Post job

Security engineer jobs in Galveston, TX - 450 jobs

All
Security Engineer
Securities Analyst
Security Architect
Network Security Engineer
Senior Security Analyst
Securities Consultant
Cyber Security Analyst
Network Security Consultant
Cyber Security Engineer
Information Security Officer
Senior Security Architect
Systems Engineer
Information Security Analyst
Senior Security Engineer
Information Security Manager
  • ADV000BN2 Model Based Systems Engineer (J)

    Aerodyne Industries 3.5company rating

    Security engineer job in Houston, TX

    Aerodyne Industries is a dynamic, rapidly growing engineering and information technology services firm headquartered on Florida's exciting Space Coast. With locations throughout the US, we take pride in delivering small business agility with large corporation capabilities. Our list of clients count on us to prepare NASA's Missions to the Moon and Mars and to defend our nation supporting the Missile Defense Agency and Department of Defense. Join the adventure of a lifetime by becoming a teammate with Aerodyne Industries and work on projects that will define our future. Are you passionate about human space exploration, understanding the origins of the universe, and working with a passionate and diverse team to make a difference? If you are, we need you! We need your talent, teamwork, and energy to help us achieve great things that inspire people all over the globe. We need you to bring creative ideas and diverse backgrounds to help us envision, shape, and deliver systems that will enable the exploration of space while benefiting people here on Earth. We are excited about what we do, and we need you on our team as we take on exciting challenges for NASA's pursuits in deep space exploration. We have an exciting opportunity for a Model Based Systems Enginee r to join the team with JETS II. We are seeking a highly experienced Senior Lead Systems Engineer with deep expertise in Model-Based Systems Engineering (MBSE) and human spaceflight programs and ground systems integration to lead the development and integration of complex aerospace systems. The ideal candidate will provide technical leadership across the full systems engineering lifecycle-from concept through verification and validation through Sustainment-using MBSE tools and methodologies to ensure mission success and safety compliance. The Model Based Systems Engineer will: Lead system architecture development and analysis using MBSE principles and tools (e.g., Cameo/MagicDraw, Rhapsody, Enterprise Architect). Define, manage, and validate system requirements, interfaces, and verification methods for crewed spaceflight systems. Develop and maintain SysML models to support system design, trade studies, and mission assurance. Collaborate with multidisciplinary teams (safety, reliability, human factors, propulsion, avionics, etc.) to ensure systems meet NASA and industry standards for human spaceflight. Participate in design reviews, technical interchange meetings, and customer presentations. Guide and mentor junior systems engineers in MBSE techniques and systems engineering best practices. Support risk management, configuration management, and requirements traceability throughout the project lifecycle. Interface with NASA, commercial partners, and subcontractors to coordinate system-level design integration. Resumes, in month and year format, must be submitted with application in order to be considered for the position. Qualifications - External Requisition Qualifications: This position has been posted at multiple levels. Depending on the candidate's experience, requirements, and business needs, we reserve the right to consider candidates at any level for which this position has been advertised. Typically requires a minimum of a bachelor's degree in Engineering and may be expected to have a related master's degree and normally possess 10-15 years of related experience. Bachelor's degree in Systems Engineering, Aerospace Engineering, or a related discipline. Minimum 10 years of experience in systems engineering, including 5+ years applying MBSE methods in large, complex aerospace or spaceflight programs. Proven experience supporting ground systems, human spaceflight or crewed spacecraft programs (NASA, commercial, or equivalent). Expert-level proficiency with SysML and MBSE tools (Cameo/MagicDraw preferred). Strong understanding of systems engineering processes per NASA NPR 7123.1, MIL-STD-499C, or INCOSE SE Handbook. Demonstrated ability to lead cross-functional teams and deliver high-quality technical documentation. Excellent written and verbal communication skills. Requisition Preferences: Master's degree in Systems Engineering, Aerospace Engineering, or a related field. INCOSE CSEP or ESEP certification. Model User (MU), Model Builder Fundamental (MBF), Model Builder Intermediate (MBI) or Model Builder Advanced (MBA) certification Experience with NASA human-rating standards and processes (e.g., NPR 8705.2, 8715.3). Familiarity with DOORS, JAMA, or other requirements management tools. Experience with digital engineering frameworks and integration with simulation or data management tools. Why Join Our Team? In addition to exciting career opportunities, we also have: Excellent personal and professional career growth 9/80 work schedule (every other Friday off), when applicable Onsite cafeteria (breakfast & lunch) Much, much more! Additional Information Proof of U.S. Citizenship or US Permanent Residency may be a requirement for this position. Must be able to complete a U.S. government background investigation. Management has the prerogative to select at any level for which the position is advertised. Essential Functions Work Environment Generally, an office environment, but can involve inside or outside work depending on task. Physical Requirements Work may involve sitting or standing for extended periods (90% of time). May require lifting and carrying up to 25 lbs. (5% of time). Equipment and Machines Standard office equipment (PC, telephone, printer, etc.). Attendance Regular attendance in accordance with the established work schedule is critical. Ability to work outside normal schedule and adjust schedule to meet peak periods and surge requirements. Other Essential Functions Professional behavior that enhances productivity and promotes teamwork and cooperation. Grooming and dress must be appropriate for the position and must not impose a safety risk/hazard to the employee or others. US EEO Statement All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, age, marital status, pregnancy, genetic information, or other legally protected status . PI37bbd9ca0e72-8230
    $65k-82k yearly est. 6d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Lead Security Engineer

    Jpmorgan Chase 4.8company rating

    Security engineer job in Houston, TX

    Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers. As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls , you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains. **Job responsibilities** + Design and build software solutions for security projects + Mentor junior security engineers + Facilitates security requirements clarification for multiple networks to enable multi-level security to satisfy organizational needs + Works with stakeholders and senior business leaders to recommend business modifications during periods of vulnerability + Be responsible for triaging based on risk assessments of various threats and managing resources to cover impact of disruptive events + Adds to team culture of diversity, equity, inclusion, and respect **Required qualifications, capabilities, and skills** + Formal training or certification on software engineering concepts and 5+ years applied experience . + Experience planning, designing, building and implementing enterprise level security engineering products and solutions in a public cloud environment (i.e. AWS, GCP, Azure) + Advanced in one or more programming languages/scripts (i.e. C/C#, Python, PowerShell) + Knowledgeable in secure software application development and technical processes with considerable in-depth knowledge in one or more technical disciplines (e.g., cloud, artificial intelligence, machine learning, mobile, etc.) + Experience with continuous integration and continuous deployment (CI/CD) tools (Jenkins), version control tools (BitBucket, Git), managing and tracking work using management tools like Jira + Experience building security engineering products and solutions + Knowledge of the Windows Workstation OSs (Windows 10/Windows 11 and Virtual platforms) and/or Mac OSX + Understanding of Active Directory concept and practical implementation of GPO management + Ability to tackle design and functionality problems independently with little to no oversight **Preferred qualifications, capabilities, and skills** + Experience within Cyber Security is preferred + Excellent communication and presentation skills + Prior experience in finance industry is a huge plus **\#CTC** JPMorganChase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world's most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management. We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission-based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual achievements and contributions. We also offer a range of benefits and programs to meet employee needs, based on eligibility. These benefits include comprehensive health care coverage, on-site health and wellness centers, a retirement savings plan, backup childcare, tuition reimbursement, mental health support, financial coaching and more. Additional details about total compensation and benefits will be provided during the hiring process. We recognize that our people are our strength and the diverse talents they bring to our global workforce are directly linked to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs. Visit our FAQs for more information about requesting an accommodation. JPMorgan Chase & Co. is an Equal Opportunity Employer, including Disability/Veterans **Base Pay/Salary** Jersey City,NJ $152,000.00 - $215,000.00 / year
    $152k-215k yearly 60d+ ago
  • Security Engineer

    Stratacuity

    Security engineer job in Houston, TX

    Title: Security Engineer Schedule: M-F Core Hours Compensation: $50+/hr. * If interested and qualified, please reach out to the professional recruiter, Nicole, at [email protected] Description We are seeking a Security Engineer. In this role you will help to expand our Security team and maintain security compliance in this working environment. The right candidate must thrive in high-pressure situations, think like both an attacker and defender, and drive relevant teams to take the right actions in the right time frames to mitigate risks. We are looking for an individual with a deep understanding on how to balance business and technical risk that can affect the program. You should be able to identify IT risks, define a mitigation plan to remediate, and consistently drive for the right results. You must have a passion for engineering novel solutions to complex security challenges and recognize and fill gaps in capabilities. The successful candidate will have a good mix of broad technical knowledge and a demonstrated background in information security. Key job responsibilities As an experienced technology professional, you will be responsible for: * Confidently and intelligently respond to security incidents and proactively consider how to prevent the same type of incidents from occurring in the future * Design and coordinate cohesive responses to security events that involve multiple teams across the organization * Build security utilities and tools that enable the team to operate at high speed and wide scale * Evaluate the impact of current security threats, advisories, publications, and academic research to the organization * Identify plans of action and coordinate as necessary across teams to mitigate risk * Communicate effectively at different levels of sensitivity, knowledge, and audiences * Recognize, adopt, and instill the best practices of security engineering throughout the organization * Fulfill regular on-call responsibilities. Basic Qualifications * Bachelor's degree or 5+ years of relevant experience * 3+ years of experience in three or more of the following: incident response, application security, network security, security operations, systems engineering, or network engineering * Experience using industry standard SIEMs * Experience with security operations of Windows, Mac, and Linux operating system environments * Experience working with AWS and Azure security services Preferred Qualifications * Master's degree or 8+ years of relevant experience * Security related certifications (OSCP, OWSP, GPEN, CISSP, CCSP, Security+, etc.) * Effective written and oral communication with multiple levels of leadership involving both business and technical teams * Experience in scripting or programming (Ruby, Python, Shell/BASH, Java, etc.) and automation of security tasks through scripting/programming * Experience in compliance requirements (NIST, ISO, HIPAA, etc.) * Extensive knowledge of internet security issues, cloud architecture, threat landscape, and experience with virtualization technologies Apex Systems is a world-class IT services company that serves thousands of clients across the globe. When you join Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRated's Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico. Apex uses a virtual recruiter as part of the application process. Click here for more details. Apex Benefits Overview: Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Apex team member can provide. Employee Type: Contract Remote: Yes Location: Houston, TX, US Job Type: Date Posted: December 10, 2025 Pay Range: $50 - $65 per hour Similar Jobs * Security Engineer IV - Security Engineer IV * Security Engineer IV - Security Engineer IV * Network Security Engineer * Salesforce Security Engineer * Cyber Security Engineer
    $50-65 hourly 3d ago
  • Partime Secutity / Engineer

    Blue Sky Hospitality Solutions 3.6company rating

    Security engineer job in Houston, TX

    The Maintenance Engineer is responsible for the repair and maintenance of the hotel's facility in accordance with Brand standards for quality, cleanliness, guest satisfaction, safety and security. CANDIDATE PROFILE Experience • High School or equivalent; at least one (1) year of related general repair experience is preferred. JOB ESSENTIALS • Respond and attend to guest repair requests. Adhere to quality expectations and standards. • Communicate with guests/customers to resolve maintenance issues with little to no supervision. • Manage guest requests, inquiries, and complaints promptly and completely. Ensure follow up with guest are performed in a timely manner to maintain a high level of guest satisfaction and quality service. In the event of dissatisfaction, negotiate compromise in accordance to the “Make it Right” established guidelines. • Performing preventative maintenance, to maintain the upkeep of the property, both inside and out.as scheduled by Chief Engineer. • Maintain maintenance inventory and requisition parts and supplies as needed. • Document each day's activities and problems that occur are communicated to the other shifts using approved communication programs and standards. • Safely perform highly complex repairs of the physical property, electrical, plumbing and mechanical equipment, air conditioners, refrigeration and pool heaters - ensuring all methods, materials and practices meet company standards and Local and National codes - with little or no supervision. • Troubleshoot and perform repairs on all types of equipment (e.g., pump and motor replacement), plumbing (e.g., plunge toilets and unclog drains), electrical equipment including lamps, air conditioners, HVAC equipment, cosmetic items, extension cords, vacuum cleaners, internet devices, replace electrical switches and outlets, and program TV's;. Use the Lockout/Tag out system before performing any maintenance work. • Follow proper Hotel safety policies and procedures and use safety equipment as needed to ensure the safety of all team members during each shift. Reports all accidents and injuries in a timely manner. • Report any maintenance problems, safety hazards, and properly store flammable materials. • Ensure work area is clean and clear of standing water, debris or any objects that can obstruct the job duties from being performed safely, efficiently and effectively • Perform any other job related duties as assigned. • Ensure protection and preservation of hotel, guest, and employee property. • Performs Security rounds of the hotel, to include of front of house and heart of house areas. Checking the doors and stairwells to make sure the locks are secure and no danger is lurking. • Protects hotel from admission of undesirables and others not conducting legitimate business within the premises. • Familiar with all emergency situations, including fire alarms, according to procedure and with an appropriate sense of urgency. • Responds immediately to emergency incidents and Security requests to which he or she is assigned. • Record and report any unsafe conditions while patrolling hotel property. • Prepare incident and accident reports accurately and in the format • Ensure Lobby presence especially when large groups arrive and during busy overnight and morning to provide guests with a sense of security. • Patrol outdoors as well as room hallways and activity areas, such as the pool and spa. • Respond to complaints and calls for help. Calm guests or control a situation until the local police can arrive. • Escort unruly patrons and/or loiterers from the property. • Complete activity report and communicate all activity encountered during the shift. • Document and store all guest packages received. • Ensures all communication containing Company, hotel, brand and guest information is consistent with privacy policies, practices and regulations. • Leads team to meet/exceed guests' expectations with quality and timely service in a pleasant and friendly manner. • Escorts customers to accommodations upon request, visually inspects room and telephone and deficiencies such as towels to housekeeping immediately. Points out room features and directory for reference. • Manage guest requests, inquiries, and complaints promptly and completely. Ensure follow up with guest are performed in a timely manner to maintain a high level of guest satisfaction and quality service. In the event of dissatisfaction, negotiate compromise in accordance to the “Make it Right” established guidelines. • Follow proper Hotel safety policies and procedures and use safety equipment as needed to ensure the safety of all team members during each shift. Reports all accidents and injuries in a timely manner. • Provides for a safe work environment by following all safety and security procedures and rules. Ensure work area is clean and clear of standing water, debris or any objects that can obstruct the job duties from being performed safely, efficiently and effectively • Perform any other job-related duties as assigned • Other • Identify, locate, and operate all shut-off valves for equipment. • Display above average engineering operations skills and strong general mechanical ability. Display proficiency in at least three of the following categories, above average skills in three more of the following categories and basic skills in the remaining categories: air conditioning and refrigeration, electrical, mechanical, plumbing, pneumatic/electronic systems and controls, carpentry and finish skills, kitchen equipment, vehicles, energy conservation, and/or general building management. • Working knowledge and skill in the safe use of hand and power tools and other materials required to perform repair and ability to work in a fast-pace, high-energy and demanding work environment. • Display advanced knowledge of all engineering computer programs related to preventative maintenance, energy management, and other systems, including devices that interact with such programs. • Ability to perform Engineer on Duty responsibilities, including readings and rounds. • Regular attendance in conformance with the standards is essential to the successful performance of this position. • Comply with attendance rules and be available to work on a regular basis. Able to work varied shifts, including Weekday, Evenings, weekends and holidays.
    $90k-117k yearly est. Auto-Apply 60d+ ago
  • Intune/Purview Security Engineer

    Converge 4.2company rating

    Security engineer job in Houston, TX

    Job Description Job Title: Intune/Purview Security Engineer Job Type: Contract We are seeking a skilled Intune/Purview Security Engineer to join our team in Houston, TX, on a contract basis. The ideal candidate will have extensive experience in Microsoft Intune and Purview, with a strong focus on security engineering. This role involves designing, implementing, and managing security solutions to protect our organization's data and ensure compliance with industry standards. Key Responsibilities: - Design and deploy Microsoft Intune solutions to manage and secure mobile devices and applications. - Implement and manage Microsoft Purview solutions to ensure data governance and compliance. - Develop security policies and procedures to protect organizational data and assets. - Conduct security assessments and audits to identify vulnerabilities and recommend solutions. - Collaborate with IT and security teams to integrate security measures across systems and applications. - Provide technical support and troubleshooting for Intune and Purview-related issues. - Stay updated with the latest trends and best practices in security engineering and Microsoft technologies. - Train and mentor junior staff on Intune and Purview functionalities and security practices. - Prepare detailed reports and documentation related to security incidents and compliance efforts. Qualifications: - Bachelor's degree in Computer Science, Information Technology, or related field. - Proven experience as a Security Engineer with expertise in Microsoft Intune and Purview. - Strong understanding of security principles, frameworks, and standards such as ISO 27001, NIST, etc. - Experience with mobile device management (MDM) and mobile application management (MAM). - Familiarity with data governance and compliance regulations such as GDPR, HIPAA, etc. - Excellent problem-solving skills and ability to work independently and as part of a team. - Strong communication skills with the ability to present technical information to non-technical stakeholders. - Relevant certifications such as Microsoft Certified: Security, Compliance, and Identity Fundamentals are a plus.
    $89k-118k yearly est. 60d+ ago
  • Lead Security Engineer

    JPMC

    Security engineer job in Houston, TX

    Join a team where you can play a crucial role in shaping the future of a world-renowned company and make a direct and meaningful impact in a space designed for top performers. As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls , you are an integral part of an agile team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. Drive significant business impact through your capabilities and contributions and apply deep technical expertise and problem-solving methodologies to tackle a diverse array of cybersecurity challenges that span multiple technology domains. Job responsibilities Design and build software solutions for security projects Mentor junior security engineers Facilitates security requirements clarification for multiple networks to enable multi-level security to satisfy organizational needs Works with stakeholders and senior business leaders to recommend business modifications during periods of vulnerability Be responsible for triaging based on risk assessments of various threats and managing resources to cover impact of disruptive events Adds to team culture of diversity, equity, inclusion, and respect Required qualifications, capabilities, and skills Formal training or certification on software engineering concepts and 5+ years applied experience . Experience planning, designing, building and implementing enterprise level security engineering products and solutions in a public cloud environment (i.e. AWS, GCP, Azure) Advanced in one or more programming languages/scripts (i.e. C/C#, Python, PowerShell) Knowledgeable in secure software application development and technical processes with considerable in-depth knowledge in one or more technical disciplines (e.g., cloud, artificial intelligence, machine learning, mobile, etc.) Experience with continuous integration and continuous deployment (CI/CD) tools (Jenkins), version control tools (BitBucket, Git), managing and tracking work using management tools like Jira Experience building security engineering products and solutions Knowledge of the Windows Workstation OSs (Windows 10/Windows 11 and Virtual platforms) and/or Mac OSX Understanding of Active Directory concept and practical implementation of GPO management Ability to tackle design and functionality problems independently with little to no oversight Preferred qualifications, capabilities, and skills Experience within Cyber Security is preferred Excellent communication and presentation skills Prior experience in finance industry is a huge plus #CTC
    $81k-113k yearly est. Auto-Apply 60d+ ago
  • Cyber Security Network Engineer

    Kaneka Americas Holding 4.0company rating

    Security engineer job in Pasadena, TX

    ESSENTIAL DUTIES & RESPONSIBILITIES Monitors performance of production systems and ensures 24x7X365 availability to our customers; acts as primary liaison between Kaneka IT and third-party vendors. Installs, configures, tunes, maintains, troubleshoots, and administers security updates and patches to our systems and servers in both physical and virtual environments. Designs, installs, configures, tunes, maintains, troubleshoots, and administers components and accounts within the Microsoft Azure cloud. Maintains key performance indicators, analyzes systems performance, identifies corrective action, designs and reviews solutions with infrastructure Manager, tests and implements security solutions. Leads, plans, coordinates and executes necessary IT engineering efforts and upgrades/updates to core security infrastructure servers and systems. Ensures only allowed devices are connected to the network using the Cisco Identity Services Engine (ISE) solution to register and allow only Kaneka and known BYOD devices. Installs, Configures, and maintains servers, routers, switches, and firewalls as needed with an emphasis on cybersecurity, reliability, and performance. Consults with customers to capture security business requirements, proposes solutions and leads projects delivering the agreed solution. Audits and ensures backups and restores are being performed by datacenter personnel as required; recommends and/or takes corrective action as appropriate. Coordinates and performs security restore operations as the business requires. Ensures updates to network software applications are tested and implemented according to policies; ensure updates are functioning properly. Provides administration, troubleshooting, and support for the hosted IP-based phone system. Develops, documents and maintains Disaster Recovery procedures and maintains current IT's DRP Manual; conducts training and hands-on drills with the IT Team and hosting vendors. Participates in the IT on-call roster. Ensures adequate knowledge and continuous learning by attending industry training and seminars. OTHER RESPONSIBILITIES Maintain complete and open lines of communication with other personnel, functions, or departments to facilitate operations and interaction in the organization. Keep supervisor informed of status and progress, ensuring that regular and periodic communication takes place. Maintain professional and technical knowledge by attending educational workshops; reviewing professional publications; establishing personal networks and keeping abreast of industry trends and related compliance issues within the area of responsibilities. Maintain professional conduct, attendance, and high ethical standards in the work place, complying with company's policies and procedures. Fulfill mandatory training requirements applicable for department and job duties as appropriate. Perform other duties and responsibilities as required or requested by supervisor or Management.
    $87k-111k yearly est. 60d+ ago
  • Cyber Security Analyst | ED&F Man | Houston or Miami

    Ed&F Man Holdings Ltd. 3.3company rating

    Security engineer job in Houston, TX

    We are looking for a Cyber Security Analyst to join our global security team. This role will suit a technically capable individual with experience in security operations who is looking to broaden their exposure across security monitoring, engineering, and incident response within a dynamic environment. The role provides hands-on involvement in triaging and investigating security alerts, acting as an escalation point for the outsourced Security Operations Centre (SOC), supporting major incident response activities. The successful candidate will work closely with infrastructure and network teams to manage and optimise endpoint, email, identity, and vulnerability management platforms, while contributing to continuous improvement of the organisation's security posture. This role offers the opportunity to evaluate and transition between security tools, maintain policy continuity and develop a broad, practical skillset across enterprise cyber security functions. Business Overview Established in 1783, ED&F Man is an employee-owned agricultural commodities merchant with 2,800 people in 43 countries and annual revenue in excess of $8bn. We trade sugar, coffee, molasses, animal feed and fish oils. Corporate responsibility is ingrained in our culture. We are passionate about sustainable production, take care to limit the environmental impact of our operations and actively support the communities in which we work. Key Accountabilities * Act as the escalation point for the outsourced SOC, receiving and triaging alerts that require deeper investigation. * Conduct thorough investigations to produce high-quality, actionable insights for incident resolution. * Participate actively in major security incidents, contributing to containment, eradication and recovery efforts * Document incident timelines and contribute to post-incident reviews and lessons learned. * Respond to detections, triage alerts and update SOC tickets with investigation findings * Maintain and update policies in line with vendor best practice and internal Change Advisory Board protocols. * Monitor agent health, audit version compliance and remediate orphaned or non-compliant clients. * Attend monthly vendor meetings to review support cases and incorporate best practice guidance. * Design and refine SOC playbooks and response actions, evaluating new security technologies through structured proof-of-concept trials and creating scoring matrices to compare vendors. * Manage block and safe listings to maintain email hygiene, troubleshooting false positives and tune detection rules. * Perform email investigations as required in response to phishing or BEC attempts, producing monthly vulnerability reports and prioritising remediation efforts based on risk. * Work with infrastructure and application teams to test patches and drive vulnerability counts down. * Attend monthly TAM meetings to review support cases and best practices. * Maintain agility to substitute security products as business requirements evolve, ensuring policy continuity throughout transitions. Skills and Experience * 5+ years' experience in a Cyber Security Analyst or similar role, with strong incident response and major incident handling expertise. * Hands-on experience with EDR (alert triage, policy management, sensor deployment), preferably CrowdStrike Falcon. * Experience developing SOC playbooks, response actions, and running proof-of-concept evaluations and vendor comparisons. * Confident, proactive communicator able to engage senior stakeholders, clearly explain complex security issues, and recommend actions. * Collaborative and approachable, building trust with technical peers and supporting service desk and front-line teams. * Calm, effective, and resilient under pressure, particularly during security incidents in a front-facing role. * Formal qualifications not essential; proven hands-on experience and delivery record valued. Technical Capabilities: * Experience with SIEM platforms (e.g. Rapid7), Email Security and Data Security/DLP solutions (e.g. Varonis). * Strong knowledge of Entra ID security features including Conditional Access and PIM, plus familiarity with PAM tools including BeyondTrust, Osirium and Okta. * Solid networking fundamentals (TCP/IP, DNS, firewalls, proxies, SSL/TLS) and vulnerability management experience (Qualys/Rapid7 preferred). * Cloud security experience across Azure and/or AWS. * Scripting skills in Python and/or AutoIT for automation and tooling. * Desirable certifications include CompTIA Security+, Network+, CySA+, PenTest+, CASP+, CEH, CISSP, and relevant vendor certifications (e.g., CrowdStrike, Qualys, Palo Alto). We recognise that talent comes in many forms, and we value potential just as much as experience. If this role excites you but you don't meet every requirement, we still encourage you to apply. Our Offer We provide a fast-paced, stimulating and truly global environment, which will stretch your abilities and channel your talents. We also offer competitive salary and benefits combined with outstanding career development opportunities in one of the global leaders in soft commodity trading. Our Values Respect, Integrity, Meritocracy, Client Focus, Entrepreneurship Our values define who we are. They are the fundamental beliefs that determine our actions and guide our behaviour. They influence the way we communicate and collaborate, and define the way we engage with our clients, partners, and communities. Our values are underpinned by a set of essential behaviours, which form part of our performance management approach. Delivering on our objectives is very much about 'what' we do, but these essential behaviours also provide a guide and measure for 'how' we do things. Our performance essentials are Take Initiative, Self‐Management, Deliver Results and Collaboration. Our Commitment We are committed to creating and sustaining an inclusive and diverse work environment where all employees are treated with dignity and respect. We are committed to promoting equal opportunities in employment and are focussed on actively building and developing diverse teams. All qualified applicants will receive equal treatment without regard to race, colour, sex, gender, age, religion or belief, ethnic or national origin, marital or civil partner status, physical or mental disability, military or veteran status, sexual orientation, gender reassignment (identity, gender expression), genetic information or any characteristic protected by local law. We are willing to make any reasonable adjustments throughout our recruitment process.
    $74k-105k yearly est. 28d ago
  • Cyber Security Analyst

    Zone It Solutions

    Security engineer job in Houston, TX

    Job Description We is seeking a talented Cyber Security Analyst. As a Cyber Security Analyst, you will play a key role in ensuring the security and integrity of our organization's data and systems. Requirements Responsibilities: Monitor, detect, and respond to cyber threats and security incidents, Conduct vulnerability assessments and penetration testing to identify potential weaknesses in our systems, Develop and implement security measures and best practices to protect against cyber attacks, Stay up-to-date with the latest cyber security trends and technologies, Collaborate with cross-functional teams to identify security risks and implement appropriate solutions, Provide training and guidance to employees on cyber security awareness and best practices. Requirements: Bachelor's degree in Computer Science, Information Security, or a related field, Proven experience in cyber security or a related role, Strong knowledge of security protocols and tools, Ability to analyze and interpret complex data and make informed decisions, Excellent problem-solving and communication skills, Relevant certifications (e.g. CISSP, CISM) are preferred but not required. Benefits About Us Zone IT Solutions is an Australia-based Recruitment Company. We specialise in Digital, ERP and larger IT Services. We offer flexible, efficient and collaborative solutions to any organisation that requires IT, experts. Our agile, agnostic and flexible solutions will help you source the IT Expertise you need. If you are looking for new opportunities, your profile at *******************************. Also, follow our LinkedIn page for new job opportunities and more. Zone IT Solutions is an equal-opportunity employer, and our recruitment process focuses on essential skills and abilities.
    $75k-103k yearly est. Easy Apply 8d ago
  • Virtual Cyber Security SDR, BDR, Contract to Hire

    Planet Green Search

    Security engineer job in Houston, TX

    Virtual Cyber Security SDR, BDR, remote Company Overview: Our Client is a leading provider of cutting-edge cybersecurity solutions to protect businesses from evolving digital threats. They pride themselves on our innovative approach to safeguarding sensitive data, networks, and systems. Their team of experts provides comprehensive cybersecurity solutions that empower organizations to navigate the complex digital landscape with confidence. Position Summary: As a Virtual SDR, BDR at our Client, you will play a pivotal role in driving the success of our cybersecurity solutions across the United States. As one of the first 20 employees, you will play a vital role in shaping the direction of our company and driving growth. Their recent seed round raised an unbelievable $11M at a $36M valuation, and the founders' last venture resulted in a big exit with the sale of the company to Microsoft. They operate in the IT Security space and are 100% virtual. In this dynamic and customer-facing role, you will leverage your technical expertise and sales acumen to provide strategic guidance and support to our clients throughout the sales process. This position offers a unique blend of technical knowledge, sales skills, and the opportunity for nationwide travel. We Are Looking For: As a mid-level Business Development Rep. (BDR SDR) you'll be at the tip of the spear, responsible for researching and qualifying top of funnel leads while being the first to connect with our potential customers. You'll research and build contact lists, make outbound cold calls/emails to those who fit our Ideal Customer Profile (ICP) and will then partner with AEs to get customers onboarded. This position will spend roughly 80% of the time on the phone or email prospecting for new clients. This position is a great way for individuals to gain in-depth sales experience with a rapidly growing SaaS security company looking to win the category! What You'll Do: Generate high volume quality MQLs through various direct sales efforts such as calls, emails, events, webinars, and other channels generated by Marketing. Make daily outbound calls/emails to prospects who have demonstrated interest. Follow up on all calls and emails until meetings are booked or you've been able to move the prospect through the funnel. Record all activities and properly manage lead stage/flow in our Salesforce CRM. Achieve or exceed monthly quotas of meetings, demos, and qualified leads worked with AEs. Schedule product demos on AE's calendar. Discern buyer intent and partner with AEs to get the right customers onboarded. Work closely with Marketing, Product, and CS/CX to clearly communicate critical top-of-funnel feedback and suggestions that help optimize segmentation, content, & features. What You'll Need: Must have BDR/SDR experience in the SaaS or similar software space Great speaking self-awareness and ability to read prospect signals and adjust accordingly to move the prospect down the funnel. Must have a clear, easy-to-understand phone voice and a professional Zoom presence with the ability to engage and empathize over the phone. Hands-on experience with multiple sales prospecting techniques like cold calling, cold emailing, video conference selling, and social outreach is a must. Knowledge of sales & marketing constructs, the evergreen funnel, and playbooks are important. Must be a great listener with an ability to address objections graciously and frame the next steps clearly. Good writers and creative thinkers needed - Must be able to craft well-written (great grammar and spelling), compelling emails, and responses that lead prospects down the funnel. Verifiable track record of success and goal attainment in a frontline sales-oriented role Deep knowledge of software and social networks (especially LinkedIn, Facebook, and Twitter) is important. Track record of (over)achieving sales quotas. Must have a strong, self-motivated drive, passion, and desire to deliver results. Experience in a fast-growing startup environment is a big plus. What We Offer: Contract to Hire, Strong Salary plus comm after 90 days Full Benes PreIPO equity Be part of an exciting high-growth SaaS organization An impactful role with lots of growth potential A lot of freedom to apply your creative and strategic skills A work-hard, play-hard environment 100% virtual Virtual Cyber Security SDR, BDR, remote
    $75k-103k yearly est. 60d+ ago
  • Systems Infrastructure & Network Security Operations Engineer

    HP 4.9company rating

    Security engineer job in Houston, TX

    Description - HP's Vision: HP aims to create technology that makes life better for everyone, everywhere - every person, every organization, and every community around the globe. With the creativity and energy of a startup combined with the strength and determination of a Fortune 100 corporation, we continue to deliver groundbreaking technologies that build on our 80+ year legacy of innovation. Role Overview: Your expertise in securely provisioning and managing systems and networking within centralized compute deployments will be critical to success in this role. You will influence quality and security while contributing to business growth. This position requires a strong blend of secure network provisioning, systems automation, and resilient infrastructure design to enhance product quality, security posture, and scalability. As part of a small, agile team, you will own end-to-end processes-from architecture and Infrastructure-as-Code (IaC) to continuous delivery and incident response-while maintaining accountability and driving innovation. Core Responsibilities: Zero-Trust System Design Draft, review, and maintain zero-trust SOPs across identity, device, data, and infrastructure. Produce reusable reference models mapped to HP's enterprise architecture and expressed as policy-as-code. Impact: Ensures consistent security across environments and enables automated policy enforcement. Infrastructure-as-Code & Automation Extend Net-Sec-Ops pipelines with IaC (Ansible) for firewalls, switches, SD-WAN, and edge fabric. Deliver automated, version-controlled playbooks with unit, integration, and compliance tests in CI. Impact: Enables repeatable, auditable, and rapid deployments while reducing manual errors. Systems Resilience & Disaster Recovery Architect and automate backup, failover, and DR workflows for all network devices. Conduct recovery drills, validate RTO/RPO against SLA targets, and produce post-mortem runbooks. Impact: Guarantees service availability and protects against catastrophic loss. Security & Compliance Orchestration Integrate vulnerability scanners (Nessus, Qualys), threat-intel feeds, and policy-as-code into CI/CD pipelines. Automate remediation playbooks and generate compliance dashboards for SOC/DevSecOps. Impact: Maintains HP's high-security standards across all infrastructure layers. Network Configuration & Lifecycle Management Operate configuration managers to centralize topology, inventory, and device state. Enforce change-control gates, audit drift, and maintain traceability from design to production. Impact: Provides a single source of truth and ensures configuration integrity. Cross-Functional Architecture Governance Collaborate with platform, edge, security, and product teams to embed network security into CI/CD and DevOps pipelines. Present architecture reviews and maintain traceability matrices. Impact: Aligns infrastructure decisions with business strategy and compliance requirements. Capacity & Performance Modeling Model traffic and compute link utilization; forecast capacity needs using historical data and predictive analytics. Deliver capacity-planning reports to product, finance, and data-center stakeholders. Impact: Enables proactive scaling and prevents performance bottlenecks. Continuous Process & Tool Improvement Evaluate emerging trends (intent-based networking, programmable data planes, network observability). Propose tool/process changes to reduce manual effort and improve security posture. Impact: Keeps HP's infrastructure world-class and future-proof. Prototyping & Customer Validation Rapidly spin up proof-of-concept environments to test complex customer requests. Translate business requirements into secure, performant, and automatable designs. Impact: Aligns customer expectations with technical feasibility and security constraints. Required Experience & Skills: Networking: 6+ years configuring firewalls, switches, VPNs, VLANs, and traffic load balancing. Deep knowledge of L2/L3 protocols (OSPF, BGP, MPLS, VXLAN). Systems & Infrastructure Engineering: Architecture governance (TOGAF/ArchiMate). Design documentation, lifecycle management, and change control. Infrastructure-as-Code expertise. Automation & DevOps: Proficiency in Python, Ansible, Terraform, Git, Jenkins/GitLab CI. Proven CI/CD for network assets, automated testing, and policy-as-code pipelines. Security & Compliance: Vulnerability management, policy-as-code, zero-trust design. Certifications such as CISSP, CCSP, or equivalent preferred. Tools & Platforms: VMware vSphere, Proxmox, Linux, Windows, F5, InfoBlox. Experience with cloud networking (AWS VPC, Azure VNets). Soft Skills: Strong attention to detail and documentation. Excellent stakeholder communication. Proactive, self-directed learning mindset. Education & Credentials: Bachelor's degree in Computer Science, Information Technology, or related discipline OR equivalent professional experience. Technical cybersecurity certification (SANS, ISACA, CompTIA, Cisco, etc.) preferred. Demonstrated hands-on experience with network automation, IaC, and infrastructure-as-code tools. Disclaimer: This job description outlines the general nature and level of work performed in this role. It is not intended to be an exhaustive list of all duties, skills, responsibilities, or knowledge. Additional functions may be assigned as needed by management. Salary: The pay range for this role is $100,000 to $120,000 USD annually with additional opportunities for pay in the form of bonus and/or equity (applies to United States of America candidates only). Pay varies by work location, job-related knowledge, skills, and experience. Benefits: HP offers a comprehensive benefits package for this position, including: * Health insurance * Dental insurance * Vision insurance * Long term/short term disability insurance * Employee assistance program * Flexible spending account * Life insurance * Generous time off policies, including; * 4-12 weeks fully paid parental leave based on tenure * 11 paid holidays * Additional flexible paid vacation and sick leave (US benefits overview [*********************************** The compensation and benefits information is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or without notice, subject to applicable law. Job - Data & Information Technology Schedule - Full time Shift - No shift premium (United States of America) Travel - Relocation - Equal Opportunity Employer (EEO) - HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s). Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence. For more information, review HP's EEO Policy or read about your rights as an applicant under the law here: “Know Your Rights: Workplace Discrimination is Illegal"
    $100k-120k yearly Auto-Apply 5d ago
  • Senior Cyber Security Engineer

    Funtonetwork

    Security engineer job in Houston, TX

    Job DescriptionSenior Cyber Security Engineer (Managed Detection & Response - MDR) Company Overview FuntoNetwork is a specialized IT consulting firm focused on delivering proactive cybersecurity solutions, with a core emphasis on Managed Detection & Response (MDR) services. We partner with organizations to serve as their dedicated cybersecurity team, offering 24/7 threat hunting, continuous monitoring, and rapid incident response. Our mission is to empower businesses with innovative, outcome-driven security operations, enabling them to operate securely and confidently in an evolving threat landscape. Position Summary We are seeking a highly skilled and proactive Senior Cyber Security Engineer to join our core MDR delivery team. In this pivotal role, you will be responsible for defending our clients by actively hunting for threats, leading investigations into sophisticated security incidents, and continuously enhancing our detection and response capabilities. You will go beyond traditional monitoring to perform deep forensic analysis, develop custom detection logic, and guide containment and eradication efforts for a diverse portfolio of clients. This is a hands-on role for a practitioner who thrives in a dynamic, client-focused Security Operations Center (SOC) environment. Key Responsibilities Threat Hunting & Detection Engineering: Conduct proactive, hypothesis-driven threat hunting across client environments to identify advanced and persistent threats. Develop, refine, and deploy custom detection rules (SIEM queries, YARA, EDR logic) to enhance detection accuracy and coverage. Analyze adversary TTPs (Tactics, Techniques, and Procedures) to evolve hunting methodologies and detection strategies. Incident Response & Investigation: Serve as the primary escalation point and lead investigator for complex security incidents. Perform in-depth forensic analysis (endpoint, memory, network, cloud) to determine scope, root cause, and impact. Lead remote containment, eradication, and recovery efforts in close coordination with client IT teams. MDR Service Delivery & Client Partnership: Act as a trusted technical advisor for assigned MDR clients, providing expert insights during security reviews and post-incident briefings. Author and deliver detailed incident reports, executive summaries, and actionable remediation guidance. Proactively recommend security improvements based on observed telemetry, threats, and client risk profiles. Security Stack Mastery & Optimization: Demonstrate deep expertise in our MDR technology stack (EDR/XDR, SIEM, network detection, threat intelligence platforms). Optimize tool configurations, integrations, and alert workflows to maximize detection efficacy and operational efficiency. Knowledge & Process Development: Contribute to the continuous improvement of MDR playbooks, runbooks, and standard operating procedures. Mentor and provide technical guidance to junior Security Analysts and Engineers. Develop and share threat intelligence briefings tailored to client industries. QualificationsRequired: Bachelors degree in Cybersecurity, Computer Science, or a related field, or equivalent hands-on experience. Minimum of 5 years in hands-on security operations, with at least 2 years focused on threat hunting, incident response, or within an MDR/MSSP environment. Deep technical experience with: EDR platforms (e.g., CrowdStrike, Microsoft Defender for Endpoint, SentinelOne). SIEM solutions (e.g., Splunk, Microsoft Sentinel, Elastic) for advanced querying and investigation. Digital forensics and incident response (DFIR) methodologies and tools. Proven ability to analyze malware, interpret attacker behavior, and conduct investigations across the cyber kill chain. Strong knowledge of network protocols, OS internals (Windows, Linux, mac OS), and cloud (AWS, Azure, GCP) security monitoring. Excellent communication skills, with the ability to convey technical details clearly to both technical and executive audiences. Preferred: Industry certifications such as GCFA, GNFA, GCIH, OSCP, CySA+, or platform-specific credentials (Splunk, CrowdStrike). Experience in a consulting or client-facing MDR role. Scripting proficiency (Python, PowerShell) for automation and tool creation. Experience with adversary simulation tools (e.g., Cobalt Strike) and purple team exercises. Why Join FuntoNetwork? Frontline Security Impact: Defend real organizations against active threats-no two days are the same. Deep Technical Growth: Work with cutting-edge security tools and intelligence in a focused MDR practice. Diverse Client Exposure: Engage with a wide range of industries, from finance and healthcare to retail and technology. Continuous Learning Culture: Stay ahead of the latest threats, TTPs, and defensive strategies. Competitive Compensation: Attractive salary, performance bonuses, and comprehensive benefits (health, dental, vision, 401k). Career Advancement: Clear paths to roles such as Lead Threat Hunter, Incident Response Lead, or MDR Practice Architect. Apply Now If you are ready to hunt what others miss and elevate the standard of managed detection and response, we want to hear from you.
    $81k-111k yearly est. 3d ago
  • Cyber Security Specialist

    Empyrean 3.7company rating

    Security engineer job in Houston, TX

    The Cyber Security Specialist will serve as a technical authority within Empyrean's Information Security organization. This role is responsible for implementing, maintaining, and enhancing Empyrean's cybersecurity posture across infrastructure, applications, and cloud environments. This position requires deep technical expertise in threat detection, incident response, vulnerability management, and cloud security. The Cyber Security Specialist will work cross-functionally with IT, Engineering, and Compliance to safeguard Empyrean's systems and data, ensuring alignment with regulatory and client requirements. The Cyber Security Specialist acts as a trusted advisor and escalation point for complex security issues, contributing to the design of security architectures and the development of security standards that scale with Empyrean's growth. ESSENTIAL DUTIES AND RESPONSIBILITIES Lead advanced threat detection, vulnerability assessment, and incident response activities to protect Empyrean's systems, networks, and applications. Administer and optimize security tools such as SIEM, SentinelOne, NetSkope, Entra, EDR, IDS/IPS, firewalls, KnowBe4, Proofpoint, DLP tools, vulnerability scanners, and other security tools to ensure consistent and proactive monitoring. Conduct in-depth analysis of security events and alerts, identifying root causes and coordinating remediation with technical teams. Collaborate with infrastructure and application owners to embed secure-by-design principles into system architecture and broader control environment. Drive initiatives related to cloud security governance, ensuring proper configuration and monitoring of AWS environments. Develop and maintain security baselines, hardening standards, and operational procedures to ensure compliance with frameworks such as NIST CSF, SOC 2, ISO 27001, and HIPAA. Support the design and execution of penetration tests, exercises, and risk assessments. Serve as a key resource for Empyrean's incident response and disaster recovery programs, including forensic investigation and post-incident review. Provide technical guidance to team members within the Security Operations function. Partner with Compliance and IT leadership to ensure audit readiness and continuous improvement of Empyrean's control environment. Evaluate and implement emerging security technologies that enhance protection, detection, and response capabilities. Work with other members oof the team to determine suitable controls for exceptions and other initiatives that support business operations. Prepare and deliver reports to leadership highlighting Empyrean's security posture, metrics, and improvement initiatives. NON-ESSENTIAL DUTIES AND RESPONSIBILITIES Assist in developing and delivering employee cybersecurity awareness and training programs. Participate in internal and external audits and client security assessments as needed. Contribute to enterprise risk assessments and cross-departmental process improvement initiatives. Represent Information Security in cross-functional meetings and projects to ensure alignment between business objectives and security strategy. REQUIRED SKILLS AND ABILITIES Advanced understanding of cybersecurity principles, technologies, and threat landscapes. Expertise in network, endpoint, and cloud security technologies, including SIEM, IDS/IPS, EDR, firewalls, etc. Hands-on experience with vulnerability management, penetration testing, and forensic analysis tools. Knowledge of secure system design, architecture review, and cloud configuration best practices. Familiarity with frameworks and standards such as NIST CSF, ISO 27001, and SOC 2. Ability to interpret and apply compliance and regulatory requirements (e.g., HIPAA, SOC, ISO). Strong analytical and problem-solving skills with the ability to prioritize and manage multiple tasks effectively. Excellent communication and collaboration skills across technical and business teams. Proven ability to operate with discretion, sound judgment, and high attention to detail. Demonstrated initiative and ownership in developing and executing security improvements. KNOWLEDGE, EXPERIENCE, AND/OR EDUCATION REQUIREMENTS Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent work experience). 3-5+ years of progressively responsible experience in cybersecurity, information security engineering, or security operations roles. Background in incident response, vulnerability management, and security engineering. Experience with AWS and/or other cloud security tools and configurations. Familiarity with IAM systems (Okta, AD, AWS IAM), SIEM platforms (e.g., Splunk, Sentinel), and endpoint protection tools. Preferred certifications a plus: CISSP, CISM, CEH, or equivalent advanced cybersecurity certification(s). Familiarity with scripting or automation for security operations (Python, PowerShell, etc.) is a plus. OTHER REQUIREMENTS Ability to work on-site or in a hybrid capacity, as required by the role. Availability for after-hours support as needed for critical access or incident-related issues. Must be authorized to work in the United States without sponsorship. Disclaimer: This job description is not intended to be an exhaustive list of all duties, responsibilities, or qualifications associated with the job. Management reserves the right to modify or reassign job duties as business needs evolve. #LI-RZ1 #LI-Remote
    $77k-101k yearly est. 60d+ ago
  • Sr. Security Analyst

    Maximus 4.3company rating

    Security engineer job in Houston, TX

    Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned. *This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. * Essential Duties and Responsibilities: - Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary. - Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget. - Work closely with management and work groups to create and maintain work plan documents. - Track the status and due dates of projects. - Manage relationships with project staff responsible for projects. - Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed. - Facilitate regular meetings and reviews. - Adhere to contract requirements and comply with all corporate policies and procedures. Job Specific Duties and Responsibilities: -Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects. -Review project documentation and client materials and provide analysis of technical and security related topics. -Participate in client meetings and offer observations and insight on technical and security related topics. -Identify risk areas and potential problems that require proactive attention. -Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to: *System Security Plan *Plan of Action and Milestones (POA&M) *Security Assessment Plan *Risk Assessment reports *CMS ARC-AMPE forms and documentation *Data Conversion and Migration Management Plan *Deployment and/or roll-out plans -Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects. -Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues. -Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work. -Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager. -Complete project work in compliance with Maximus standards and procedures. -Support team to complete assigned responsibilities as outlined in the Project schedule. -Support all other tasks assigned by Senior Manager / Project Manager. Minimum Requirements - Bachelor's degree in related field. - 7-10 years of relevant professional experience required. - Equivalent combination of education and experience considered in lieu of degree. Job Specific Requirements: -Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required. -Bachelor's degree from an accredited college or university, or equivalent work experience. -7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry. -5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks. -Familiar with operating systems: Windows, Linux/UNIX, OS/X. -Familiar with AI tools, capabilities. -Strong command of cloud computing topics. -Strong command of agile software development practices as well as waterfall development practices. -Strong desktop software skills: proficient in MS Office, Excel, Word, Project. -Ability to explain and communicate technical subjects to non-technical audiences. -Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills. -Ability to work independently. -Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously. -Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential. -Excellent verbal and writing skills and be comfortable working with customers. -Ability to multi-task with supervision. -Self-motivated fast learner. Preferred Skills: -Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid). -Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional). EEO Statement Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Accommodations Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************. Minimum Salary $ 120,000.00 Maximum Salary $ 140,000.00
    $102k-134k yearly est. Easy Apply 8d ago
  • SAP Security Architect

    Deegit 3.9company rating

    Security engineer job in Houston, TX

    · Minimum of Bachelor's degree in Information Technology, Computer Science or related field of study required. · At least one professional information security certification required o CISSP, CCSP, CISM, SANS GIAC · Minimum 12 years' progressive experience in multiple information technology areas preferred · Minimum 8 years' experience in information security required Additional Information All your information will be kept confidential according to EEO guidelines.
    $105k-154k yearly est. 1d ago
  • Application Security Architect

    HCC Life Insurance

    Security engineer job in Houston, TX

    Application Security Architect Reports To: Director, Corporate Security Architecture Employment Type: Full-Time About Us Tokio Marine HCC is a leading specialty insurance group with offices in the United States, the United Kingdom, Europe, Ireland, and other exciting locations. With the strength and stability that comes from being a member of the Tokio Marine Group, and more than forty years of growth, profitability, and stability, we offer important insurance products that most people don't even know exist. Every policy we write is special, enabling our clients to do amazing things. From insuring the crops that feed us to the rock concerts that entertain us, to rescuing international travelers in trouble, we offer more than 100 classes of specialty insurance. Applying our Mind Over Risk philosophy to writing insurance allows our customers to take on opportunity with confidence. That philosophy defines our way of thinking, unites us as a team, and differentiates us from our competitors. We are much more than just an insurance company; we are a good company. Role Overview We are seeking an Application Security Architect to join our Corporate Security team. In this role, you will serve as a trusted advisor and technical leader, driving secure design principles and modern security practices across a global, federated enterprise. You will collaborate closely with software development, infrastructure, and cloud engineering teams to ensure our applications are secure, scalable, and aligned with TMHCC's enterprise standards. As part of a dynamic and collaborative environment, you will influence the adoption of secure coding practices, integrate security into development pipelines, and shape the future of application security across multiple business units. Key Responsibilities • Shape and influence enterprise application security strategy across TMHCC's federated business model. • Define, advocate for, and implement secure design principles across cloud-native, containerized, and on-premises environments. • Develop and maintain secure architecture blueprints and reusable security patterns for enterprise adoption. • Conduct threat modeling and application architecture reviews to proactively identify and mitigate risks early in the lifecycle. • Integrate security testing tools (SAST, DAST, SCA, IAST, secrets scanning) into enterprise and business unit CI/CD pipelines. • Partner with DevOps, Infrastructure, and Cloud teams to embed security into development workflows and platform engineering practices. • Collaborate with developers, architects, and business unit leaders to promote secure development and consistent security standards. • Support incident response, risk, and compliance teams with application-related assessments and investigations. • Research emerging threats and technologies to continuously enhance TMHCC's application security maturity. Qualifications • Bachelor's degree in Computer Science, Cybersecurity, or related technical field (or equivalent experience). • Minimum of 5 years of experience in software development, software security, or application architecture. • Relevant certifications such as CISSP, CSSLP, or GIAC preferred. • Experience with AWS and/or Azure application security best practices. • Background in financial services, insurance, or other regulated industries is a plus. Skills & Experience • Strong knowledge of web application security principles, OWASP Top 10, and secure SDLC. • Experience designing and securing modern architectures (microservices, APIs, containers, serverless). • Proficiency in at least one major programming language (C#/.NET or Python). • Familiarity with application security tools (SAST, DAST, SCA, IAST, secrets scanning). • Excellent communication, influence, and collaboration skills across technical and non-technical stakeholders. Why Join Us? At TMHCC, we value innovation, collaboration, and professional growth. You'll have the opportunity to work on impactful projects, develop your expertise, and advance your career in a supportive and forward-thinking environment. What We Offer • Competitive salary and comprehensive benefits package • Strong learning culture and growth perspectives • 6% 401(k) Match • 20 days of PTO and 2 Floating Days • Paid parental leave • An opportunity to love what you do Equal Opportunity Employer Tokio Marine HCC is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. #LI-SD1
    $99k-149k yearly est. Auto-Apply 17d ago
  • Security Architect (XIN001_JFXD)

    Xinnovit

    Security engineer job in Houston, TX

    Xinnovit is a global leader in technology consulting, outsourcing, and workforce management solutions. Our mission is to enable our clients to become more agile and competitive with the help of innovative technologies. We empower our clients to respond faster and more intuitively to changing market dynamics. The business environment is complex, often under significant constraints and pressures from various sources. We have the knowledge, experience and capabilities to provide our clients the tools they require to achieve better, faster and effective transformation that make them the leaders in their industry. Our Goals Are: • To use our expertise to the benefit of our clients and partners through open communication and collaboration. • To ensure sustainable and profitable long-term growth. • To provide a return on investment to shareholders. • To promote employee development. Job Description • Resource needed to work on T&T project which involves Taking over support for additional 4300 servers (3816 wintel, 696 unix) over current scope. • In addition, expand scope to include Middleware, DB support & Active Directory support, Rollout IBM tools, some customer tools, • Storage - Mix of technology, including EMC & IBM; • iSeries - expand support for additional 59 lpars; • Groupware - Support of gateways and Rightfax; • Security scope includes IAM, Isec, ISA, Malware; • Asset - tracking for new HW, Wall to wall inventory; • Dynamic Hybrid Services (DHS) - Implement vRealize for Cloud; implement Dynamic Automation, and expand Security. • Updates to PIM and IP&C processes; Service Integration implementation,Remedy taken as-is Additional Information All your information will be kept confidential according to EEO guidelines.
    $99k-149k yearly est. 1d ago
  • Enterprise Security Architect

    Corebridgefinancial

    Security engineer job in Houston, TX

    Who We Are At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow. We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life: We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners. We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders. We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future. We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work. Who You'll Work With The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles. About The Role The Enterprise Security Architect will help to lead the design, implementation, and oversight of secure systems and architectures across our organization. This role is critical to embedding security into enterprise processes, aligning with industry standards, and building a scalable security foundation. The ideal candidate will bring deep technical expertise, strong communication skills, and the ability to work independently or collaboratively to drive security initiatives and foster a security-first culture. Responsibilities Design, document, and maintain secure architecture patterns, diagrams, and reference architectures to guide security implementations across the organization. Conduct comprehensive security reviews of applications, systems, and networks, identifying vulnerabilities and recommending secure design strategies. Perform threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate mitigating controls. Partner with enterprise and line-of-business architects to integrate security seamlessly into designs and processes. Translate complex technical security concepts into clear, actionable insights for C-level executives, business leaders, non-technical stakeholders, and technical engineering teams. Recommend mitigating controls, security tools, and remediation strategies to address security gaps and minimize risk. Stay current on security threats, vulnerabilities, and technologies to enhance the organization's security posture. Promote a security-first culture by mentoring technical teams, educating stakeholders, and embedding security best practices into organizational workflows. Skills and Qualifications 7+ years of hands-on experience in infrastructure, systems, networks, applications, or cloud security. 5+ years of enterprise architecture experience required. Ability to create and review diagrams using tools such as Visio or Lucidchart. Familiarity with secure architecture patterns, reference architectures, and frameworks. Expertise in SaaS, PaaS, and IaaS environments, including platforms like AWS, Azure, M365, and Salesforce. Experience working with various identity and access management (IAM) solutions such as CyberArk, Okta, Ping Identity, Entra ID/Azure AD, and other tools supporting SSO, MFA, and PAM. Familiarity with tools like Jira, Confluence, and ServiceNow for workflow management and documentation. Expertise in threat modeling, vulnerability management, and risk assessments. Working knowledge of regulatory requirements and compliance standards such as NYDFS, CCPA, GLBA, PCI-DSS, HIPAA, SOX, and GDPR. Relevant certifications such as CISSP, CCSP, or equivalent. Ability to work independently or collaboratively in a team-oriented environment. Bachelor's degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles. Technical Skills Familiarity with protocols such as SAML, OAuth, OIDC, FIDO, PKI, JWT, LDAP, and Kerberos. Strong knowledge of common network protocols, including TCP/IP, HTTP/HTTPS, DNS, SMTP, SNMP, SSH, and VPN technologies. Expertise in encryption technologies (e.g., TLS, AES, RSA) and key management practices (e.g., KMS, HSM, PKI). Familiarity with firewalls, IDS/IPS, WAF, VPN, Routers, Switches, Load Balancers, Zero-Trust, microsegmentation, and SD-WAN security solutions, CASB, Proxy, SSE. Experience with SIEM tools such as Splunk, QRadar, or ArcSight and logging/monitoring best practices. Knowledge of Docker, Kubernetes, EKS, ECS, and OCP, including their security considerations. Proficiency in integrating security into DevOps pipelines with tools such as Jenkins, GitHub, Artifactory, Terraform, and Vault. Common Security and Architecture Frameworks Security Frameworks: NIST Cybersecurity Framework (CSF) ISO 27001 and 27002 CSA CCM (Cloud Controls Matrix) CIS Controls Architecture Frameworks: SABSA (Sherwood Applied Business Security Architecture) TOGAF (The Open Group Architecture Framework) AWS Well-Architected Framework Preferred Certifications TOGAF (The Open Group Architecture Framework) SABSA Foundation or Practitioner CISSP-ISSAP (Concentration in Security Architecture) Certified Cloud Security Professional (CCSP) GIAC Security Architecture (GDSA) AWS Certified Solutions Architect - Associate or Professional AWS Certified Security - Specialty Microsoft Certified: Azure Solutions Architect Expert Soft Skills Strong analytical and problem-solving abilities. Excellent interpersonal and collaboration skills. Strong organizational and time management skills. Adaptability and a commitment to continuous learning of new technologies and methodologies. Attention to detail and dedication to delivering high-quality results. High level of integrity and ethical conduct. Industry-Specific Experience Experience in financial services, insurance, or other regulated environments. Proven ability to design and implement security controls that align with industry regulations and standards. Experience conducting security assessments and audits in regulated industries. Familiarity with industry-specific threats and vulnerabilities to tailor security solutions. Compensation The actual compensation offered will ultimately be dependent on multiple factors, which may include the candidate's geographic location, skills, experience and other qualifications. In addition, the position is eligible for a discretionary bonus in accordance with the terms of the applicable incentive plan. Corebridge also offers a range of competitive benefits as part of the total compensation package, as detailed below. Work Location This position is based in Corebridge Financial's Houston, TX or Durham, NC office and is subject to our hybrid working policy, which gives colleagues the benefits of working both in an office and remotely. #LI-SAFG #LI-CW1 #LI-Hybrid Why Corebridge? At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive. Benefit Offerings Include: Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being. Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately. Employee Assistance Program: Confidential counseling services and resources are available to all employees. Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000. Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work. Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it. Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy. We are an Equal Opportunity Employer Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives. Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to ******************************************. Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law. We will consider for employment qualified applicants with criminal histories, consistent with applicable law. To learn more please visit: *************************** Functional Area: IT - Information TechnologyEstimated Travel Percentage (%): Up to 25%Relocation Provided: NoAmerican General Life Insurance Company
    $99k-149k yearly est. Auto-Apply 60d+ ago
  • Google Cloud Security Architect

    Slalom 4.6company rating

    Security engineer job in Houston, TX

    Who You'll Work With As a modern technology company, our Slalom Technologists are disrupting the market and bringing to life the art of the possible for our clients. We have passion for building strategies, solutions, and creative products to help our clients solve their most complex and interesting business problems. We surround our technologists with interesting challenges, innovative minds, and emerging technologies As a Consultant or Senior Consultant, you will collaborate with cross-functional teams, including IT, security, and business units, to design and implement Google Cloud-based application innovation solutions. You will work alongside experienced cloud architects, data scientists, and other specialists, ensuring the successful delivery of scalable, cloud-native applications and AI-powered solutions. What You'll Do * Stay current with security trends, technologies, and best practices around Google Cloud solutions, leveraging tools like Cloud IAM, Cloud Security Command Center, BeyondCorp, and Cloud Armor. * Define and guide transformational security strategies for Google Cloud environments, ensuring alignment with Google's Zero Trust and BeyondCorp principles. * Translate complex regulatory requirements (e.g., GDPR, SOC 2, HIPAA) and technology standards into actionable functional and technical requirements for cloud and hybrid environments, ensuring security and compliance. * Lead teams through various phases of gap analyses, including security assessments, remediation planning, roadmap development, and implementation of remediation actions using Google Cloud-native tools. * Deliver on the vision, architecture, execution, and quality assurance of security projects on Google Cloud, driving initiatives that secure enterprise workloads and data. * Guide stakeholders and senior leaders on aligning security solutions with broader business goals, ensuring the architecture follows Google Cloud's security best practices and roadmap. * Establish security architecture patterns based on Google Cloud security frameworks and industry standards to meet the unique needs of enterprise clients. * Collaborate with other Google Cloud architects and security teams to continuously improve security knowledge assets and best practices, ensuring the most effective security solutions for clients. * Design and architect solutions to secure Generative AI models and applications against adversarial attacks, prompt injection, and their potential misuse for malicious cyber activities. What You'll Bring * Proven experience with Google Cloud security architecture, with hands-on experience in tools like Cloud IAM, VPC Service Controls, Cloud DLP, and Cloud Armor. * Strong background in defining and implementing Zero Trust and BeyondCorp security models within Google Cloud environments. * Familiarity or direct experience with Identity and Access Management (IAM), Data Protection, Vulnerability Management, and Cloud Security solutions in Google Cloud. * Extensive experience with security design patterns specific to Google Cloud, as well as hybrid and multi-cloud security architecture. * Experience in security and risk advisory consulting, particularly related to cloud security transformations. * Ability to lead the development and implementation of cloud security roadmaps aligned with business goals and compliance needs. * Familiarity with Google Cloud's Artificial Intelligence (AI) capabilities (e.g., Vertex AI, Generative AI services, Model Armor) including their applications, associated security risks (e.g., prompt injection, data poisoning, privacy concerns), and proven strategies for implementing security controls, governance, and responsible AI practices. * Relevant certifications are strongly desired, including (but not limited to): * GCP Professional Security Engineer * GCP Professional Cloud Architect * CISSP * Security+ About Us Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all. Compensation and Benefits Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance. Slalom is committed to fair and equitable compensation practices. For this position the base salary pay ranges are listed below. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time. East Bay, San Francisco, Silicon Valley: * Consultant: $120,000-$177,000 * Senior Consultant: $140,000-$203,000 San Diego, Los Angeles, Orange County, Seattle, Houston, New Jersey, New York City, Westchester, Boston, Washington DC: * Consultant: $110,000-$162,000 * Senior Consultant: $130,000-$186,000 All other locations: * Consultant: $105,000-$148,000 * Senior Consultant: $115,000-$171,000 EEO and Accommodations Slalom is an equal opportunity employer and is committed to inclusion, diversity, and equity in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the interview process. We are accepting applications until 12/31.
    $140k-203k yearly 31d ago
  • Senior Analyst, Information Security

    Nrf 4.0company rating

    Security engineer job in Houston, TX

    We are a global law firm with a powerful strategic focus and real momentum. Our industry-focused strategy is seeing us take on pioneering work in places that others have yet to reach. Our shared values define our culture and our workplace. You will find us to be unusually collegial, team-oriented, and ready to innovate. We work seamlessly across practices, offices and around the world. This elimination of boundaries has allowed us to evolve into a law firm that works as hard for its culture as it does for its clients. The Senior Information Security Analyst is one of several such Analyst roles in the firm. Each Analyst is responsible for assisting with the day to day operation of CISO office tasks. Analysts are also encouraged to participate in proactively identifying sources of vulnerability and threat. The role will be part of a worldwide team that is empowered to operate the activities within their assigned function. Daily activities will focus heavily on request, event and incident management and direction will be provided by the Information Security Manager. Norton Rose Fulbright is committed to the professional development of its staff. There will be significant development opportunities for the Senior Information Security Analyst role, both through on-the-job learning and targeted training. The CISO team also embrace a mentoring and meritocratic approach. The success of this role is dependent upon building a lasting alignment between information security provisions and business requirements. In particular, the role must consider: The special requirements of the Firm with regard to client confidentiality, as well as regulatory requirements such as data protection. Achieving a balance between protecting the firm and ensuring that users can work effectively; being pragmatic but cognizant of risk. Key Objectives: Ensure that the Firm has the requisite capability to investigate, prevent and remediate against security breaches, viruses and deviations from security procedures. Act as a technical expert in the security field with a solid understanding of Norton Rose Fulbright's Information Security infrastructure and act as its champion in relation to Information Security. Assist with Information Security monitoring and act as a technical point of escalation for any alerted issues. Manage the global Information Security incident / request queue. Assist with a program of educational, procedural and technical improvements aligned with the Information Security Management System. Assist with the management of technical controls defined within the Information Security Management System. Responsibilities include, but are not limited to: Act as a champion for Information Security best practice and policies. Act as an intermediate escalation point and technical mentor for other members of the analyst team. Operate and manage security incidents and requests to SLA guidelines. Review, action, and escalate, any unusual event behavior identified. Assist with development and maintenance of the Firm-wide security infrastructure configuration, policies and procedures, identifying improvements to procedures, and reporting on incidents. Actively promote security governance in support of the Information Security policies, to ensure appropriate measures are taken to secure the Firm's confidentiality and integrity. Encourage cooperative working with all business functions to achieve shared goals, ensuring skills transfer and technical security awareness within the teams. This includes writing process documents and conducting training. Work cooperatively with project teams to ensure that new project and changes adhere to Information Security policies and governance standards. Identify threats and vulnerabilities. Keep a technical industry awareness of security risks and exposures and proactively promote effective counter-measures. Configure appropriate security parameters in monitoring systems and act as a technical point of escalation for any alerted issues. Perform document reviews and privileged account reviews. Experience / Skills: Technical bachelor's degree or equivalent IT / Information Security experience (required). At least 5 years' experience working within Information Security infrastructure or vocation to move from another technical discipline. Proven ability to adapt quickly to emerging threats or new information, shifting focus as needed. Demonstrated expertise in Microsoft 365 Defender and Azure Sentinel for detecting, investigating, and responding to suspicious behaviors and anomalous activities. Familiarity with endpoint security solutions and security infrastructure, including EDR, vulnerability management tools, DLP solutions, and removable media encryption. Working knowledge of cloud based web and email filtering solutions such as , Zscaler, Mimecast, Proofpoint, or Cisco. Experience with securing cloud environments (AWS, Azure, GCP), including configuration management, identity and access controls, monitoring, and incident response. Familiarity with cloud security tools (e.g., Microsoft Defender for Cloud, AWS Security Hub), and cloud compliance frameworks (e.g., CIS, CSA CCM) is highly desirable. Experience with security automation and orchestration, including the use of scripting languages (such as PowerShell or Python) and SOAR platforms to streamline incident response, automate repetitive tasks, and enhance overall security operations. Strong knowledge of security technologies (e.g., firewalls, IDS/IPS, EDR, SIEM). Security-related certification e.g. CompTIA Security+, GSEC, CISSP, CISA, CCSP (preferred). Good understanding of security frameworks such as ISO 27001, NIST, Mitre (preferred). Experience of introducing Information Security improvement through effective deployment of technology and / or processes to move to a proactive footing in security management or demonstrating similar in current technical discipline. Ability to triage and remediate phishing and impersonation attacks in a timely and efficient manner as the risk dictates. Experience working with a service management tool. Familiarity with legal tech platforms (e.g., iManage, Relativity, NetDocuments) is a plus. Personal Attributes: Keen sense of responsibility, ability to set a professional example and desire to adhere to defined security practices. Strong technical security understanding. Self-motivated and able to work calmly and methodically under pressure. Excellent interpersonal skills, exceptional levels of personal integrity and the ability to communicate clearly at all levels through reports, presentations and forming effective matrixed relationships. Skilled in applying an agile approach to task management, ensuring responsiveness to dynamic risk landscapes. Cooperative, service-orientated, individual and established team worker, comfortable working in a geographically dispersed team. Good judgement when it comes to confidentiality and sensitivity of information of which they may become aware through the course of their duties. Adaptable and keen to learn new skills. The Team: The scope of the Information Security function includes all strategic security planning and control oversight to ensure effective risk mitigation takes place within the firm. The Information Security team operates a number of security solutions directly, such as anti-malware solutions, Internet security proxy servers, and the vulnerability scanning platform, and rely on other departments (IT service delivery, HR, Facilities) to operate all other security controls. The Information Security team is responsible for ensuring the overall effectiveness of the control framework and managing security incidents. The team work with unified principles and processes around the world while maintaining regional stakeholder relationships. They adhere to the international standard ISO 27001, and report to the Firm's CISO. Norton Rose Fulbright US LLP is committed to providing employees with a comprehensive and competitive benefits package that supports you, your health, and your family. Benefit packages include access to three medical plans, dental, vision, life, and disability insurance. Employees can also access pre-tax benefits such as health savings and flexible spending accounts. Norton Rose Fulbright helps provide financial security by allowing employees to participate in a 401(k) savings plan and profit-sharing plans if eligible. Full- time employees are eligible to access fertility benefits designed to support fertility and family-forming journeys. In addition to the Firm's health and welfare benefits above, we offer a competitive paid time off plan, which provides a minimum of 20 days off based on your role and tenure with the firm. The firm offers a generous paid parental leave benefit allowing parents to take a minimum of 14 weeks of paid leave to bond with your newborn, or adopted child(ren). Employees are also entitled to 11 Firm holidays. Norton Rose Fulbright US LLP is an Equal Opportunity Employer and complies with all applicable federal laws and their implementing regulations that require the collection and recording of certain data and information. The information we receive will not be used to make any decision regarding employment and will be kept separate from your application. Similarly, self-identification information is kept confidential and used only in accordance with applicable federal laws and regulations. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Norton Rose Fulbright is committed to providing reasonable accommodation as an Equal Opportunity Employer to applicants with disabilities. If you require assistance or accommodation to complete your application, please contact *****************************. Please provide your contact information and a description of your accessibility issue. We will make a determination on your request for reasonable accommodation on a case-by-case basis. E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce. Equal Employment Opportunity
    $88k-115k yearly est. Auto-Apply 6d ago

Learn more about security engineer jobs

How much does a security engineer earn in Galveston, TX?

The average security engineer in Galveston, TX earns between $70,000 and $131,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.

Average security engineer salary in Galveston, TX

$95,000
Job type you want
Full Time
Part Time
Internship
Temporary