Cloud Security Analyst
Security engineer job in Miami, FL
About the Company
Your new role as a Senior Cloud Security Analyst based in Miami, you will lead initiatives to strengthen the security posture across cloud environments (Azure, AWS, GCP). Acting as a consultant to internal teams, you'll evaluate digital security gaps, implement solutions, and ensure compliance with governance standards. You'll manage IAM processes, review access controls, monitor security events, and provide strategic security directives to stakeholders.
About the Role
Responsibilities
Lead initiatives to strengthen the security posture across cloud environments (Azure, AWS, GCP).
Act as a consultant to internal teams.
Evaluate digital security gaps and implement solutions.
Ensure compliance with governance standards.
Manage IAM processes and review access controls.
Monitor security events and provide strategic security directives to stakeholders.
Qualifications
Bachelor's degree in Computer Science or related field (or equivalent experience).
5+ years in cloud security and identity access management.
Required Skills
Expertise in Azure and AWS security administration.
Strong IAM knowledge (SailPoint, Active Directory, O365).
Familiarity with GDPR, PCI, NIST frameworks.
Scripting experience (PowerShell; Python a plus).
Experience with vulnerability tools (Qualys, Orca preferred).
Preferred Skills
Microsoft 365 Messaging or Security Administrator, CompTIA Cloud+.
Pay range and compensation package
110-120K plus bonus
Equal Opportunity Statement
We are committed to diversity and inclusivity.
Bank Information Security Governance Senior
Security engineer job in Tampa, FL
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
We are seeking a dedicated Bank Information Security Governance Senior.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in our Phoenix, AZ; San Antonio, TX; Plano, TX; Colorado Springs, CO; Chesapeake, VA; Charlotte, NC or Tampa, FL offices. Relocation assistance is not available for this position.
What you'll do:
Supports the first line of defense in ensuring the effectiveness of Information Security (IS) governance, IS risk management, and compliance programs within the Bank Technology Office. Collaborates with Information Technology (IT) and IS teams, business stakeholders, Compliance, Risk Management, Audit Services, and external parties to support IS governance and IS risk and compliance-based initiatives. Acts as a key liaison between the Association's IS function and various Bank business units, ensuring alignment with enterprise security policies and standards.
Continuously monitors IS environments to identify emerging risks related to cybersecurity, infrastructure, applications, and third-party services. Provides consultative services across Bank.
Provides expert insights on the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the Bank organization's specific needs and strategic objectives.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Conducts forward-looking risk assessments for new technology initiatives, system changes, and digital transformation projects.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Partners with and leads IT/IS teams to embed IS risk considerations early in the project lifecycle and ensure timely mitigation strategies.
Leads the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the organization's specific needs and strategic objectives.
Defines, maintains, and enforces IS policies, standards, and procedures to ensure compliance with relevant laws, regulations, and industry best practices.
Ensures IS risk compliance with legal, regulatory, and contractual requirements, coordinating audits and assessments.
Provides governance oversight for IS related initiatives, ensuring they adhere to established standards, policies, and risk management practices.
Mentors junior members of the IS governance team, providing guidance and support in their professional development.
Enhances, and maintains awareness of the risk governance framework and its elements (RCSA).
Performs root cause analysis to determine likelihood, impact, and mitigation approaches of identified risks.
Prepares metrics reporting and participates in the metrics refresh process.
Maintains awareness of cloud computing principles and AI and understands potential IS risks inherent within this discipline.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years experience supporting IS governance, IS risk management, compliance, or IT audit activities
In-depth knowledge and application of IT governance frameworks such as COBIT, ITIL, ISO 27001, and NIST, CIS Controls and CMMC
Experience working on and implementing IT and/or IS policies, standards, and procedures.
Experience leading and coordinating IS audits and assessments and ensuring compliance with regulatory requirements.
A strong understanding of regulatory and compliance requirements applicable to the organization.
Ability to interpret complex IT/IS environments and detect early warning signals.
Experience in identifying potential failure points and simulating risk scenarios.
Proficiency in using data to identify trends, anomalies, and emerging risks.
Understanding of cloud, cybersecurity, and digital transformation risks.
Ability to articulate risk insights and influence stakeholders to take preventive actions.
Familiarity with GRC platforms, vulnerability management tools, and risk dashboards.
What sets you apart:
Information Technology or Security certifications (e.g., CISA, CRISC, CISM, CISSP, CGEIT, CIA, NIST, COBIT, etc.).
Familiarity with financial institutions regulations (GLBA, FFIEC Handbooks, PCI DSS)
Work experience in highly regulated work environments including other large financial institutions
Experience with data-driven analysis using AI tools and collaborating to drive process innovation
Highly self-motivated individual capable of working independently and proactively handling their workload with minimal direct supervision.
Strong analytical skills and demonstrated experience collaborating effectively with leadership at all levels within an organization.
Compensation range: The salary range for this position is: $114,080-$218,030.
USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).
Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.
Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Auto-ApplyManual Ethical Hacker
Security engineer job in Jacksonville, FL
Denver, Colorado;Seattle, Washington; Addison, Texas; Jersey City, New Jersey; Boston, Massachusetts; Charlotte, North Carolina; Washington, District of Columbia; Jacksonville, Florida; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.**
Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (******************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity.
This intermediate technical role is responsible for performing application security assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding the bank's security policies, working with the appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications
+ Provide clear and practical advice regarding managed risks
+ Learn and develop advanced technical and leadership skills, Mentor Junior assessors in technical tradecraft and soft skills
Required Skills:
+ Minimum of 4 years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 3 of the following areas: security engineering; application architecture; authentication and security protocols; application session management; applied cryptography; common communication protocols; mobile frameworks; single sign-on technologies; exploit automation platforms; RESTful web services
+ SQL injection/XSS attack without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with SAST tools to identify vulnerabilities
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques
+ Solid programming/debugging skills
+ Experience of using a variety of tools, included, but not limited to, IBM AppScan, Burp and SQL Map
+ Threat Analysis
+ Innovative Thinking
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CISSP, CEH, OSCP, OSWE, GPEN, PenTest+ or similar
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Systems Security Engineer - TS/SCI
Security engineer job in Tampa, FL
Our client is a government contractor founded in 2008 whose mission is to transform the way our customers approach constantly changing and complex problem sets by bringing to bear the latest in technology and the highest caliber of talent with a particular focus on Defense and National Security mission sets. They are seeking highly skilled and versatile Systems Security Engineer to join the centralized Zero Trust Leadership Cell (ZTLC) supporting U.S. Special Operations Command (USSOCOM) on the EDAT innovation contract.
Qualified Systems Security Engineer should have the below skills:
-A minimum of twelve (12+) years of progressive experience in IT/Cybersecurity, with at least 5 years focused on systems engineering, security engineering, or technical integration of complex enterprise systems within the DoD.
-Must possess an active DoD 8570 IASAE Level II certification (e.g., CASP+ CE, CISSP, CSSLP).
-Technical certifications in relevant domains such as Cloud (AWS/Azure Specialty), Networking (CCNP/JNCIP), or Identity (e.g., Okta, Ping) are highly valued.
-Broad technical expertise across multiple ZT pillars, including ICAM, Network Security (SDN, Segmentation), Cloud Security (AWS/Azure), Data Protection, and Endpoint Security.
-Strong understanding of Zero Trust Architecture (ZTA) principles (NIST 800-207) and the DoD ZT Reference Architecture.
-Knowledge of authentication and authorization protocols (e.g., SAML, OAuth, OIDC) and access control methods (PKI, MFA, ABAC).
This work is onsite in Tampa, Florida. Candidates must be a US Citizen with an active TS/SCI level government clearance. Salary for this role is up to $160K for qualified candidates.
SCADA Cyber Security Engineer (Systems Reliability Division)
Security engineer job in Brandon, FL
Responsible for the performance of highly complex cyber security functions related to the design, installation, maintenance, auditing, investigation, and assessment of software applications, networks, and the County's enterprise level information systems. Responsible for proactively identifying and implementing security measures to prevent emerging vulnerabilities, utilizing a diverse array of tools and methodologies. Incumbent will use sound judgement to assess risk, conduct audits, collect and review data, collaborate with other technology divisions, and write reports to advise leadership.
Salary
$82,804 - $145,080
Ideal Candidate
This advanced level SCADA physical and cyber security position will be responsible for the protected access and overall integrity of the SCADA network, to include controlled data Integration, user and device security configurations, access control lists, encryption pass coding and data port security. Develops and maintains documentation of existing SCADA infrastructure including hardware, applications, protocols, communication links and system disaster recovery strategies. Evaluates and applies security updates, patches to all SCADA servers and workstations in accordance with ISA standards. Works with Network and Applications Engineering groups to troubleshoot and resolve issues associated with failures to maintain maximum system security and facilitates continuous improvement of SCADA system integrity and the SCADA environment. Assist with the secure integration of SCADA data to other areas of the business. Build and maintain automated data imports/exports and reports processes. Administers for the Department any operational or security policies associated with the network using firewalls, policy and rule initiation as well as authentication software. Develops and administers Departmental security policies to users related to the use of the SCADA network.
This position will provide Departmental wide highly technical and specialized computer and network security oversight associated with the Public Utilities Departments Supervisory Control and Data Acquisition System (SCADA). SCADA serves as the backbone to the Departments Water, Wastewater, Reclaimed Water and Pump Station computerized control systems. Due to continuous technological advancements, systems integration standardization hardware/software compatibility assessments, programming, multi-disciplinary diagnostics, troubleshooting, debugging, coding and process control program development are all vital to ensuring the preservation and protection of SCADA communication for 24-hour operations regulatory compliance and the protection of public health and the environment. The sophistication and continued expansion of multiple local area networks, a large cellular telemetry network and an independent wide area network makes it more vulnerable to cyber-attacks, incidental software or hardware corruption and occasional user misuses from both outside and inside influences. This position will provide the needed focus towards making the network more secure following guidelines for automation and information systems; provided by ICS and ISA standards for automation and systems information.
Minimum Qualifications
Bachelor's degree from an accredited college or university with a major in information security or another similar technology field; AND
Three years of experience in information security system administration and risk assessment within an enterprise environment, encompassing third-party risk, risk analysis, risk mitigation, and residual risk management.
Three years of experience leveraging industry-leading cybersecurity tools (SIEM, EDR, vulnerability scanning, and web application security) for comprehensive threat detection and mitigation.
OR
An equivalent combination of education (not less than a high school diploma/GED), training and experience that would reasonably be expected to provide the job-related competencies noted above.
Core Competencies
Customer Commitment
- Proactively seeks to understand the needs of the customers and provide the highest standards of service.
Dedication to Professionalism and Integrity
- Demonstrates and promotes fair, honest, professional and ethical behaviors that establishes trust throughout the organization and with the public we serve.
Organizational Excellence
- Takes ownership for excellence through one's personal effectiveness and dedication to the continuous improvement of our operations.
Success through Teamwork
- Collaborates and builds partnerships through trust and the open exchange of diverse ideas and perspectives to achieve organizational goals.
Duties and Responsibilities
Note: The following duties are illustrative and not exhaustive. The omission of specific statements of duties does not exclude them from the position if the work is similar, related, or a logical assignment to the position. Depending on assigned area of responsibility, incumbents in the position may perform one or more of the activities described below:
Conduct thorough assessments of software applications, networks, and systems to identify security vulnerabilities and weaknesses.
Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Collaborate with cross-functional teams to prioritize and mitigate vulnerabilities based on their potential impact and risk.
Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements.
Participate in designing and implementing security measures to prevent future vulnerabilities.
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Assist in incident response activities, analyzing security incidents to determine the root cause and providing recommendations for prevention.
Use frameworks such as MITRE ATT&CK to map adversary tactics and techniques and design hunting scenarios based on threat actor behavior.
Collaborate with incident response teams to validate incidents, identify root causes, and assist with post-mortem analysis.
Other related duties as assigned.
Job Specifications
Critical Thinking:
Exceptional critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Decision Making:
Demonstrates high personal integrity and the ability to handle confidential matters with sound judgment and professionalism.
Communication:
Proficient communication skills to effectively collaborate with both technical and non-technical stakeholders. Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Strategic Planning:
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Managerial/
Operational Skills:
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements. Participate in designing and implementing security measures to prevent future vulnerabilities.
Leadership:
Capable of serving as a Cyber Security Subject Matter Expert (SME) for externally managed technology projects from various departments.
Analytical Ability:
Excellent critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Managing
Complexity:
Extensive knowledge of cybersecurity best practices, including familiarity with CIS Critical Controls, NIST Cybersecurity Framework (CSF), MITRE ATT&CK Framework. Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Other:
Hands-on experience in incident response and recovery, utilizing MITRE and security best-practice assessment methodologies.
Physical Requirements
Speaking, vision, hearing, sitting, and standing. Use of office machinery such as PCs, Smart Phones, Tablets, and multi-function devices.
Work Category
Sedentary Work - Exerting up to 10 pounds of force occasionally, and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Emergency Management Responsibilities
In the event of an emergency or disaster, an employee may be required to respond promptly to duties and responsibilities as assigned by the employee's department, the County's Office of Emergency Management, or County Administration. Such assignments may be for before, during or after the emergency/disaster.
Auto-ApplyJunior SAP SECURITY ADMINISTRATOR
Security engineer job in Tallahassee, FL
**Country:** United States of America ** Remote **U.S. Citizen, U.S. Person, or Immigration Status Requirements:** U.S. citizenship is required, as only U.S. citizens are authorized to access information under this program/contract.
**Security Clearance:**
None/Not Required
RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide. It comprises three industry-leading businesses - Collins Aerospace Systems, Pratt & Whitney, and Raytheon. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity. The company, formed in 2020 through the combination of Raytheon Company and the United Technologies Corporation aerospace businesses, is headquartered in Arlington, VA.
**The following position is to join our RTX Corporate, Enterprise Services, Research Center or BBN team:**
We are seeking a motivated and detail-oriented Junior SAP Security Administrator to join our SAP Security team. This is an entry-level role designed for individuals with foundational IT Security knowledge and a strong interest in SAP security and access controls. This role offers hands-on training and mentorship and is ideal for candidates looking to grow into a long-term SAP Security career.
**What You Will Do:**
+ Support the SAP Security team in performing day-to-day user administration tasks including user creation, role assignment, and password resets across SAP environments (ECC, S/4HANA, BW, Fiori, etc.)
+ Process user access requests via the access management tool (SARS & ServiceNow)
+ Perform role assignments and removals following established segregation of duties (SoD) and least-privilege principles
+ Collaborate with SAP functional and technical teams in troubleshooting user access issues and escalating as necessary
+ Participate in quarterly user access reviews and help maintain audit-compliant documentation
+ Help maintain and update SAP role and user master data under guidance
+ Log and track security-related tickets, ensuring timely resolution and closure
+ Provide basic reporting support using SAP transaction codes and Microsoft Excel
+ Follow all internal controls, audit policies, and standard operating procedures
**Qualifications You Must Have:**
+ Bachelor's Degree with 2 years of experience with a familiarity with SAP or any ERP system (coursework or internship experience acceptable) and a basic understanding of user access management concepts, including roles and authorizations
+ Strong attention to detail and a high sense of accountability with excellent communication and organizational skills
+ Ability to follow procedures and documentation accurately
+ Strong willingness to learn SAP security concepts, tools, and best practices and exhibits excellent communication skills. Communicates with parties within and outside of own team
+ Exhibits the ability to work autonomously with limited supervision and exhibit the highest standards of ethics and integrity, consistently adhering to the RTX Code of Ethics.
**Desired Qualifications:**
+ Internship or academic experience with SAP (any module)
+ Basic understanding of IT general controls, SOX compliance, or audit concepts
+ Exposure to SAP GUI & SAP Fiori
+ Familiarity with ticketing systems like ServiceNow or Remedy
+ Familiarity with Cloud architectures (Azure, AWS)
**Development Opportunity:**
This role is designed to be a launchpad into SAP Security. The selected candidate will be given mentoring, technical training, and the opportunity to shadow senior team members to gain deeper skills in:
SAP Ariba Security
Role design and SoD remediation
SAP audits and controls
Cross-functional collaboration with compliance and audit teams
SAP Licensing
**What We Offer:**
Whether you're just starting out on your career journey or are an experienced professional, we offer a robust total rewards package with compensation; healthcare, wellness, retirement and work/life benefits; career development and recognition programs. Some of the benefits we offer include parental (including paternal) leave, flexible work schedules, achievement awards, educational assistance and child/adult backup care.
**Work Location:**
Remote
**_As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote._**
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels.
RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
_RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act._
**Privacy Policy and Terms:**
Click on this link (******************************************************** to read the Policy and Terms
Raytheon Technologies is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
Sr Information Security Specialist (US) - Domain Engagement Lead
Security engineer job in Fort Lauderdale, FL
Hours: 40 Pay Details: $113,000 - $196,000 USD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology Solutions
Job Description:
The Senior Information Security Specialist leads development and/or implementation of significant or Bank-wide Technology Controls / Information Security strategies, policies, programs, tools and provides expert advice and guidance on technical solutions. Oversees control and governance activities and identifies and assesses potential security risks, breaches/ exposures impacting highly complex / high risk businesses or transformational (change the bank) strategic initiatives primarily interfacing with executive and/or functional stakeholders across the Bank.
Depth & Scope:
* Works autonomously on high profile, complex and/or high risk technology projects with significant impact to the organization
* Provides technical leadership / consulting / direction to a larger team / portfolio on all aspects of technology controls / information security
* Foresees issues / gaps and identifies emerging industry trends (i.e. future focused)
* Provides recommendations on value-added improvements / enhancements
* Top technical expert individual contributor with expert knowledge of IT security and risk disciplines and practices
* Advanced and highly specialized knowledge of organization, technology controls / security/ risk issues
* Provides recommendations on value-added improvements / enhancements
Education & Experience:
* Bachelor's degree preferred
* Information security certification / accreditation an asset
* 10+ years of relevant experience
Preferred Qualifications :
* Strong GRC experience
* Understanding of core technology and security areas such as identity, cloud, data protection, and engineering practices
* Security Certifications (CRISC, CISA, Security+)
* Strong governance discipline, an enterprise mindset, and the ability to bring clarity, structure, and consistency across diverse teams
Physical Requirements:
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
* Domestic Travel - Occasional
* International Travel - Never
* Performing sedentary work - Continuous
* Performing multiple tasks - Continuous
* Operating standard office equipment - Continuous
* Responding quickly to sounds - Occasional
* Sitting - Continuous
* Standing - Occasional
* Walking - Occasional
* Moving safely in confined spaces - Occasional
* Lifting/Carrying (under 25 lbs.) - Occasional
* Lifting/Carrying (over 25 lbs.) - Never
* Squatting - Occasional
* Bending - Occasional
* Kneeling - Never
* Crawling - Never
* Climbing - Never
* Reaching overhead - Never
* Reaching forward - Occasional
* Pushing - Never
* Pulling - Never
* Twisting - Never
* Concentrating for long periods of time - Continuous
* Applying common sense to deal with problems involving standardized situations - Continuous
* Reading, writing and comprehending instructions - Continuous
* Adding, subtracting, multiplying and dividing - Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals. Total Rewards at TD includes base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
TD Bank is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.
If you are an applicant with a disability and need accommodations to complete the application process, please email TD Bank US Workplace Accommodations Program at ***************. Include your full name, best way to reach you and the accommodation needed to assist you with the applicant process.
Auto-ApplyInformation Security Analyst
Security engineer job in Tampa, FL
As an Information Security Analyst, you will have shared responsibility for implementing and maintaining company's security strategies and services while providing security guidance based on industry standards and best practices. The ideal candidate will ho have an educational background and/or experience to maintain and support assigned information security technologies with general leadership oversight.
*This position is located out of our Tampa, FL corporate office.
2 days a week in office are required*
Some of the regular responsibilities may include:
Provision, manage, monitor, test, and decommission security tools and applications.
Attend and lead small project meetings and enforce best practices.
Apply specialized security technical knowledge.
Evaluate, plan and implement security projects.
Remain current on assigned security tools and applications and apply skilled understanding of troubleshooting.
Document and resolve moderately complex problems.
Report progress to leaders.
Monitor and analyze Identity security incidents, and provide recommendations for remediation
Other duties as assigned or required.
Experience to be successful:
IT security risks and mitigation strategies.
Security Incident Response
Security frameworks, including ISO and NIST.
Company IT and HR policies.
Various IT security-related regulatory requirements.
IT security logging and monitoring strategies.
Deployment and use of sophisticated IT security monitoring tools.
Educational background: Bachelor's degree in computer science, Information Systems, or other related field; or has 2-5 years of relevant experience.
Technical Skills to understand the role:
Analytical ability
Analyzing Security System Logs, Security Tools, and Data
Communicating Up, Down, and Across All Levels of the Organization
Creating, Modifying, and Updating Security Information Event Management (SIEM)
Deep Understanding of Risk Management Frameworks
Discovering Vulnerabilities in Information Systems
Evaluating and Deconstructing Malware Software
Familiarity with Security Regulations and Standards
Implement and Maintain Security Frameworks for Existing and New Systems
Maintaining Security Records of Monitoring and Incident Response Activities
Monitoring Compliance with Information Security Policies and Procedures
Network and System Administration Experience
Responding to Requests for Specialized Cyber Threat Reports
Performing Cyber and Technical Threat Analyses
Performing Security Monitoring
Producing Situational and Incident-Related Reports
Providing Host-Based Forensics
Providing Timely and Relevant Security Reports
Responding to Security Events
Supporting and Managing Security Services
#LI-MB1
Benefits may include:
Comprehensive medical, prescriptions, dental and vision plans
401(k) plan with a discretionary company match
Shareholder Purchase and Reinvestment Plan
Basic life and accidental death and dismemberment insurance premium paid by the company
Voluntary supplemental life insurance for employees, spouses and dependent children
Fertility and Family Building Benefits
Paid Disability benefits
Paid time off programs
11 Company paid holidays per year
Flexible spending account
Health savings account (available to High Deductible Health Plan participants only)
Employee Assistance Program
Educational Assistance Program
Voluntary benefits, such as Critical Illness, Hospital Indemnity, Pet Insurance and Accident Insurance
Title insurance policies and certain escrow services for the employee's primary personal residence at no charge
Transportation benefit plan for mass transit, parking and vanpool, in several markets
Note: If you currently are employed by Old Republic Title (or one of its wholly owned affiliated companies) please get in touch with your human resources representative regarding the application process.
For California applicants, please click the following link to view our CCPA Applicant Notice
Old Republic Title is an Equal Opportunity Employer
Auto-ApplyInformation Security Systems Engineer
Security engineer job in Melbourne, FL
Role: Information Security Systems Engineer III Pay Rate: $40.00-50.00/hr on W2 Temp to Hire We are searching for talented and experienced Security Engineering professionals to join the Mission Networks Enterprise Security Team as a Level 3 Information Security Systems Engineer (ISSE).
•This position is ONSITE at Client offices located in Melbourne, Florida
•This role may require weekend, after-hours, or on-call rotations to meet program requirements and/or ongoing program support.
•This position may require limited travel in an emergency
•This position requires the ability to obtain FAA Public Trust Suitability
Security Clearance: Must be able to obtain a Public Trust
Key Responsibilities:
•Develop and enforce security policies, procedures, and measures in alignment with the program's cybersecurity strategies.
•Design, implement, and manage security solutions, including but not limited to firewalls, intrusion detection systems, endpoint protection, and encryption tools.
•Develop, maintain and publish technical documentation in accordance with Client Systems Engineering processes.
•Act as a Security Support Engineer for State, Federal and commercial customers.
•Provide technical guidance and support to less experienced team members.
•Stay abreast of the latest security trends, threats, and control technologies.
•This position will require weekend, after hours, and on-call support to meet program requirements.
Qualifications & Education:
•BS/BA (or equivalent) degree in Computer Science, IT Security or STEM related field.
o Five or more years of experience in Information Security, Network Engineering, or System Administration
•In lieu of a bachelor's degree, a candidate must have ten plus years of Security network or system engineering experience.
•Strong understanding of system administration including Windows and Linux operating systems.
•Strong knowledge of Cisco network infrastructure, including LAN/WAN, VPNs, routers, and switches.
•Strong project engineering experience in security-related environments.
•Excellent analytical and problem-solving skills.
•Effective communication and interpersonal skills.
•Experience with security frameworks (NIST SP800-53, NIST SP800-171, ISO 27001, or FISMA) and risk management methodologies.
•The candidate must have the ability to obtain a FAA Public Trust, GSA clearance and Standard Public Trust.
PREFERRED TECHNICAL SKILLS
•Experience administering Next Generation Firewalls (NGFW) (Fortinet, Cisco, or Palo Alto).
•Experience mitigating DDoS floods with on-premise and cloud-based solutions.
•Experience deploying Intrusion Detection/Prevention System configurations and providing technical support.
•Experience administering Security Information and Event Management (SIEM) infrastructure.
•Data Loss Prevention systems configuration, deployment and technical support (Varonis and Manage Engine Audit Plus).
•Experience with deployment and administration of Enterprise host intrusion and detections systems (Carbon Black or Sentinel One preferred)
Preferred Certifications:
•CISSP (Certified Information Systems Security Professional)
•CCNA (Cisco Certified Network Associate)
Cyber Security Systems Engineer
Security engineer job in Tampa, FL
The Cyber Security Systems Engineer provides cyber defense analysis and engineering support for MARCENT systems, ensuring resilience and compliance against advanced threats. This role engineers security solutions for MARCENT communications systems, conducts vulnerability assessments and security audits, implements DoD cybersecurity standards, and provides documentation and training on cyber defense posture. With 7-10 years of experience, the engineer applies expertise in network security analysis, packet inspection, threat hunting, vulnerability assessment, SIEM operations, and forensic analysis. By integrating technical expertise with operational awareness, the Cyber Security Systems Engineer ensures MARCENT systems remain secure, compliant, and ready to counter evolving cyber threats. *THIS EMPLOYMENT IS CONTINGENT UPON CONTRACT AWARD*
Responsibilities/Duties:
* Engineer security solutions for MARCENT communications and information systems.
* Conduct vulnerability assessments, penetration testing, and security audits to identify risks.
* Implement DoD cybersecurity standards and RMF requirements.
* Provide documentation, training, and guidance on MARCENT's cyber defense posture.
* Perform network security analysis, including packet inspection and traffic monitoring.
* Conduct threat hunting and vulnerability assessments to proactively identify risks.
* Operate SIEM platforms, triage alerts, and conduct malware behavior and forensic analysis.
* Apply frameworks such as the cyber kill chain and ATT&CK models to enhance defense strategies.
Supplemental Duties:
* Assist in developing SOPs for cyber defense operations and incident response.
* Support compliance audits and RMF documentation requirements.
* Contribute to after-action reviews and lessons learned from cybersecurity incidents.
Administrative Duties:
* Maintain compliance with MARCENT administrative procedures and reporting requirements.
* Ensure cybersecurity documentation is archived according to records management standards.
Supervisory Responsibilities:
None.
Education/Experience/Qualification:
* Bachelor's Degree in Cybersecurity, Computer Science, or related discipline required.
* 7-10 years of experience in cybersecurity engineering for DoD or military systems.
* DoD IAT II or above certification required (e.g., Security+, CISSP).
* Experience in network security analysis, packet inspection, and threat hunting.
* Proficiency in SIEM operations, alert triage, and forensic/malware behavior analysis.
* Experience with RMF documentation and compliance auditing.
* Familiarity with frameworks such as kill chain and ATT&CK models.
* Strong communication and briefing skills for both technical and non-technical audiences.
* TS/SCI clearance required.
Additional Skills:
* Ability to engineer innovative cybersecurity solutions tailored to operational needs.
* Strong analytical skills to assess risks and develop mitigation strategies.
* Proficiency with Microsoft Office Suite and cybersecurity tools.
* Attention to detail in documentation, compliance, and reporting requirements.
Location:
Primary workplace is MARCENT Headquarters, MacDill Air Force Base, Tampa, Florida.
Work Environment:
Office environment within a joint military/civilian/contractor staff. Includes coordination with cybersecurity teams, IT personnel, and external DoD partners.
Physical Demands:
Primarily sedentary office work with extensive computer use. May involve occasional travel to support cybersecurity inspections, training, or incident response activities.
Work Schedule:
Full-time, 40 hours per week. Monday-Friday, 0800-1600.
May require flexibility during cybersecurity incidents or system upgrades.
License and Other Requirements:
Valid U.S. Driver's License. Eligibility for issuance of a Common Access Card (CAC).
Salary and Benefits:
As stated during the hiring process.
Security Clearance:
TS/SCI clearance required.
Travel:
May include CONUS and OCONUS travel to support cybersecurity operations, training, and system sustainment.
Sr Cloud Security Analyst (onsite)
Security engineer job in Doral, FL
13804 - Sr Cloud Security Analyst (onsite) - Doral, FL Work Setting: Hybrid Required: • Availability to work at the Client's site in Doral, FL (required); • Experience with O365, AD, MS, Linux Access management (5+ years); • Experience with Cloud Security (5+ years);
• Experience with Azure administration and configure access controls;
• Experience with AWS security administration and configure access controls;
• Experience with GCP;
• Experience with GDPR, PCI, NIST;
• Experience with Vendor technology legacy;
• Experience with SailPoint IAM solution;
• Experience with Active Directory;
• Experience with Windows workstations and server operating systems;
• Experience with managing security for AWS cloud environment tenants;
• Security background;
• High School Diploma or GED in Computer Science or other technical degree or equivalent experience;
• Certifications: Microsoft 365 Messaging and or Security Administrator, CompTIA Cloud+.
Preferred:
• Scripting experience (PowerShell, Python etc.);
• Experience with Qualys;
• Experience with Orca Security;
• Bachelor's Degree.
Responsibilities:
• Management, evaluation, maintenance, and enhancement of the cloud security posture;
• Operation of identity and access processes and controls for SailPoint, Active Directory, Email, and Collaboration Platforms and cloud-based solution;
• Continuous improvement of the brand vulnerability management people, process, and technology analyzing cloud environment reporting, prioritizing, and working with brand IT to make Cloud Security Management data actionable and understandable;
• Evaluation and providing directives and guidance regarding our SIEM integrations, identifying potential blind spots, and assisting with configuration validations;
• Augment and assist GISCS Security Operations, monitoring and triaging brand security events (Security Operations);
• Creates visual information in the form of dashboard(s) and reports for executives and business stakeholders on a regular basis that communicates Cybersecurity risks and KRIs;
• Assisting with security architecture reviews for new and proposed integrated solutions.
Why apply?
• Work with one of the largest global vacation and cruise providers and a recognizable brand;
• Be a part of a diverse multicultural team and thrive in a fun and inclusive work environment dedicated to providing memorable and affordable vacations;
• Work with the leader in cutting-edge technology and programming;
• Be certain in your future as our Client is a stable and growing company with increasing revenue;
• Receive plenty of coaching and support from the team and current Vitaver consultants.
Enjoy a comprehensive employee benefits program:
• Get paid on a bi-weekly basis;
• During the 1st year of employment - prorated amount of PTO and Sick Time. After - 14 days of PTO annually and 10 days of sick time annually;
• Eight paid holidays annually;
• Available health, dental, vision plans;
• Flexible spending account;
• 401K retirement savings plan;
• Employee Stock Purchase plan;
• Short and long-term disability plan;
• Cruise benefits;
• Discount and complimentary memberships (various complimentary memberships, discount cards and passes: theme parks, various restaurants, wholesale clubs, car rental agencies and cell phone providers to name a few).
Onsite perks:
• Fitness center;
• Child Development Center;
• Café and coffee shop;
• Learning Resource Center (LRC);
• Discounted dry-cleaning service;
• Fuel service & car wash.
Senior Security Engineer
Security engineer job in West Palm Beach, FL
About GoodLeap:GoodLeap is a technology company delivering best-in-class financing and software products for sustainable solutions, from solar panels and batteries to energy-efficient HVAC, heat pumps, roofing, windows, and more. Over 1 million homeowners have benefited from our simple, fast, and frictionless technology that makes the adoption of these products more affordable, accessible, and easier to understand. Thousands of professionals deploying home efficiency and solar solutions rely on GoodLeap's proprietary, AI-powered applications and developer tools to drive more transparent customer communication, deeper business intelligence, and streamlined payment and operations. Our platform has led to more than $30 billion in financing for sustainable solutions since 2018. GoodLeap is also proud to support our award-winning nonprofit, GivePower, which is building and deploying life-saving water and clean electricity systems, changing the lives of more than 1.6 million people across Africa, Asia, and South America.
Position Summary The GoodLeap security team is responsible for both business enablement and safeguarding the organization's information assets; it is involved in virtually all aspects of the business, from product safety and resilience, to building security paved roads, customer, partner, and regulatory trust, managing technology governance and compliance, and ensuring the privacy, and safety of GoodLeap's customers, partners, and employees information.
The senior security engineer role provides a unique opportunity to shape the security and resilience of GoodLeap corporate systems, services, and operational processes. In this role, you will work closely with product, engineering, IT, and business teams within GoodLeap, acting as the key individual with both the authority and responsibility to ensure the safety and resilience of enterprise systems, products, and services.
Your oversight will encompass: - Enterprise systems:Identifying potential misuse and abuse cases, proposing solutions to address these scenarios, and identifying product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements. - Build-time controls: Managing applications/products security controls and activities during development. - Runtime controls: Overseeing security measures at runtime, from prevention to detection and response.
Additionally, you will be involved with aspects of internally built products and represent all areas of security, spanning governance, risk, and compliance (GRC) to security monitoring, for a number of departments/teams. You will also have the authority and ability to involve other security team members as needed.
While you will take on multiple responsibilities-from advisor to builder and beyond-your primary focus will be designing and building security patterns and practices for services and processes, and fostering strong relationships with product, business, and engineering. Essential Job Duties & Responsibilities
Lead, participate in, and contribute to partnerships between security, IT, General & Administrative teams, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in GoodLeap enterprise systems, products, services, and operational processes.
Identify potential misuse and abuse cases in enterprise systems, propose solutions to address these scenarios, and identify product features, configuration settings, and/or mitigating or compensating controls to meet resilience requirements.
Support or develop components of the security analytics platform.
Contribute to investigations, threat hunting, and incident response activities in a supporting role.
Collaborate with the monitoring and response team to create playbooks for specific incident response scenarios related to the products and services you oversee. These investigations, incidents, and playbooks may address security, fraud, privacy, resilience, and related concerns.
Support the security operations team with the vulnerability management lifecycle for products and services under your purview.
Ensure technical alignment for the products and services you oversee with team initiatives, including GRC, security operations, and monitoring and response activities.
Required Skills, Knowledge & Abilities
Strong communicator with the ability to lead technical architecture discussions, drive technical decisions, and effectively communicate with non-technical audiences.
Expertise in agile product lifecycles. Ideally, you have experience in a product manager or engineering manager role and understand how SaaS products (B2B, B2B2C, and B2C) are built, including roadmap planning and feature and defect prioritization.
Experience with threat modeling methodologies, with the ability to create efficient and scalable approaches to conducting such assessments.
Familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, and IAM (knowledge of GCP and/or Azure is a plus).
Proven ability to establish credibility and build trust with business, engineers, and operational staff; confident yet humble.
Hands-on experience with managing security for core enterprise systems, e.g., ERP, HCM, Salesforce, etc.
Strong understanding of both human and non-human identity management and common enterprise and consumer authentication standards and use cases.
Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools like Doppler and HashiCorp Vault.
Passionate about learning new technologies. While you're not expected to know everything, you should demonstrate a willingness and ability to learn as needed.
Prior experience interfacing and supporting with G&A teams, internal product teams, and other cross-functional areas.
Proficiency in writing automation scripts in multiple languages, with prior experience automating security processes in cloud or SaaS environments.
Experience engaging with vendors in design partnerships.
Experience overseeing vulnerability and threat management at the platform and application levels.
Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement.
Ability to balance a high-level view of security strategy with attention to detail, ensuring thorough and effective execution.
In addition to the above salary, this role may be eligible for a bonus. Additional Information Regarding Job Duties and s:
Job duties include additional responsibilities as assigned by one's supervisor or other managers related to the position/department. This job description is meant to describe the general nature and level of work being performed; it is not intended to be construed as an exhaustive list of all responsibilities, duties and other skills required for the position. The Company reserves the right at any time with or without notice to alter or change job responsibilities, reassign or transfer job position or assign additional job responsibilities, subject to applicable law. The Company shall provide reasonable accommodations of known disabilities to enable a qualified applicant or employee to apply for employment, perform the essential functions of the job, or enjoy the benefits and privileges of employment as required by the law.
If you are an extraordinary professional who thrives in a collaborative work culture and values a rewarding career, then we want to work with you! Apply today!
We are committed to protecting your privacy. To learn more about how we collect, use, and safeguard your personal information during the application process, please review our Employment Privacy Policy and Recruiting Policy on AI.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Security Systems Field Laborer
Security engineer job in Tampa, FL
At LaForce, we specialize in delivering access control, video surveillance, and intercom solutions that keep people and businesses secure. We're looking for a dedicated and skilled Security Integration Field Laborer in our Tampa, FL location to join our team. This role assists with installing and maintaining access control systems, video surveillance, and other electro-mechanical security products for commercial businesses.
What You'll Do:
As a Field Laborer, you will help with ensuring secure and functional installations for our customers. Every day will bring new challenges, from problem solving complex technical issues to learning new technologies in the security industry. Your day-to-day will include:
* Helping with installing and programming access control systems, CCTV, intercoms, security systems, and electrical hardware with precision and efficiency.
* Troubleshooting and adjusting new or existing systems to meet customer needs.
* Safely handling disassembly and removal of electrical products and door hardware.
* Training customers on new and existing systems and software.
* Producing quality results on time and within budget, representing the company professionally, and fostering strong customer relationships.
* Helping with accurate wiring diagrams upon project completion for future reference.
* Maintaining clear, professional communication with customers, sales staff, and supervisors.
* Operating a company vehicle safely and respectfully in accordance with company policy.
What You'll Bring:
We welcome applicants with technical certificates, equivalent professional experience, or relevant military experience in electrical or mechanical fields. The ideal candidate has knowledge of low-voltage electrical wiring, the ability to read wiring diagrams and blueprints, strong problem-solving skills, and a valid driver's license with a clean record.
Physical Requirements
This role demands physical stamina and precision, including:
* Frequently standing, walking, climbing ladders, and lifting up to 40 pounds.
* Occasionally carrying loads up to 75 pounds
* Performing tasks requiring elevated activity.
Why Join LaForce?
At LaForce, you're part of a team dedicated to growth, innovation, and excellence. From competitive pay to a supportive culture that values your ideas, we're here to help you thrive. You'll receive a cell phone stipend, company-provided tools, and comprehensive hands-on training.
How to Apply
Screening includes a drug test, background check, and driver's license verification. If you're passionate about security systems and looking to make a difference in the field, apply today! We look forward to meeting you!
Visual Systems Engineer II - SECURITY CLEARANCE ELIGIBILITY REQUIRED
Security engineer job in Orlando, FL
Visual System Engineer II participates in all aspects of the production and integration of visual systems and 3D databases and models on designated projects to meet customer requirements. The work pertains primarily to the research, design, development, testing, valuation,implementation, and maintenance of visual system products. The position requires working under supervision and reports to a manager.
Responsibilities
1 Responsible for analysis, design, development, integration, and unit testing for the visual system.Provides expert judgment on:
a. fundamentals and principles of professional engineering;
b. computer hardware, systems software, and computer system architecture and integration; and
c. mathematics, including calculus, probability, statistics, discrete structures, and modern algebra.
2 Participates in all aspects of the production and integration of visual systems and 3D databases and models on designated projects to meet customer requirements.
3 Responsible for various aspects of synthetic environment design and construction.
4 Ability to plan and execute complex, multi-faceted projects within established financial and time constraints.
5 Ability to plan and execute complex, multi-faceted projects within established financial and time constraints.
6 Ability to evaluate computer technology to meet requirements of scene generation with respect to frame rate, memory and disk space.
7 Able to work in a fast-paced production environment with ability to handle multiple competing tasks and demands simultaneously.
8 Able to travel to customer locations to support contractual commitments including data collection, program reviews, development, installation, integration, and testing.
9 Support installation efforts that will require travel CONUS and OCONUS.
10 Review project tasks against schedules and provides status reports.
11 Work as part of a project team.
12 Implementation and application of sound configuration management processes.
T
asks
1 Provide the development and testing of visual system content including terrain databases, three dimensional models, andanimations to ensure they conform to program requirements.
2 Provide technical support for visual and sensor synthetic natural environment design and development to ensure successful integration and performance.
3 Define synthetic natural environment content requirements and advise project teams on alternatives to achieve training effective visual cues in the environment model.
4 Facilitate and develop Acceptance Testing Procedures for customer acceptance.
5 Support design documentation development.
Education
Completion of a full course of study in an accredited college or university leading to a Bachelor's or higher degree in engineering, engineering technology, physics, electro-optics, mathematics, or computer science or a related field.
Substitutions:
Four (4) years of professional experience can be substituted for two (2) years of the educational requirements.
* US Government security clearance is required and candidate must be eligible.
* Candidate must be able to obtain a US passport.
Qualifications
Experience
5 years experience in visual systems engineering or game development and integration of complex training simulation systems.
1 Show a strong understanding of military training systems, general training simulation technology, terrain data base modeling systems, terrain data base formats for visual/sensor simulation, geographic information systems, and/or the use of mapping, charting, geodesy, and imagery (MCG&I) source data.
2 Must possess established experience in synthetic environment generation, including terrain and model development in a variety of formats and tool sets for visual/sensor simulation;
3 Must possess experience in military training systems and general training simulation technology;
4 Must possess an understanding of the defense procurement process;
5 Must possess an established understanding of sensor technologies such as infrared, image intensification, television, and radar and practical experience in how those technologies are simulated/stimulated and correlated into simulation systems.
6 Knowledge of the moving model generation process along with the required database formats.
7 Knowledge of the terrain database generation process along with the required correlated database formats to support SAF and sensor simulation.
8 Knowledge of visual and sensor simulation system design, development, analysis, and test and evaluation for training systems.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Information Security Analyst
Security engineer job in Doral, FL
SGP Recruiting provides both operations and strategic support to Tribal 8(a) and commercial organizations. Our client is a CVE-verified Veteran-Owned Small Business (VOSB) and a proud ISO 9001:2015 certified organization specializing in systems integration and enterprise management solutions. As a trusted GSA MAS contract holder, they deliver mission-critical telecommunications, network infrastructure, and IT services to Federal, State, and Local Government agencies, the U.S. Military, and private-sector clients.
They are seeking a motivated, career and customer-oriented Information Security Analyst in Doral, FL. Possible other locations for this position: Key West, Newport (FL), and Naval Station Guantánamo Bay (NSGB). Join a team dedicated to Meeting today's mission demands requires more than just technology - it requires the right people, the right expertise, and the right partners working together with precision and purpose. Propel your career forward and be part of something extraordinary.
Salary Range - $85 - 90K Annually.
Employment - Full time
Worksite Type - Onsite
Security Clearance Required - Secret
Responsibilities include but are not limited to:
· Design, development, and maintenance of insightful and actionable. The Cybersecurity Analyst is responsible for the design, development, and maintenance of insightful and actionable dashboards using the ConstantView platform dashboards using the ConstantView platform.
· Possess a high level of expertise in ConstantView's functionalities, data visualization techniques, and data analysis methodologies.
· Lead the development of dashboards that effectively translate complex data into clear and concise visual representations, enabling stakeholders to gain valuable insights and make informed decisions.
· Includes collaborating with business users to understand their information needs, identifying relevant data sources, and designing dashboards that align with business objectives.
· Manipulate and transform data, apply appropriate visualizations, and ensure the accuracy and reliability of dashboard outputs.
· They also maintain existing dashboards, troubleshoot issues, and implement enhancements based on user feedback and evolving business requirements.
· They possess a strong understanding of data modeling, SQL querying, and data governance principles and can communicate technical concepts to non-technical audiences.
· The Information Systems Specialist III provides direction and mentorship to subordinate staff.
Minimum Qualifications:
· Bachelor's degree in information systems, Computer Science, Data Analytics, or 4+ years of additional experience related field in lieu of a required Bachelor's degree
· 9+ years of relevant Information Systems Specialist experience.
· Experience in data analysis and reporting, with a significant portion focused on dashboard development.
· Proven expertise in using Constant View for dashboard creation and maintenance.
· Strong understanding of data visualization principles and best practices.
· Experience with data manipulation and transformation techniques using SQL or other tools. Experience with data modeling and database design concepts. Relevant ConstantView certifications (e.g., developer, administrator). Training or certifications in data visualization tools and techniques.
Desired Qualifications:
· Master's degree in a relevant field. Experience with other data visualization platforms (e.g., Tableau, Power BI).
· Experience with data storytelling and presentation skills. Experience with data governance and data quality management.
· Experience with agile-informed development methodologies.
· Experience with statistical analysis and data mining techniques.
· Certifications in relevant programming languages (e.g., Python, R). Certifications in data science or data engineering.
· Experience at a DoD Combatant Command (e.g., SOUTHCOM, NORTHCOM, CENTCOM, CYBERCOM, INDOPACOM, EUCOM, AFRICOM, STRATCOM, TRANSCOM, SOCOM, SPACECOM) or a component is desired.
Our client provides a variety of benefits including company-paid health, dental & vision insurance coverage, as well as additional employee-paid health insurance options; company-paid life and disability insurance; 401k retirement savings plan with employer match; 10 company paid holidays per year, and paid time off.
Our client also considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
Auto-ApplyINFORMATION SECURITY ANALYST III - 73002976
Security engineer job in Tallahassee, FL
Working Title: INFORMATION SECURITY ANALYST III - 73002976 Pay Plan: Career Service 73002976 Salary: $57,000.00 - $63,000.00 / annually Total Compensation Estimator Tool
Florida Department of Revenue
Information Services Program
Information Security Analyst III
Tallahassee
This is an Internal Agency Advertisement
If you have a desire to use your talent and skills at an organization that provides critical services to millions of individuals, businesses and families across the state, the Florida Department of Revenue invites you to apply to become an essential member of our team. We are committed to maintaining a diverse workforce and providing employment opportunities to veterans and individuals who have a disability. To learn more about the Department of Revenue's excellent array of benefits, including career training, tuition waivers, paid vacations, insurance, and retirement programs, visit our website.
JOB SUMMARY:
This is an advanced level support as an Information Security Analyst III position on the DOR Governance, Risk, and Compliance (GRC) Team, located in the Information Systems Program in Tallahassee. Cybersecurity is one of the fastest growing fields with endless opportunities for monitoring and mitigation of security threats. Customer service, time management, and effective communication are extremely important for this role. The incumbent serves as the point of contact regarding Risk Management on the Security GRC Team. This is independent work conducting organizational studies and evaluations, conducting risk assessments, business impact analysis assessments, providing technical assistance, and developing process and procedures to assist the organization in the analysis, assessment, and control of risks. May include program analysis, management consulting, and examination development.
MINIMUM REQUIREMENTS:
* Currently employed with the Florida Department of Revenue.
* Four years or more experience working in Information Technology or Information Security.
* Two years or more providing guidance to managers and their staff.
* Experience collaborating with various stakeholders, teams, or executive management.
* Experience conducting research and analyzing complex data, requirements, and information.
* Experience planning, organizing, and coordinating efforts across an organization.
* One year experience with NIST Risk Management Framework.
* Working knowledge and experience in Microsoft Office applications, specifically, Excel and Word.
PREFERENCES:
* Experience with ISO/IEC 20000.
* Experience with F.A.C. 60GG-2.
* Experience with NIST Cybersecurity Framework.
* Experience with cybersecurity rules and IRS Pub 1075.
* Experience utilizing SharePoint.
* Experience documenting processes, policies, and procedures.
* Advanced level experience in Microsoft Office Suite.
* Experience using project management, IT task management, Change Management, or other audit-related software.
* Strong verbal and written communication skills with the ability to communicate appropriately with technicians, as well as management.
SPECIAL NOTES:
* Failing to respond, or providing a response such as "see resume," "n/a" or similar, to a qualifying question that requires an explanatory response will disqualify the applicant from further consideration.
* This position is located in Tallahassee.
* This position is not eligible for telework.
* The tentative salary for this position is $60,000.00 annually.
SALARY: $57,000.00 - $63,000.00 / annually
BENEFITS:
Benefits include, but are not limited to, health insurance, life insurance, tuition waivers, paid sick and personal leave, paid parental leave, 10 paid holidays annually, retirement savings, and vision and dental insurance.
ADDITIONAL INFORMATION YOU NEED TO KNOW
CONTACT INFORMATION: Sangeetha Mohan Doss, **************, **************************************.
SCREENING DISCLAIMER: Your responses to qualifying questions must be verifiable by skills and/or experiences you stated on your candidate profile and/or resume.
SKILLS VERIFICATION TEST OR ONLINE SKILLS ASSESSMENT: If you meet the minimum job requirements, we might require you to take a skills verification test or an online skills assessment to be considered for an interview.
CANDIDATE POOL: Future vacancies may be filled from this advertisement for a period of up to six months.
CRIMINAL BACKGROUND CHECKS: You will be required to undergo a National Level-2 criminal background check which requires you to provide your fingerprints.
REMINDER: Male candidates born on or after October 1, 1962, will not be eligible for hire or promotion unless they are registered with the Selective Services System (SSS) before their 26th birthday or have a Letter of Registration Exemption from the SSS. For more information, please visit the SSS website at *******************
The State of Florida is an Equal Opportunity Employer/Affirmative Action Employer, and does not tolerate discrimination or violence in the workplace.
Candidates requiring a reasonable accommodation, as defined by the Americans with Disabilities Act, must notify the agency hiring authority and/or People First Service Center (***************. Notification to the hiring authority must be made in advance to allow sufficient time to provide the accommodation.
The State of Florida supports a Drug-Free workplace. All employees are subject to reasonable suspicion drug testing in accordance with Section 112.0455, F.S., Drug-Free Workplace Act.
VETERANS' PREFERENCE. Pursuant to Chapter 295, Florida Statutes, candidates eligible for Veterans' Preference will receive preference in employment for Career Service vacancies and are encouraged to apply. Certain service members may be eligible to receive waivers for postsecondary educational requirements. Candidates claiming Veterans' Preference must attach supporting documentation with each submission that includes character of service (for example, DD Form 214 Member Copy #4) along with any other documentation as required by Rule 55A-7, Florida Administrative Code. Veterans' Preference documentation requirements are available by clicking here. All documentation is due by the close of the vacancy announcement.
Location:
Easy Apply737 P-8 Electrical - DEFENSE
Security engineer job in Jacksonville, FL
PAY RATE: $26-31/hour
We are a national aerospace and defense staffing agency seeking highly qualified candidates for a position with a top-tier client.
Job Details:
Job Type: Contract (12 months with potential for extension)
Clearance: Eligible to obtain a Secret Clearance
Industry: Aerospace / Defense / Aviation
Benefits: Medical, dental, and vision (Cigna)
Perks: Bonus potential + Priority access via Tier 1 supplier
Openings Nationwide: Thousands of opportunities across the U.S.
Qualifying Questions:
Are you a U.S. person as defined under ITAR regulations?
Do you meet the educational and experience requirements for this role?
Can you commute to the job location or relocate if necessary?
Summary:
Work in a dynamic Maintenance, Repair, and Overhaul (MRO) environment with a focus on wellbeing, work/life balance, and ethical team culture
Collaborate in an environment emphasizing openness, innovation, safety, and first-time quality
Support MRO and Component Operations for military, commercial derivatives, fighter aircraft, and aircraft component maintenance, repair, and overhaul
Adhere to established processes, maintain accurate work records, and ensure contractual and regulatory compliance
Maintain regular and predictable attendance and work at heights using fall protection equipment
Obtain Fall Protection Certification per OSHA regulations (1926, 1910 Subpart D)
Perform aircraft electrical work on the P-8 aircraft
Handle and terminate fiber and wire bundles
Read and interpret blueprint schematics
Work independently with minimal supervision
Requirements:
Eligible to obtain a Secret Clearance
High school diploma or GED, with 1+ year of related experience, or an equivalent combination of education and experience
3-5 years of experience in aircraft electrical maintenance
Background with 737 aircraft preferred
Ability to properly handle fiber
Ability to terminate and install wire bundles and read schematics
Ability to work without supervision
Open to military and/or corporate backgrounds
Must be a U.S. Citizen (as defined by ITAR).
About Us:
The Structures Company is a premier national aerospace and defense staffing agency specializing in contract, contract-to-hire, and direct hire placements. We deliver expert workforce solutions across engineering, IT, production, maintenance, and support roles.
As trusted partners to major aerospace OEMs and Tier 1 suppliers, we connect professionals with opportunities to grow and excel in the aviation and aerospace industries.
Eligibility Requirements:
Must be a U.S. Citizen, lawful permanent resident, or protected individual under 8 U.S.C. 1324b(a)(3) to comply with ITAR regulations.
Keywords: aerospace, aviation, engineering, maintenance, aircraft design, defense
Take your career to new heights-apply today!
#jobad
Senior Manual Ethical Hacker
Security engineer job in Jacksonville, FL
Denver, Colorado;Seattle, Washington; Jacksonville, Florida; Addison, Texas; Jersey City, New Jersey; Boston, Massachusetts; Charlotte, North Carolina; Chicago, Illinois **To proceed with your application, you must be at least 18 years of age.** Acknowledge
Refer a friend
**To proceed with your application, you must be at least 18 years of age.**
Acknowledge (***********************************************************************************************
**:**
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.
One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being.
Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization.
Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us!
**Job Description:**
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity.
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
+ Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
+ Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
+ Developing Proof-of-concepts for exploitation.
+ Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
+ Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
+ Prepare and present detailed technical information for various media including documents, reports, and notifications.
+ Provide clear and practical advice regarding managing risks.
+ Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
+ Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
+ Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
+ Detailed technical knowledge in at least 5 of the following areas:
+ security engineering
+ application architecture
+ authentication and security protocols
+ application session management
+ applied cryptography
+ common communication protocols
+ mobile frameworks
+ single sign-on technologies
+ exploit automation platforms
+ Web APIs
+ Cloud environments
+ LLM security
+ Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
+ Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
+ Experience performing manual code reviews for security relevant issues
+ Experience working with DAST and SAST tools to identify vulnerabilities
+ Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
+ Experience with vulnerability assessment tools and penetration testing techniques.
+ Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
+ Threat Analysis, threat modelling and SBOM analysis
+ Innovative thinking, threat actor simulation
+ Technology Systems Assessment
+ Technical Documentation
+ Advisory
Desired:
+ CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
+ Strong programming/scripting skills
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
**Shift:**
1st shift (United States of America)
**Hours Per Week:**
40
Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote the concept of equal employment opportunity, in accordance with all applicable federal, state, provincial and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our teammates.
View your **"Know your Rights (************************************************************************************** "** poster.
**View the LA County Fair Chance Ordinance (************************************************************************************************** .**
Bank of America aims to create a workplace free from the dangers and resulting consequences of illegal and illicit drug use and alcohol abuse. Our Drug-Free Workplace and Alcohol Policy ("Policy") establishes requirements to prevent the presence or use of illegal or illicit drugs or unauthorized alcohol on Bank of America premises and to provide a safe work environment.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations. Should you be offered a role with Bank of America, your hiring manager will provide you with information on the in-office expectations associated with your role. These expectations are subject to change at any time and at the sole discretion of the Company. To the extent you have a disability or sincerely held religious belief for which you believe you need a reasonable accommodation from this requirement, you must seek an accommodation through the Bank's required accommodation request process before your first day of work.
This communication provides information about certain Bank of America benefits. Receipt of this document does not automatically entitle you to benefits offered by Bank of America. Every effort has been made to ensure the accuracy of this communication. However, if there are discrepancies between this communication and the official plan documents, the plan documents will always govern. Bank of America retains the discretion to interpret the terms or language used in any of its communications according to the provisions contained in the plan documents. Bank of America also reserves the right to amend or terminate any benefit plan in its sole discretion at any time for any reason.
Information Security Specialist (US) - Penetration Tester
Security engineer job in Fort Lauderdale, FL
Hours: 40 Pay Details: $87,000 - $151,000 USD TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology Solutions
Job Description:
The Information Security Specialist - Penetration Tester defines, develops and/or implements Technology Controls / Information Security related policies, programs, tools and provides specialized expertise and guidance on assessing risks, identifying potential gaps and providing security solutions to mitigate risks and protect the Bank. Participates on projects of moderate to high complexity and provides complex reporting, analysis, and assessments at the functional, business line or enterprise level for own area.
Responsibilities:
* Conduct Penetration Tests: Perform thorough and methodical penetration testing on web applications, mobile, AI, network infrastructures, and other systems to identify security vulnerabilities.
* Vulnerability Assessment: Assess and analyze security weaknesses, and provide actionable recommendations to mitigate risks and improve overall security posture.
* Report Findings: Document and communicate findings clearly and effectively to both technical and non-technical stakeholders. Prepare comprehensive reports with recommendations for remediation.
* Develop and Execute Test Plans: Design and execute detailed test plans
* Stay Current: Keep up-to-date with the latest security trends, vulnerabilities, and tools to ensure testing methodologies are current and effective.
* Collaborate with Teams: Work closely with IT and development teams to understand system architectures, provide guidance on security best practices, and support the implementation of security improvements.
* Perform Risk Assessments: Evaluate and assess potential security risks related to new and existing systems and technologies.
* Compliance: Ensure that penetration testing practices comply with relevant regulations, standards, and organizational policies
Depth & Scope:
* Participates on complex, comprehensive or large projects and initiatives
* Acts as a lead expert resource in technology controls / information security for project teams, the business / organization and/or outside vendors
* Has advanced knowledge of organization, technology controls / security/ risk issues
Education & Experience:
* Bachelor's degree preferred
* Information security certification / accreditation an asset
* 7+ years of relevant experience
* Expert knowledge of IT security and risk disciplines and practices
Preferred Qualifications :
* Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nmap, and Kali.
* Knowledge of common web application vulnerabilities (e.g., OWASP Top Ten) and network security principles.
* Experience with penetration testing in AI, cloud environments (e.g., AWS, Azure) and PCI testing.
* Familiarity with security standards and frameworks Certifications: Relevant certifications such as Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or GIAC Penetration Tester (GPEN) are highly desirable.
Physical Requirements:
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
* Domestic Travel - Occasional
* International Travel - Never
* Performing sedentary work - Continuous
* Performing multiple tasks - Continuous
* Operating standard office equipment - Continuous
* Responding quickly to sounds - Occasional
* Sitting - Continuous
* Standing - Occasional
* Walking - Occasional
* Moving safely in confined spaces - Occasional
* Lifting/Carrying (under 25 lbs.) - Occasional
* Lifting/Carrying (over 25 lbs.) - Never
* Squatting - Occasional
* Bending - Occasional
* Kneeling - Never
* Crawling - Never
* Climbing - Never
* Reaching overhead - Never
* Reaching forward - Occasional
* Pushing - Never
* Pulling - Never
* Twisting - Never
* Concentrating for long periods of time - Continuous
* Applying common sense to deal with problems involving standardized situations - Continuous
* Reading, writing and comprehending instructions - Continuous
* Adding, subtracting, multiplying and dividing - Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals. Total Rewards at TD includes base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
TD Bank is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.
If you are an applicant with a disability and need accommodations to complete the application process, please email TD Bank US Workplace Accommodations Program at ***************. Include your full name, best way to reach you and the accommodation needed to assist you with the applicant process.
Auto-ApplyInformation Security Systems Engineer
Security engineer job in Palm Bay, FL
Systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security.
Throughout the lifecycle of system, works closely with customers to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early, and in a sustainable manner that will allow for the security authorization of the system of interest.
Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products using methods such as encryption technology, vulnerability analysis and security management.
Responsible for integration of multiple methods into a cohesive system security perimeter and environment while implementing the policies and procedures necessary to monitor and maintain such an environment.
Prepares certification and accreditation documentation, using multiple industry standards such as DITSCAP, NIACAP, DCID 6/3, common criteria, and NIST 800-37, to achieve security authorization of supported systems.
Represents program security needs, concerns and requirements at customer meetings.
Responsibilities:
Lead the development and implementation of program protection throughout the System Development Lifecycle. Key tasks include
Assessing systems for Critical Program Information
Conducting trade studies
Developing program protection requirements
Implementing security architectures
Assessing threats via attack/countermeasure analysis
Conducting Verification and Validation activities.
Serve as a SME in the area of program protection
Draft Program Protection Plans (PPPs), Cybersecurity Strategies, Security Classification Guides (SCGs), and Program Protection Plans
Interact with customer to define program protection requirements, solutions, trades, costs, implementation, system impacts, and effectiveness
Utilize Risk Management Framework (RMF) accreditation and authorization (A&A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard body of evidence (BoE) package development.
A&A package processing
RMF accreditation of Platform IT (PIT) systems
NSA Type 1 Certification of cryptographic high assurance devices
Experience with NSA High Assurance products and IASRD and SERD requirements
Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data
Assist program security in the development of policies and procedures for emerging security technologies
Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects
Provide Security Testing and Verification
Work is to be accomplished 100% onsite, in a lab environment
Required Skills:
Bachelor's Degree and a minimum of 12 years of prior relevant ISSE experience. Graduate Degree and a minimum of 10 years of prior related experience. In lieu of a degree, minimum of 16 years of prior related experience.
Minimum of Collateral Secret security clearance required
Professional experience with RMF (Risk Management Framework) required
Must be able to obtain and maintain a DOD 8140 certification (or NIST 800-181), appropriate for the position within 6-months of start
Preferred Additional Skills:
Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC.
Active TS/SCI Clearance is highly desired