Product Security Engineer
Security Engineer Job 23 miles from Elyria
Our client is looking for a Product Security Engineer to join its Office of Product Safety and Security (OPSS). This role is part of the Product Security Incident Response Team (PSIRT), which manages product security vulnerabilities and coordinates resolution and disclosure efforts.
The ideal candidate will have a background in cybersecurity and an interest or experience in OT product environments or incident response. You'll work closely with internal teams, external researchers, and industry partners to address reported vulnerabilities and improve overall product security.
Required Experience:
3+ years in cybersecurity, vulnerability management, or a related role
Experience working with OT (Operational Technology) device automation systems
Familiarity with vulnerability management platforms
Understanding of common security vulnerabilities and mitigation techniques
Experience coordinating responses to security incidents and vulnerabilities
Strong analytical and problem-solving skills
Excellent communication and collaboration abilities
Ability to work effectively in cross-functional teams
Preferred Experience:
Experience on a PSIRT (Product Security Incident Response Team)
Knowledge of public vulnerability disclosure processes and CNA (CVE Numbering Authority) guidelines
Experience administering or supporting bug bounty programs
Familiarity with incident response procedures and coordination practices
Relevant cybersecurity certifications (e.g., CEH, OSCP, GCIH)
Understanding of regulatory and industry standards (e.g., ISA/IEC 62443, NIST 800-82, ISO 27001/27017, NIS2, CRA, CIP Security)
Experience coordinating with external researchers and third-party reporting bodies (e.g., CISA, national CERTs)
Lead Firewall & Security Engineer
Security Engineer Job 23 miles from Elyria
Work you'll do Provides engineering, security compliance and administration of the firewalls. The position works closely with other Deloitte groups and vendors to provide exceptional customer support. Including the Deloitte Cyber organization for any requests about security compliance from the different agencies and to mitigate any gaps.
Creates configurations and scripts for enterprise deployment of solutions that align business and DT - US strategies.
Responsible for providing second level incident support, defining, and updating standards, ensuring compliance on all internal and external projects, enforcing consistent policies and processes.
Contributes to the transition of new technologies between Architecture and Engineering and confirms all appropriate documents and processes are developed.
Recruiting for this role ends on August 31, 2025
Responsibilities:
* Manages the day-to-day activities of design, analysis, planning, and implementation.
* Oversees the development and evaluation of network performance criteria and measurement methods for short-team and long-term needs including capacity.
* Evaluates network architecture design, in addition to feasibility and cost studies
* Monitors performance and health, ensures capacity planning is performed, and assesses and makes recommendations for improvement.
* Provide skilled expertise for the compliance, engineering, administration and 24x7 operations of the firewalls serving the Deloitte Federal practice.
* Perform routine assessments of system hardening in accordance with DOD security technical implementation guides (STIGs).
* Ensure the maximum information assurance (IA) compliance of DODIN-N systems
* Lead service request fulfilment for firewall policy and other security extension changes (VPN, IPS, URL Filtering, Application Control, etc.).
* Provide visibility and insight to assist customers with firewall activity and usage information.
* For the Federal firewalls, first responder to monitored alerts, incidents, and issues.
* Lead the follow through with firm and vendor resources to close out availability, performance, and security incidents that involve firewalls.
* Accountable for executing tasks according to established standards, procedures, and processes. Assist to develop new standards, procedures and processes.
* Performs other job-related duties as assigned.
* Ability to manage support cases with external technology vendors.
The team
Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.
The ~3,000 professionals in DT - US deliver services including:
* Cyber Security
* Technology Support
* Technology & Infrastructure
* Applications
* Relationship Management
* Strategy & Communications
* Project Management
* Financials
Technology & Infrastructure
The Technology and Infrastructure Organization works together to transform how DT - US deploys technologies and services to meet the dynamic needs of Deloitte professionals and help increase their productivity.
Required Qualifications:
* 8+ years in supporting infrastructure environments but not limited to security/firewall, networks, systems
* 3+ years of experience in related experience in firewall environments performing engineering (hardware and software) and operations.
* Bachelor's degree in Computer Science, Computer Engineering, Business Administration or similar and/or additional relevant professional experience.
* Ability to travel 0-10%, on average, based on the work you do and the clients and industries/sectors you serve
* Must be a US Citizen (GPS initiatives)
Preferred Qualifications:
* Expert level knowledge of Checkpoint or Palo Alto.
* Advanced level skill in firewall policy management.
* Knowledge of monitoring tools and commands to ensure quick resolution to issues.
* Hands-on experience with security policy and automation tools such as Firemon, Tufin. Algosec...
* Knowledge on Scripting language.
* Knowledge of LAN/WAN and network protocols.
* Experience in security assessments and audits, ensuring compliance with industry standards and best practices, and addressing vulnerabilities proactively.
* Knowledge of applying DoD STIGs to network equipment
* Knowledge of information assurance (IA) compliance of DODIN-N systems
Information for applicants with a need for accommodation: ************************************************************************************************************
The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $88,600 to $181,900.
You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.
EA_ExpHire
#LH-1
Recruiting tips
From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.
Benefits
At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.
Our people and culture
Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.
Our purpose
Deloitte's purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.
Professional development
From entry-level employees to senior leaders, we believe there's always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.
As used in this posting, "Deloitte" means Deloitte Services LP, a subsidiary of Deloitte LLP. Please see ************************* for a detailed description of the legal structure of Deloitte LLP and its subsidiaries.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Qualified applicants with criminal histories, including arrest or conviction records, will be considered for employment in accordance with the requirements of applicable state and local laws, including the Los Angeles County Fair Chance Ordinance for Employers, City of Los Angeles's Fair Chance Initiative for Hiring Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act. See notices of various fair chance hiring and ban-the-box laws where available. Fair Chance Hiring and Ban-the-Box Notices | Deloitte US Careers
Requisition code: 302348
Job ID 302348
Cyber Security Engineer
Security Engineer Job 23 miles from Elyria
* Apply security protocols. - Conduct NIST 800 auditing. - Make internal changes and recommendations for data protection. - Ensure backups are set up properly, running, and tested. - Migrate hardware machines to virtual machines. - Upgrade SQL databases. - Install software. - Ensure the network is secure. - Ensure antivirus software is up to date. - Troubleshoot network issues and review network reports. - Troubleshoot hardware issues.
Skills
cyber security, server management, network security, windows, nist, linux
Top Skills Details
cyber security,server management,network security,windows,nist
Experience Level
Intermediate Level
Pay and Benefits
The pay range for this position is $36.00 - $57.69/hr.
Eligibility requirements apply to some benefits and may depend on your job
classification and length of employment. Benefits are subject to change and may be
subject to specific elections, plan, or program terms. If eligible, the benefits
available for this temporary role may include the following:
* Medical, dental & vision
* Critical Illness, Accident, and Hospital
* 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available
* Life Insurance (Voluntary Life & AD&D for the employee and dependents)
* Short and long-term disability
* Health Spending Account (HSA)
* Transportation benefits
* Employee Assistance Program
* Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type
This is a fully onsite position in Cleveland,OH.
Application Deadline
This position is anticipated to close on Jun 13, 2025.
About Actalent
Actalent is a global leader in engineering and sciences services and talent solutions. We help visionary companies advance their engineering and science initiatives through access to specialized experts who drive scale, innovation and speed to market. With a network of almost 30,000 consultants and more than 4,500 clients across the U.S., Canada, Asia and Europe, Actalent serves many of the Fortune 500.
The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
If you would like to request a reasonable accommodation, such as the modification or adjustment of the job application process or interviewing due to a disability, please email actalentaccommodation@actalentservices.com for other accommodation options.
Software Security Engineer
Security Engineer Job 40 miles from Elyria
div class="job-preview-details" divp /pp LayerZero Power Systems Inc. is a globally recognized leader in providing state-of-the-art power distribution solutions for critical industries. With a strong focus on reliability, innovation, and customer satisfaction, we deliver advanced power systems products that ensure uninterrupted and dependable power supply in mission-critical environments. Our customer base comprises companies in the transaction processing, financial, computer service provision, and semiconductor manufacturing sectors. LayerZero manufactures “Best in Class” products that represent high-end industrial solutions. LayerZero Power Systems is on a trajectory of sustained growth, with a loyal base of existing Fortune 100 customers and an expanding portfolio of new customers. To meet the challenges of growth and opportunities, LayerZero Power Systems is seeking a Software Engineer with specialization in software security to join the engineering team./ppstrong Position Description: /strong/pp The successful candidate will participate in new product development projects, application and production engineering of existing products, and the processes that bring them to fruition. A Software Security Engineer works with the rest of the Software Engineering team to ensure that security is taken into consideration at all stages of the Software Development Life Cycle, from capturing and enumerating requirements until end-of-life deprecation. The successful candidate will be responsible for testing, analysis, and recommendations for the security of our products. Planning and process monitoring throughout the software life cycle are integral to the position's responsibilities, as are specification, coding, testing, and QA/QC of the product./p/div
div class="job-listing-header"Requirements/div
div data-bind="html: Job.Requirements"align-center strong***THIS IS AN ON-SITE POSITION AND YOU NEED TO LIVE NEAR AURORA, OHIO, TO BE CONSIDERED***/strong/align-centerulli Review relevant security standards and perform gap analysis on existing and future products./lili Under the direction of Senior Engineers, collaborate in design and design review to ensure that new products meet functional and non-functional security requirements./lili Perform risk analysis and penetration testing on past and current products./lili Regularly review and evaluate CVEs for applicability to our products./lili Assist the software team in ensuring compliance with code and security standards./lili Use automated testing tools to provide test-driven assurance./lili Create configurations and manufacturing documents for software-based COTS appliances./lili Participate in software team code reviews via online tools./lili Work with customers, both within LayerZero and end users, to define and capture software requirements./lili Provide Tier 2 technical support./li/ulpstrong Experience amp; Skills:/strong/pulli CREST or OSCP certification in penetration testing is highly desired/lili Working knowledge or experience with C/C++ programming is a must/lili Coursework or experience with Linux or other embedded OS is required/lili Experience with microprocessors, microcontrollers, and embedded systems./lili Working knowledge of Windows and Linux application development./lili Working knowledge of scripting languages and other open-source components, e.g., Bash, Python, PHP, JavaScript, MySQL./lili In-depth knowledge of SEI CERT Coding Standards./lili In-depth knowledge of IEC 62443, NIST 800-218, and OWASP ASVS./lili Experience with vulnerability detection tools./lili Experience with version control and source code management tools./lili At least 2 years of working experience in computer engineering or a related field./li/ulpstrong Education:/strong/pulli Bachelor of Science in Computer Engineering, Bachelor of Computer Science, or related degree /lili US Citizenship of C1 Permanent Resident Alien status /li/ulpstrong What We Offer:/strong/pulli Competitive salary /lili Performance-based incentives/lili100% company-paid benefits package, including medical, dental, and vision coverage/lili 401k with company match/lili Paid time off/Holiday pay/liliA positive and collaborative work environment./li/ulpstrong Why You Will Love Working with Us/strong:/pulli Impact: Develop your skills and expertise in a rapidly growing industry, with your work directly influencing the success of mission-critical projects./lili Innovation: Immerse yourself in an environment that celebrates forward-thinking and continuous improvement./lili Collaborative spirit: Work closely with engineers, marketers, and other professionals to bring ideas to life./lili Grow with us: We are committed to your personal and professional development, offering endless opportunities to improve your skills and advance your career./li/ulpem LayerZero will provide equal employment opportunity without regard to race, color, religion, sex, age, national origin, disability, marital status, ancestry, or status as a veteran, as defined and required by law. This policy applies to all areas of employment, including recruitment, hiring, training and development, promotion, transfer, termination, layoff, compensation, benefits, social and recreational programs, and all other conditions and privileges of employment in accordance with applicable national, state, and local laws (i.e. Civil Rights Act, Human Rights Act, European Convention on Human Rights)./em /p/div
/div
SAP Security Senior Analyst
Security Engineer Job 32 miles from Elyria
Eaton's Corporate Sector division is currently seeking a SAP Security Senior Analyst. The expected annual salary range for this role is $83250.0 - $122100.0 a year. Please note the salary information shown above is a general guideline only. Salaries are based upon candidate skills, experience, and qualifications, as well as market and business considerations.
What you'll do:
Job Summary
Purpose: The SAP Security Senior Analyst will support the SAP landscape by maintaining, updating, and developing solutions to address business and technical requirements, leveraging standard principles and patterns.
Job Responsibilities
1. Provides subject matter expertise to support and develop solutions for the SAP application security environments from design through implementation.
2. Works with cross functional teams to understand end user requirements while meeting compliance objectives.
3. Makes changes to roles and configuartion to support day-to-day operations of the environments.
4. Ability to work on larger projects and work independently to complete required deliverables in a timely manner. This would include all project phases from requirements gathering to post go-live support.
5. Ensures end user and internal documentation is updated to improve end user experience and support knowledge sharing amongst the team.
6. Has a continuous improvement mindset to help make the environment more efficient and secure.
7. Ability to manage time and multi-task between larger project efforts and day-to-day operational support.
8. Provides direction and support to the Application Managed Services provider to maximize their productivity.
Qualifications:
Required Basic Qualifications:
* Bachelors ..or.. Associates degree from an accredited institution.
* 3+ years experience supporting SAP within a large global corporation.
* 3+ years experience providing subject matter expertise to support and develop solutions for SAP application security environments.
* Only candidates currently living within a 50-mile radius of posted geographical areas will be considered for this role .
* Must be legally authorized to work in the United States without corporate sponsorship now or in the future.
Preferred Qualifications:
* Bachelor's degree in Computer Science or related field.
* Significant Knowledge of SAP and IT Security practices.
* Previous experience working with global cross functional teams to understand end user requirements while meeting compliance objectives.
* Previous experience with SAP configurations to support day-to-day operations.
* Ability to work on IT projects and work independently to complete required deliverables in a timely manner. This would include all project phases from requirements gathering to post go-live support.
* Excellent communication skills, both written and verbal. This position will often work with other business analysts, project managers and business teams on a regular basis.
* Good team-oriented interpersonal skills.
* Good team player, self-motivated and committed with an ability to work under pressure with tight deadlines.
Technical knowledge
* Ability to maintain roles, Fiori layer support, and be able to troubleshoot issues.
* Familiarity with:
* ECC
* S/4
* BW
* SAP Fiori
* GRC Access Control and Process Control
* Solution Manager and ChARM Navigation
* GTS
* Ability to analyze data with standard Microsoft Office tools
Skills:
Soft skills
* Excellent proficiency with the English language (written and verbal). Strong analytical and problem-solving skills
We are committed to ensuring equal employment opportunities for all job applicants and employees. Employment decisions are based upon job-related reasons regardless of an applicant's race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, marital status, genetic information, protected veteran status, or any other status protected by law.
Eaton believes in second chance employment. Qualified applicants with arrest or conviction history will be considered regardless of their arrest or conviction history, consistent with the Los Angeles County Fair Chance Ordinance, the California Fair Chance Act and other local laws.
You do not need to disclose your conviction history or participate in a background check until a conditional job offer is made to you. After making a conditional offer and running a background check, if Eaton is concerned about conviction that is directly related to the job, you will be given the chance to explain the circumstances surrounding the conviction, provide mitigating evidence, or challenge the accuracy of the background report.
To request a disability-related reasonable accommodation to assist you in your job search, application, or interview process, please call us at ************** to discuss your specific need. Only accommodation requests will be accepted by this phone number.
We know that good benefit programs are important to employees and their families. Eaton provides various Health and Welfare benefits as well as Retirement benefits, and several programs that provide for paid and unpaid time away from work. Click here for more detail: Eaton Benefits Overview. Please note that specific programs and options available to an employee may depend on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.
Information Security Architect
Security Engineer Job 25 miles from Elyria
The Information Security Lead Architect is responsible for leading the design and implementation of comprehensive security architecture solutions. The role provides expertise in security frameworks, technologies, and best practices to assess security risks, define security requirements, and develop strategies to mitigate vulnerabilities. The role will involve designing secure network architectures, implementing access controls, and establishing encryption mechanisms. Additionally, the role plays a crucial part in conducting risk assessments, identifying gaps in security controls, and developing remediation plans. As a leader in the field, the role provides guidance, mentorship, and direction to the security team, fostering a culture of continuous improvement and ensuring compliance with industry regulations and standards. The role serves as a technical subject matter expert on moderate to high complexity initiatives, directly engaging in the selection, design, implementation and troubleshooting of security solutions.
#LI-DNI
Security Engineer (Zero Trust)
Security Engineer Job 15 miles from Elyria
At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company's success. As a Security Engineer within PNC's Technology organization, you will be based in Pittsburgh, PA; Cleveland, OH; Birmingham, AL or Dallas, TX. The position is primarily based in a PNC location. Responsibilities require time in the office or in the field on a regular basis. Some responsibilities may be performed remotely, at the manager's discretion.
PNC will not provide sponsorship for employment visas or participate in STEM OPT for this position
A zero trust security engineer is a specialist who helps organizations adopt a more robust and resilient security posture by implementing a zero trust security model. They are responsible for protecting sensitive data and preventing breaches by continuously verifying and monitoring access to resources. Zero trust security posture works by continuously verifying and authenticating connections between users, applications, devices and data.
* Zero Trust - design and configure capabilities
* Large scale security initiatives
* Identity - Create and enforce policies that limit access to resources based on user identity, device posture etc.
* Endpoint - Set up and manage various tools, firewall, EDR, and SIEM systems
network - app sec
* Configure new tool and enable security controls that aligned to zero trust
* Identify incidents, root causes and implement effective solutions
Qualifications:
* Network Security - Deep understanding and experience with network security principles - firewalls, VPN's, Zero Trust Network Access solutions
* Cloud Security - AWS/Azure - Ability to design, implement and manage Zero Trust cloud security solutions
* Zero Trust - expertise in zero trust principles; MFA; IAM
* Expert analytical and problem solving skills
Job Description
* Provides subject matter expertise when applying security concepts. Leverages technical knowledge and industry experience to design, build, and maintain technology solutions. Responsible for deliverables related to project timelines.
* Responsible for working with architecture to take high level architectural designs and determine the specifics around implementation details (ex: sizing) integration details, onboarding and operationalization.
* Evaluates patches, updates, and ongoing maintenance. Determines impacts to existing solutions when new standards are implemented. Utilizes change control and other governance processes to ensure alignment of solutions .
* Develops detailed implementation, configuration, design, and engineering documentation. Build and implement solutions.
* Works with operational partners to enable transition and day-to-day supportability.
* Provides engineering support to existing technology in a production environment and collaborating with other groups as required. Seeks opportunities to grow a broad knowledge base to complement specific subject matter expertise.
PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:
* Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.
* Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.
Qualifications
Successful candidates must demonstrate appropriate knowledge, skills, and abilities for a role. Listed below are skills, competencies, work experience, education, and required certifications/licensures needed to be successful in this position.
Preferred Skills
Access Control (AC), Building Architecture, Customer Solutions, Disaster Recovery Planning, Information Security, Network Security, Physical Security, Risk Assessments, Security Technologies
Competencies
Analytical Thinking, Effective Communications, Information Security Management, Information Security Technologies, IT Environment, IT Standards, Procedures & Policies, IT Systems Management, Network and Internet Security, Problem Solving, Technical Troubleshooting
Work Experience
Roles at this level typically require a university / college degree, with 5+ years of industry-relevant experience. Specific certifications are often required. In lieu of a degree, a comparable combination of education, job specific certification(s), and experience (including military service) may be considered.
Education
Bachelors
Certifications
No Required Certification(s)
Licenses
No Required License(s)
Pay Transparency
Base Salary: $65,000.00 - $165,600.00
Salaries may vary based on geographic location, market data and on individual skills, experience, and education. This role is incentive eligible with the payment based upon company, business and/or individual performance.
Application Window
Generally, this opening is expected to be posted for two business days from 05/27/2025, although it may be longer with business discretion.
Benefits
PNC offers a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include: medical/prescription drug coverage (with a Health Savings Account feature), dental and vision options; employee and spouse/child life insurance; short and long-term disability protection; 401(k) with PNC match, pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption, surrogacy, and doula reimbursement; educational assistance, including select programs fully paid; a robust wellness program with financial incentives.
In addition, PNC generally provides the following paid time off, depending on your eligibility: maternity and/or parental leave; up to 11 paid holidays each year; 8 occasional absence days each year, unless otherwise required by law; between 15 to 25 vacation days each year, depending on career level; and years of service.
To learn more about these and other programs, including benefits for full time and part-time employees, visit Your PNC Total Rewards.
Disability Accommodations Statement
If an accommodation is required to participate in the application process, please contact us via email at AccommodationRequest@pnc.com. Please include "accommodation request" in the subject line title and be sure to include your name, the job ID, and your preferred method of contact in the body of the email. Emails not related to accommodation requests will not receive responses. Applicants may also call ************ and say "Workday" for accommodation assistance. All information provided will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
At PNC we foster an inclusive and accessible workplace. We provide reasonable accommodations to employment applicants and qualified individuals with a disability who need an accommodation to perform the essential functions of their positions.
Equal Employment Opportunity (EEO)
PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.
This position is subject to the requirements of Section 19 of the Federal Deposit Insurance Act (FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage Licensing Act of 2008 (SAFE Act) and/or the Financial Industry Regulatory Authority (FINRA), which prohibit the hiring of individuals with certain criminal history.
California Residents
Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.
Senior Security Engineer - W2
Security Engineer Job 23 miles from Elyria
divstrong style="color: rgb(77, 79, 92);"Role : /strongstrong Senior Security Engineer/strong/divdivstrong style="color: rgb(77, 79, 92);"Location: /strongstrong Cleveland, OH/strong/divdivstrong style="color: rgb(77, 79, 92);"Experience : 7+ years/strong/divdivbr//divdivstrong style="color: rgb(77, 79, 92);"W2 Contract/strong/divdivem style="color: rgb(77, 79, 92);" /em/divdivem style="color: rgb(77, 79, 92);" /em/divdivem style="color: rgb(77, 79, 92);"Required Skills/em/divdivstrong style="color: rgb(77, 79, 92);"3-5 years of experience Cisco Firepower Fortnet Fortigate Cisco ASA Setting up and managing Firewalls General Networking - Routing/Switching - CISCO/strong/divdivem style="color: rgb(77, 79, 92);"Additional Skills/em/divdivstrong style="color: rgb(77, 79, 92);"Fortnet Forimanager Fortiauthenticate/strong/divdivem style="color: rgb(77, 79, 92);"Job Description/em/divdivspan style="color: rgb(46, 46, 46);"A typical day of a Security Engineer revolves around system changes, lifecycle of firewalls, and the user VPN environment.
It is the responsibility of this individual for device monitoring and response, proactive fault management, vendor engagement, vulnerabilities, and compliance of these systems.
/span/divdivspan style="color: rgb(46, 46, 46);"The engineer will design, build, and administrate the security infrastructure of the Fortinet firewalls and Cisco VPN environment.
Even though their job focusses more on the technical aspects, candidates will need to possess strong communication and organizational skills as the engineer will engage with other departments and vendors.
The engineer will participate in the corporate change management process and would be required to complete these changes during nights and weekends.
/span/divdivspan style="color: rgb(46, 46, 46);"The engineer will be responsible for troubleshooting firewall and VPN incidents, identifying root cause of incidents, and making appropriate recommendations to resolve them.
The individual will need to review vulnerability, compliance risks, and fault analysis on perimeter devices and develop and implement remediation plans.
This individual will also participate in the on-call rotation and annual projects as assigned.
/span/divdivspan style="color: rgb(46, 46, 46);" /span/divdivspan style="color: rgb(46, 46, 46);"Summary: /span/divdivspan style="color: rgb(46, 46, 46);"Potential candidates will have a strong networking background with a proven history of network security expertise focused on VPN and Firewall technologies.
The selected candidate will be mainly responsible for administering and supporting security solutions in a large enterprise environment.
Excellent communication skills and the ability to solve complex problems are desired.
/span/divdivspan style="color: rgb(46, 46, 46);" /span/divdivspan style="color: rgb(46, 46, 46);"Detailed Description: /span/divdivspan style="color: rgb(46, 46, 46);"Provide network security diligence in configuration, implementation and support of enterprise assets such as firewalls and remote access.
Responsibilities include ongoing management and support of security infrastructure in a large environment.
Must be able to analyze situations, assess risk and determine appropriate actions necessary to complete requests or support the infrastructure.
Must exercise good judgment in the handling of security related matters, must be sensitive to both legal and personnel related ramifications of their actions.
Candidate will work to ensure that the security of enterprise devices is kept within an acceptable level of risk.
Provide routine maintenance to components and systems.
Providing 24/7 support of security systems as necessary to proactively protect the integrity, confidentiality, and availability of information of the company.
Tasks may include updating systems, researching logs, reporting metrics, time reporting, Change Control records, production documentation, etc.
/span/divdiv /divdivbr//div
Senior Security Engineer - SSO / Web Security
Security Engineer Job 15 miles from Elyria
div itemprop="description"section class="job-section" id="st-company Description"divp class="googlejobs-paragraph--empty"/ph2 class="title"Company Description/h2/divdiv class="wysiwyg"pFinancial Services - Commercial Banking/p/div/sectionsection class="job-section" id="st-"divp class="googlejobs-paragraph--empty"/ph2 class="title"/h2/divdiv class="wysiwyg" itemprop="responsibilities"pSenior Security Engineer - SSO / Web Security/pp Pittsburgh Pennsylvania/pp Strongsville, OH/pp/pp Exp 5-7 yrs/pp Deg Bachelors/pp Occasional Travel/pp /pp Job Description/pp /pp As an Infrastructure Engineer Senior and a member of our Information Technology, you will be part of a diversified financial services firm that reflects the needs, values and goals of our customers, employees, communities and shareholders.
You will be institutional in helping to maintain our reputation for technology excellence in both business applications and new innovations.
/pp /pp As an Infrastructure Engineer you will provide accurate and cost efficient security maintenance and support services to internal amp; external clients.
Responsibilities include ongoing management and support of security infrastructure in a large environment.
Must be able to analyze situations, assess risk and determine appropriate actions necessary to remediate risk.
This individual must be able to work with internal technology groups to coordinate deployment of solutions.
Must exercise good judgment in the handling of security related matters, must be sensitive to both legal and personnel related ramifications of their actions.
Provide consulting support in area of responsibility to other internal teams.
Participate in providing 24/7 support of security systems as necessary to proactively protect the integrity, confidentiality, and availability of information of the company.
Perform administrative tasks including updating and maintaining trouble logs, metrics, time reporting, Change Control records, production documentation, etc.
Maintains expertise on the security products and functions supported through continued education and training.
/pp /pp Work hours 8-5 with 24x7 on call rotation duties.
/pp /pp Summary:/pp This position will be responsible for supporting systems and solutions within Cyber Security specifically authentication and authorization.
Support will not be limited to break-fix situations, but also includes implementation activities and day-to-day administration of devices amp; solutions.
Opportunities to cross train on other security platforms.
/pp /pp Requirements:/pp• 4-7 years experience in Information Technology/pp• Possess an expert level and thorough understanding of IT concepts including network structures, operating system capabilities, and application architecture requirements/pp• Strong understanding of web based applications/pp• Unix / Linux, TCP/IP networking proficiency/pp• Strong verbal and written communication skills/pp• Programming / scripting experience preferred/p/div/sectionsection class="job-section" id="st-additional Information"divp class="googlejobs-paragraph--empty"/ph2 class="title"Additional Information/h2/divdiv class="wysiwyg" itemprop="incentives"All your information will be kept confidential according to EEO guidelines.
br/br/span Direct Staffing Inc/spanbr/br/br//div/section/div
Product Security Engineer
Security Engineer Job 35 miles from Elyria
Rockwell Automation is a global technology leader focused on helping the world's manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who make the world better every day, we know we have something special. Behind our customers - amazing companies that help feed the world, provide life-saving medicine on a global scale, and focus on clean water and green mobility - our people are energized problem solvers that take pride in how the work we do changes the world for the better.
We welcome all makers, forward thinkers, and problem solvers who are looking for a place to do their best work. And if that's you we would love to have you join us!
Product Security Engineer
As a Product Security Engineer, you will lead Digital & Platform Technologies (DPT) Business Unit products in meeting Rockwell Security Development Lifecycle (SDL) requirements. This includes providing guidance and oversight of individual teams, as well as developing tools and documentation related to security requirements compliance. You will report to the Product Security Leader and work onsite in Milwaukee, WI or Mayfield Heights, OH.
Your Responsibilities:
* Support implementation of security policies and standards across the DPT portfolio.
* Guide and review product implementation of security controls, threat modeling and security activities such as fuzz testing, SAST, etc.
* Manage vulnerability assessment process for the DPT business unit.
* Perform security reviews of product architectures and implementations. Provide expertise and guidance to teams on security-related issues.
* Contribute to the development and improvement of Rockwell security policies and procedures.
The Essentials - You Will Have:
* Bachelor's degree in relevant field.
* Legal authorization to work in the US is required. We will not sponsor individuals for employment visas, now or in the future, for this job opening.
The Preferred - You Might Also Have:
* Typically requires a minimum of 5 years of related experience.
* Bachelor's degree in Computer Engineering, Computer Science, Cyber Security, or Electrical Engineering with a Computer Science emphasis.
* Familiarity with software security verification and validation techniques such as threat modeling, web application vulnerability scanning, or penetration testing.
* Experience with the application of Secure Development Lifecycle in product development.
* Experience using multiple programming techniques and scripting languages, particularly Python, including co-op/internship experience
* Experience with Source Code Review
* Familiarity with security standards and regulations like: IEC 62443, NIST Cybersecurity Framework, EU Cyber Resilience Act, US SSDF.
* Experience with threat modeling software products
* Experience with embedded software development and testing.
* Experience programming in object-oriented languages like C++, including co-op/internship experience.
* Experience working in a Continuous Integration/DevOps environment.
* Experience using software security testing tools such as Burp Suite, Peach Fuzzer, including any co-op/internship experience.
What We Offer:
* Health Insurance including Medical, Dental and Vision
* 401k
* Paid Time off
* Parental and Caregiver Leave
* Flexible Work Schedule where you will work with your manager to enjoy a work schedule that can be flexible with your personal life.
* To learn more about our benefits package, please visit at ********************
At Rockwell Automation we are dedicated to building a diverse, inclusive and authentic workplace, so if you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right person for this or other roles.
#LI-PD1
#LI-Hybrid
#lifeatrok
We are an Equal Opportunity Employer including disability and veterans.
If you are an individual with a disability and you need assistance or a reasonable accommodation during the application process, please contact our services team at *****************.
Rockwell Automation's hybrid policy aligns that employees are expected to work at a Rockwell location at least Mondays, Tuesdays, and Thursdays unless they have a business obligation out of the office.
It Security Engineer
Security Engineer Job 23 miles from Elyria
Job Title: IT Security Engineer
Salary: $85,000 - $90,000 (Negotiable, based on experience)
Work Arrangement: 3 days in the office, 2 days remote
Responsibilities:
Maintain the daily operations of various security products and platforms.
Identify, investigate, escalate, or resolve security events detected by security products or services through log analysis and other alert mechanisms.
Implement new security products, services, or procedures to enhance our security posture.
Create and maintain documentation, including security policies and procedures.
Provide valuable input to the enterprise security architecture.
Collaborate in the evaluation and selection of new security products or services.
Assist in the development and review of security procedures.
Contribute to the planning, design, and testing of business continuity and disaster recovery plans.
Participate in the vulnerability assessment process.
Stay current with IT security trends, vulnerabilities, and products to proactively address emerging threats.
Requirements:
Bachelor's or Associate degree in Computer Science, Engineering, Information Technology, or equivalent experience with industry certifications (CompTIA, GIAC, Cisco, or ISC2).
Strong knowledge of firewalls, network security concepts, and end-point security products.
Understanding of Ethernet and TCP/IP networking fundamentals.
Familiarity with the current threat landscape, including threat actors, APT, and cybercrime.
Proficiency in Linux and Windows server administration.
Knowledge of cybersecurity tools, including end-point detection, email security solutions, security awareness training solutions, privileged access management solutions, and other security-related technologies.
Familiarity with Microsoft Defender and Sentinel is a plus.
Understanding of PKI and certificate lifecycle management.
Ability to prioritize and execute tasks efficiently in a high-pressure environment.
Strong research skills to stay updated on security issues and products.
Excellent collaboration skills to work effectively with colleagues from diverse technology and non-technology backgrounds.
Effective business communication skills in both oral and written forms.
Analytical and problem-solving skills.
Ability to assess risk using both quantitative and qualitative approaches.
If you are passionate about IT security and have the skills and certifications required to thrive in this role, we encourage you to apply. We offer a competitive salary, a dynamic work environment, and opportunities for professional growth in the ever-evolving field of cybersecurity.
To apply, please send your resume and a cover letter detailing your relevant experience and qualifications to ******************************. Join us in safeguarding our organization's digital assets and ensuring a secure environment for our team and customers.
We are an equal opportunity employer committed to creating a diverse and inclusive workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Attention Employers!
Seeking exceptional talent? We've got the solution: Share your s with us.
Precision Matching: We'll pinpoint the perfect candidates.
Time Saver: Fill crucial roles faster than ever.
Showcase Your Brand: Attract top talent aligned with your mission.
Partnership: We're your allies in successful hiring.
Network Access: Tap into our extensive candidate pool.
Confidentiality: Your needs are handled discreetly.
Elevate your team today! Contact us to share your job descriptions and discover your next top performer.
Information Security Engineer
Security Engineer Job 25 miles from Elyria
As an Information Security Engineer in our Security Operations Center (SOC), you will contribute to the organization's security efforts by actively participating in the monitoring, detection, and response to security threats. This role involves implementing security measures, supporting incident response activities, and collaborating with various teams to ensure a strong security posture. You will have the opportunity to work closely with senior engineers to enhance your skills and apply your knowledge to protect the organization's digital assets.
Job Responsibilities
Assist in the design, implementation, maintenance, and management of comprehensive information security projects and initiatives within the Security Operations team. Ensuring the confidentiality, integrity, and availability of information assets within the insurance company.
Assist in coordinating and executing incident response activities, including identifying, investigating, and documenting security incidents, following established protocols and collaborating with senior engineers to ensure effective resolution.
Assist in the delivery, implementation, and maintenance of SIEM and SOAR platforms to improve incident response capabilities and security operations.
Monitor security events and manage ongoing incident response efforts to ensure efficient threat detection, analysis, and containment.
Engage with industry forums, security communities, and regulatory bodies to stay informed about emerging security threats and regulations, representing the company's interests and contributing to industry-wide security initiatives.
Collaborate with IT, network, and development teams to seamlessly integrate security practices across all technological domains of the organization.
Familiarity with utilizing pre-trained AI models (such as OpenAI models) for security applications, including integrating AI for threat intelligence, automated threat detection and response, and data analytics for processing and analyzing security data. Comfortable with deploying AI solutions within security frameworks and aligning AI tools with cybersecurity strategies while ensuring their ethical use and maintenance in secure environments.
Actively engage in internal groups such as Technical Advisory Boards (T-CAB), Communities of Practice, and cohorts to advocate for security best practices and drive a culture of security awareness across the organization.
Contribute innovative ideas to refine security processes and documentation, aligning them with industry best practices to continuously strengthen the organization's security framework.
Participate in the evaluation and integration of new security solutions and technologies to enhance the organization's defense capabilities.
Job Qualifications
Minimum 1-3 years of relevant experience in Information Security or Information Technology.
Bachelor's degree in Information Security, Computer Science, Information Technology or a related field and/or commensurate experience.
Good understanding of information security principles and secure event log analysis
Familiarity with SIEM (Security Information and Event Management) systems and tools.
Basic experience in scripting and programming (e.g., Python, PowerShell) is a plus.
Strong analytical skills and attention to detail.
Preferred Certifications:
Pursuing industry recognized security certifications, such as
ISC(2)
CISSP, CCSP, CSSLP, ISSEP, ISSAP, ISSMP
GIAC (Global Information Assurance Certifications)
GCIH, GMON, GSOC, GDSA, GCDA, GISF, GSLC
ISACA
CISM, CRISC, CDPSE, CET, CSX-P
Behavioral Competencies
Certified Information Systems Security Professional
Collaborates
Customer focus
Communicates effectively
Decision quality
Nimble learning
Technical Skills
Security Engineering
Firewall Management
Threat Intelligence
Network Security
Incident Response
Security Monitoring
Vulnerability Management
Identity Management
Encryption Techniques
Security Assessments
Information Security
This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.
Information Security Compliance Manager
Security Engineer Job 23 miles from Elyria
The McCarthy, Burgess & Wolff, Inc. (MB&W) Regulatory and Compliance Coordinator is responsible for ensuring MB&W is in compliance with federal, state, and local laws and regulations. This employee will identify problems and/or issues regarding these areas and make recommendations for resolution.
Essential Job Functions:
Prepares and submits regulatory filings and reports for maintaining accurate records.
Ensure compliance with industry regulations (e.g., GDPR, HIPAA, ISO 27001, NIST, PCI-DSS)
Develop, implement, and maintain information security policies, standards, and guidelines.
Serves as primary contact and lead of all Information Security audits performed by independent third-party auditors.
Provide reports to senior leaders detailing audit results, rule violations and the status of investigations.
Identify deficiencies and advise of the corrective or preventive action that needs to be implemented.
Assists in the development and implementation of internal policies and procedures.
Develop and conduct cybersecurity awareness programs for employees.
Document any new or updated business practices or procedures.
Communicates any new standards as they are released and assist with implementing so the company can support the compliance program improvements.
Review documents from various sources for accuracy and completeness.
Reads, comprehends, adheres to, and enforces any and all applicable MBW Security policies.
Functions as Information Security Officer:
Create, implement, manage, and maintain all ISMS policies and procedures as well as other necessary documentation
Reviews and approves information security policies and procedures
Serves as company sponsor and lead of all Information Security of external third-party security audits
Oversees Vendor Management policy and procedures
Ensures MB&W compliance with Security standards.
Information Security Manager
Security Engineer Job 24 miles from Elyria
Come join our team! There are many reasons why EPIC Insurance Brokers & Consultants has become one of the fastest-growing firms in the insurance industry. Fueled and driven by capable, committed people who share common beliefs and values and "bring it" every day, EPIC is always looking for people who have "the right stuff" - people who know what they want and aren't afraid to make it happen.
Headquartered in San Francisco and founded in 2007, our company has over 3,000 employees nationwide. With locations spread out across the U.S., our local market knowledge and industry expertise helps support our clients' regional and global needs. We have grown very quickly since our founding, and we continue to see growth and success thanks to our hard-working and growth-minded employees.
Our core values are: Owner mindset, Inspire trust, Think big, and Drive results. If these values and growth align with what you're looking for in your next career? Then consider joining our amazing team!
JOB OVERVIEW:
The Information Security Manager position represents a key pillar in safeguarding digital assets, protecting sensitive data, and ensuring ongoing stability and trustworthiness of company networks and systems and is responsible for developing, implementing, and managing comprehensive security strategies and protocols to lead and manage the organization's cybersecurity operations.
LOCATION: Hybrid - Candidates must be willing & able to work 3 days a week preferably on 1 of our following offices: Independence OH, Atlanta GA, Boca Raton FL, or Dallas TX.
WHAT YOU'LL DO:
This role is critical in ensuring the confidentiality, integrity, and availability of information systems. The ideal candidate will have a strong background in cybersecurity, incident response, and team leadership and should possess a strategic mindset combined with technical expertise to effectively guide our team towards maintaining a robust security posture while driving forward best practices to ensure the security of sensitive data and digital assets. Requires a proactive individual who can effectively coordinate with other information technology teams and manage responses to security incidents. Works closely with diverse internal departments including infrastructure teams, application development, compliance stakeholders, and management to ensure security policies and procedures are effectively implemented and maintained while working collaboratively across these teams, advocating sound security practices, and embedding stringent cybersecurity standards throughout operational processes. Responsible for developing and maintaining incident response plans, conducting regular security assessments, and ensuring compliance aligned with industry standards and regulations.
The role involves continuous monitoring of security threats, analyzing security data, assessing current security measures, identifying vulnerabilities, and implementing measures to mitigate risks by relying on data-driven analysis. This position requires excellent communication skills, strong analytical abilities, and a proactive approach to identifying and setting priorities for addressing security vulnerabilities. The candidate should be comfortable working in a fast-paced environment and capable of making critical decisions under pressure while handling stressful situations calmly and effectively. The ability to stay updated on emerging cybersecurity threats and trends is crucial in proactively addressing potential risks and ensuring the organization's preparedness. Key success factors include the ability to lead cross-functional teams, manage complex projects, and stay current with emerging security technologies and threats. Candidates are expected to possess strong experience in cybersecurity operations, background knowledge in security architecture, familiarity with industry frameworks, proven expertise in technology platforms, and substantial experience guiding and developing teams as a collaborative leader dedicated to offering mentorship, coaching, and professional guidance.
A detailed list of job duties includes (but is not limited to):
* Lead and manage the work of our Security Operations Center (SOC)
* Develop and maintain incident response plans and procedures
* Monitor and analyze security events and alerts
* Coordinate and respond to security incidents and breaches
* Ensure compliance with security policies and regulatory requirements
* Conduct regular vulnerability assessments and risk analyses
* Collaborate with IT and business units on security initiatives
* Evaluate and implement security tools and technologies
* Prepare reports and presentations for senior management
* Remediate vulnerabilities in company systems
* Conduct administrative security duties to include (but not limited to):
* E discovery operations
* New software and hardware security evaluations
* Data gathering for compliance requirements
* Security budget compilation and execution
WHAT YOU'LL BRING:
* Strong knowledge of cybersecurity frameworks and best practices
* Experience with SIEM, IDS/IPS, and other security tools
* Proven leadership and team management skills
* Excellent problem-solving and analytical skills
* Strong communication and interpersonal abilities
* Ability to work under pressure and handle multiple priorities
* Familiarity with cloud security and modern IT environments
Preferred Credentials and Experience:
* Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience)
* 5+ years of experience in IT security operations
* Relevant certifications (e.g., CISSP, CISM, CEH) preferred
COMPENSATION:
The base pay offered will be determined based on your experience, skills, training, certifications and education, while also considering internal equity and market data.
WHY EPIC:
EPIC has over 60 offices and 3,000 employees nationwide - and we're growing! It's a great time to join the team and be a part of this growth. We offer:
* Generous Paid Time off
* Managed PTO for salaried/exempt employees (personal time off without accruals or caps); 22 PTO days starting out for hourly/non-exempt employees; 12 company-observed paid holidays; 4 early-close days
* Generous leave time options: Paid parental leave, pregnancy disability and bonding leave, and organ donor/bone marrow donor leave
* Generous employee referral bonus program of $1,500 per hired referral
* Employee recognition programs for demonstrating EPIC's values plus additional employee recognition awards and programs (and trips!)
* Employee Resource Groups: Women's Coalition, EPIC Veterans Group
* Professional growth & development: Mentorship Program, Tuition Reimbursement Program, Leadership Development
* Unique benefits such as Pet Insurance, Cancer Insurance, Identity Theft & Fraud Protection Coverage, Legal Planning, Family Planning, and Menopause & Midlife Support
* Additional benefits include (but are not limited to): 401(k) matching, medical insurance, dental insurance, vision insurance, and wellness & employee assistance programs
* 50/50 Work Culture: EPIC fosters a 50/50 culture between producers and the rest of the business, supporting collaboration, teamwork, and an inclusive work environment. It takes both production and service to be EPIC!
* EPIC Gives Back - Some of our charitable efforts include Donation Connection, Employee Assistance Fund, and People First Foundation
* We're in the top 10 of property/casualty agencies according to "Insurance Journal"
To learn more about EPIC, visit our Careers Page: ************************************************
EPIC embraces diversity in all its various forms-whether it be diversity of thought, background, race, religion, gender, skills or experience. We are committed to fostering a work community where every colleague feels welcomed, valued, respected and heard. It is our belief that diversity drives innovation and that creating an environment where every employee feels included and empowered, helps us to deliver the best outcome to our clients.
California Applicants - View your privacy rights at: *******************************************************************************************
#LI-AT1
#LI-Hybrid
Information Security Analyst
Security Engineer Job 36 miles from Elyria
Job Details INSXCloud, Inc Ohio - Akron, OH Full Time DayDescription
The Security Analyst is responsible for supporting information security operations in compliance with the company's information security policy.
ESSENTIAL DUTIES AND RESPONSIBILITIES
Configure and maintain security and audit software systems
Provide first-tier incident response support
Assist with audits and risk assessments
Analyze and respond to security incidents, conduct forensic investigations and document findings.
Prepare and maintain critical documentation such as policies, procedures, standards, baselines, guidelines, incident reports, and audit responses
Coordinate third-party service provider and vendor risk assessments
Perform vulnerability scanning and coordinate penetration testing utilizing third-party tools and services
Contribute to disaster recovery and business continuity planning efforts
Contribute to data classification, data retention, and data loss prevention efforts
Report key metrics to management
Stay informed of industry best practices and information security frameworks
Identify vulnerabilities, assess potential risks, and recommend security measures to mitigate threats.
Meet department attendance requirements, including being prompt and available during scheduled shift
Performs other related duties and tasks as needed.
Qualifications
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
A bachelor's degree in computer science or a related discipline is preferred, but not required. A minimum of five years of experience in an information security role is necessary.
Knowledge of Microsoft and Mac operating systems, SQL Server user administration, networking devices, and security systems such as firewalls, IDS and IPS, SIEM, endpoint protection, encryption, and multifactor authentication
Knowledge of common security frameworks (ISO, NIST, etc.) and regulatory compliance (PCI, SOX, HIPAA, NYDFS, CCPA)
Ability to build relationships with all levels within the organization via in person, virtual and written communication.
SUPERVISORY RESPONSIBILITIES
None
CERTIFICATES, LICENSES, REGISTRATION
While a current information security certification (such as Security+, CISSP, or similar) is not required at the time of hire, the individual must obtain the certification within 15 months of starting the role.
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Small Motor Skills: Picking, pinching, typing or otherwise working primarily with fingers rather than with whole hand or arm, as in handling.
Speaking: Expressing or exchanging ideas by means of spoken word. Those activities in which require detailed or important spoken instructions must be conveyed to other workers accurately and quickly.
Hearing: Ability to receive detailed information through oral communication with or without correction.
Repetitive Motion: Substantial movement (motions) of the wrist, hands and fingers.
WORK ENVIRONMENT
This Hybrid Remote / In-office role provides the opportunity to gain knowledge while collaborating with co-workers while also considering a life work balance.
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Normal office environment with controlled temperature.
ADDITIONAL REQUIREMENTS
The company reserves the right to determine if this position will be assigned to work on-site, remotely, or a combination of both. Assigned work location may change. In the case of remote work, physical presence in the office/on-site may be required to engage in face-to-face interaction and coordination of work among co-workers.
COMPUTER PROGRAMS USED ON A DAILY BASIS
Microsoft Office
Asana
BOX
Trend Micro
Acunetix
Arctic Wolf
Barracuda
Cloudflare
Wordfence / WordPress
Wiz
Jamf / Apple Business Manager
KnowBe4
Information Security Manager - Hybrid/Corporate Campus (Cleveland, OH)
Security Engineer Job 23 miles from Elyria
Third Federal is a leading lender of conventional home mortgages lending in 27 states, plus the District of Columbia, with retail branch offices in Ohio and Florida. Our mission is to help people achieve the dream of home ownership and financial security while creating value for our customers, our communities, our associates, and our stockholders. Our value system of love (concern for others), trust, respect, a commitment to excellence, and fun is at the heart of our commitment to our mission, and just as importantly, to our company culture. Through this, we help people find the loan or savings product that makes sense for them.
At Third Federal, you will find strength and stability in your career. In our nearly 90-year history, we have never had layoffs, and have one of the lowest annual turnover rates at 6% (versus an industry average of nearly 19%). We have been certified as a 'Great Place to Work' multiple times in the last decade alone, and have been recognized with several additional workplace awards and recognitions. Because Third Federal associates are the foundation of our success, we take a genuine interest in each of them - from their professional development to their health and wellness.
Description:
This position is responsible for the management and oversight of Third Federal's IS (Cyber) Security Operations Department. The Information Security Manager is responsible for overseeing the organization's cybersecurity operations, ensuring the protection of information systems from cyber threats. This role involves developing and implementing security policies, managing incident response, and leading a team of security professionals to safeguard digital assets.
This position is hybrid and requires 3 days on-site per week.
Key Responsibilities:
* Develop and implement cybersecurity strategies aligned with business goals.
* Lead risk assessments and mitigation planning.
* Advise management on security issues and compliance requirements.
* Oversee and maintain a cybersecurity incident response program along with ensuring proper planning and execution.
* Manage in-house and outsourced (MSSP) monitoring program.
* Work with fellow IS/IT Managers to develop IT standards, best practices and securely designed architecture.
* Develop and enforce security policies, standards and procedures.
* Ensure compliance with relevant laws, regulations and frameworks (e.g., NIST, CIS, GLBA, PCI, SOX etc.…)
* Evaluate technology projects for security risk and propose solutions to meet business needs and balance cybersecurity risk.
* Conduct regular audits and security assessments (e.g., Penetration testing) with the assistance of IS Governance and Internal Audit.
* Work with IS Governance to identify and share top and emerging cyber threats with appropriate departments.
* Implement security tools to create a layered security approach that uses multiple security controls to protect the most vulnerable areas of our technological environment.
* Assist as a cybersecurity subject matter expert for the vendor management process and manage vendor relationships along with third-party security services.
* Remain active in industry cybersecurity groups.
* Lead and mentor a team of security analysts.
* Coordinate training and awareness programs for staff.
Required Skills and Qualifications
* Strong and proven understanding of network and system security.
* Excellent leadership, communication, and strong problem-solving skills.
* Familiarity with security frameworks and compliance standards.
* Ability to manage multiple projects and priorities in a fast-paced environment.
* Strong experience collaborating with IT and Business Leaders to promote and drive alignment with security and compliance goals.
* Experience with security technologies and tools (e.g., vulnerability scanners, firewalls, identity management, security information and event management, IDS/IPS)
* Technical understanding of cloud-based architectures and technologies such as virtualized infrastructure, containerization, and infrastructure as code.
* Familiarity with industry compliance standards and regulations such as SOX, GLBA, or PCI-DSS.
* Strong organizational skills, including the ability to prioritize and deliver multiple requests in a timely manner.
* Strong written and verbal communication skills.
* Ability to lead and develop associates.
* Ability to work in a collaborative environment with strong interpersonal skills.
Education and Experience:
* Minimum 8-10 years of experience in an Information Security role (Security Analyst).
* Minimum 5 years of experience managing in the Information Security field.
* Certifications that match this job position such as CISSP, CISM, CEH, Security+ etc.… are a plus.
* Experience working with the following:
* Cloud security tools and concepts
* Firewalls, IPS, WAF, SIEM, and EDR technologies
* DLP Tools and Technology
* Vulnerability scanning and threat analysis tools
* Email Protection and Phishing solutions
Third Federal Perks & Benefits
* Competitive compensation packages
* Medical, dental, vision, and more
* 401k match
* 11 Bank Holidays + vacation/sick time
* Exceptional culture and value system
* Strong work/life balance
* Growth opportunities
* Mortgage Discount Program
* Education Reimbursement Program
Third Federal is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, religion, sex, national origin, gender identification or sexual orientation, disability, protected veteran status or any other classification protected under law.
Chief Information Security Officer - Information Technology
Security Engineer Job 37 miles from Elyria
The Chief Information Security Officer ( CISO ) would report to the CITO and is responsible for engineering activities and systems that monitor, detect and alert on potential security threats and vulnerabilities. Also identifying, developing, testing, implementing, and maintaining security compliance, risk and vulnerability management for Ashland University students, staff, and faculty. This position is critical to providing daily support, troubleshooting, and resolution of the Ashland University cyber security infrastructure. Works closely with network engineering and technical operations staff as security threats and vulnerabilities are detected and coordinates the response to contain and mitigate threats or breaches. Leads and coordinates the network penetration process for network security operations and communicate event status to leadership.
Physical Demands
Office environment with some lifting and hauling of equipment up to 60 lbs. Typical work week: 8AM - 5PM, however, some weekend and evening work hours required; remote hybrid work is negotiable Cellphone availability during normal and after work hours required Valid Driver's License and ability to drive to remote campus locations and attend training as assigned.
Required Qualifications
Conduct periodic senior level needs analyses as directed Analyze patterns of non-compliance and take appropriate administrative or programmatic actions to minimize security risks and insider threats. Manage accounts, network rights, and access to systems and equipment. Analyze potential security violations to determine if the network environment has been breached, assess the impact, and preserve evidence. Support, monitor, test, implement, document, and troubleshoot hardware and software problems pertaining to the cyber security infrastructure. Analyze systems and network for potential security problems and recommend resolutions or remediate when necessary. Review access control lists on routers, firewalls, and other network devices. Lead and perform system audits to assess security related factors within the network. environment and recommend or implement improvements to security systems. Evaluate potential security risks and take appropriate corrective and recovery action. Monitor/Manage clients' endpoint security and SIEM . Design, implement, and conduct internal and third-party Security Test and Evaluations Serve as an information security resource on projects. Develop and lead formal and informal education and training for Ashland University Develop and utilize “Case Management” processes for incident and resolution tracking. The processes should also be used for historic recording of all anomalous or suspicious activity. Maintain knowledge of the current security threat level by monitoring related Internet postings, Intelligence reports, and other related documents as necessary. Provides advanced technical expertise, consulting, and support to staff members with security tasks. Recommends appropriate actions to improve project security and designs new monitoring strategies for complex securing systems. Maintain system baselines and configuration management items, including security event monitoring “policies” in a manner determined and agreed to by management. Ensure changes are made using an approval process agreed to in advance.
Preferred Qualifications
Experience: Bachelor's degree in IT Security or closely related field from an accredited college or university with a minimum of three (3) years' experience in high-level technology computing or related technology areas, or a bachelor's degree and other relevant education and training from an accredited college or university with a minimum of five(5) years in high-level technology computing or related technology areas. Must possess professional security management certification such as a Certified Information Systems Security Professional ( CISSP ), Certified Information Security Manager ( CISM ), Certified Information Systems Auditor ( CISA ), or other similar credentials. Must demonstrate knowledge of common information security management frameworks such as ISO / IEC 27001 and ITIL , COBIT and NIST , and an understanding of relevant legal and regulatory requirements such as Payment Card Industry/Data Security. Experience with network, application, and security awareness security concepts, methodologies, processes, & tools. Experience with information risk assessment and mitigation concepts, methodologies, processes, and tools. Experience with forensics concepts, methodologies, processes, and tools. Skills: Expert knowledge of application, network, and system security vulnerabilities and exploits. Ability to adapt to a fast-moving IT landscape and keep pace with latest thinking and new security technologies Forms business partnerships that help drive the IT security strategy forward Can make decisions that are well informed and timely Must have organizational skills and can make sound decisions independently. Must possess excellent interpersonal, communications and collaborative skills and have experience working in a service capacity with direct customer interaction. Must be able to build team support as well as can work cooperatively with all levels of the university community.
Senior Security Engineer - SSO / Web Security
Security Engineer Job 15 miles from Elyria
Pittsburgh Pennsylvania Strongsville, OH Exp 5-7 yrs Deg Bachelors Occasional Travel Job Description As an Infrastructure Engineer Senior and a member of our Information Technology, you will be part of a diversified financial services firm that reflects the needs, values and goals of our customers, employees, communities and shareholders. You will be institutional in helping to maintain our reputation for technology excellence in both business applications and new innovations.
As an Infrastructure Engineer you will provide accurate and cost efficient security maintenance and support services to internal & external clients. Responsibilities include ongoing management and support of security infrastructure in a large environment. Must be able to analyze situations, assess risk and determine appropriate actions necessary to remediate risk. This individual must be able to work with internal technology groups to coordinate deployment of solutions. Must exercise good judgment in the handling of security related matters, must be sensitive to both legal and personnel related ramifications of their actions. Provide consulting support in area of responsibility to other internal teams. Participate in providing 24/7 support of security systems as necessary to proactively protect the integrity, confidentiality, and availability of information of the company. Perform administrative tasks including updating and maintaining trouble logs, metrics, time reporting, Change Control records, production documentation, etc. Maintains expertise on the security products and functions supported through continued education and training.
Work hours 8-5 with 24x7 on call rotation duties.
Summary:
This position will be responsible for supporting systems and solutions within Cyber Security specifically authentication and authorization. Support will not be limited to break-fix situations, but also includes implementation activities and day-to-day administration of devices & solutions. Opportunities to cross train on other security platforms.
Requirements:
• 4-7 years experience in Information Technology
• Possess an expert level and thorough understanding of IT concepts including network structures, operating system capabilities, and application architecture requirements
• Strong understanding of web based applications
• Unix / Linux, TCP/IP networking proficiency
• Strong verbal and written communication skills
• Programming / scripting experience preferred
Additional Information
All your information will be kept confidential according to EEO guidelines.
Direct Staffing Inc
Information Security Engineer
Security Engineer Job 25 miles from Elyria
As an Information Security Engineer in our Security Operations Center (SOC), you will contribute to the organization's security efforts by actively participating in the monitoring, detection, and response to security threats. This role involves implementing security measures, supporting incident response activities, and collaborating with various teams to ensure a strong security posture. You will have the opportunity to work closely with senior engineers to enhance your skills and apply your knowledge to protect the organization's digital assets.
Job Responsibilities
* Assist in the design, implementation, maintenance, and management of comprehensive information security projects and initiatives within the Security Operations team. Ensuring the confidentiality, integrity, and availability of information assets within the insurance company.
* Assist in coordinating and executing incident response activities, including identifying, investigating, and documenting security incidents, following established protocols and collaborating with senior engineers to ensure effective resolution.
* Assist in the delivery, implementation, and maintenance of SIEM and SOAR platforms to improve incident response capabilities and security operations.
* Monitor security events and manage ongoing incident response efforts to ensure efficient threat detection, analysis, and containment.
* Engage with industry forums, security communities, and regulatory bodies to stay informed about emerging security threats and regulations, representing the company's interests and contributing to industry-wide security initiatives.
* Collaborate with IT, network, and development teams to seamlessly integrate security practices across all technological domains of the organization.
* Familiarity with utilizing pre-trained AI models (such as OpenAI models) for security applications, including integrating AI for threat intelligence, automated threat detection and response, and data analytics for processing and analyzing security data. Comfortable with deploying AI solutions within security frameworks and aligning AI tools with cybersecurity strategies while ensuring their ethical use and maintenance in secure environments.
* Actively engage in internal groups such as Technical Advisory Boards (T-CAB), Communities of Practice, and cohorts to advocate for security best practices and drive a culture of security awareness across the organization.
* Contribute innovative ideas to refine security processes and documentation, aligning them with industry best practices to continuously strengthen the organization's security framework.
* Participate in the evaluation and integration of new security solutions and technologies to enhance the organization's defense capabilities.
Job Qualifications
* Minimum 1-3 years of relevant experience in Information Security or Information Technology.
* Bachelor's degree in Information Security, Computer Science, Information Technology or a related field and/or commensurate experience.
* Good understanding of information security principles and secure event log analysis
* Familiarity with SIEM (Security Information and Event Management) systems and tools.
* Basic experience in scripting and programming (e.g., Python, PowerShell) is a plus.
* Strong analytical skills and attention to detail.
Preferred Certifications:
Pursuing industry recognized security certifications, such as
* ISC(2)
* CISSP, CCSP, CSSLP, ISSEP, ISSAP, ISSMP
* GIAC (Global Information Assurance Certifications)
* GCIH, GMON, GSOC, GDSA, GCDA, GISF, GSLC
* ISACA
* CISM, CRISC, CDPSE, CET, CSX-P
Behavioral Competencies
* Certified Information Systems Security Professional
* Collaborates
* Customer focus
* Communicates effectively
* Decision quality
* Nimble learning
Technical Skills
* Security Engineering
* Firewall Management
* Threat Intelligence
* Network Security
* Incident Response
* Security Monitoring
* Vulnerability Management
* Identity Management
* Encryption Techniques
* Security Assessments
* Information Security
This job description describes the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, knowledge, etc. These may be subject to change and additional functions may be assigned as needed by management.
IT Engineer - Systems Integration
Security Engineer Job 23 miles from Elyria
Job Title: IT Systems Integration Engineer
, but candidates must be residing in the United States.
About Us:
We specialize in integrating complex IT systems that drive business growth, efficiency, and innovation. Our team of talented professionals is at the forefront of technology and is looking for an IT Systems Integration Engineer to join our dynamic team.
Position Overview for Systems Integration Engineer:
As an IT Systems Integration Engineer, you will play a crucial role in designing, implementing, and maintaining integrated IT systems for internal leaders and external customers. You will work closely with cross-functional teams to ensure seamless integration of various hardware and software components, enabling our clients to achieve their business objectives.
Key Responsibilities for Systems Integration Engineer:
System Analysis: Analyze client requirements and existing IT systems to determine integration needs and potential challenges.
Design and Architecture: Develop integration strategies and create system integration designs that meet client objectives, scalability, and performance requirements.
Integration Development: Build, configure, and customize integration solutions using industry-standard tools and technologies, such as APIs, middleware, and scripting languages.
Testing and Quality Assurance: Conduct thorough testing to ensure the reliability, performance, and security of integrated systems. Identify and resolve integration issues promptly.
Documentation: Create comprehensive documentation of integration processes, including architecture diagrams, technical specifications, and user guides.
Collaboration: Collaborate with cross-functional teams, including software developers, network engineers, and project managers, to ensure the successful integration of systems.
Troubleshooting and Support: Provide technical support and troubleshooting assistance to clients during and after integration projects.
Security and Compliance: Implement security best practices and ensure compliance with relevant data protection regulations in all integrated systems.
Monitoring and Optimization: Implement monitoring tools and processes to proactively identify and resolve performance bottlenecks or system issues. Continuously optimize integrated systems for efficiency and reliability.
Client Communication: Maintain clear and effective communication with internal business leaders and external clients, ensuring they are informed about the progress of integration projects and any potential issues.
Qualifications for Systems Integration Engineer:
Bachelor's degree in computer science, information technology, or a related field (Master's degree preferred).
Proven experience in IT systems integration, including hands-on experience with integration technologies and tools.
Strong understanding of networking, databases, and cloud computing platforms.
Proficiency in programming and scripting languages (e.g., Python, Java, PowerShell).
Knowledge of API design and implementation.
Familiarity with Azure logic apps, Azure Service Bus, MS SQL stored procedures and database schemas, MS Power Platform, Power Apps, Power BI.
Familiarity with middleware and integration platforms (e.g., MuleSoft, Dell Boomi, Apache Camel).
Excellent problem-solving skills and the ability to work under pressure.
Strong communication and interpersonal skills.
Relevant certifications (e.g., Certified Integration Architect, Certified Information Systems Security Professional) a plus.
Attention Employers!
Seeking exceptional talent? We've got the solution: Share your s with us.
Precision Matching: We'll pinpoint the perfect candidates.
Time Saver: Fill crucial roles faster than ever.
Showcase Your Brand: Attract top talent aligned with your mission.
Partnership: We're your allies in successful hiring.
Network Access: Tap into our extensive candidate pool.
Confidentiality: Your needs are handled discreetly.
Elevate your team today! Contact us to share your job descriptions and discover your next top performer.