Principal/Sr Principal Systems Security Engineer
Security engineer job in Rolling Meadows, IL
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE TYPE: SAPTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
We are seeking capable, talented, and motivated team-contributors at our Northrop Grumman Rolling Meadows site. Our products range from advanced sensing technologies to state-of-the-art targeting and tracking systems that are deployed in Electro-Optical Infrared (EOIR) and Radio Frequency Electronic Warfare (RFEW) systems. These systems are designed, developed, built, integrated, and tested by the capable folks at our company to protect the lives of US and Allied warfighters in present and future conflicts. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. If you are interested in consideration to be included as a part of this team, we would invite you to apply.
We are looking for a Principal / Senior Principal Systems Security Engineer to join our team in Rolling Meadows, IL. This position requires 100% onsite work.
What You Will Get to Do:
As an integral part of our Systems Security Engineering team you will be responsible for providing hands-on experience in the development of sensor payloads and mission security solutions supporting our hardware and software security solutions.
Roles & Responsibilities:
Demonstrate full life cycle development experience encompassing architecture design, trade studies, Anti-Tamper / Cybersecurity requirements formulation, detailed design, unit testing, system testing, and validation and verification practices.
Support the development and implementation of hardware and software Anti-Tamper / CyberSecurity techniques and countermeasures to protect assets and enhance operational integrity and reliability.
Implement and ensure compliance with government policies (e.g., JSIG, DAAPM, NIST 800-53, CNSSI 1253, DODI 5200.39, etc.) by reviewing process tailoring needs and approving documented procedures.
Conduct thorough analyses to validate existing security requirements and develop additional safeguards as necessary to enhance system security.
Collaborate with the US Government and program teams to negotiate and develop Anti-Tamper / CyberSecurity solutions for international export markets, ensuring compliance with Tri-Service Committee and Red Team requirements for US-deployed and exported military systems.
Utilize reverse engineering techniques to architect and validate effective Anti-Tamper / CyberSecurity solutions.
Conduct Technical Release Analyses in accordance with US Government security governance, service policies, and licensing precedents. Prepare, assess, and certify Controlled Unclassified Information and higher information and Critical Program Information determinations for licensing.
Coordinate Technology Release efforts with program personnel by engaging relevant stakeholders and Subject Matter Experts (SMEs) to ensure successful outcomes, to include development and delivery of training on Technology Release processes to program personnel.
Manage and communicate the necessary analyses and modifications for system, subsystem, or sensor exportability, ensuring compliance with international standards.
Apply intermediate understanding of cryptographic security protocols to safeguard sensitive information.
Support formal Security Test and Evaluation (ST&E) processes mandated by government authorities through comprehensive pre-test preparations, active participation in testing, result analysis, and the preparation of required reports.
Document findings from Assessment and Authorization activities, as well as technical and coordination efforts, while preparing and maintaining the system Security Plans and updating the Plan of Actions and Milestones (POA&M).
Support strategic planning for Anti-Tamper / CyberSecurity technology development that aligns with global strategic priorities and influences current and future policies.
Collaborate effectively with program teams and global Business Development stakeholders to incorporate international requirements and features into design processes and drive product line initiatives for global market success.
Actively participate in communities of practice to enhance domain knowledge and foster continuous professional development throughout the organization.
This position can be filled at the Principal Systems Security Engineer or Sr. Principal Systems Security Engineer level based on specific requirements.
This position will be full-time, on-site at our Rolling Meadows, IL location.
This position is contingent upon Funding/Contract award, special access program and acquiring and maintaining the necessary US Government security clearance per customers' requirements prior to start.
Basic Qualifications for Principal Systems Security Engineer:
Bachelor's degree in a Science, Technology, Engineering, or Mathematics (STEM) field with 5+ years of related experience, a Master's degree in a STEM field with 3+ years of related experience or a PhD in a STEM field with +1 year of related experience.
Two (2) years of Systems Engineering experience with DoD based Platforms, Sensors and/or Sub-systems. Including but not limited to: EO/IR, Embedded Software or Cryptography, Satellite, Architecture development, Hardware design, RF, Radar and Undersea Sensors, etc.
Two (2) years of experience with requirements development, derivation, system integration & test and validation and verification.
Two (2) years of experience with Anti-Tamper / Cyber Security, Reverse Engineering and/or Cyber Security Risk Management Framework / Cyber Resiliency
Ability to obtain and maintain a minimum of a Secret Clearance with additional customer specified clearance prior to start.
Basic Qualifications for Senior Principal Systems Security Engineer:
Bachelor's degree in a Science, Technology, Engineering, or Mathematics field with 8+ years of related experience, a Master's degree with 6+ years of related experience, or a PhD with 4+ years of related experience.
Two (2) years of Systems Engineering experience with DoD based Platforms, Sensors and/or Sub-systems. Including but not limited to: EO/IR, Embedded Software or Cryptography, Satellite, Architecture development, Hardware design, RF, Radar and Undersea Sensors, etc.
Two (2) years of experience with requirements development, derivation, system integration & test and validation and verification
Two (2) years of experience with Anti-Tamper / Cyber Security, Reverse Engineering and/or Risk Management Framework / Cyber Resiliency
Ability to obtain and maintain a minimum of a Secret Clearance with additional customer specified clearance prior to start.
Preferred Qualifications:
Advanced degrees in Science, Technology, Engineering or Mathematics or related technical fields.
Active Secret or Top Secret clearance
Experience with Hardware (Firmware) Assurance, Software Attack Surface Analysis Report, Select Software/Firmware Encryption, and Secure Key Handling
Experience with identifying and mitigating software assurance vulnerabilities and performing integration testing of mitigation/resolution
Experience with contributing to and/or making technical presentations to internal and external customers
Primary Level Salary Range: $105,400.00 - $158,000.00Secondary Level Salary Range: $131,100.00 - $196,700.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Auto-ApplySecurity Engineer
Security engineer job in Schaumburg, IL
About SEKO SEKO started out in business in 1976, operating out of a single Chicago office. Since then, we have built a solid reputation throughout the world as an innovative and flexible provider of first-class logistics services. We provide complete Supply Chain Solutions, specializing in transportation, logistics, forwarding and warehousing. We also lead the industry with innovative and customizable IT solutions, which provide a seamless flow of information and give our growing customer base true supply chain visibility. With over 120 offices in 40 countries worldwide, our unique shareholder management model enables you to benefit from Global implementation experience and expertise across all industry sectors, coupled with vital in-country knowledge and service at the local level.
KEY ACCOUNTABILITIES INCLUDE:
* Continuous improvement, implementation, management, and enhancement of managed security platform tools (both in-house and managed security services).
* Install security measures and operate software to protect systems and information infrastructure, including firewalls and data encryption programs.
* Participate in assimilating recommendations from threat intelligence providers to Document security threats and assess the damage they cause.
* Review email security SaaS platform data, review cloud-based email system/data, review cloud data, and review end-point protection platform on daily basis for potential security incidents.
* Prioritize, resolve, and mitigate known and reported vulnerabilities to maintain a high-security standard. Work collaboratively with teams to assist them in resolving vulnerabilities
* Develop and implement company-wide best practices for IT security and risk mitigation.
* Develop global security awareness and training program.
* Implement, maintain, and monitor controls based on common security frameworks.
* Work with external parties to routinely test for internal and external vulnerabilities.
* Train IT staff on best practices and implementation requirements for a secure infrastructure and DevOps.
* Build security workflows for secure code deployment and validation of existing code.
* Research security enhancements and make recommendations to leadership.
* Stay up to date on information technology trends, services, technologies, compliance/regulations, and industry security standards.
* Develop a culture built around awareness and risk avoidance.
* Maintain patch management of servers, PCs, etc. and report for compliance reasons on routine basis.
* Participate in the development of a safe and healthy workplace. Comply with instructions given for their own safety and health and that of others, in adhering to safe work procedures. Co-operate with management in its fulfilment of its legislative obligations.
* Other duties as assigned by management.
REQUIREMENTS:
* Experience in translating penetration test results and security assessment recommendations into actionable plan and implementing those recommendations.
* Understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts.
* Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
* Understanding of patch management with the ability to deploy patches in a timely manner while understanding business impact.
EDUCATION & EXPERIENCE:
Minimum:
* Bachelor's degree in computer science or related field.
* 5+ years' experience in information security or equivalent experience managing various aspects of security such as identity management, firewalls, security awareness SaaS platforms, and working with managed security providers providing SIEM/firewall support.
Preferred:
* GCIH, Cloud Security certifications, MDR Certifications with vendors, any GIAC Certification
* Experience in deploying zero-trust network access products and supporting it
SPECIALIST CERTIFICATIONS:
* Any GIAC Certification above entry level
REQUIREMENTS:
* Experience in translating penetration test results and security assessment recommendations into actionable plan and implementing those recommendations.
* Understanding of firewalls, proxies, SIEM, antivirus, and IDPS concepts.
* Ability to identify and mitigate network vulnerabilities and explain how to avoid them.
* Understanding of patch management with the ability to deploy patches in a timely manner while understanding business impact.
EDUCATION & EXPERIENCE:
Minimum:
* Bachelor's degree in computer science or related field.
* 5+ years' experience in information security or equivalent experience managing various aspects of security such as identity management, firewalls, security awareness SaaS platforms, and working with managed security providers providing SIEM/firewall support.
Preferred:
* GCIH, Cloud Security certifications, MDR Certifications with vendors, any GIAC Certification
* Experience in deploying zero-trust network access products and supporting it
SPECIALIST CERTIFICATIONS:
* Any GIAC Certification above entry level
Compensation and Benefits
Base salary range and benefits information for this position are being included in accordance with requirements of various state/local pay transparency legislation. Please note that base salaries may vary for different individuals in the same role based on several factors, including but not limited to location of the role, individual competencies, education/professional certifications, qualifications/experience, performance in the role and potential for revenue generation (Producer roles only).
Compensation
The base salary compensation range being offer for this role is $110,800 - $158,300 USD per year. This role is also eligible for an annual incentive bonus.
SEKO Logistics is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status.
Benefits Designed with You in Mind:
At SEKO Logistics, we are committed to supporting your well-being, professional growth, and financial stability (eligibility requirements apply). Our comprehensive benefits package includes:
* Health and Welfare Benefits: Medical (including prescription coverage), Dental, Vision, Health Savings Account, Commuter Account (IL only), Flexible Spendings Account, Health Care and Dependent Care Flexible Spending Accounts, Group Accident, Group Accident, Critical Illness and hospital indemnity program, Life Insurance, AD&D, Wellbeing Program and Work/Life Resources (including Employee Assistance Program)
* Leave Benefits: Paid Holidays, Annual Paid Time Off (includes paid state/local paid leave where required), Short-Term Disability, Long-Term Disability, Other Leaves (e.g., Bereavement, FMLA, ADA, Jury Duty, Military Leave, and Parental and Adoption Leave)
* Retirement Benefits: Contributory Savings Plan (401k).
SEKO Worldwide is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Auto-ApplySecurity Engineer III
Security engineer job in Skokie, IL
Hourly Pay Range:
$41.64 - $64.54 - The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors.
Security Engineer III
Hourly Pay Range: $41.64 - $64.54. The hourly pay rate offered is determined by a candidate's expertise and years of experience, among other factors.
Location: 4901 Searle Parkway, Skokie IL (flexible)
Full Time
Hours: Monday-Friday, 8am - 4:30pm (general hours)
Hybrid Schedule - mostly remote work after initial onsite period
Job Summary:
As the Security Engineer III at Endeavor Health, you will be responsible for enhancing Cybersecurity and safeguarding the organization's data and resources primarily through remote work. This role involves documenting, and refining security procedures, conducting system reviews to ensure compliance with security requirements, execute risk management and governance tasks, or leading security incident response activities. The Security Engineer III will also design and implement security policies for various devices and systems, oversee security for internal and external systems, and mentor junior staff. Candidates should be proficient in using advanced security tools. Responsibilities extend to participating in compliance audits, managing cybersecurity projects, and ensuring alignment with HIPAA, other applicable laws and regulations and/or standards. This mostly remote role may include a 24/7 on-call rotation and requires strong leadership, project management, and communication skills.
To be successful in this role, you will be expected to stay up to date on the latest solutions and technologies and advocate for the adoption of industry best practices.
What you will do:
Document and refine procedures and techniques used by the Information Security and other teams.
Measure and report organization's security capabilities using automated and manual tools.
Research and test security tools pertaining to tactical or strategic plans.
Perform activities as outlined in the security incident management procedure.
Review logs from security tools, including IPS/IDS, secure email gateway, data loss prevention system, content proxy, vulnerability assessment tools, antivirus, etc.
May visit specific sites to identify cyber security vulnerabilities and report on findings.
Socializes strategies, standards, policies, procedures, communications, and awareness efforts with business partners.
Participates in reviews of new or existing systems to ensure security requirements are satisfied, prior to implementation, including Risk Assessment.
Assists with system-wide compliance of the HIPAA Security and Privacy rules and other appropriate standards, audit requirements, works with internal audit staff to conduct regular tests and audits. Assists with external security assessments and penetration tests, and other activities.
Designs policies as required for security devices, including IPS/IDS, antivirus, and vulnerability management tools.
May oversee internal or external systems security (i.e., cloud services).
Lead security incident response activities.
Mentor and train junior staff on the effective use and management of security tools.
Design comprehensive security measures, integrating new technologies and methodologies.
Manage multiple cybersecurity projects.
Expert in one or more specialized areas.
Proficient in the use of 4 or more advanced security tools and mastery in at least one tool.
What you will need:
Education: Bachelor's degree required (Master's degree preferred)
Certifications: at least one industry standard certification within security.
Experience:
Minimum eight (8) years combined IT/ Cybersecurity experience.
Previous experience with ability to lead, support, and document two applications.
Previous experience leading security initiatives.
Previous healthcare IT experience.
Unique or Preferred Skills:
Demonstrated in-depth knowledge of information security principles, practices, and solutions.
Demonstrated understanding of advanced security protocols and standards
Leadership and project management skills.
Experience with desktop, server, network, and application security teams.
Proven communication, customer service, and organizational skills.
Experience with common security testing methods and tool sets such as email security, data loss prevention (DLP), IDS/IPS, EDR, anti-malware, and proxy tools.
Previous experience with HIPAA, ITIL, NIST, and Project Management.
Benefits:
Premium pay for eligible employees
Career Pathways to Promote Professional Growth and Development
Various Medical, Dental, Pet and Vision options
Tuition Reimbursement
Free Parking
Wellness Program Savings Plan
Health Savings Account Options
Retirement Options with Company Match
Paid Time Off and Holiday Pay
Community Involvement Opportunities
Endeavor Health is a fully integrated healthcare delivery system committed to providing access to quality, vibrant, community-connected care, serving an area of more than 4.2 million residents across six northeast Illinois counties. Our more than 25,000 team members and more than 6,000 physicians aim to deliver transformative patient experiences and expert care close to home across more than 300 ambulatory locations and eight acute care hospitals - Edward (Naperville), Elmhurst, Evanston, Glenbrook (Glenview), Highland Park, Northwest Community (Arlington Heights) Skokie and Swedish (Chicago) - all recognized as Magnet hospitals for nursing excellence. For more information, visit ***********************
When you work for Endeavor Health, you will be part of an organization that encourages its employees to achieve career goals and maximize their professional potential.
Please explore our website (*********************** to better understand how Endeavor Health delivers on its mission to “help everyone in our communities be their best”.
Endeavor Health is committed to working with and providing reasonable accommodation to individuals with disabilities. Please refer to the main career page for more information.
Diversity, equity and inclusion is at the core of who we are; being there for our patients and each other with compassion, respect and empathy. We believe that our strength resides in our differences and in connecting our best to provide community-connected healthcare for all.
EOE: Race/Color/Sex/Sexual Orientation/ Gender Identity/Religion/National Origin/Disability/Vets, VEVRRA Federal Contractor.
Auto-ApplySecurity Engineer
Security engineer job in Glenview, IL
Sonoma Consulting is one of the fastest growing national IT Consulting and Executive Search company in the United States, which was founded in 2011 by Mark McGee, the President and CEO. Sonoma Consulting has two business divisions - IT Consulting Services & Executive Search to serve its 150 national clients which range from entrepreneurial start-ups to Global Fortune 500.
Job Description:
The Senior Information Security Engineer works with members of Information Security, Infrastructure Technology and Business Systems teams to design and manage appropriate security measures for the protection of corporate information assets. The Senior Information Security Engineer is responsible for the complex and detailed technical work necessary to establish and maintain information security systems such as firewalls and intrusion prevention systems. In addition, the Senior Information Security Engineer redesigns and reengineers internal information handling processes so that information is appropriately protected from a wide variety of problems including unauthorized disclosure, unauthorized use, inappropriate modification, premature deletion, and unavailability.
This position occasionally requires some weekend and evening work as well as off-hours for on-call support rotation.
Description:
•The Senior Information Security Engineer's responsibilities include: • Assessing, building, and supporting security solutions and controls including: SEIM, network firewalls, ACLs, IPS, internet content filtering, Identity and Access Management, web application firewalls(WAF), vulnerability scanners, penetration tests, incident response, Active Directory group policies(GPOs), and logical access controls • Researching and deploying new technologies • Performing internal security audits and monitoring systems to ensure that appropriate access levels are maintained • Preparing for and responding to security incidents • Serving as an internal Information Security consultant to the organization • Communicating threats and countermeasures to management and staff to promote security awareness and compliance throughout the organization • Developing and/or maintaining BCP/DR plans for security systems and participating in tests • Collaborating with IS management, legal, human resources and law enforcement agencies to manage security vulnerabilities or investigations
Qualifications
Qualifications:
• The idea candidates will have:
• Strong interpersonal, communication, and leadership skills, including the ability to effectively communicate to both technical and non-technical audiences, in both a one on one as well as in a group environment
• An intimate knowledge of the TCP/IP networking protocol suite
• Strong understanding of LAN/WAN technologies; experience configuring FTP services, DNS and SMTP architectures.
• Experience with network protocol analysis
• Three or more years of experience in the design and deployment of network security and operating system solutions and information security infrastructure elements such as Firewalls, VPN, DMZ, Security Event Monitoring systems, IDS/IPS, and Directory Services.
• Strong understanding of common network and system exploits and vulnerabilities.
• Excellent analytical and problem solving skills. Ability to troubleshoot complex networks and design network security solutions
• A solid understanding and work experience with virtualization technologies and host operating systems, including Windows and Linux
• Experience with Digital Certificates, SSL, IPSEC, and other encryption technologies.
• A strong understanding of authentication and authorization methodologies, including knowledge of network authentication protocols including TACACS and RADIUS.
• Experience with scripting languages • Experience with security auditing tools such as COPS, Tripwire, Nessus, etc.
• BS in a Technology related field or an equivalent work experience
The following experience and certifications are a plus:
• Technical Certifications such as CCNA, CCNP, CCSA, CCSE, SANS GIAC series
• Professional Certifications such as CISSP • An understanding of application security and OWASP
• Experience designing and developing security countermeasures for Web and e-commerce environments.
Additional Information
Titles: Security Engineer, Information Security Engineer, Senior Security Engineer, Security Consultant, Security Manager
Skills :Identity and Access Management, web application firewalls(WAF), vulnerability scanners, penetration tests, incident response, Active Directory group policies(GPOs
Cyber Security Engineer
Security engineer job in Waukesha, WI
The Cyber Security Engineer will be a Security Evangelist helping engineers in secure implementation of technology stack in a enterprise/cloud environment. GE HealthCare is a global leader in medical technology and digital solutions, dedicated to improving lives in the moments that matter. We innovate to transform healthcare delivery and empower clinicians worldwide. Join us to turn ideas into world-changing realities in an inclusive environment where every voice matters.
Job Description
Responsibilities
* Drive tailored SDL practice into specific engineering-
* Engage in application, platform and domain-specific threat modeling and attack surface
analysis/reduction
* Work closely with cross-functional teams in requirements gathering and security-focused software design
* Discover and mitigate vulnerabilities in sensitive Critical Infrastructure/ Key Resource Domains (CI/KR).
* Develop and design innovative cyber security solutions for unique and complex technologies.
* Work in partnership with government agencies, leading industry experts, and academia.
* Leverage traditional and non-traditional research methodologies to advance GE's overall Cybersecurity practice.
* Assess and investigate specific threats to an information system in terms of severity and impact.
* Create detailed reports on vulnerabilities, bugs, and design flaws found in industrial information systems.
* Create IPS/IDS rules or other mitigations to protect vulnerable systems. Plan and implement applicable risk mitigating security solutions.
* Interacting with global teams to promote consistency and maximize synergies across common software platforms
* Able to join the team and gain mastery of the Ultrasound domain and contribute towards the development Software Infrastructure.
* Leveraging technical and clinical depth to work on business initiatives aimed at innovation and quality excellence.
* Support process improvements which guide development, sustaining & support activities
* Drive world-class quality in the development and support of products
* Apply principles of SDLC and methodologies like Lean/Agile/XP, CI, Software and Product Security, Scalability, Documentation Practices, refactoring and Testing Techniques
* Understand performance parameters and assess application performance
* Proactively share information across the team, to the right audience with the appropriate level of detail and timeliness
Required Qualifications
* Bachelor's Degree in Computer Science or "STEM" Majors (Science, Technology, Engineering and Math) with minimum 3 years of experience
* Certification in Privacy, Security & Regulatory domain or related certification
* Experience in object-oriented design methodology and various programming languages such as C/C++
* Working knowledge in configuration management tools such as Perforce, GIT, ClearCase, etc...
* Experience in working with Windows API and application programming.
* Experience in software platform, advanced applications, user-interface design and/or systems engineering especially in the healthcare domain -preferable Ultrasound.
* Good skills in knowing how to debug software issues.
* Experience with multicore and multi-threaded software design and computing environment.
Desired Characteristics
Technical Expertise:
* Familiarity with identifying, analyzing, and ethically exploiting the various classes of vulnerabilities that affect executable code.
* Strong knowledge of TCP/IP networking. Ability to use Wireshark to capture and analyze network traffic.
* Hands-on experience working with Windows and Linux based systems.
* Programming skills in one or more languages (we develop using Python, C, C++, CUDA, Java and others).
* Ability to understand machine language, operating systems, common APIs, libraries, and runtime environments and how they interact with hardware, firmware, and binary code.
* Familiar with digital electronics and microcontrollers. Exposure to SCADA/DCS systems or industrial technologies.
* Knowledge of application risk identification and evaluation techniques, and knowledge of Cyber Security and related engineering functions.
* Business Acumen: Able to translate vulnerability information into business risks relevant to our customers.
* Strong problem-solving abilities and capable of articulating specific technical topics or assignments.
* Expert in breaking down problems and estimate time for development tasks.
* Strong desire to experiment, use new tools and techniques. Can be a creative problem solver.
* Experience in software platform, advanced applications, user-interface design and/or systems engineering especially in the healthcare domain.
* Good understanding of workflow in the healthcare industry.
* Demonstrated experience with development of medical device software
* Ultrasound SW development experience
* Knowledge of ultrasound or demonstrated experience with development of medical device software
Other
* Must be willing to work onsite at least 3 days a week in Wauwatosa/Waukesha, Wisconsin
* Self-starter, energizing, results oriented and able to multi-task; tenacious and organize
* Ability to foresee obstacles, identify workarounds, leverage resources, rally teammates
* Ability to influence and build consensus with other scrum teams and leadership
* Demonstrates adaptability and openness to change, effectively navigating ambiguity and responding to evolving information, circumstances, and priorities
* Exhibits clear and strategic thinking, translating complex strategies into actionable steps. Makes timely, informed decisions and communicates priorities with clarity and precision
We will not sponsor individuals for employment visas, now or in the future, for this job opening.
Additional Information
GE HealthCare offers a great work environment, professional development, challenging careers, and competitive compensation. GE HealthCare is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE HealthCare will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
While GE HealthCare does not currently require U.S. employees to be vaccinated against COVID-19, some GE HealthCare customers have vaccination mandates that may apply to certain GE HealthCare employees.
Relocation Assistance Provided: No
Senior Cyber Security Engineer
Security engineer job in Milwaukee, WI
Title: Senior Cyber Security Engineer (Data Protection & Insider Risk)
Type: Hybrid (3 days onsite per week)
Duration: ASAP - 12/31/2026
Perks: Competitive Rates, Benefits, free daily lunch when onsite
Job Description:
About the Role
Join a specialized team of analysts and engineers dedicated to detecting and responding to insider risk events. This senior-level role focuses on engineering Microsoft E5 tools to strengthen enterprise data protection and insider threat detection capabilities. You will lead the design, build, and operationalization of secure-by-default solutions anchored in Microsoft Purview and related technologies, ensuring compliance and resilience at scale.
Key Responsibilities
Engineer Secure-by-Default E5 Data Protection
Design and implement Microsoft Purview DLP policies across endpoints, Exchange, SharePoint, OneDrive, and Teams.
Develop and maintain Sensitivity Label taxonomy with automated enforcement paths.
Build Policy-as-Code Pipelines
Create CI/CD workflows to version, test, and deploy DLP rules, label configurations, and governance artifacts across multiple environments.
Integrate Security Telemetry
Connect Zscaler SSE inspection with Purview controls; route events to Splunk for analytics and detection.
Leverage CrowdStrike telemetry to correlate endpoint behaviors with data movement signals for insider-risk and exfiltration scenarios.
Develop Automations & Guardrails
Build services and workflows (Azure Functions, Logic Apps, Graph API) for auto-remediation, revoking risky shares, and notifying data owners.
Implement configuration baselines and drift detection for E5 security controls (MCAS, Conditional Access, etc.).
Operate and Continuously Improve
Maintain reliability for data protection pipelines, including SLIs/SLOs, runbooks, and incident playbooks.
Create Splunk dashboards and correlation searches aligned to exfiltration, anomalous access, and label violations.
Collaborate Across Teams
Partner with Privacy and Compliance for audit-ready controls and evidence processes.
Work with IAM, Insider Risk, and platform teams to align label taxonomy and enforcement with business workflows.
Provide technical leadership and mentorship for engineers and analysts implementing new E5 features.
Required Qualifications
5+ years of experience in enterprise security or platform engineering.
Hands-on expertise with Microsoft E5 security stack (Purview DLP, Information Protection, eDiscovery).
Proven ability to build policy-as-code for DLP/labels and automate administration using Graph API and PowerShell.
Experience designing secure-by-default guardrails for SaaS/AI adoption, including Copilot.
Preferred Qualifications
Strong background in data protection for regulated data (PII/PHI) and insider-risk detection.
Experience with Zscaler (SSE/ZIA/ZPA), CrowdStrike (Falcon APIs/telemetry), and Splunk (CIM, correlation searches).
Familiarity with MCAS, Defender for Cloud Apps, and conditional access policies.
Knowledge of HIPAA/PHI audit support and exception governance workflows.
Success Metrics (First 6-12 Months)
Improved DLP policy efficacy and reduced unauthorized data movement.
Increased label coverage and accuracy for sensitive content.
End-to-end telemetry integration across Purview, Zscaler, CrowdStrike, and Splunk.
Secure-by-default adoption and Copilot controls baselined.
Audit readiness with complete evidence and exception closure rates.
Tools & Technologies
Microsoft E5 / Purview: Information Protection, DLP, eDiscovery/Audit, Insider Risk
Zscaler (SSE/ZIA/ZPA), CrowdStrike (Falcon/Shield), Splunk (CIM, ES)
Automation: GitHub, Graph API, PowerShell, Azure Functions/Logic Apps
Sr. Information Security Engineer - AI
Security engineer job in Rosemont, IL
Job Description
Job Title: Senior Information Security Engineer - AI Primary Location: Rosemont, IL - Hybrid, 3 days on-site Direct Hire TalentFish is casting a line for a Senior Information Security Engineer - AI/Artificial Intelligence. This is a Direct Hire role based in Rosemont, IL with a hybrid schedule (3 days on-site) with our premier client.
This is a new, exciting position within an awarded top Chicago employer organization where you'll contribute to the organization's Responsible Artificial Intelligence governance by assessing the security, integrity, and risks associated with the use of AI models and technologies. This role is hands-on and works closely with multi-disciplinary teams to evaluate AI use cases and maintain AI security frameworks and standards.
What You Bring to the Role (Ideal Experience)
Bachelor's degree in Computer Science, Mathematics, or related field
5+ years of total professional experience, including security, data security, or control validation experience
23 years of practical, hands-on experience working with Artificial Intelligence technologies
Ability to evaluate AI model risks, including bias, data exposure, data leakage, and model poisoning
Data processing or analytics skills are a plus
What You'll Do (Skills Used in This Position)
Lead security assessments for AI models, including Large Language Models (LLMs), Natural Language Models (NLMs), and Small Language Models (SLMs)
Participate in review committees to assess AI use cases for value, complexity, feasibility, risk, compliance, and strategic alignment
Review AI architecture and usage within internal and third-party solutions to ensure adherence to AI security frameworks and regulatory requirements
Support development and maintenance of AI security standards, frameworks, and governance models
Provide education on AI security best practices, emerging risks, and mitigation strategies
Perform additional related responsibilities as required
Compensation Information
The expected salary range for this position is $120,000 - $150,000 per year, depending on experience and qualifications. This role also qualifies for comprehensive benefits such as health insurance, 401(k), and paid time off. TalentFish is committed to pay transparency and equal opportunity. The salary range provided is in compliance with applicable state and federal regulations.
This role requires authorization to work in the U.S. without current or future visa sponsorship.
All offers are contingent upon the completion of a background check, which may include but is not limited to: reference checks, education verification, employment verification, drug testing, criminal records checks, and any required certifications or compliance requirements based on the end client's background check policies and applicable laws.
TalentFish is an employee-owned company pioneering a new realm in talent acquisition. We are redefining IT staffing by evolving AI, video screening, and our unique platform. TalentFish focuses on providing the best employee, consultant, and client experience possible.
At TalentFish we are an Equal Opportunity Employer; we embrace and encourage diversity!
Cyber Security Engineer
Security engineer job in Waukesha, WI
SummaryThe Cyber Security Engineer will be a Security Evangelist helping engineers in secure implementation of technology stack in a enterprise/cloud environment. GE HealthCare is a global leader in medical technology and digital solutions, dedicated to improving lives in the moments that matter. We innovate to transform healthcare delivery and empower clinicians worldwide. Join us to turn ideas into world-changing realities in an inclusive environment where every voice matters.Job DescriptionResponsibilities
Drive tailored SDL practice into specific engineering-
Engage in application, platform and domain-specific threat modeling and attack surface
analysis/reduction
Work closely with cross-functional teams in requirements gathering and security-focused software design
Discover and mitigate vulnerabilities in sensitive Critical Infrastructure/ Key Resource Domains (CI/KR).
Develop and design innovative cyber security solutions for unique and complex technologies.
Work in partnership with government agencies, leading industry experts, and academia.
Leverage traditional and non-traditional research methodologies to advance GE's overall Cybersecurity practice.
Assess and investigate specific threats to an information system in terms of severity and impact.
Create detailed reports on vulnerabilities, bugs, and design flaws found in industrial information systems.
Create IPS/IDS rules or other mitigations to protect vulnerable systems. Plan and implement applicable risk mitigating security solutions.
Interacting with global teams to promote consistency and maximize synergies across common software platforms
Able to join the team and gain mastery of the Ultrasound domain and contribute towards the development Software Infrastructure.
Leveraging technical and clinical depth to work on business initiatives aimed at innovation and quality excellence.
Support process improvements which guide development, sustaining & support activities
Drive world-class quality in the development and support of products
Apply principles of SDLC and methodologies like Lean/Agile/XP, CI, Software and Product Security, Scalability, Documentation Practices, refactoring and Testing Techniques
Understand performance parameters and assess application performance
Proactively share information across the team, to the right audience with the appropriate level of detail and timeliness
Required Qualifications
Bachelor's Degree in Computer Science or “STEM” Majors (Science, Technology, Engineering and Math) with minimum 3 years of experience
Certification in Privacy, Security & Regulatory domain or related certification
Experience in object-oriented design methodology and various programming languages such as C/C++
Working knowledge in configuration management tools such as Perforce, GIT, ClearCase, etc...
Experience in working with Windows API and application programming.
Experience in software platform, advanced applications, user-interface design and/or systems engineering especially in the healthcare domain -preferable Ultrasound.
Good skills in knowing how to debug software issues.
Experience with multicore and multi-threaded software design and computing environment.
Desired Characteristics
Technical Expertise:
Familiarity with identifying, analyzing, and ethically exploiting the various classes of vulnerabilities that affect executable code.
Strong knowledge of TCP/IP networking. Ability to use Wireshark to capture and analyze network traffic.
Hands-on experience working with Windows and Linux based systems.
Programming skills in one or more languages (we develop using Python, C, C++, CUDA, Java and others).
Ability to understand machine language, operating systems, common APIs, libraries, and runtime environments and how they interact with hardware, firmware, and binary code.
Familiar with digital electronics and microcontrollers. Exposure to SCADA/DCS systems or industrial technologies.
Knowledge of application risk identification and evaluation techniques, and knowledge of Cyber Security and related engineering functions.
Business Acumen: Able to translate vulnerability information into business risks relevant to our customers.
Strong problem-solving abilities and capable of articulating specific technical topics or assignments.
Expert in breaking down problems and estimate time for development tasks.
Strong desire to experiment, use new tools and techniques. Can be a creative problem solver.
Experience in software platform, advanced applications, user-interface design and/or systems engineering especially in the healthcare domain.
Good understanding of workflow in the healthcare industry.
Demonstrated experience with development of medical device software
Ultrasound SW development experience
Knowledge of ultrasound or demonstrated experience with development of medical device software
Other
Must be willing to work onsite at least 3 days a week in Wauwatosa/Waukesha, Wisconsin
Self-starter, energizing, results oriented and able to multi-task; tenacious and organize
Ability to foresee obstacles, identify workarounds, leverage resources, rally teammates
Ability to influence and build consensus with other scrum teams and leadership
Demonstrates adaptability and openness to change, effectively navigating ambiguity and responding to evolving information, circumstances, and priorities
Exhibits clear and strategic thinking, translating complex strategies into actionable steps. Makes timely, informed decisions and communicates priorities with clarity and precision
We will not sponsor individuals for employment visas, now or in the future, for this job opening. Additional Information
GE HealthCare offers a great work environment, professional development, challenging careers, and competitive compensation. GE HealthCare is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.
GE HealthCare will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
While GE HealthCare does not currently require U.S. employees to be vaccinated against COVID-19, some GE HealthCare customers have vaccination mandates that may apply to certain GE HealthCare employees.
Relocation Assistance Provided: No
Auto-ApplyInformation Security Engineering & Operations Analyst
Security engineer job in Racine, WI
The JFG Information Security Engineering & Operations Analyst plays a key role in supporting JFG's Identity & Access Management (IAM), Cyber Threat Management, and Vulnerability Management services. This role helps support IAM services to provision, deprovision, and certify access to JFG systems. It also helps detect, analyze, hunt for, and report on cybersecurity events related to malware, network intrusion, and data loss protection and insider threat incidents. This role is also responsible for finding and reporting on internal and external vulnerabilities on JFG systems. This role will be supported by a Managed Detection & Response (MDR) services and Identity & Access Management Managed services. Occasional off-hour and weekend work will be expected. Very little (less than 5%) business travel is expected in this role.
This role will be located in Racine, Wisconsin. Ability to come in-office would be required (working a hybrid schedule.)
KEY RESPONSIBILITIES:
* Detect, analyze, contain, and remediate threats and vulnerabilities across the JFG environment.
* Operate and support vulnerability management, data loss protection, cybersecurity monitoring, cybersecurity incident response, intrusion analysis, root-cause-analysis (digital forensics), cyber-threat intelligence, and malware analysis technologies.
* Lead and report on incidents involving malware, network intrusion, insider-threat, internal investigations and litigation support activities.
* Incorporate Cyber Threat Intelligence into operational signal intelligence and reporting.
* Proactively investigate JFG environment for threats based on Cyber Threat Intelligence and known threat methods and patterns (aka Threat Hunting).
* Operate and support Identity Governance and Administration technologies to support timely on/off-boarding of people and regular access governance reviews to ensure appropriate access.
* Support weekly/monthly/quarterly/annual operational metrics, reports and dashboards.
* Assist with maintaining the Cybersecurity Incident Response Plan.
* Collaborate on the continuous improvement of Information Security Operations processes, workflows, and procedures (e.g. RunBooks).
* Automate repetitive tasks and drive efficiencies with measurable benchmarks to show progress.
JOB REQUIREMENTS:
* Associates degree in Information Security, Cybersecurity preferred
* 0-2 years' experience
* Types of certification preferred: Security+, CEH, SSCP
* Experience with Python and PowerShell scripting languages for automation preferred
* Good report writing and communication skills
* Has a basic understanding of the Information Security platforms at JFG, common Information Security controls and frameworks, networking concepts and technologies, as well as Windows and Linux environments
Come as you are.
Johnson Financial Group supports and is committed to the principle of equal employment opportunity. We make all employment-related decisions without regard for an individual's race, color, religion, sex, sexual orientation, age, national origin, citizenship, disability, veteran status, or any other protected status as required by law.
Auto-ApplyFire and Security Consultant
Security engineer job in Milwaukee, WI
Martin Systems has been a trusted provider of security, fire, and life safety solutions since 1974. With more than five decades of experience, we are known for delivering innovative technology and outstanding service to clients throughout Wisconsin. Our presence spans Green Bay, Milwaukee, Madison, Door County, Appleton, The Lakeshore, and Central Wisconsin.
As a community-oriented organization, Martin Systems is actively involved in civic and safety initiatives. We support programs such as McGruff House, the Boys & Girls Clubs, Big Brothers Big Sisters, and children's fire and safety education. Our employees also engage with organizations like Crime Stoppers and Crime Prevention Associations.
Position Summary
The Security Consultant plays a key role in developing new business and managing client relationships for installation projects. This position is responsible for identifying prospective customers, conducting site evaluations, preparing proposals, and ensuring a high standard of customer satisfaction throughout the sales and implementation process.
Key Responsibilities
Identify and pursue new business opportunities through referrals, networking events, directories, and some door-to-door outreach
Follow up on sales leads and schedule appointments with prospective clients
Conduct needs assessments and site evaluations to determine appropriate solutions
Prepare and present detailed proposals and sales presentations
Develop and maintain accurate records of customer data, sales activity, and completed tasks within the company's CRM system
Submit sales contracts and coordinate with installation and service teams to ensure proper project execution
Collaborate with project coordinators and division managers to collect technical data and building information
Track and communicate project status, ensuring milestones, deadlines, and deliverables are met
Monitor budgets and report on variances where applicable
Maintain ongoing communication with clients to ensure satisfaction, foster retention, and generate referrals
Serve as a knowledgeable resource on product capabilities, technical features, and service options
Respond to customer inquiries and escalate technical questions as appropriate
Qualifications
Minimum of 3 years of successful experience in a sales or account executive role
Industry experience in electronic security systems is strongly preferred
Familiarity with electronics and technical solutions is advantageous
Strong interpersonal, communication, and customer service skills
Demonstrated ability to present complex information in a clear and engaging manner
Effective time management and organizational skills
EEOC Statement
Martin Systems provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
Sr. Specialist, Security Engineer
Security engineer job in Schaumburg, IL
Primient is a century old company with an entrepreneurial spirit. We are a leading producer of food and industrial ingredients made from plant-based, renewable sources. We deliver value through deep technical, commercial, and operational excellence that is backed by our long-standing corn wet milling heritage. Wherever we are in the process, from field to customer, our priorities are focused on ensuring we produce the safest, highest quality products through practices that uphold both our responsibility and commitments to the challenge and drive for excellence, our people and our planet. We are a privately held company with locations across the US, Mexico, Poland, and Brazil. We're investing in our plants and people to unlock our potential in the industrial and food sectors. Guided by our values of Safety, Excellence, Integrity, and Growth, we're focused on growing our business, our reputation, and the career of every teammate.
About Primient
Primient is a century old company with an entrepreneurial spirit. We are a leading producer of food and industrial ingredients made from plant-based, renewable sources. We deliver value through deep technical, commercial, and operational excellence that is backed by our long-standing corn wet milling heritage. Wherever we are in the process, from field to customer, our priorities are focused on ensuring we produce the safest, highest quality products through practices that uphold both our responsibility and commitments to the challenge and drive for excellence, our people and our planet. We are a privately held company with locations across the US, Mexico, Poland, and Brazil. We're investing in our plants and people to unlock our potential in the industrial and food sectors. Guided by our values of Safety, Excellence, Integrity, and Growth, we're focused on growing our business, our reputation, and the career of every teammate.
About the role
The Sr. Specialist, Security Engineer protects the organization's information assets and technology infrastructure by implementing security controls, monitoring for threats, and responding to incidents. This role ensures compliance with relevant security policies and regulatory requirements while safeguarding the confidentiality, integrity, and availability of data, supporting the company's ability to operate securely and meet its business objectives.
More specifically, you will:
Monitor Security Systems: Continuously monitor security systems and logs to detect and respond to security incidents promptly and effectively.
Manage Vulnerabilities: Identify, assess, and remediate vulnerabilities in systems, applications through regular testing and patching.
Implement and Maintain Security Tools: Deploy and manage security tools, such as intrusion detection/prevention systems, antivirus software, and SIEM solutions.
Develop Policy and Procedures: Create, update and enforce security policies, standards, and procedures to ensure consistent security practices across the organization.
Conduct Security Awareness Training: Deliver security awareness training programs to educate employees about security threats and best practices.
Support Audits and Compliance: Assist with internal and external security audits and ensure compliance with relevant regulations and standards (e.g., GDPR, CCPA, HIPAA).
Track Threat Intelligence: Stay informed about emerging security threats and vulnerabilities and proactively implement measures to mitigate risks.
Perform Risk Assessments: Conduct regular risk assessments to identify potential security risks and develop mitigation strategies.
About You
Knowledge
Cybersecurity frameworks and standards (e.g., NIST, ISO 27001)
Network security principles and protocols
Security tools and technologies (e.g., SIEM, firewalls, IDS/IPS)
Current threat landscape and attack vector
Skills
Incident response and handling
Vulnerability assessment and penetration testing
Analytical and problem-solving skills
Excellent written and verbal communication
Interpersonal skills
Technical proficiency in security tools and systems
Mindsets
Proactive
Detail-oriented
Adaptable and resilient
Collaborative
Continuous learning and improvement
Required and Preferred Education/Certification
Bachelor's degree in Computer Science, Information Security, or a related field (required)
Security certifications such as CompTIA Security+, CEH, or equivalent (required)
Master's degree in Information Security, Cybersecurity, or related field (preferred)
Advanced certifications such as CISSP, CISM, or OSCP (preferred)
Required and Preferred Work Experience
3+ years of experience in IT security or a related role (required)
5+ years of experience in IT security (preferred)
Experience with enterprise security tools and frameworks (preferred)
Proven track record in policy development and risk mitigation (preferred)
Total Rewards
The annual pay range estimated for this position is $95,547.00 - $119,434.00 and is bonus eligible.
Please note that while this range reflects the full spectrum of compensation available for this role, individual compensation will be determined based on several factors including your experience, skills, and alignment with the role's responsibilities. During the interview process there will be an opportunity to discuss how your background fits into the pay range.
We offer a comprehensive Total Rewards package that our U.S. colleagues and their families can count on, which includes:
Competitive Pay
Multiple Healthcare plan choices
Dental and vision insurance
A 401(k) plan with company and matching contributions
Short- and Long-Term Disability
Life, AD&D, and Voluntary Insurance plans
Paid holidays & vacation
Floating days off
Parental leave for new parents
Employee resource groups
Learning & development programs
Fun culture where you have an opportunity in shaping our future
Career Path & Culture
Primient is committed to a workplace that is all in - ensuring everyone has the opportunity to develop and shape a career that matters in an open culture which embraces equity, diversity and belonging. We challenge old ways of thinking; and encourage employee voices to be a guiding force for ongoing learning.
Primient supports a culture of inclusion that respects individual strengths, views, and experiences. We believe our differences make better decisions, drive excellence, and deliver better business results. Primient employees experience autonomy and accountability in their role. Here, employees control their destiny as there is opportunity for career growth and pathways outside the norm.
Diversity, Equity, Inclusion & Belonging
We are believers in the power of difference. We strive to represent the communities in which we operate and to provide an inclusive, welcoming environment for all. We want Primient to be a place where every employee feels they belong and knows they are seen, heard, valued and safe to speak up. Our aspiration is to unlock the full potential in diverse perspectives, while offering everyone an equal chance to grow,
Primient is an equal opportunity employer, committed to the strength of an inclusive workforce.
California Consumer Privacy Act ("CCPA")
The Company is committed to complying with the California Consumer Privacy Act (“CCPA”) and all data privacy and laws in the jurisdictions in which it recruits and hires employees. We collect the following categories of personal information for the purpose of hiring the best qualified applicants and to comply with applicable employment laws: Name and contact information; Job preference and work availability; Social Security Number and/or other identification information; Education and qualifications; Employment history and experience; Military service; Reference and background check information, including relevant criminal history and credit history; Social media information; Pre-employment test results; Post-offer medical examination information and results, including drug test results; Voluntary self-disclosure information regarding minority, veteran, and disability status; and Information provided by you during the hiring process.
Total RewardsThe annual pay range estimated for this position is $95,547.20 - $119,434.00 and is bonus eligible.
Please note that while this range reflects the full spectrum of compensation available for this role, individual compensation will be determined based on several factors including your experience, skills, and alignment with the role's responsibilities. During the interview process there will be an opportunity to discuss how your background fits into the pay range.
We offer a comprehensive Total Rewards package that our U.S. colleagues and their families can count on, which includes:
Competitive Pay
Multiple Healthcare plan choices
Dental and vision insurance
A 401(k) plan with company and matching contributions
Short- and Long-Term Disability
Life, AD&D, and Voluntary Insurance plans
Paid holidays & vacation
Floating days off
Parental leave for new parents
Employee resource groups
Learning & development programs
Fun culture where you have an opportunity in shaping our future
Career Path & Culture
Primient is committed to a workplace that is all in - ensuring everyone has the opportunity to develop and shape a career that matters in an open culture which embraces equity, diversity and belonging. We challenge old ways of thinking; and encourage employee voices to be a guiding force for ongoing learning.
Primient supports a culture of inclusion that respects individual strengths, views, and experiences. We believe our differences make better decisions, drive excellence, and deliver better business results. Primient employees experience autonomy and accountability in their role. Here, employees control their destiny as there is opportunity for career growth and pathways outside the norm.
Diversity, Equity, Inclusion & Belonging
We are believers in the power of difference. We strive to represent the communities in which we operate and to provide an inclusive, welcoming environment for all. We want Primient to be a place where every employee feels they belong and knows they are seen, heard, valued and safe to speak up. Our aspiration is to unlock the full potential in diverse perspectives, while offering everyone an equal chance to grow,
Primient is an equal opportunity employer, committed to the strength of an inclusive workforce.
California Consumer Privacy Act ("CCPA")
The Company is committed to complying with the California Consumer Privacy Act (“CCPA”) and all data privacy and laws in the jurisdictions in which it recruits and hires employees. We collect the following categories of personal information for the purpose of hiring the best qualified applicants and to comply with applicable employment laws: Name and contact information; Job preference and work availability; Social Security Number and/or other identification information; Education and qualifications; Employment history and experience; Military service; Reference and background check information, including relevant criminal history and credit history; Social media information; Pre-employment test results; Post-offer medical examination information and results, including drug test results; Voluntary self-disclosure information regarding minority, veteran, and disability status; and Information provided by you during the hiring process.
Auto-ApplyInformation System Epic Security Analyst
Security engineer job in Milwaukee, WI
At Children's Wisconsin, we believe kids deserve the best.
Children's Wisconsin is a nationally recognized health system dedicated solely to the health and well-being of children. We provide primary care, specialty care, urgent care, emergency care, community health services, foster and adoption services, child and family counseling, child advocacy services and family resource centers. Our reputation draws patients and families from around the country.
We offer a wide variety of rewarding career opportunities and are seeking individuals dedicated to helping us achieve our vision of the healthiest kids in the country. If you want to work for an organization that makes a difference for children and families, and encourages you to be at your best every day, please apply today.
Please follow this link for a closer look at what it's like to work at Children's Wisconsin:
***********************************
Children's Wisconsin is seeking a Senior Information Epic Security Analyst- to join our team!
Location: Remote but must be local to Milwaukee
What you will do:
The IS Security Analyst-Epic will perform all procedures necessary to ensure the safety of information systems assets and to protect systems from intentional or inadvertent access or destruction. Ensures that user community understands and adheres to necessary procedures to maintain security. Must be able to weigh business needs against security concerns and articulate issues to management. Primary EPIC security lead on Enterprise Information Security team responsible for management of Epic user records (EMP users, including background users) which includes the life cycle management of the records (creation, modification, inactivation) and auditing as appropriate. Collaborates with app analysts teams who manage the templates and sub templates. Participates in the development of workflows, system configuration, change documentation, optimization and support related to Epic security, while working with application teams to deploy functionality changes, new modules or departments, update security classes, modify provider records, conduct user analysis, and implement security enhancements. Leads and assists in the development of department and organization wide policies and procedures, while effectively communicating policies and procedures impacting Identity and Access management to end users, leadership, and peers to ensure compliant practices. Provides guidance on optimizing security build based on appropriate minimum necessary standards. Responsible for the on-going maintenance, testing, support and optimization of Epic user security and provider management, with focus on role based access. Epic certification is a requirement. Excellent organizational skills and ability to manage work load while assigned to multiple simultaneous projects with minimal supervision. Thorough understanding of user account administration in a network environment. Thorough understanding of security auditing principles. Familiarity with current common paradigms for violating system integrity. Top-tier security performance tuning skills and trouble-shooting required.
Works closely with all levels of the organization to ensure that security is consistent with organizational security standards, information access requirements and business strategies. Coordinates with IS entities regarding technical considerations (user rights/privileges, system access) to ensure proper implementation and provides on-going support for all security operations. Works collaboratively with Internal Audit, Corporate Compliance, Human Resources and other departments on security related issues and projects. Works with cross-functional teams to perform reviews and tests of IS internal controls to ensure existing systems are operating as designed and contain adequate controls. Monitors and analyzes technology security and recommends appropriate IS policies, procedures and practices to strengthen security operations. Provides consultation regarding audit, regulatory and security management activities across IS functional areas. Coordinates the IS component of both internal and external audits, federal and state examinations.
ESSENTIAL FUNCTIONS:
Demonstrates behaviors outlined in the Core Competencies the Blue Kids Way to provide service excellence as a committed partner to children, families and co-workers.
Recommends and maintains policies and procedures related to information security. Monitors the organization's overall security fabric.
Assesses security needs and capabilities of the organization. Makes regular reports to management concerning security measures. Makes recommendations for improvement as required.
Identifies and provides information security awareness training as appropriate. Identifies appropriate courses to enhance security capabilities and competencies of the organization.
Works with management to perform and maintain risk assessments. Ensures organization compliance with the security sections of Federal and State statutes, including HIPAA, as well as regulatory requirements. Coordinates investigations into potential security infractions.
Determines and designs appropriate tests for all aspects of information security. Activities may include attempted “cracking” of system security, review of audit trails and attempted theft of devices. Evaluates system effectiveness and makes change recommendations as necessary.
Coordinates periodic reviews of system security by outside consultants, including vulnerability assessments, penetration tests, HIPAA reviews and PCI compliance. Works with IS teams to implement recommendations as appropriate.
Monitors, evaluates and makes recommendations regarding perimeter security including prevention against attack, viruses, and other forms of malicious software. Monitors, evaluates and makes recommendations regarding email and Internet content filtering. Evaluates and makes recommendations regarding requested changes to perimeter security.
Recommends policies and procedures for controlling remote access by employees, non-employees and vendors.
Reviews and makes recommendations regarding security oriented software applications and workstation security, including patch management, user rights management, and operating system configuration.
Keeps current on security issues through seminars, publications and self-education on an on-going basis.
MINIMUM KNOWLEDGE, SKILLS AND ABILITIES REQUIRED:
Requires bachelor's degree in computer science or related technology field. Master's degree preferred.
Requires 7 years of relevant computer systems experience, preferably in a hospital or healthcare setting. Significant experience in IS security administration including compliance, audit, and information security management.
Epic Security certification is a requirement.
Professional certification (e.g. CISA, CISM or CISSP) preferred.
Thorough understanding of risk analysis, disaster recovery and audit tracking.
Familiarity with current common paradigms for violating system integrity.
Must have excellent interpersonal skills to effectively communicate with all levels of hospital personnel, vendors and IS personnel.
Must possess the ability to deliver clear, concise communications and presentations. Must be able to train others on key IS security concepts.
Children's Wisconsin is an equal opportunity / affirmative action employer. We are committed to creating a diverse and inclusive environment for all employees. We treat everyone with dignity, respect, and fairness. We do not discriminate against any person on the basis of race, color, religion, sex, gender, gender identity and/or expression, sexual orientation, national origin, age, disability, veteran status, or any other status or condition protected by the law.
Certifications/Licenses:
Auto-ApplyData and System Security Engineer
Security engineer job in Lincolnshire, IL
AYR Global IT Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients. Our competitive, transparent pricing
model and industry experience make us a top choice of Global System
Integrators and enterprise customers with federal and commercial
projects supported nationwide.
Job Role: Data and System Security Engineer
Location: Lincolnshire, IL
Duration: 6+ Months
Qualifications
Job Description:
Data and System Security engineer
Experience with data encryption management solutions, such as Vormteric and CloudLink
Experience with PKI management solutions, such as ADCS and External providers
Investigative and analytical problem solving skills
Customer service/support experience
Additional Skills:PKI
Knowledge of encryption management technologies, such as Vormetric, CloudLink.
Additional Information
If anyone might be intersted please send resumes to kmarsh@ayrglobal (dot) com or you can reach me direct at **************
Security Operations Center (SOC) - Information Security Analyst
Security engineer job in Schaumburg, IL
Title: Security Operations Center (SOC) - Information Security Analyst Company: Award-Winning, $50B Publicly Traded Company Type: Full-Time Location: Hybrid - Chicagoland Area (Onsite 3-4 Days/Week) Travel: None Job Overview Join an award-winning, publicly traded company and be part of a fast-paced, cutting-edge security team! This newly developed SOC Analyst role offers an exciting and dynamic environment where no two days are the same. You'll have the opportunity to work with leading security tools like Splunk, CrowdStrike, Digital Shadows, and Proofpoint, while collaborating with a skilled and supportive security engineering team. You'll be part of a tight-knit, communicative team that values collaboration, knowledge-sharing, and professional growth. If you thrive in fast-paced security operations and enjoy hands-on problem-solving, this is an excellent opportunity to make an impact. Key Responsibilities:
Manage the Phish Alert mailbox.
Perform QA on tickets for a service provider.
Handle tier 2 escalated inquiries.
Support security operations through log aggregation and analysis.
Leadership & Team Culture The leadership team is known for holistically supporting its team members, ensuring that growth, learning, and well-being remain top priorities. They provide ongoing career development opportunities, mentorship, and hands-on training to help employees expand their expertise and advance their careers. Beyond technical growth, leadership fosters a culture of inclusivity and collaboration, ensuring that every team member is heard, valued, and supported. Open communication, continuous learning, and a strong sense of community define the workplace, empowering individuals to contribute, innovate, and succeed. Requirements
3+ years of experience in cybersecurity or a related field.
Proficiency with at least some of the following tools: CrowdStrike, Proofpoint, Digital Shadows, or Splunk
Experience working in a Security Operations Center (SOC) environment is a plus, but not required.
Compensation & Benefits
Base Salary: $70,000 - $90,000 (dependent on qualifications, skills, and experience).
Bonus Eligible.
Comprehensive Benefits Package Includes:
Medical, Dental, Vision, and Life Insurance
Traditional and Roth 401(k) with company match
Employee Stock Purchase Plan (ESPP)
And much more!
Apply Today!
Information Security Manager Architect_Deerfield, Illinois
Security engineer job in Deerfield, IL
We are seeking an experienced Quality Assurance Analyst to test updates to our client's website and other interactive deliverables. Primary responsibilities include executing test plans, updating test reports, writing bug defects, verifying fixes, and testing pages and emails on supported environments.
Job Description
Interview mode: Phone and Skype (On site interview may be required)
We can submit C2C consultants
JD:
OBJECTIVES:
• Reports to the Head of Security Strategy & Architecture
• Provides leadership and guidance to the regional IT organization on cyber and information security and risk management activities, education, and solutions
• Contributes to defining global security strategy and architecture processes
• Defines and establishes regional security processes based on global security strategy and architecture, with a focus on practices for Vulnerability Management, Systems Development Lifecycle, Information Security Processes including risk based Architecture design.
• Directs a regional approach for the implementation of global IT security standards and methodologies
• Provides input to global security operations such as incident response, monitoring, trend identification, and security posture and remediation
ACCOUNTABILITIES:
• Reports to the Head of Security Strategy & Architecture on plans and status of relevant projects, including the regional security strategy and implementation initiatives
• Contributes to the design, development, and deployment of global security strategy and architecture concepts
• Cooperates with regional teams in understanding global security strategy and architecture requirements
• Conducts periodic review of security-related SDLC processes and stage gates
• Incorporates cyber security and IT risk management into regional activities
• Be the subject matter expert in security and assessments, including vulnerability management processes, vendor security reviews, penetration testing, and application security
• Conducts follow-ups on any identified corrective actions
• Functions as an advisor to system owners, security program managers and others in all matter (technical and otherwise) involving IT security and continuity
• Directs or delegates level 3 support services for the region
• Manages the relationship between IT security and regional business executives and business managers
• Provides recommendations in planning of programs and projects in the area of cyber security
• Reviews and manages budget and reports financial and event status to Head of Security Strategy & Architecture
EDUCATION, BEHAVIOURAL COMPETENCIES AND SKILLS:
Required:
• Bachelor's Degree (business administration, risk management, information security, Management Information Systems (MIS), Computer Science or related IT field) or high school degree
• 7+ years IT experience
• 5+ years of work experience in developing, implementing and managing security solutions
• 3+ years of work experience in designing and architecture security strategy and solutions
• Demonstrated leadership role in working with C-Suite executives and the Board
• Experience with implementing and operating security programs in a global environment, with a focus in Germany and European countries
• Hands-on experience with the development of security strategy and frameworks, architectural methodologies, and service delivery
• Project management experience including full lifecycle implementation
• Proven ability to analyze a wide variety of data and make calculated, risk-based decisions
• Ability to communicate ideas and data both verbally and written in a persuasive and appropriate manner
• Ability to assess strengths and weaknesses of staff members and provide suggestions for improvement
• Ability to write and speak in the English language
Desired:
• In-depth pharmaceutical industry and drug development experience
• Experience with validated systems
LICENSES/CERTIFICATIONS:
• Information security certification (CISSP, CISM, CISA, GIAC, CEH, CCSK)
TRAVEL REQUIREMENTS:
• Access to transportation to attend meetings
• Ability to fly to meetings regionally and globally
• Willingness to travel up to 25-50%.
Location: Deerfield, IL.
Duration: 1 Year+
Additional Information
All your information will be kept confidential according to EEO guidelines. Please call @ ************ Ext 183
Network/Security Engineer
Security engineer job in Northbrook, IL
· Experience should be 5 + Years. · Hands on Experience in Network Administration & Monitoring. (Tools: SolarWinds, RiverBed NetOp) · Experience in Firewalls administration. (Primarily Cisco ASA) · Experience in load Balancer. Knowledge of handling F5 load balancers is an added advantage.
·
Experience in maintaining Converged Network is desired. (VoIP, Video running over a QoS based network)
·
Experience Switching, Routing & Security products.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Chief Information Security Officer - Virtual
Security engineer job in Addison, IL
Select Cyber has been asked to identify a highly skilled and strategic Information Security leader. The CISO will be a member of the CIO cybersecurity leadership team, working closely with senior business leaders across the organization. In this role you will provide (locally or remotely in a virtual mode) long-range strategy, detailed information security oversight and strategic leadership for this major financial organization. The CISO will lead the development and implementation of a comprehensive information security program, oversee information security Governance, Risk and Compliance as well as critical business priorities.
Requirements REQUIREMENTS:
Establish a comprehensive, bank-wide information security strategy to ensure the availability, integrity, and confidentiality of critical information assets.
Manage policies, standards, and processes designed to protect information assets.
Work directly with business units to facilitate IT risk assessment and risk management processes, and work with stakeholders throughout the enterprise on identifying acceptable levels of residual risk.
Establish procedures to address security incidents and partners with executive leadership to investigate and resolve security breaches.
Stay up-to-date on regulatory changes, emerging threats and evolving technologies and implements appropriate control mechanisms and security architecture based on risks within Bank's environment.
Chair a cross-functional committee that drives enterprise information and technology security and risk strategies.
Work within and support the enterprise Vendor Management Program to support selection, negotiation, contract management for service level agreements with outside suppliers as required.
Maintains a risk-based framework to mitigate and monitor third party risk.
Actively participate in enterprise-wide Business Continuity Planning (BCP) including the establishment and validation of procedures to restore business critical services in the event of a disaster, (i.e. IT Disaster Recovery (DR).
Oversees the approval, training, and dissemination of security policies and practices.
Define and facilitate the information security risk assessment process, including the reporting and oversight of treatment efforts to address findings.
Liaises with internal and regulatory auditors on cyber security subject matter.
Define, identify and classifies critical information assets, performs risk analysis regarding those assets to recommend and participate in implementing cost effective security solutions.
EXPERIENCE/KNOWLEDGE:
Minimum of twelve (10) years of IT security experience, with at least four (4) being in a senior leadership role.
Financial Services/Banking/Brokerage industry experience required.
Strong understanding of strategic business imperatives and be able to articulate risk in the context of business objectives; he or she will have a deep working knowledge of relevant compliance, regulatory frameworks (e.g., ISO, SOX, ITIL, COBIT) and Payment Card Industry (PCI) Data Security Standard (DSS).
Superior theoretical and practical expertise in enterprise and information systems security.
Professional security management certification as a Certified Information Systems Security Professional (CISSP). Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or other similar credentials are recommended.
Energy, enthusiasm and the ability to multi-task in a fast-paced, dynamic environment.
Bachelors or Master's degree (or equivalent) requited in computer science, management information systems, business administration (or a related discipline).
Ability to travel to all locations as well as ability to travel overnight, as needed for meetings, projects, seminars, etc.
Benefits Highly competitive benefits package.
Staff Systems Security Engineer
Security engineer job in Rolling Meadows, IL
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE TYPE: SAPTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
We are seeking capable, talented, and motivated team-contributors at our Northrop Grumman Rolling Meadows site. Our products range from advanced sensing technologies to state-of-the-art targeting and tracking systems that are deployed in Electro-Optical Infrared (EOIR) and Radio Frequency Electronic Warfare (RFEW) systems. These systems are designed, developed, built, integrated, and tested by the capable folks at our company to protect the lives of US and Allied warfighters in present and future conflicts. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. If you are interested in consideration to be included as a part of this team, we would invite you to apply.
Northrop Grumman Mission Systems Sector (NGMS) is seeking a Staff Systems Security Engineer to join our Systems Security Engineering team. The Security Engineering team is cross-disciplinary across the security domain; encompassing embedded Systems Engineering, Cybersecurity, Software Security and Anti-Tamper Engineering.
Roles & Responsibilities:
· Design/develop system architectures and generate system designs to be implemented in a cost-effective manner.
Implement and ensure compliance with government policies (e.g., JSIG, DAAPM, NIST 800-53, CNSSI 1253, DODI 5200.39, etc.) by reviewing process tailoring needs and approving documented procedures.
Guide and monitor technical documentation/publication to document trades studies, system designs, analysis, and results related to a systems security posture such as identifying Critical Program Information (CPI) and creation of Anti-Tamper Plans
Develop an understanding of system interfaces and how to protect them.
Assist with the definition of key capabilities and performance requirements.
Adapt production and development products to meet unique customer needs and support the development of system security functions.
Collaborate with security engineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Support technical work products developed by the larger engineering team in support of major milestone deliveries (e.g.: SRR, SVR, PDR, CDR, TRR, PRR).
Authoring technical documentation such as white papers, proposal technical volumes, and program milestone briefings.
Collaborate with security engineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Other duties may include technical leadership, business capture activities, interfacing with industry partners and the USG.
This position will be full-time, on-site at our Rolling Meadows, IL location.
This position is contingent upon Funding/Contract award, special access program and acquiring and maintaining the necessary US Government security clearance per customers' requirements prior to start.
Basic Qualifications for a Staff Systems Security Engineer:
Bachelor's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 12+years of related experience, a Master's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 10+ years of related experience or a PhD in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 7+ years of related experience.
3 years of cumulative experience on DoD based platforms and/or systems regarding the application of Cybersecurity RMF or Anti-Tamper with competencies in security threat analysis, systems architecture, engineering design, requirements derivation, validation, and verification.
Must have demonstrated experience in leading teams to solve technical problems, including decomposition, root cause analysis, solution development, implementation and monitoring
Experience contributing to and/or making technical presentations to internal and external customers.
Ability to obtain and maintain a minimum of a Secret Clearance with additional customer specified clearance prior to start.
Preferred Qualifications for a Staff Systems Security Engineer:
Advanced degrees in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields.
Experience with design verification testing, reverse engineering, embedded software development, Cybersecurity, or Anti-Tamper Possess a DoD 8140 certification, e.g. CompTIA Security+, CISSP, or similar. Experience with proposals and creating basis of estimates (BOEs)
Primary Level Salary Range: $163,200.00 - $244,800.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
Auto-ApplyData and System Security Engineer
Security engineer job in Lincolnshire, IL
AYR Global IT Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients.
Our competitive, transparent pricing
model and industry experience make us a top choice of Global System
Integrators and enterprise customers with federal and commercial
projects supported nationwide.
Job Role: Data and System Security Engineer
Location: Lincolnshire, IL
Duration: 6+ Months
Qualifications
Job Description:
Data and System Security engineer
Experience with data encryption management solutions, such as Vormteric and CloudLink
Experience with PKI management solutions, such as ADCS and External providers
Investigative and analytical problem solving skills
Customer service/support experience
Additional Skills:PKI
Knowledge of encryption management technologies, such as Vormetric, CloudLink.
Additional Information
If anyone might be intersted please send resumes to kmarsh@ayrglobal (dot) com or you can reach me direct at **************
Information Security Manager Architect_Deerfield, Illinois
Security engineer job in Deerfield, IL
We are seeking an experienced Quality Assurance Analyst to test updates to our client's website and other interactive deliverables. Primary responsibilities include executing test plans, updating test reports, writing bug defects, verifying fixes, and testing pages and emails on supported environments.
Job Description
Interview mode: Phone and Skype (On site interview may be required)
We can submit C2C consultants
JD:
OBJECTIVES:
• Reports to the Head of Security Strategy & Architecture
• Provides leadership and guidance to the regional IT organization on cyber and information security and risk management activities, education, and solutions
• Contributes to defining global security strategy and architecture processes
• Defines and establishes regional security processes based on global security strategy and architecture, with a focus on practices for Vulnerability Management, Systems Development Lifecycle, Information Security Processes including risk based Architecture design.
• Directs a regional approach for the implementation of global IT security standards and methodologies
• Provides input to global security operations such as incident response, monitoring, trend identification, and security posture and remediation
ACCOUNTABILITIES:
• Reports to the Head of Security Strategy & Architecture on plans and status of relevant projects, including the regional security strategy and implementation initiatives
• Contributes to the design, development, and deployment of global security strategy and architecture concepts
• Cooperates with regional teams in understanding global security strategy and architecture requirements
• Conducts periodic review of security-related SDLC processes and stage gates
• Incorporates cyber security and IT risk management into regional activities
• Be the subject matter expert in security and assessments, including vulnerability management processes, vendor security reviews, penetration testing, and application security
• Conducts follow-ups on any identified corrective actions
• Functions as an advisor to system owners, security program managers and others in all matter (technical and otherwise) involving IT security and continuity
• Directs or delegates level 3 support services for the region
• Manages the relationship between IT security and regional business executives and business managers
• Provides recommendations in planning of programs and projects in the area of cyber security
• Reviews and manages budget and reports financial and event status to Head of Security Strategy & Architecture
EDUCATION, BEHAVIOURAL COMPETENCIES AND SKILLS:
Required:
• Bachelor's Degree (business administration, risk management, information security, Management Information Systems (MIS), Computer Science or related IT field) or high school degree
• 7+ years IT experience
• 5+ years of work experience in developing, implementing and managing security solutions
• 3+ years of work experience in designing and architecture security strategy and solutions
• Demonstrated leadership role in working with C-Suite executives and the Board
• Experience with implementing and operating security programs in a global environment, with a focus in Germany and European countries
• Hands-on experience with the development of security strategy and frameworks, architectural methodologies, and service delivery
• Project management experience including full lifecycle implementation
• Proven ability to analyze a wide variety of data and make calculated, risk-based decisions
• Ability to communicate ideas and data both verbally and written in a persuasive and appropriate manner
• Ability to assess strengths and weaknesses of staff members and provide suggestions for improvement
• Ability to write and speak in the English language
Desired:
• In-depth pharmaceutical industry and drug development experience
• Experience with validated systems
LICENSES/CERTIFICATIONS:
• Information security certification (CISSP, CISM, CISA, GIAC, CEH, CCSK)
TRAVEL REQUIREMENTS:
• Access to transportation to attend meetings
• Ability to fly to meetings regionally and globally
• Willingness to travel up to 25-50%.
Location: Deerfield, IL.
Duration: 1 Year+
Additional Information
All your information will be kept confidential according to EEO guidelines. Please call @ ************ Ext 183