Security engineer jobs in Elizabethtown, KY - 302 jobs
All
Security Engineer
Information Security Analyst
Network Engineer
Cyber Security Analyst
Cyber Security Engineer
Security System Engineer
Senior Security Analyst
Information Security Engineer
Systems Engineer
Senior Security Engineer
Data Security Analyst
Information Systems Engineer
Information Security Engineer
Heaven Hill Brands 4.6
Security engineer job in Louisville, KY
Job Description: with a base location in Louisville, KY. What the Role Is The Information SecurityEngineer is responsible for strengthening and supporting Heaven Hill's cybersecurity program. This hands-on technical role focuses on implementation, monitoring, and continuous improvement of security controls across cloud and on-premise environments.
The Engineer supports governance and risk management efforts and plays a key role in incident response and in deploying and maintaining secure technology solutions.
This position will collaborate with IT and business units to ensure Heaven Hill's data and systems remain resilient against evolving threats, while helping enable secure and efficient access through identity and access management solutions.
This role is instrumental in advancing Heaven Hill's overall security maturity and ensuring that cybersecurity enables, rather than limits, innovation and operational excellence.
How You Will Spend Your Time? SecurityEngineering & OperationsDesign, implement, monitor, and maintain security controls across cloud, identity, endpoint, and network environments.
Implement and manage Privileged Access Management (PAM) and Role-Based Access Control (RBAC) programs that align with business needs and support POLP (Principle of Least Privilege).
Support and enhance Identity Management solutions, including user provisioning, Single Sign-On (SSO) integrations, and secure application configurations.
Support secure configuration and hardening of Windows and Linux servers, as well as Windows and mac OS workstations.
Manage and maintain DNS and domain registrar configurations to ensure secure and reliable name resolution and domain integrity.
Implement, integrate, and manage authentication, including Kerberos, FIDO2, Smart Cards, passkeys, certificate-based authentication, and TLS or key management solutions.
Administer and support Public Key Infrastructure (PKI), including certificate issuance, renewal, and lifecycle management.
Perform vulnerability scanning and coordinate remediation activities.
Administer and optimize core security platforms such as endpoint detection and response (EDR) and security information and event management (SIEM) systems, including alert tuning, integration, and incident response support.
Develop and maintain automation or scripting (e.
g.
, PowerShell, Python) to improve efficiency in security monitoring, configuration management, and response processes.
Monitor security events, investigate incidents, perform root cause analysis, and drive post-incident improvements.
Collaborate with IT and business teams to ensure security considerations are integrated into infrastructure and project planning from the outset.
Risk & GovernanceConduct and document formal risk assessments, identify, evaluate, and communicate risk mitigation strategies.
Develop, update, and maintain cybersecurity policies, standards, and procedures aligned with the NIST framework.
Partner across the business to build awareness, ensure accountability, and foster a risk-informed culture.
Support security aspects of vendor assessments and technology evaluations.
Collaboration & Continuous ImprovementProvide security guidance for new initiatives, integrations, and system changes.
Contribute to incident response planning, tabletop exercises, and lessons-learned reviews.
Develop, maintain, and refine security operations and incident response playbooks to support consistent and effective response activities.
Stay informed on emerging threats, technologies, and best practices relevant to manufacturing and spirits production environments.
Who You Are… Required Skills and Experience:Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent experience along with Information Technology related associate's degree.
Minimum 5 years of experience in cybersecurity engineering and/or IT engineering.
Strong cloud security experience, including the design input, configuration, and operation of controls in cloud and hybrid environments.
Hands-on experience with Microsoft Entra ID (Azure AD), including Conditional Access, identity lifecycle management, and integration within hybrid Active Directory environments.
Experience with enterprise email security, endpoint protection, network security, data protection.
Experience implementing and managing Microsoft Purview for data protection, governance, and compliance.
Experience supporting third-party risk management or vendor assessments.
Strong understanding of identity, endpoint, and network security architectures and their integration across enterprise environments.
Experience performing root cause analysis during and after security incidents.
Experience developing or contributing to security documentation such as policies, standards, or procedures.
Strong communication skills across technical and non-technical audiences.
Experience in manufacturing or industrial environments.
Familiarity with OT/ICS security principles, including network segmentation, asset visibility, and industrial protocol security.
Valued but not Required Skills and Experience:Professional certifications such as CISSP, CISM, CRISC, or equivalent.
Understanding secure application deployment or DevSecOps principles.
Physical Requirements While performing duties of job, employee is occasionally required to:Stand; walk; use hands and fingers to handle or feel objects; use a computer; and reach with hands and arms.
Occasionally lift and/or move up to 20 pounds.
BenefitsPaid Vacation11 Paid HolidaysHealth, Dental & Vision eligibility from day one FSA/HSA401K match EAPMaternity/Paternity Leave Heaven Hill and its affiliates are committed to fostering a diverse workforce as an Equal Employment Opportunity company.
We invite applications from candidates of all backgrounds, without regard to race, religion, color, sex, sexual orientation, natural origin, gender identity or expression, age, disability, veteran status, or any other legally protected characteristic.
$69k-90k yearly est. 14d ago
Looking for a job?
Let Zippia find it for you.
Cyber Security Analyst
OSC Global
Security engineer job in Radcliff, KY
OSC EdgeTech, LLC is seeking a talented Cyber Security Analyst to join the team.
OSC EdgeTech is a wholly owned subsidiary of Cook Inlet Region, Inc. (CIRI), an Alaska Native Corporation proudly owned by over 9,400 Shareholders. OSC EdgeTech was created to deliver agile, responsive IT solutions to meet the evolving needs of federal and defense customers. As an SBA-certified 8(a) entity with a Facility Clearance (FCL), OSC EdgeTech streamlines the acquisition process while maintaining the trusted quality, security, and innovation that define OSC Edge.
Cook Inlet Region, Inc., also known as CIRI, is one of 12 land-based Alaska Native regional corporations created pursuant to the Alaska Native Claims Settlement Act (ANCSA). CIRI's regional boundaries roughly follow the traditional Dena'ina territory of Southcentral Alaska. CIRI was incorporated on June 8, 1972, and is owned today by a diverse group of more than 9,500 Shareholders who live in Alaska and throughout the world.
OSC EdgeTech offers excellent benefits for eligible employees. Benefits include paid holidays, paid time off, 401K with employer match, dental, vision, health insurance plans, as well as life and disability benefits.
Position Overview
The Cyber Security Analyst will contribute to the Cyber mission by conducting vulnerability scans, reviewing security alerts and incidents, and assessing technical compliance in accordance with DoD and Federal requirements. This position will utilize Cyber security tools, including ACAS, eMASS, HBSS, and Microsoft 365 Defender, to support vulnerability management, POA&M management, threat detection, and other Cyber tasks as required. Additionally, this position will collaborate with other Cyber analysts to develop programmatic actions and minimize security risks.
Major Activities
Conduct vulnerability scans of IT assets as requested from tickets or as directed by Cybersecurity Manager.
Apply knowledge of monitoring, analyzing, detecting, and responding to Cyber events and incidents within information systems and networks.
Advise on an integrated, dynamic Cyber defense and leverage Cybersecurity solutions to deliver Cybersecurity operational services, including intrusion detection and prevention, situational awareness of network intrusions, security events, and data spillage, and incident response actions.
Assess IT assets for cybersecurity compliance in accordance with DISA STIGs requirements.
Develop POA&Ms to track any Overdue vulnerabilities or STIG deviations
Review and investigate security alerts and incidents from Microsoft 365 Defender
Utilize eMASS to maintain and update POA&M status
Review device compliance status from HBSS
Work with other NEC Operations team members to remediate and mitigate security vulnerabilities.
Review the latest Cybersecurity intelligence information and provide recommendations to improve the Cybersecurity posture.
Perform other duties as appropriate and as assigned.
Knowledge/Skills/Abilities
Experience analyzing log files, firewall logs, and IDS Logs to identify possible threats to network security, and to perform command and control functions in response to incidents. If not 8570 certified at contract start must be within six months.
Experience in Host Based Security Systems (HBSS), ACAS vulnerability scanning software, knowledge of and experience with Security Information and Events Manager (SIEM) analysis and administration, as well as Information Assurance Vulnerability Alert (IAVA) management.
Excellent verbal, written and interpersonal communication skills, excellent organizational and multi-tasking skills.
Great analytical, critical thinking and problem-solving abilities.
Superior presentation and negotiation skills.
Strong management and organizational skills.
Adaptable and capable of working in fast-paced environments.
Proficient in Microsoft Word, Excel, PowerPoint, and SharePoint
Required Qualifications
Bachelor's degree in IT, Cyber Security or related field or seven years of IT work experience
Demonstrated work experience as Cyber Security Analyst in DoD or Federal government environments
Two or more years' experience performing vulnerability scans using Tenable SecurityCenter (Tenable.sc) or ACAS
Must possess appropriate DISA ESS certifications and experience.
Must be DoD 8570 certified at IAT Level 3 or higher (e.g., CASP+, CCNP Security, CISA, CISSP, GCED, GCIH, or CCSP)
Must be US citizen
Must possess active secret security clearance or higher
Must be able to pass pre-employment background check
Preferred Qualifications
Bachelor's degree in IT, IM, or Cyber Security
ACAS certification obtained within the last three (3) years, preferred
HBSS Administrator certification obtained within the last three (3) years, preferred
E-Verify:
OSC EdgeTech participates in E-Verify. We will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee's Form I-9 to confirm work authorization.
Reasonable Accommodation:
OSC EdgeTech, LLC will provide reasonable accommodations, according to applicable state and federal laws, to all qualified individuals with physical or mental disabilities. In compliance with the ADA Amendments Act (ADAAA), if you have a disability and would like to request an accommodation in order to apply for a position with OSC EdgeTech, LLC or any of its subsidiaries, please email *******************.
$64k-88k yearly est. 21d ago
Senior Cloud Security Engineer
Group1001 4.1
Security engineer job in Zionsville, IN
Group 1001 is a consumer-centric, technology-driven family of insurance companies on a mission to deliver outstanding value and operational performance by combining financial strength and stability with deep insurance expertise and a can-do culture. Group1001's culture emphasizes the importance of collaboration, communication, core business focus, risk management, and striving for outcomes. This goal extends to how we hire and onboard our most valuable assets - our employees.
Why This Role Matters:
The Senior Cloud SecurityEngineer at Group 1001 will play a critical role in safeguarding our organization: leading our core SecurityEngineering and Cloud Security functions to ensure stable, effective controls are built into both legacy and new technology. They will own and manage security controls across infrastructure, user technology, and our business-specific applications during a rapid period of evolution and movement to the cloud. They must consistently uphold a standard of accountability for their team, ensuring the steady delivery of mission-critical results. This is an opportunity to take on a key leadership position by providing strong technical leadership, guidance, and support to a team of high performing individuals; as well as being a driven contributor to a complex cloud migration and build-out.
How You'll Contribute:
Cloud Security Strategy:
* Develop and implement a comprehensive cloud security strategy aligned with business goals and objectives.
* Evaluate, select, and maintain cloud security tools, policies, and best practices for public cloud platforms (e.g. AWS, Azure, GCP).
* Enforce security policies and procedures for cloud-based solutions and architecture ensuring compliance with industry standards and regulations.
Security Infrastructure and Engineering:
* Collaborate with cross-functional leaders to ensure alignment with overall technology and business needs across multiple different cloud environments.
* Collaborate with high performing, multi-disciplined engineers to address internal, external, and emerging security risks throughout the organization.
* Design and implement solutions to mitigate, remmediate, and avoid security risk in a complex, multi-cloud environment.
* Evaluate and select security vendors and solutions that support a complex environment of infrastructure; maintain strong working relationships across the vast security vendor landscape.
Leadership:
* Collaborate with senior leadership across the organization to prioritize security initiatives and manage resource allocation effectively.
* Identify areas for improvement in security processes, policies, and technologies; drive initiatives to enhance security effectiveness.
* Assume accountability for strategic initiatives, propose innovative solutions, and actively steer initiatives to successful completion.
What We're Looking For:
* Bachelor's in Cyber Security, Computer Science, Information Technology, or related field is expected.
* 7+ year's progressive experience in Information Security roles, with a focus on Cloud Security, SecurityEngineering, or Security Architecture.
* Extensive background in information security services, operations and the people, process, and technology that makes them successful in a fast moving, dynamic business environment.
* Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams and senior leadership.
* Proficiency in one or more software programming languages (e.g. Python, JavaScript, Java, Kotlin, Golang).
* Familiarity with common application development languages and ecosystems, and common application security flaws that can manifest in them (e.g. Python, JavaScript, Java, Kotlin, Golang).
* Strong knowledge and experience with modern container orchestration technologies.
* Experience working with cloud native solutions such as AWS Guard Duty, Cloudtrail, Lambda, IAM, and related solutions in Azure, GCP.
* Experience with modern Infrastructure as Code tools such as Terraform or Ansible.
* Experience with database data access management including SQL, BigQuery, and Snowflake.
Compensation:
Our compensation reflects the cost of labor across several U.S. geographic markets. The base pay for this position ranges from $200,000/year in our lowest geographic market up to $240,000/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience
Benefits Highlights:
Employees who meet benefit eligibility guidelines and work 30 hours or more weekly, have the ability to enroll in Group 1001's benefits package. Employees (and their families) are eligible to participate in the Company's comprehensive health, dental, and vision insurance plan options. Employees are also eligible for Basic and Supplemental Life Insurance, Short and Long-Term Disability. All employees (regardless of hours worked) have immediate access to the Company's Employee Assistance Program and wellness programs-no enrollment is required. Employees may also participate in the Company's 401K plan, with matching contributions by the Company.
Group 1001, and its affiliated companies, is strongly committed to providing a supportive work environment where employee differences are valued. Diversity is an essential ingredient in making Group 1001 a welcoming place to work and is fundamental in building a high-performance team. Diversity embodies all the differences that make us unique individuals. All employees share the responsibility for maintaining a workplace culture of dignity, respect, understanding and appreciation of individual and group differences.
#LI-AS1 #LI-REMOTE
$200k-240k yearly Auto-Apply 57d ago
Data Security Analyst
Exeter Government Servi 4.1
Security engineer job in Fort Knox, KY
Provide support to the lead security Analyst in the planning and protection of employee computers and data networks. Monitor and track all security training and education. Assist with the scanning for and identification of security configuration management on computers and servers. Assist in the scanning for security breaches and the reporting of anomalies.
Required Qualifications:
Experience in administrative support & MS Office proficiency
Bachelor's degree or 5 years of experience
U.S. citizen and MUST possess a current active DoD Secret clearance
Possess an understanding of cyber security principles and be able to obtain a security+ certification within 6 months
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.
#clearancejobs
$64k-88k yearly est. Auto-Apply 60d+ ago
Principal Security Engineer
Here Holding 4.4
Security engineer job in Indianapolis, IN
What's the role?
In this role you will:
Lead a team of 2 SOC analysts/engineers covering the APAC region for a follow-the-sun SOC Operations.
Oversee and actively participate in Detection/Monitoring activities, continuously monitoring network traffic and security alerts for potential threats and vulnerabilities.
Develop and implement robust incident response plans, ensuring the team is well-prepared to address cyber incidents promptly and effectively.
Conduct forensic analysis of security incidents to identify the root causes and extent of breaches, enabling the organization to take appropriate remediation actions.
Stay current with emerging cyber threats and trends, proactively adapting and enhancing security measures to mitigate potential risks.
Mentor and train team members to improve their skills and knowledge in cyber defense, fostering professional growth within the team.
Who are you?
You are a team leader focused on Security Incident Response and Forensics. Further you have the following qualifications:
Degree in Computer Science, Engineering or relevant work experience
Minimum 10 years in cybersecurity engineering roles
Sound knowledge of cyber incident response process and incident handling, GCIH/GCIA/GNFA/GREM/GCFA or equivalent certifications a plus
Malware Analysis - Ability to reverse engineer and analyze behavior of malware to be able to assess impact and suggest remediation actions to address malware infections in multiple environments - Linux, Windows, Mac OSX
Forensics evidence collection - Good understanding of activities required for forensics evidence collection and analysis following legal requirements and industry best practices
Security knowledge -Good knowledge of modern attack vectors, attack execution patterns and exploitation techniques
Communications skills - Ability to clearly communicate things required to be executed by other members of incident response team.
What we offer
HERE offers an opportunity to work in a cutting-edge technology environment with challenging problems to solve! You can make a direct impact on delivery of company´s strategic goals and the freedom to decide how to perform your work. We will support you in delivering your day-to-day tasks and achieving your personal goals and developing your skills. Personal development is highly encouraged at HERE. You can take different courses and training at our online Learning Campus and join cross-functional team projects within our Talent Platform.
HERE is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, age, gender identity, sexual orientation, marital status, parental status, religion, sex, national origin, disability, veteran status, and other legally protected characteristics.
Who are we?
HERE Technologies is a location data and technology platform company. We empower our customers to achieve better outcomes - from helping a city manage its infrastructure or a business optimize its assets to guiding drivers to their destination safely. At HERE we take it upon ourselves to be the change we wish to see. We create solutions that fuel innovation, provide opportunity and foster inclusion to improve people's lives. If you are inspired by an open world and driven to create positive change. Join us. Learn more about us. Watch video
You will join a global Security Operations Center (SOC) and Incident Response team operating across multiple regions, with a primary focus on leading and managing our team in India. In this role, you'll collaborate with some of the brightest minds in cybersecurity to protect our organization from evolving threats. The SOC's mission is to proactively identify, detect, and respond to security incidents within the HERE environment, performing in-depth forensic analysis to prevent future occurrences. We adhere to industry best practices throughout the incident response lifecycle while leveraging innovative approaches to tackle the most complex security challenges.
$80k-112k yearly est. Auto-Apply 12d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Security engineer job in Indianapolis, IN
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 40d ago
Cyber Security Analyst
Mantech 4.5
Security engineer job in Crane, IN
ManTech seeks a motivated, career and customer-oriented **Cyber Security Analyst** to join our team in **Crane, Indiana.** This is an onsite position. As a core member, you will assist in the research & design, engineering, integration, testing, training, logistics, laboratory research, field engineering, and acquisition and operations analysis in support of a variety of Navy and Marine Corps programs and projects with a focus on defensive cyber technologies, mission assurance, and resilience capabilities for the tactical network environment. Your effort will go towards dramatically increasing the warfighter's effectiveness. If you enjoy working on a highly collaborative and dynamic team and want to make a difference for the warfighter, then we would love to have you on our team!
**Responsibilities include but are not limited to:**
+ Review and evaluate System Security Plans (SSPs), System Security Authorization Agreements (SSAAs), systems and networks diagrams, Security Requirements Traceability Matrices (SRTMs), Risk Assessments, and associated Information Systems (IS) Certification and Accreditation (C&A) documents in accordance with Department of Defense (DoD), Intelligence Community (IC), National and Agency standards
+ Observe, evaluate, and document IS security certification testing and prepare Security Certification Test Reports (SCTRs) with findings and recommendations regarding systems; Approval To Operate (ATO)
+ Inspect systems, networks, sites for compliance to InfoSec standards and policies
+ Additional duties include producing periodic progress reports, preparing various forms of correspondence concerning deficiencies and statuses of SSPs/SSAAs, maintaining and reporting statistics on personal C&A efforts
+ Knowledge of DoD, IC, and National Security Policies, Regulations, Directives, and Instructions
**Minimum Qualifications:**
+ High School Diploma
+ Knowledge of commonly used concepts, practices, and procedures within the particular field
+ 1+ years of experience in the field or in a related area
+ Hands-on experience with networking technologies such as routers, switches, firewalls, and VPNs
**Preferred Qualifications:**
+ Bachelors Degree
+ Familiarity with network vulnerability scanners, web scanners, and database scanners is a plus
+ Knowledge of cloud computing concepts and technologies
+ CISSP, CISM, CCNA, CASP, or equivalent.
**Clearance Requirements:**
+ Must have a current and active TS/SCI clearance
**Physical Requirements:**
+ The person in this position must be able to remain in a stationary position 50% of the time.
+ Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers, via email, phone, and or virtual communication, which may involve delivering presentations
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
$60k-77k yearly est. 60d+ ago
IT Compliance and Risk Management Analyst/ IT Security Analyst/ IT Auditor/ PCI Analyst (Cont to Hire)
Collabera 4.5
Security engineer job in Columbus, IN
Established in 1991, Collabera is one of the fastest growing end-to-end information technology services and solutions companies globally. As a half a billion dollar IT company, Collabera's client-centric business model, commitment to service excellence and Global Delivery Model enables its global 2000 and leading mid-market clients to deliver successfully in an increasingly competitive marketplace.
With over 8200 IT professionals globally, Collabera provides value-added onsite, offsite and offshore technology services and solutions to premier corporations. Over the past few years, Collabera has been awarded numerous accolades and Industry recognitions including.
Collabera recognizes true potential of human capital and provides people the right opportunities for growth and professional excellence. Collabera offers a full range of benefits to its employees including paid vacations, holidays, personal days, Medical, Dental and Vision insurance, 401K retirement savings plan, Life Insurance, Disability Insurance.
Location: Columbus, IN 47201
Job Title: Sr. IT Compliance and Risk Management Analyst
Duration: 6 months (Contract to Hire)
Job description:
•Responsible for the execution of compliance audits. Reviews procedures and corresponding evidence to determine whether or not internal controls are being properly applied.
•Leads or executes compliance audits and risk assessments within established control areas.
•Tests and documents more complex computer system records for information system integrity and transaction accuracy; reports discrepancies.
•Prepares less complex audit plans or assists with more complex plans.
•Prepares formal written reports to communicate audit results to management, and makes recommendations as appropriate; defines compliance issues and identifies root causes for review by manager.
•May provide technical guidance to contract audit staff to ensure that audit objectives are met.
•May coach and mentor less experienced analysts.
Qualifications
• Bachelors Degree Required: PCI (Payment Card Industry)- this is a higher level position and only looking for PCI SME (Subject Matter Expert) experience.
• Must Have IT Compliance Experience with PCI Management Side experience
• This manager is looking for a candidate that has seasoned PCI Experience on is a subject matter ex]pert and worked with the management side if PCI with the ability to set the right type of internal controls.
Additional Information
If interested please contact:
Himanshu Prajapat
************
himanshu.prajapat(@)collabera.com
$65k-88k yearly est. 22h ago
Systems Engineer - Physical Security
People Driven Technology
Security engineer job in Carmel, IN
People Driven Technology, Inc is a fast-growing, family-owned technology integrator delivering innovative IT outcomes across the Midwest. With decades of combined experience in business, technology, and engineering, we focus on creating simple, scalable outcomes for our customers. Guided by values of integrity, passion, and teamwork, we prioritize the success of our customers over revenue, building lasting relationships with both customers and strategic partners.
The Systems Engineer - Physical Security will be responsible for working alongside project management and enterprise architects to install, commission and test various physical security systems in a variety of environments. Candidates need to be proactive, customer-focused, and resourceful with a strong understanding of how physical security technology protects business assets. The Physical SecurityEngineer will be involved in the entire project delivery cycle, including leading projects implementation, commissioning, and maintenance. Ideal candidate will be located near West Lafayette area.
What You Would Do
Deploy access control and video management systems based on industry best practice standards
Install low-voltage wire and hardware for access control and video surveillance systems
Setup, program, and configure network appliances and related software
Commission and test newly installed access control and video surveillance systems
Review, interpret and properly execute project plans: drawings, specifications, project data
Participate in project meetings with stakeholders, both internal and external
Create training documents and instruct end-users in the use of systems
Maintain accurate installation and service records and create precise as-built documentation
Provide subject matter expertise related to access control and video surveillance systems
Respond to phone, email, voicemail, and verbal inquiries and collaborate closely with vendors to inspect, troubleshoot, and assure timely resolution of service issues
Safely operate and maintain assigned company vehicle
Obtain and maintain industry certifications and licenses
Perform other related duties as assigned
What We Are Looking For
High School Diploma/GED or Bachelor's degree or equivalent experience
Certification in one or more of the following: Genetec, Avigilion, and Milestone
Previous access control and/or video surveillance system installation experience preferred
Demonstrated ability to build and maintain strong customer relationships; will serve as the primary point of contact for a high-touch customer
Mechanically inclined and resourceful
Analytical and critical thinker
Proficient with Microsoft Office Suite
Self-starter that is excited to be part of the initial group of employees for a high-growth company
Excellent verbal and written communication skills with the ability to effectively interact with all stakeholders
Comfortable managing multiple and changing priorities, and meeting deadlines in an entrepreneurial environment
What We Would Offer You
Comprehensive medical, dental, and vision plans for you and your dependents.
401(k) Retirement Plan with Employer Match, Health Savings Account, Life Insurance, and Long-Term Disability.
Competitive compensation.
Collaborative and welcoming office culture.
Work-life balance and unlimited paid time off.
Company vehicle and necessary equipment.
Recruitment Agency Notification
People Driven Technology, Inc does not accept unsolicited agency resumes. Do not forward resumes to our careers email address, People Driven employees, or any other company location. People Driven Technology, Inc is not responsible for any fees related to unsolicited resumes.
Equal Opportunity Employer
People Driven Technology, Inc is proud to be an equal opportunity workplace and is an affirmative action employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. All hiring decisions are based on merit, qualifications, and our business needs.
People Driven Technology, Inc is dedicated to working with and providing reasonable accommodations to individuals with disabilities. If you need reasonable accommodations because of a disability for any part of the employment process, please contact the recruiter and let us know the nature of your request and your contact information.
$78k-107k yearly est. 60d+ ago
Senior Security Operations Engineer
SES 4.2
Security engineer job in Indiana
SES's Senior Security Operations Engineer focuses on advancing SES's Information Security threat and compliance program by security monitoring, threat & vulnerability management, and delivering professional reports including findings and recommendations. The Senior Security Operations Engineer is expected to be fully aware of the enterprise's security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals.
PRIMARY RESPONSIBILITIES / KEY RESULT AREAS
* Lead incident response in response to security events and incidents.
* Correlation and trend analysis of security logs, network traffic, security alerts, events, and incidents. Perform in-depth root cause analysis and diligently gather information prior to escalation for future root cause analysis. Event and incident handling consistent with applicable plans and processes.
* Analyzing, triaging, aggregating, escalating, and reporting on security events including investigation of anomalous network activity, and responds to cyber incidents within the network environment.
* Continuous & persistent monitoring of security technologies/tool data and network traffic which result in security alerts generated, parsed, triggered, or observed on the in-scope networks, systems, or security technologies.
* Rapidly assess network traffic, detect data anomalies, and provide detailed reporting on the same.
* Correlation and trend analysis of security logs, network traffic, security alerts, events, and incidents. Perform in-depth root cause analysis and diligently gather information prior to escalation for future root cause analysis.
* Event and incident handling consistent with applicable plans and processes. Integration of activities with standard reports, such as security metrics reports.
* Lead team/project meetings and technical meetings appropriate for the content.
* Ensures assigned tasks and projects are completed on schedule.
COMPETENCIES
* Strong organizational skills and ability to stay focused while managing multiple tasks concurrently.
* Understanding of current attack tools, tactics, procedures, and how to detect and/or mitigate them.
* Strong critical thinking/analytical skills, creativity, and a proven drive for quality
QUALIFICATIONS & EXPERIENCE
* Must Have
* Four Year college degree in a technical field of study or equivalent work experience
* Technical knowledge and aptitude in the areas of networks, network topologies, remote network access, servers, applicable software and troubleshooting techniques required.
* Experience working in a SOC or similar environment.
* Experience with reviewing IDS/IPS, EDR, Firewall and other security/audit logs
* Experience monitoring and analyzing a Security Information and Event Management (SIEM) to identify security issues for remediation, and rules fine tuning.
* Consolidate and conduct comprehensive analysis of threat data obtained from proprietary, and open-source threat intelligence resources for potential and known threats and acting on identified indicators.
* Nice to Have
* Participates in the planning, design, and implementation of enterprise security architecture.
* Experience with threat and vulnerability management, penetration testing, vulnerability assessments, and vulnerability mitigation
* One or more of the following security certifications: Security+, CEH, CYSA+, GCIA, GSEC, GCIA, GMON and GCDA
* Experience as a shift lead or supervisor role.
SES and its Affiliated Companies are committed to providing fair and equal employment opportunities to all. We are an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, gender, pregnancy, sex, sexual orientation, gender identity, national origin, age, genetic information, protected veteran status, disability, or any other basis protected by local, state, or federal law.
For more information on SES, click here.
$89k-120k yearly est. 60d+ ago
Snr Info Security Analyst - M&R-DLP
Standard Chartered 4.8
Security engineer job in Indiana
Apply now Work Type: Office Working Employment Type: Permanent Job Description: Key Responsibilities Cyber Security Incident Management Operations:
* Monitor, detect & respond to any potential security threats and risks to the organisation, using the available technology toolset
* Correlate and consolidate the alerts, reports, anomalies and other intelligence sources, put the threat/risk in context, and determine event/incident urgency and priority, and initiate an appropriate response
* Continuously improve the accuracy and relevance of the Bank's detection tools and capabilities to keep pace with changing environments and regulatory/compliance requirements
* Adhere to the defined security monitoring processes and procedures, and initiate improvements to them, driving maturity and relevance
* Track and report the remediation of cybersecurity threats and risks, and provide domain expertise during remediation to the appropriate support groups
* Track and document cybersecurity incidents from initial detection through final resolution
* Operate within established standard operating procedures to handle security incidents
* Research trends and countermeasures in computer/network vulnerabilities, exploits, and malicious activity
* Support senior incident handlers during cybersecurity incident response activities
* Perform root cause analyses and present findings to relevant stakeholders for remediation
* Work closely with the other support groups to assess risk and provide recommendations for improving the Bank's security posture
Strategy
* Monitor, detect & respond to any potential security threats across the Bank to ensure all events are acted on in a timely manner.
Business
* Support senior incident handlers during cybersecurity incident response activities.
* Work closely with the other support groups to assess risk and provide recommendations for improving the Bank's security posture.
* Identify opportunities to improve detection and response capabilities of the team
* Work with content engineering team to monitor and tune alerts.
* Conduct research on attack patterns, techniques, and develop creative solutions to detect/prevent adversarial tools, techniques and procedures.
* Collaborate with key stakeholders to continuously enhance playbooks as new products, logs, and capabilities are introduced to the organization.
* Collaborate with key stakeholders in improving the Bank's detection posture.
Processes
* Ensure adherence to all internal and external policies, procedures and regulations.
Risk Management
* Be aware of, identify and escalate all risk issues and concentrations in accordance to the firm's Group Information and Cyber Security Policy. Where appropriate, direct remedial action and/or ensure adequate reporting to Risk Committees.
Governance
* Promote an environment where compliance with internal control functions and the external regulatory framework is a central priority of the service.
Regulatory & Business Conduct:
* Display exemplary conduct and live by the Group's Values and Code of Conduct.
* Take personal responsibility for embedding the highest standards of ethics, including regulatory and business conduct, across Standard Chartered Bank. This includes understanding and ensuring compliance with, in letter and spirit, all applicable laws, regulations, guidelines and the Group Code of Conduct.
* Effectively and collaboratively identify, escalate, mitigate and resolve risk, conduct and compliance matters.
Key stakeholders
* Tech, Transform and Ops
* Cyber Security
* Cyber Defence & Ops Technology
* Cyber Defence Centre
* Security Monitoring & Analytics
* Group Threat Management
Other Responsibilities:
* Work within a 24x7 shift model
* Provide after-hours rotational coverage when required
Skills and Experience
* Well-versed in Cybersecurity Incident Analysis and Response and Cybersecurity Defensive Operations (Blue Team)
* Strong understanding of core Enterprise Information Technology and Computer Networking concepts (Desktop/Laptop, Mobile Device, Server, Network Device, LAN and WAN)
* Basic knowledge of selected IT Service Management (ITSM) processes (Event Management, Incident Management, Change Management, Service Assets and Configuration Management, Service Level Management)
* Exposure to Security Information and Event Management solutions, preferably Splunk ES. User Behaviour Analytics (UBA) exposure is desirable
* Exposure to Endpoint Security and/or Endpoint Detection and Response tools, preferably Symantec
* Demonstrated ability to work with a diverse, geographically-dispersed team
Qualifications
* Diploma or higher educational qualification in Engineering, Computer Science/Information Technology or an equivalent qualification in a relevant discipline
* The following certifications are desirable but not mandatory: EC Council Certified Ethical Hacker (CEH), EC Council Certified Security Analyst (ECSA), SANS GIAC Certified Incident Handler (GCIH), CERT Certified Computer Security Incident Handler (CSIH), Axelos Information Technology Infrastructure Library (ITIL) v3 Foundation
About Standard Chartered
We're an international bank, nimble enough to act, big enough for impact. For more than 170 years, we've worked to make a positive difference for our clients, communities, and each other. We question the status quo, love a challenge and enjoy finding new opportunities to grow and do better than before. If you're looking for a career with purpose and you want to work for a bank making a difference, we want to hear from you. You can count on us to celebrate your unique talents and we can't wait to see the talents you can bring us.
Our purpose, to drive commerce and prosperity through our unique diversity, together with our brand promise, to be here for good are achieved by how we each live our valued behaviours. When you work with us, you'll see how we value difference and advocate inclusion.
Together we:
* Do the right thing and are assertive, challenge one another, and live with integrity, while putting the client at the heart of what we do
* Never settle, continuously striving to improve and innovate, keeping things simple and learning from doing well, and not so well
* Are better together, we can be ourselves, be inclusive, see more good in others, and work collectively to build for the long term
What we offer
In line with our Fair Pay Charter, we offer a competitive salary and benefits to support your mental, physical, financial and social wellbeing.
* Core bank funding for retirement savings, medical and life insurance, with flexible and voluntary benefits available in some locations.
* Time-off including annual leave, parental/maternity (20 weeks), sabbatical (12 months maximum) and volunteering leave (3 days), along with minimum global standards for annual and public holiday, which is combined to 30 days minimum.
* Flexible working options based around home and office locations, with flexible working patterns.
* Proactive wellbeing support through Unmind, a market-leading digital wellbeing platform, development courses for resilience and other human skills, global Employee Assistance Programme, sick leave, mental health first-aiders and all sorts of self-help toolkits
* A continuous learning culture to support your growth, with opportunities to reskill and upskill and access to physical, virtual and digital learning.
* Being part of an inclusive and values driven organisation, one that embraces and celebrates our unique diversity, across our teams, business functions and geographies - everyone feels respected and can realise their full potential.
Apply now
Information at a Glance
*
*
*
*
*
$68k-91k yearly est. 29d ago
Information Security Specialist
Starplus Energy
Security engineer job in Kokomo, IN
The Information Security Specialist supports the planning, implementation, and operation of StarPlus Energy's global and local security management systems. This position ensures compliance with international and Korean security regulations, establishes physical and IT infrastructure security systems, and coordinates with both corporate headquarters and Korean government authorities to prevent information leaks and respond to potential security threats. This position reports to the Information Security Manager.
Roles & Responsibilities:
Plan, develop, and operate corporate information security systems for facility and IT infrastructure protection
Establish incident response procedures and maintain readiness against internal and external security threats
Develop and operate the site's physical security management system, including access control, CCTV, and intrusion detection system
Manage and oversee external security service providers (e.g., physical security guards, monitoring services, and system maintenance vendors) to sure proper performance and contract compliance
Support vendor performance evaluations, documentation, and corrective actions when service issues arise
Define and enforce information protection policies and procedures to ensure consistent implementation across the organization
Establish and operate a security management framework for Korean National Core Technology (KNCT) compliance
Assign protection grades, define and manage secure communication systems, and safeguard all data and documentation related to KNCT
Coordinate and conduct security education and training for employees
Develop and maintain incident response systems to address potential data or technology leakage
Support internal and external security audits and inspections from Korean government and SDI Headquarters
Perform security infrastructure vulnerability assessments and implement corrective actions as needed
Prepare technical report, standard operating procedures (SOPs), and other documentation required for compliance and audit response
Perform other position related duties as assigned
$65k-92k yearly est. 3d ago
Senior Security Operations Analyst
RWS 4.0
Security engineer job in Indiana
Job Purpose
Job Purpose
The Senior SecOps Analyst will support the organization's cybersecurity operations by managing and maintaining security tools, responding to incidents, and assisting in vulnerability management.
About Product & Technology
Product & Technology plays a pivotal role in aligning the organization with its strategic objectives and enhancing shareholder value. Product & Technology is responsible for establishing unified standards and governance practices throughout the company. Additionally, we oversee the development and maintenance of core applications essential for the seamless operation of various functions across the organization. We are committed to driving and executing future roadmaps that are in line with the overall strategic direction of RWS.
With a global reach, Product & Technology provides support services to over 7500 end users worldwide. We take pride in managing the information security operation and safeguarding all our assets. Our core functions encompass Enterprise & Technical Architecture, Network & Voice, Infrastructure, Service Delivery, Service Operations, Data & Analytics, Security & Quality Compliance, Transformation, Application Development, Enterprise Platforms, With a dedicated team of over 500 staff, Product & Technology ensures a strong presence across all regions, enabling efficient and effective support to our global operations.
Job Overview
Key Responsibilities
Operate and maintain cybersecurity monitoring and response tools to ensure optimal performance and recommend improvements where necessary.
Utilize automation techniques to enhance the effectiveness and efficiency of operational security tasks.
Collaborate with IT Infrastructure teams to implement automated solutions that improve security tooling and associated platforms.
Respond to cybersecurity threats and incidents detected by security tools, processes, and Managed Detection and Response (MDR) partners.
Follow established incident response processes and runbooks and contribute to their continuous improvement.
Support the implementation and operation of the Vulnerability Management program.
Monitor for new vulnerabilities, assess potential business impact, and assist in coordinating remediation activities.
Perform core tasks such as monitoring and resolving support tickets related to security tooling.
Ensure cybersecurity tools are up to date, healthy, and fully functional.
Provide advice and guidance on cybersecurity to other areas of the organization when required.
Assist with security audits by gathering and sharing information and evidence related to security control configuration and performance.
Skills & Experience
Experience in a similar role in Security Operations
Experience of key cybersecurity controls such as Anti-malware, EDR/XDR/NDR, SIEM, Email and Web Security, Vulnerability Management, SOAR/automation
Understanding of common cybersecurity threats and mitigation techniques with a keen interest in keeping your knowledge and skills up to date
Understanding of Cloud security fundamentals, including how to monitor and secure IaaS, PaaS and SaaS platforms, Azure AD, Microsoft 365 and Azure Security, CSPM
Strong general IT skills and a good understanding of IT Infrastructure, including Windows laptops and servers, cloud platforms such as Microsoft Azure/Office 365/AWS, networking and firewalls.
Experience or a strong desire to learn scripting and automation techniques such as Python
An analytical mindset with strong problem-solving skills.
Excellent communication skills, both written and verbal, able to explain technical information in a simplistic manner.
Ability to show leadership and mentor less experienced members of the team.
Life at RWS
Life at RWS - If you like the idea of working with smart people who are passionate about growing the value of ideas, data and content by making sure organizations are understood, then you'll love life at RWS.
Our purpose is to unlock global understanding. This means our work fundamentally recognizes the value of every language and culture. So, we celebrate difference, we are inclusive and believe that diversity makes us strong. We want every employee to grow as an individual and excel in their career.
In return, we expect all our people to live by the values that unite us: to partner, putting clients fist and winning together, to pioneer, innovating fearlessly and leading with vision and courage, to progress, aiming high and growing through actions and to deliver, owning the outcome and building trust with our colleagues and clients.
RWS embraces DEI and promotes equal opportunity, we are an Equal Opportunity Employer and prohibit discrimination and harassment of any kind. RWS is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at RWS are based on business needs, job requirements and individual qualifications, without regard to race, religion, nationality, ethnicity, sex, age, disability, or sexual orientation. RWS will not tolerate discrimination based on any of these characteristics.
RWS Values
Get the 3Ps right - Partner, Pioneer, Progress - and we´ll Deliver together as RWS.
Recruitment Agencies: RWS Holdings PLC does not accept agency resumes. Please do not forward any unsolicited resumes to any RWS employees. Any unsolicited resume received will be treated as the property of RWS and Terms & Conditions associated with the use of such resume will be considered null and void.
$84k-113k yearly est. Auto-Apply 14d ago
IT Security Analyst - IT Solutions - Indianapolis, IN
American Structurepoint Engineering Traffic Project Manager In Indianapolis, Indiana 4.6
Security engineer job in Indianapolis, IN
Join American Structurepoint and become part of a team that goes the extra mile for our clients and communities. We live by our values - respect, staff development, results and family. Our team is encouraged to explore new ideas and turn our clients' dreams into reality. With exceptional benefits, training, and mentorship, we pave the way for a rewarding career. Ready for more than just a job? Explore opportunities with us and help improve the quality of life in the communities we serve.
Group: Information Technology
Position: IT Security Analyst
Location: Indianapolis, IN
Are you passionate about cybersecurity and ready to protect the digital backbone of an innovative engineering firm? We're looking for a skilled IT Security Analyst to join our team and help secure mission-critical systems, proprietary data, and infrastructure. Join a team where your cybersecurity expertise directly supports groundbreaking engineering projects. Apply now or message us to learn more!
Responsibilities
• Monitor and analyze network traffic for threats and vulnerabilities
• Conduct regular security assessments and penetration testing
• Work collaboratively with Infrastructure team to learn and review firewalls, antivirus, and intrusion detection/prevention systems - Maintain Secure by Design Approach
• Investigate and respond to security incidents
• Continually develop (update) and implement cybersecurity policies and procedures
• Collaborate with engineering and IT teams to secure sensitive project data
• Stay ahead of emerging threats and technologies
• Be passionate about:
o Learning new technologies
o Working collaboratively in a team atmosphere
Qualifications
Must-Haves:
• Bachelor's degree in Computer Science, Cybersecurity, or related field
• 3+ years of experience in IT security roles
• Strong knowledge of network protocols, firewalls, and endpoint protection
• Experience with SIEM tools - Understand and develop queries and expressions
• Basic Understanding of NIST, SOC2, CMMC or similar frameworks
• Excellent communication and problem-solving skills
• Excellent written and documentation skills
Nice-to-Haves:
• Certifications: CISSP, CISM, CEH, or Security+
• Experience with cloud security (AWS, Azure)
• Scripting knowledge (Python, PowerShell)
• Exposure to engineering software platforms (AutoCAD, SolidWorks)
• Familiarity with Zero Trust architecture
$69k-98k yearly est. Auto-Apply 60d+ ago
Information Security Analyst
Novalink Solutions 3.1
Security engineer job in Indianapolis, IN
Resource will work as an Information Security Analyst responsible for auditing and monitoring systems containing confidential information. This position is also responsible for helping the organization manage its risks by monitoring the organization's IT systems for inefficiencies, inaccuracies, mismanagement, etc. Tasks will include assisting with the configuration of data, application, network, and IAAM logs; assisting with log reporting tools; and monitoring systems for security problems. The position participates in all aspects of the technology audit and monitoring including the planning, control analysis, testing, issue development, and reporting phases. This position will also participate in all federal and state audits against DCS technology systems. Employee works in an Information Technology Division of a State Agency, the Department of Child Services (DCS -IT) under the guidance of the Security Manager.
The essential functions of this role are as follows:
• Monitors and keep supervisor informed of status of information security and confidentiality conditions, including problem areas and recommended enhancement;
• Interfaces with user customers to understand their security needs and implement procedures to accommodate them including training and assessment.
• Assists with preparing for security audits (e.g. IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assists with creating and submitting reports relevant to security audits.
• Develop information security policies and standards for protection of information systems in compliance with state and federal requirements (e.g. IRS, SSA, OCSE, FBI, IOT) and guidelines (e.g. NIST SP 800 -53).
• Develops Standard Operating Procedures (SOP) for implementing security polices;
• Recommends appropriate security safeguards to be included during development of new information technology systems and legacy systems;
• Ensures maximum utilization of computer hardware and software features to secure automated systems and associated data;
• Develops and implements procedures for use of information security management software;
• Proposes information security software enhancements;
• Performs periodic audits to assure security policies and standards are being followed and are effective.
• Develops recommendations for enhancements and generates reports where necessary;
• Keeps abreast of new laws and changes affecting privacy standards, network security, cloud security, remote access, and physical security;
• Mentors and provides guidance to new or other staff as needed;
• Performs related duties as assigned.
• Assist on other task as assigned.
Thorough knowledge of information security management tools, policies, and standards of information security procedures;
• Thorough knowledge of state and federal legislation and regulatory laws pertaining to information system security and privacy;
• Thorough knowledge of software vulnerabilities, vulnerabilities scanning tools, and vulnerabilities remediation;
• Familiarity with domain structures, user authentication, and digital signatures;
• Ability to develop and maintain information security standards;
• Ability to understand and apply complex computer logic to work;
• Ability to work effectively with a wide range of information technologists, including systems administrators, technical support, application development, end users and management;
• Experience in assessing security needs of teams and assist in their security training.
• Ability to communicate effectively both orally and in writing;
• Ability to be a team member as well as a team leader depending on the situation;
• Degree in information security or technology preferred;
• Security certification preferred (e.g. CISSP).
• Network Admin experience preferred.
Supervisory Responsibilities/Direct Reports:
This role does not provide direct supervision to direct reports.
Required / Desired Skills
Skill
Required / Desired
Amount
of Experience
To be effectively with wide range of information technologists, including systems administrators, technical support, application development, end users
Required
3
Years
Network Admin experience
Required
3
Years
Security certification (e.g. CISSP, CRISC)
Required
3
Years
Ability to develop and maintain information security standards;
Required
1
Years
Ability to understand and apply complex computer logic to work
Required
1
Years
Degree in information security or technology
Required
1
Years
Familiar with cybersecurity security framework (e.g. NIST, ISO, SOC 2, CIS, Cobit, etc.)
Required
Computer security compliance and auditing experience
Required
IRS, SSA computer security compliance and audit experience
Required
HIPAA experience
Required
$68k-98k yearly est. 26d ago
Analyst, IT Security Compliance
3M Companies 4.6
Security engineer job in Indiana
3M has a long-standing reputation as a company committed to innovation. We provide the freedom to explore and encourage curiosity and creativity. We gain new insight from diverse thinking, and take risks on new ideas. Here, you can apply your talent in bold ways that matter.
:
JOB DESCRIPTION:
What You'll Do
As a key member of the IT Security Compliance team, reporting to the Team Lead - Security Compliance, you will:
* Execute day-to-day cybersecurity risk, compliance, and assurance activities.
* Support global cybersecurity certifications including ISO 27001 and ISO 27017, evaluating control effectiveness and reviewing evidence of controls.
* Assist in achieving ISO 27001 certification by identifying risks and implementing controls.
* Maintain and continuously improve 3M's Information Security Management System (ISMS).
* Create, update, and manage ISMS documentation, reports, and audit records.
* Act as Subject Matter Expert (SME) for PCI DSS, advising stakeholders, conducting internal assessments, and driving PCI DSS v4.0.1 reviews, gap assessments, and control evaluations.
* Provide high-level knowledge support on other frameworks and standards including NIST, SOX, SWIFT, and TISAX.
* Deliver timely written reports, metrics, and updates to cybersecurity management.
* Collaborate and communicate effectively across teams and with stakeholders.
What We're Looking For
* Education: Bachelor's degree with a minimum of 4 years of experience in Information Security, GRC, or related roles.
* Certifications (preferred): ISO 27001 Lead Auditor/Implementer, PCI ISA, CISA, CISM, CRISC, or equivalent.
* Skills & Knowledge:
* Strong knowledge of information security risk standards, frameworks, and methodologies.
* Experience working with GRC tools such as OneTrust, Archer (or similar).
* Excellent written and verbal communication skills.
* Ability to manage multiple priorities and adapt to evolving business needs.
Learn more about 3M's creative solutions to the world's problems at ********** or on Instagram, Facebook, and LinkedIn @3M.
Safety is a core value at 3M. All employees are expected to contribute to a strong Environmental Health and Safety (EHS) culture by following safety policies, identifying hazards, and engaging in continuous improvement.
Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.
3M Global Terms of Use and Privacy Statement
Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at 3M are conditioned on your acceptance and compliance with these terms.
Please access the linked document by clicking here, select the country where you are applying for employment, and review. Before submitting your application, you will be asked to confirm your agreement with the terms.
$70k-99k yearly est. Auto-Apply 60d+ ago
Information Security Analyst
Vergence 3.3
Security engineer job in Indianapolis, IN
. Must live in the Indianapolis area.
Pay: $42.70/hour
In this role you will:
• Monitor and keep supervisor informed of status of information security and confidentiality conditions, including problem areas and recommended enhancement
• Interface with user customers to understand their security needs and implement procedures to accommodate them including training and assessment
• Assist with preparing for security audits (e.g. IRS, SSA, OCSE, FBI, SBOA) and remediating any findings; assist with creating and submitting reports relevant to security audits
• Develop information security policies and standards for protection of information systems in compliance with state and federal requirements (e.g. IRS, SSA, OCSE, FBI, IOT) and guidelines (e.g. NIST SP 800-53)
• Develop Standard Operating Procedures (SOP) for implementing security polices
• Recommend appropriate security safeguards to be included during development of new information technology systems and legacy systems
• Ensure maximum utilization of computer hardware and software features to secure automated systems and associated data
• Develop and implement procedures for use of information security management software
• Propose information security software enhancements
• Perform periodic audits to assure security policies and standards are being followed and are effective
• Develop recommendations for enhancements and generates reports where necessary
• Keep abreast of new laws and changes affecting privacy standards, network security, cloud security, remote access, and physical security
$42.7 hourly 27d ago
Information Security Analyst
Java Developer In Pune
Security engineer job in Indiana
What you will do:
Respond to security incidents as part of the Incident Response Team.
Research attempted or successful efforts to compromise systems security, determines causes of security violations, and designs countermeasures.
Analyse network access requests and make recommendations to management around risks posed by proposed changes
Utilize analytical and investigative processes to perform threat hunting activities across the organization.
Analyse existing SIEM correlation rules and make tuning recommendations.
Contribute to align to security best practice, mitigate known risks and align with business compliance objectives
Assist other security operational teams with daily tasks such as account management/role assignments, access reviews, patch management operations, audit/testing remediation.
Create and update documentation and train peers.
Requirement:
You're curious, passionate, authentic, and accountable. These are our values and influence everything we do.
Open-minded and self-motivated to proactively contribute to the SAS Information Security program.
2-3 years of information security experience.
Demonstrated experience of various IT platforms (i.e. networking, system admin, scripting etc.).
Demonstrate experience with some of the following systems/methodologies or be interested in expanding domain expertise to include:
Networking
Enterprise ticketing systems (e.g. ServiceNow)
Cloud technologies (e.g. Azure, AWS, O365, GCP)
Scripting languages (Python, Shell, PowerShell)
Log management/SIEMs (e.g. Azure Sentinel , Splunk)
IDS/IPS
Web content filtering
DLP
EDR
EPM
Active Directory/Azure AD
Identity Management & Governance
Container Security
Application Security (SCA, DAST, SAST)
Threat & Vulnerability Management
Email Security
Bug Bounty Program
Public Key Infrastructure (PKI) and TLS Certificate
Strong verbal and written communication and interpersonal skills as you will be interfacing with many internal customers.
Ability to juggle multiple projects and priorities.
Willing to work in shifts
$65k-92k yearly est. Auto-Apply 34d ago
Network System Engineer (4059) INFORMATION SERVICES LCSB
Lexington Clinic 4.4
Security engineer job in Lexington, KY
The Network System Engineer will be responsible for designing, implementing, and maintaining the clinic's network and telecommunications infrastructure. This role is to ensure the stability and integrity of voice, data, video, and wireless network services. This role will collaborate closely with the Chief Systems Architect, Director of IT Infrastructure and Operations, and other IT resources to execute the technology roadmap in alignment with the overall strategic plan. The Network Systems Engineer will also work closely with other internal and external resources as needed to perform their duties.
PREFERRED QUALIFICATIONS:
Education: A bachelor's degree in computer science, information technology, or a related field is preferred. However, industry experience and relevant certifications may be considered in place of a degree. i.e., Cisco Networking or Cisco Contact Center Certifications or CompTIA Network+ are a plus.
Experience: A minimum of 5 years of experience in design, implementation and support of enterprise network and telecommunication environments. Ideally the candidate will have experience in medium to large environments. Past experience in healthcare organization is a plus, but not a requirement.
Technical expertise: The ideal candidate should have experience or proficiency in configuring routers, switches, firewalls, VLANs, VPNs and other network devices according to design specifications. The ideal candidate should have some experience in support of enterprise phone systems including call center systems, call routing, etc. The candidate must have experience monitoring network performance, availability, and security to ensure optimal operation. Ability to maintain routine tasks, such as firmware updates and patching. Ability to troubleshoot and resolve network\phone system outages and performance issues in a timely manner. Maintain accurate and up-to-date documentation, including network and phone system diagrams, configurations, and inventory records. Analyze network and phone system usage patterns to plan for capacity upgrades and improvements as the organization grows. Provide guidance and support in maintaining phone extensions, call routing, voicemail and auto-attendant systems as needed.
Analytical and problem-solving skills: Must possess strong analytical and problem-solving skills to identify and solve complex issues efficiently and effectively.
Knowledge of industry regulations: S hould have a thorough understanding of industry regulations, such as HIPAA and HITECH, and ensure that all systems are designed and implemented in compliance with these regulations.
Collaborating with stakeholders: Must be able to collaborate with stakeholders across the organization, including business leaders, IT teams, and external partners. They must have excellent communication skills and be able to communicate effectively with technical and non-technical stakeholders to ensure that everyone is aligned and working towards the same goals.
Providing technical leadership: Should provide technical guidance to the technology team, leveraging their expertise in the technology landscape, industry trends, and emerging technologies to ensure that the organization is utilizing the most efficient and effective solutions.
Adaptability: Must be able to adapt to new technologies, software, and regulatory changes that arise as healthcare IT systems continue to evolve.
Project management skills: Should possess experience in project management, including planning, budgeting, and tracking progress to ensure timely project delivery.
Technology budgets: Should collaborate with all the IT Directors, to provide input on technology budgets for projects and initiatives.
Ensuring system security and stability: Responsible for ensuring that the organization's technology systems are secure and stable. They should work closely with all the IT Directors and security teams to ensure that systems are protected from potential threats.
Cisco Phone System Requirements: Demonstrated experience with Cisco enterprise phone systems, including configuration, deployment, and ongoing support. Ability to manage Cisco call routing, voicemail, auto-attendant, and call center features. Proficiency in troubleshooting Cisco phone system outages and performance issues. Maintain accurate documentation for Cisco phone system configurations and inventory.
Data Cabling & Punch Down Skills: Skilled in pulling, terminating, and testing data cables (Cat5e, Cat6, etc.) for network and phone systems. Ability to perform punch downs on patch panels, phone blocks, and network jacks according to industry standards.
Ensure all cabling work meets organizational and regulatory requirements for reliability and safety.
Switch & Wireless Access Point Deployment: Experience deploying, configuring, and maintaining enterprise-grade network switches. Ability to install and set up wireless access points, ensuring optimal coverage and security. Perform upgrades and expansions of network infrastructure as needed, including physical installation and logical configuration.
Familiarity with Data Rack Styles: Demonstrated knowledge of various data rack styles and configurations, including experience working in unconventional or challenging data closet environments. Ability to adapt installation and maintenance practices to suit unique physical layouts and constraints.
PHYSICAL GUIDELINES:
Physical guidelines include the ability to move, traverse, position self, remain in a stationary position and negotiate steps for up to eight hours per day; use basic office equipment; visual and auditory acuity.
NOTE:
This document is intended to describe the general nature and level of work performed. It is not intended to act as an exhaustive list of all duties, skills, and responsibilities required of personnel so classified. Attendance is an essential function of the job.
LEXINGTON CLINIC IS AN EQUAL OPPORTUNITY EMPLOYER (EOE)
$78k-99k yearly est. Auto-Apply 11d ago
Network Engineer II
Bluegrass Cellular 3.6
Security engineer job in Elizabethtown, KY
Bluegrass Network is looking to expand its community with a knowledgeable, experienced professional to join our team as a Network Engineer II. This position is located in Elizabethtown, Kentucky.
The Network Engineer II is responsible for support and maintenance of the Bluegrass Network Enterprise and ISP networks. This includes all networks for the ISP (cellular backhaul, ethernet services, video services, internet services). It also involves working on assigned task for projects in partner networks.
Job Duties:
• Provide day-to-day support, proactive maintenance, and perform independent troubleshooting.
• Responsible for configuring new circuits and devices.
• Upgrade and maintain asset inventory lists and network drawings.
• Troubleshoot connectivity issues related to the Enterprise and ISP networks.
• Prepare and maintain network diagrams and support documentation.
• Participate in projects related to Bluegrass Network Enterprise and ISP networks
• Participate in projects with partner companies.
• Cisco Call Manager and Contact Center administration.
Requirements:
• 3+ years network experience.
• Understanding of dynamic routing protocols such as OSPF, IS-IS, BGP, and MP-BGP
• Experience with routers, switches, collaboration platforms, and firewalls
• Strong communication skills to work as part of a team and work with internal customers, external customers, and vendors.
Desired:
• Ideal candidate will have strong understanding of MPLS, EVPN, L2VPN, and L3VPN
• Experience with Cisco ISE would be a plus.
• Cisco CCNA certification.
How much does a security engineer earn in Elizabethtown, KY?
The average security engineer in Elizabethtown, KY earns between $62,000 and $113,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.
Average security engineer salary in Elizabethtown, KY