supervision.
OTHER DETAILS
$29.33 - $42.07 / hour
Pay determined based on job-related knowledge, skills, experience, and location.
This position may be eligible for a discretionary bonus.
Cyber Security Engineer III
Security Engineer job 44 miles from Downey
The Embedded Cyber Security Engineer III is a talented professional who will address the security of the embedded systems in our products. This key cybersecurity role is for a hands-on professional who is big picture sensitive, detail-oriented, and driven to deliver secure high-quality products. Qualified candidates will contribute to the security of our products by working with developers and engineers throughout the R&D and Operations organizations to ensure our products comply with relevant security standards and contract requirements.
Position Responsibilities
* Collaborate with the product R&D teams to help them understand the security mindset, guiding them to implement specific security controls for product/system wide security needs.
* Coordinate with Electrical and Hardware engineering to ensure security requirements are addressed in the hardware selection and design.
* Support embedded system Architect and Developers to ensure the security controls are implemented as intended.
* Support consistent implementation of the embedded system security practices across projects.
* Coordinate with SW Developers & manufacturing engineering to ensure security needs are met.
* Identify security needs for embedded hardware, firmware, software, and microprocessors.
* Support selection of hardware components, third-party software, security tools and vendors. Identify security vulnerabilities and weaknesses in the system design and architecture.
* Contribute to the development of tools, processes, and policies to prevent, detect, and resolve classes of issues across the entire development lifecycle, including supply chain and manufacturing.
* Conduct embedded product and device cybersecurity activities including incident response, vulnerability assessments, and mitigation implementation.
* Continuously evaluate the effectiveness of implemented cybersecurity controls.
* Implement new approaches and countermeasures for emerging threats to embedded systems.
* Provide security-related deliverables for regulatory bodies and contracts.
* Assess software applications and control procedures.
* Other duties as assigned
Basic Qualifications (Required Skills & Experience)
* Bachelor's degree required in Cybersecurity, Electrical or Computer Engineering, Computer Science, or similar or related field, or equivalent combination of education, training, and experience.
* Five years of experience in Cybersecurity and embedded hardware.
* CompTIA Security+, GIAC Security Essentials (GSEC) or equivalent verifiable credentialed certification.
Other Qualifications & Desired Competencies
* Strong written and verbal communication skills.
* Strong analytical, time management and organizational skills.
* Strong computer skills and proficiency with office software and productivity tools.
* Works well with little or no supervision and exercises independent judgement on a regular basis.
* Ability to gain cooperation of others, conducting presentations of technical information concerning specific projects or schedules.
* Computer Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), CompTIA Advanced Security Practitioner (CASP) or equivalent verifiable credentialed certification.
* Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OCSP), or equivalent verifiable credentialed certification.
* Experience achieving ISO 27001 certification.
* Experience complying with NIST Cybersecurity standards and guidance
* Experience complying with the requirement of the National Industrial Security Program Operating Manual (NISPOM)
* Experience with one or more of the following technical areas:
* Wireless and/or network communications
* Basic knowledge of common hardware components, packaging, and PCBA level integration
* Basic knowledge of common cryptographic algorithms and protocols, implementation attacks (i.e., side-channel and fault injection)
* Hardware security implementation analysis and exploitation (cryptography, side-channel analysis, and/or fault injection)
* Testing and validation of cybersecurity control implementation, using manual methods and automated tools (e.g., ACAS, Tenable.sc, Nessus, Nexpose, etc.)
Physical Demands
* Ability to sit, stand, stoop, reach, lift (up to 25 lbs.), bend, etc. Hand and wrist dexterity to utilize the computer.
* May require travel to sites/program and special functions.
Environmental Conditions Critical to Performance:
* Work is in an office environment, climate controlled through central air conditioning/heating.
* Occasional work on the production floor may be required.
* May have some exposure to outside environment while traveling.
Special Requirements
* U.S. Citizen, U.S. Permanent Resident (Green Card holder) or asylee/refugee status as defined by 8 U.S.C. 1324b(a)(3) required.
* Must be able to travel within the Continental U.S. and internationally when required.
* Must have a DoD Secret security clearance or be eligible to obtain one.
The salary range for this role is:
$102,708 - $145,530
AeroVironment considers several factors when extending an offer, including but not limited to, the location, the role and associated responsibilities, a candidate's work experience, education/training, and key skills.
ITAR Requirement:
This position requires access to information that is subject to compliance with the International Traffic Arms Regulations ("ITAR") and/or the Export Administration Regulations ("EAR"). In order to comply with the requirements of the ITAR and/or the EAR, applicants must qualify as a U.S. person under the ITAR and the EAR, or a person to be approved for an export license by the governing agency whose technology comes under its jurisdiction. Please understand that any job offer that requires approval of an export license will be conditional on AeroVironment's determination that it will be able to obtain an export license in a time frame consistent with AeroVironment's business requirements. A "U.S. person" according to the ITAR definition is a U.S. citizen, U.S. lawful permanent resident (green card holder), or protected individual such as a refugee or asylee. See 22 CFR § 120.15. Some positions will require current U.S. Citizenship due to contract requirements.
Benefits: AV offers an excellent benefits package including medical, dental vision, 401K with company matching, a 9/80 work schedule and a paid holiday shutdown. For more information about our company benefit offerings please visit: **********************************
We also encourage you to review our company website at ******************** to learn more about us.
Principals only need apply. NO agencies please.
Who We Are
Based in California, AeroVironment (AVAV) is a global leader in unmanned aircraft systems (UAS) and tactical missile systems. Founded in 1971 by celebrated physicist and engineer, Dr. Paul MacCready, we've been at the leading edge of technical innovation for more than 45 years. Be a part of the team that developed the world's most widely used military drones and created the first submarine-launched reconnaissance drone, and has seven innovative vehicles that are part of the Smithsonian Institution's permanent collection in Washington, DC.
Join us today in developing the next generation of small UAS and tactical missile systems that will deliver more actionable intelligence to our customers so they can proceed with certainty - and succeed.
What We Do
Building on a history of technological innovation, AeroVironment designs, develops, produces, and supports an advanced portfolio of unmanned aircraft systems (UAS) and tactical missile systems. Agencies of the U.S. Department of Defense and allied military services use the company's hand-launched UAS to provide situational awareness to tactical operating units through real-time, airborne reconnaissance, surveillance, and target acquisition.
We are proud to be an EEO/AA Equal Opportunity Employer, including disability/veterans. AeroVironment, Inc. is an Equal Employment Opportunity (EEO) employer and welcomes all qualified applicants. Qualified applicants will receive fair and impartial consideration without regard to race, sex, color, religion, national origin, age, disability, protected veteran status, genetic data, sexual orientation, gender identity or other legally protected status.
ITAR
U.S. Citizenship is required. Secret or Top Secret clearance, or the ability obtain a clearance is desired.
Security Engineer - Product Security
Security Engineer job 19 miles from Downey
Who We Are:
At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance these exciting experiences.
The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.
The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:
Secure the Magic by protecting information systems and platforms.
Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
Strengthen the business through optimizing execution, application, and technology used to protect the Company.
Innovate by investing in core capabilities to enhance operational efficiency.
Team Description:
The Product Security Team at The Walt Disney Company is dedicated to safeguarding the digital assets and intellectual property of one of the world's most beloved entertainment companies. Our team plays a crucial role in ensuring the security and integrity of Disney's diverse range of products and services, which span across theme parks, resorts, cruise lines, sports, news, movies, and various other businesses.
We are a dynamic and collaborative team that partners with engineering teams across the enterprise. Our mission is to mitigate technical risk by identifying vulnerabilities in Disney products, providing education to engineering teams on remediation techniques, and collaborating with other security teams to ensure the protection of our guests.
Our team is responsible for conducting security assessments, managing customer interactions, and developing security solutions that align with Disney's business strategies. We leverage cutting-edge technology and innovative approaches to enhance consumer experiences, enable business growth, and advance operational excellence.
What You Will Do:
We Are Hiring! We need a Security Engineer - Product Security to join our Team!
Responsibilities of Role:
Manage and develop security partnerships with existing and new businesses of the TWDC to continually educate technology teams on reducing risk and integrating security into their product development.
Collaborate with engineers and information security teams to address security risks and provide mitigation recommendations within the Software Development Lifecycle (SDLC).
Support security assurance audits of our Product Security testing to help internal and external customers navigate and validate security compliance.
Perform activities such as security testing reviews with teams, product demos and trainings, and building documentation to help enable engineering teams to test their products and release with security embedded into their SDLC.
Regularly interact with internal and external customers on security-related projects and operational tasks. Design, build and deploy automation to scale the orchestration of security testing across all TWDC applications and platforms.
Must Have:
Minimum 3+ years of experience in cybersecurity, application security, or related information technology disciplines.
Programming/scripting skills with a language such as Python to automate work.
Proven experience collaborating with teams on security and building trust through delivery and data.
Strong understanding of at least two of the following security testing principles and practices, such as SAST, SCA, DAST, API, Mobile and Penetration testing.
Excellent communication and collaboration skills.
Ability to work in a fast paced, dynamic environment.
Nice To Have:
Experience with security tooling and methodologies
Experience integrating security checks into CI/CD pipelines or penetration testing.
Experience with SBOMs and the security of the software supply chain.
Familiarity with cloud security principles and technologies.
Relevant certifications such as: GWAPT, OSWE, BSCP, CompTIA Security+ are highly desirable.
Education:
Bachelor's degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience.
#DISNEYTECH
The hiring range for this position in Burbank, California is $104,600 - $140,200 per year and in Seattle, Washington is $109,500 - $146,800 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills, and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.
Job Posting Segment:
Enterprise Technology
Job Posting Primary Business:
Corporate Global Information Security
Primary Job Posting Category:
Security Engineering
Employment Type:
Full time
Primary City, State, Region, Postal Code:
Burbank, CA, USA
Alternate City, State, Region, Postal Code:
Date Posted:
2025-07-02
Analyst, Information Security
Security Engineer job 16 miles from Downey
The Information Security Analyst supports the development and execution of content, branding, and communication strategies to enhance information security awareness across the organization. The role combines technical security knowledge with creative and communication skills to develop and deliver content that drives security awareness across all departments.
Cybersecurity System Security Engineer (CSSE) III
Security Engineer job 16 miles from Downey
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. Currently, ManTech is actively seeking a motivated, customer oriented CSSE III to join our team in the El Segundo, CA area. The Cybersecurity System Security Engineer's primary function is working within Special Access Programs (SAPs) supporting SMC and AFSPC acquisition programs. The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities to meet NIST Cybersecurity requirements for system assessment & authorization. Performance shall include:
Lead a team of System Security Engineers and Certification and Accreditation Analysts responsible for ensuring the customer's national and international security interests are protected as acquisition systems are designed and tested.
Chair and or Co-Chair customer and SAP community Cybersecurity working groups, participate in SSE IPT reviews.
Perform oversight of the development, implementation, and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures.
Provides expert level consultation and technical services on all aspects of Information Security.
Review SSE related designs and provides security compliance recommendations.
Develop and provide Cybersecurity risk management recommendations to the customer.
Provide SSE support for Mission and Training systems design and development.
Assist with development and maintenance of the Program Protection Plan & Cybersecurity Strategy.
Assist with site activation activities and design reviews, to include test & evaluation of systems.
Represent the Government Program Manager in various SSE related working groups, advisory groups, and advisory council meetings.
Work directly with approval/accreditation authorities to obtain systems' Authorization to Operate. Basic Qualifications:
Bachelor's degree in a related discipline an additional 4 years of related experience may be accepted in lieu of degree.
Minimum of 12 years total experience
8 years' experience with SCI or SAR environment.
4 years of SAP relevant experience highly desired.
Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 3 and Information Assurance Manager Level 3 within 6 months of the date of hire. CISSP Recommended.
Must be familiar with security policy/manuals and the appropriate ICDs/JAFANs/DOD Manuals and other guiding policy documents.
Full understanding of Risk Management Framework (RMF) and Joint SAP Implementation Guide (JSIG) processes for system accreditation, along with legacy (DITSCAP, DIACAP) processes. Security Clearance:
Current Top Secret Clearance with SCI Eligibility
Eligibility for access to Special Access Program Information
Willingness to submit to a Counterintelligence polygraph. Preferred Requirements:
Must have the ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners.
Working knowledge of Microsoft Office (Word, PowerPoint, and Excel)
Possess a high degree of originality, creativity, initiative requiring minimal supervision.
Willingness to travel within the organizational Area of Responsibility (AOR) (note - could be extensive, and will include both air and ground transportation) Physical Requirements:
Must be able to remain in a stationary position 50%.
Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.
Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
Analyst, Information Security
Security Engineer job 16 miles from Downey
The Information Security Analyst supports the development and execution of content, branding, and communication strategies to enhance information security awareness across the organization. The role combines technical security knowledge with creative and communication skills to develop and deliver content that drives security awareness across all departments.
The analyst will create engaging visual and written materials for security training, internal communications, and phishing simulations while ensuring brand consistency. They will support the planning and execution of security awareness campaigns and educational events designed to measurably improve security behaviors organization wide, while contributing to program effectiveness metrics and compliance requirements.
Success in this position requires strong collaboration with team members and stakeholders, attention to detail, and the ability to translate complex security concepts into accessible content. The analyst will actively contribute to our team environment by participating in knowledge sharing, supporting colleagues, and demonstrating our core values in all interactions.
This role directly strengthens our security posture by helping employees recognize and respond appropriately to security threats, ultimately reducing our vulnerability to human-focused attacks and strengthening organizational resilience.
Responsibilities:
Develop and edit written and visual assets for training materials, phishing simulations, and internal communications to ensure clarity, consistency, and alignment with the information security brand.
Support crafting security awareness communications, develop presentation content, and create written materials that support organizational security initiatives.
Support the project coordination and successful delivery of information security awareness initiatives, including training sessions, campaigns, and related events, ensuring timelines and quality standards are met.
Analyze security awareness program metrics and contribute to program effectiveness reporting
Research emerging security threats and trends to incorporate into awareness materials and ensure content remains relevant and timely
Qualifications:
BA/BS Preferred
Experience with Adobe Illustrator, Photoshop, InDesign, Canva
Creating visual & written content, infographics, or branded materials for internal/external communications.
1-3 years of experience in Use of visual design tools such as Adobe Illustrator, Photoshop, InDesign, Canva, or similar.
Background in marketing, communications, graphic design, or a related field.
Familiarity with corporate brand guidelines and applying them consistently across materials.
Exposure to cybersecurity, compliance, or corporate risk communications.
Strong problem-solving skills and a solution-oriented mindset.
Excellent visual storytelling and design sensibility, with the ability to create engaging and accessible content.
Strong oral, written, and presentation communication skills.
Ability to distill and communicate complex information in a clear and professional manner.
Familiarity with content creation tools such as Adobe Creative Suite, Canva, or similar platforms.
High attention to detail and commitment to accuracy in both visual and written communications.
Strong organizational and time management skills, with the ability to handle multiple projects simultaneously.
Collaborative team player with a proactive and flexible approach to work.
Understanding of brand consistency and the ability to apply visual identity standards across various formats.
Solid understanding of Information Security principles, frameworks, and best practices.
Willingness to continue to grow technical knowledge over time.
Knowledge of relevant security regulations and compliance requirements (GDPR, PCI DSS, ISO, etc.)
Experience with learning management systems and awareness platforms.
The anticipated base salary for this position is $90,000 - $120,000. This role may also qualify for annual incentive and/or comprehensive benefits. The actual base salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location of the position.
Sony Pictures Entertainment is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status, age, sexual orientation, gender identity, or other protected characteristics.
SPE will consider qualified applicants with arrest or conviction records in accordance with applicable law.
To request an accommodation for purposes of participating in the hiring process, you may contact us at SPE_Accommodation_Assistance@spe.sony.com.
Manager, Information Security Corrective Action
Security Engineer job 19 miles from Downey
At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences.
The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.
The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.
The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:
Secure the Magic by protecting information systems and platforms.
Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
Strengthen the business through optimizing execution, application, and technology used to protect the Company.
Innovate by investing in core capabilities to enhance operational efficiency.
Responsibility of the Role:
Manage reviews of reports, assessments, and findings to identify remediation and/or corrective action needed.
Manage coordination with IT and business partners to facilitate necessary remediation and corrective action.
Manage verification of remediation and corrective action activity to ensure it achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
Document and review open items in status reports, including next steps, dependencies, and stakeholders.
Manage communication of results to stakeholders, including technical and non-technical audiences.
Provide recommendations to improve security posture.
Contribute in improving security baselines and standards.
Stay updated on evolving security guidelines and incorporate them into IT and business practices.
Stay informed on emerging threats and vulnerabilities.
Proactively recommend adjustments to mitigate risks.
Must Haves (Years of experience, languages, programs, tools, etc,):
A minimum of 10 years of related cybersecurity experience
Demonstrated experience managing corrective action.
Ability to manage and work well with individuals and teams with varying technical and business backgrounds.
Deep understanding of security frameworks and standards.
Significant relationship management skills.
Analytical thinking and attention to detail.
Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills
Demonstrated ability to handle confidential information.
Managerial experience in a security program for a large and complex organization.
Required Education:
Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field.
The hiring Range for this position in California is $138,900.00 to $186,200.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.
Job Posting Segment:
Enterprise Technology
Job Posting Primary Business:
Corporate Global Information Security
Primary Job Posting Category:
Security Governance
Employment Type:
Full time
Primary City, State, Region, Postal Code:
Burbank, CA, USA
Alternate City, State, Region, Postal Code:
USA - FL - Kirkman Point 1
Date Posted:
2025-02-19
Sr. Industrial Security Analyst
Security Engineer job 12 miles from Downey
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.
SR. INDUSTRIAL SECURITY ANALYST
SpaceX is looking for an experienced, Special Access Program (SAP) subject matter expert to provide support for critical efforts as a Sr. Contractor Program Security Officer (CPSO) across multiple SAPs with various customers. This is a chance to fill a critical role within a dynamic and high-tempo environment working on programs pushing the boundaries of industry and technology. A successful candidate will be a self-starter and problem-solver and will possess the ability to convey security requirements to a diverse group of technical personnel.
Responsibilities
Partner with Mission Management and government representatives to ensure program deliverables are met
Partner with Mission Management and Engineering teams to ensure their understanding of the program classification requirements and protections needed
Provide subject matter expertise, develop teammates, and provide mentorship
Own all compliance related activities to include self-inspections, audits, and inquiries
Participate in all aspects of the initiation, management and upkeep of personnel clearances for responsible programs
Create CONOPS, OPSEC Plans, PPIPs, MFRs, etc. as needed for approval by government customer
Strong understanding of SCG development and ability to influence customer determinations
Coordinate all transportation plans and courier documents for any transportation of classified program materials or assets
Ensure SOPs are up to date, approved, and being followed
Generate and coordinate all CUA's between agencies utilizing shared spaces
Enforce DD254 provisions and own the issuance of subcontractor DD254s
Create and update all annual refresher, INDOC, and exit briefings as needed in accordance with policy and government customer requirements
Oversee the review of clearance packages (PAR's and PSQ's) for accuracy and completeness and initiates follow up actions as necessary
Ensure all reportable information to including foreign travel and foreign contact, financial, personal conduct, etc., are up to date
Process classified visit access requests
Basic Qualifications
High school diploma or equivalency certificate
7+ years of security experience performing responsibilities specifically within an SAP environment
Active Top Secret clearance with SCI eligibility. Note that an active clearance may provide the opportunity for you to work on sensitive SpaceX missions. If so, you will be subject to pre-employment drug and random drug and alcohol testing
Preferred Skills And Experience
Bachelor's or master's degree
Strong knowledge of the NISPOM, DoD SAP Security Manuals, Intelligence Community Directives (ICDs), and related security policies and procedures
Familiarity with DISS, NBIS, CORE, TALON and JADE
Familiarity with SIMS
Additional Requirements
Ability to favorably complete a U.S. Government CI scope polygraph
Ability to travel in support of mission requirements
Willingness to work overtime or weekends as needed in support of mission-critical deadlines and milestones
Compensation And Benefits
Pay Range:
Sr. Industrial Security Analyst: $110,000.00 - $145,000.00/per year
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.
Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Exempt employees are eligible for 5 days of sick leave per year.
Itar Requirements
To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C.
1157, or (iv) Asylee under 8 U.S.C.
1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.
SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.
Applicants wishing to view a copy of SpaceX's Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should notify the Human Resources Department at **************.