AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
AtAHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived.
We embraceall candidatesthatwillcontribute to the diversification and enrichment of ideas andperspectives at AHEAD.
Senior consultants are experienced experts in information security and/or information security governance or compliance. Successful candidates support the Security Practice in delivery, business development, and practice development.
This senior consultant will specifically support the cyber advisory program which seeks to advise clients at various points of maturity and help design and improve their cyber security programs. While each client has a different starting point, most start with common infrastructure hardening and hygiene challenges. This senior consultant will be expected to confidently advise on remediation of discovered vulnerabilities. These vulnerabilities may range from common software vulnerabilities to general architecture concerns.
The consultant must leverage previous experience to convey potential impacts and criticality of remediation. The senior consultant is not expected to have knowledge or experience with every vulnerability but must be able to use their knowledge and experience to research potential solutions.
Communicating the impact and criticality of vulnerabilities and remediation is a critical part of this role. This requires the consultant to understand the client's environment, concerns, business drivers, and potential impact of remediation efforts. Finally, the consultant must be comfortable in acting as authority on recommendations.
The senior consultant is often asked to review and sometimes create common security program documentation such as policies, risk registers, and other assessment documents.
The ability to manage small teams is a requirement for success in this role. This program requires frequent evolution as the program must keep pace with changes in technology, techniques, and vulnerabilities. Because of this, this senior security consultant must be flexible, self-motivated, and willing to take on dynamic challenges.
Responsibilities
Client Delivery
Facilitate sessions of strategy, roadmap, design, and planning workshops for service engagements
Effectively communicate risk to stakeholders and work to drive security program success
Ensure that customer expectations are appropriately set and managed
Lead project engagement teams through the delivery of consulting service offerings
Understand vulnerabilities and create remediation plans
Break down risks or issues into manageable segments, identify the factors that contribute to risk and determine how best to approach the risk
Creation and finalization of project deliverables, may perform peer review for collateral developed by others on a delivery team
Presentation of deliverables to client executive management
Act as the Engagement Lead on customer facing projects, when assigned
Business Development
Support business development pursuits through client discovery meetings
Support sales opportunities throughout the sales cycle, including project scoping, proposal development, and presenting proposals to clients.
Familiarity with AHEAD's enterprise service portfolio to identify opportunities for cross-practice collaboration
Practice Development & Thought Leadership
Maintain subject matter expertise in security domains and security solutions
Participate in the development, enhancement, and standardization of AHEAD in-practice service offerings
Own and/or enable more than one service capability
Maintain a broad knowledge and understanding of current and future state IT trends, technologies, and standards
Lend support and mentorship to others
Requirements
Undergraduate degree in Computer Sciences or Business Management is preferred, but not required
Minimum of
2 years of information security leadership experience
7+ years technical work experience
2 professional and/or technical certifications, including industry-recognized certifications which align to AHEAD's Security service portfolio, or commensurate work experience (CISSP, CISM, SANS certs, etc.)
Cybersecurity background (vulnerability management, various security controls such as EDR, firewalls, content filtering, etc.)
Active directory experience (group policy and Intune experience)
Securing windows servers and desktops (system hardening such as Microsoft Baseline/STIGS/CIS)
Office 365 experience
Common written policy understanding
Excellent verbal and written communication skills
Comfort in addressing groups of people in virtual or in-person settings
Ability to solve complex, abstract problems
Excellent interpersonal skills, good listener, ability to connect with different personalities
Exhibit Executive presence with leadership characteristics
Demonstrated experience as a technology change agent
$165,000 - $195,000 a year
Why AHEAD
Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.
We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.
USA Employment Benefits include
Medical, Dental, and Vision Insurance
401(k)
Paid company holidays
Paid time off
Paid parental and caregiver leave
Plus more! See benefits for additional details.
The compensation range indicated in this posting reflects the On-Target Earnings (“OTE”) for this role, which includes a base salary and any applicable target bonus amount. This OTE range may vary based on the candidate's relevant experience, qualifications, and geographic location.
#J-18808-Ljbffr
$165k-195k yearly 1d ago
Looking for a job?
Let Zippia find it for you.
Senior Physical Security Consultant at WEC Energy Group (WEC) Chicago, IL
Itlearn360
Security engineer job in Chicago, IL
Senior Physical Security Consultant
Chicago, IL.
WEC Energy Group is one of the nation's largest electric generation and distribution and natural gas delivery holding companies serving 4.7 million customers across the Midwest. We are committed to providing clean, reliable, and affordable energy in an environmentally sustainable manner. Customers are the heart of our business, and we work every day to help grow and support communities where we provide vital energy services. As a Fortune 500 company, we value and develop our employees who are making a difference in a mission that matters. We don't just offer a job; we provide fulfilling careers where safety and well-being are paramount. Join our team and experience first‑hand our commitment to your success. We offer competitive pay and benefits to recognize your hard work and dedication. If you're talented, energetic and ready for a career with a future, we want you on our team. We are powered by a diverse and inclusive workforce fueled by the pride in what we do. If you're driven by the passion to change lives, this is the place for you.
WBS, a subsidiary of WEC Energy Group, is seeking a Senior Physical Security Consultant in our Chicago, Illinois location.
Job Summary
The Physical Security Consultant (Senior) is responsible for identifying security gaps, concerns, threats, and/or risks and follow internal procedures and protocol to elevate or resolve issues as appropriate, such as conducting investigations or sharing threat intelligence with appropriate members of the organization. Specific functional areas include, but are not limited to, enterprise protection, operational integration, intelligence, investigations, situational awareness and security projection. This position is the primary interface for the business and operations to share information and coordinate security‑related activities and requirements. Physical Security Consultants are expected to develop and maintain relationships with key internal and external stakeholders such as contract security personnel, local law enforcement, and internal business areas who work closely with security.
Job Responsibilities
Provides security protection services, consulting services and advisory support to the business and operations to reduce risks, maximize workforce safety, and protect property
Leads investigations in close support and coordination with cybersecurity, HR, ethics, and/or external law enforcement as appropriate
Follows policy and procedures to elevate security matters, file reports, collect evidence, and maintain relevant databases or information in security systems
Executes company policies and procedures for the physical security program aligned with the overarching enterprise security model and best practice standards and ensure compliance with applicable industry standards and regulations (e.g. NERC CIP, TSA)
Provides work direction, site training, policy and process training, and maintains relationships with contract security personnel
Maintains an understanding of the application of security technology to the company's processes to mitigate risk
Develops and maintains relationships and represents the company with local law enforcement, other security‑related external agency stakeholders and the broader intelligence community
Responds to crises or urgent situations to mitigate immediate and potential threats. Uses mitigation, preparedness, and response and recovery approaches, as needed, to maximize survival of life, preservation of property and operational assets
Participates in internal and external emergency response and business continuity planning exercises
Analyzes intelligence to identify trends and determine risks
Foster a culture that promotes security as an integral part of safety.
Maintains key performance and process metrics to evaluate the efficiency and effectiveness of processes, procedures, and systems
The Senior Physical Security Consultant performs all duties of a Physical Security Consultant, usually in a lead role
Minimum Qualifications
Physical Security Consultant - Minimum 2- 4 years of physical security work experience in law enforcement, investigations or intelligence in a civilian or military organization required.
Senior Physical Security Consultant - Minimum 4 -7 years of physical security work experience in law enforcement, investigations or intelligence in a civilian or military organization required.
Preferred experience with or understanding of nation state threats to critical infrastructure.
It requires some out-of-state travel and is subject to 24 hour call out.
Preferred Qualifications
A Bachelor's degree in Criminal Justice, Police Science, Security Management or Business Administration is preferred. A combination of associate degree, military, law enforcement or professional physical security experience and physical security certification (CPP, PSP) or certificates (enterprise security risk management, security risk assessment, workplace violence prevention, executive protection, etc) will be considered
Preferred experience with or understanding of nation state threats to critical infrastructure
Project and Contract Management experience (Threat Assessments, CCTV System Installation, etc.)
Familiarity with the City of Chicago Neighborhoods and Streets, in addition to the Urban areas
#J-18808-Ljbffr
$91k-124k yearly est. 5d ago
Prin Security Analyst
Compeer Financial 4.1
Security engineer job in Bloomington, IL
Empowered to live. Inspired to work. Compeer Financial is a member-owned cooperative located in Illinois, Minnesota and Wisconsin. We bring together team members with a variety of backgrounds and experiences to help provide financial services to support agriculture and rural communities. Join us in a culture that not only promotes meaningful work and professional development, but provides a flexible, hybrid work environment and excellent benefits, which empower you to thrive both personally and professionally.
How we support you:
Hybrid model - up to 50% work from home
Flexible schedules including ample flexibility in the summer months
Up to 9% towards 401k (3% fixed Compeer contribution plus up to 6% match)
Benefits: medical, dental, vision, HSA/FSA, life & AD&D insurance, short-term and long-term disability, wellness program & EAP
Vacation, sick leave, holidays/floating holidays, parental leave, and volunteer paid time off
Learning and development programs
Mentorship programs
Cross-functional committee opportunities (i.e. Inclusion Council, emerging professional groups, etc.)
Professional membership/certification reimbursement and more!
Casual/seasonal & intern team members are not eligible for benefits except for state-mandated programs.
To learn more about Compeer Financial visit************************
Where you will work: This position offers a hybrid work option up to 50% remote and is based out of any of Compeer's office locations.
The contributions you will make:
This position creates, implements and maintains corporate-wide security programs that assist in improving overall security posture of the organization. Provides guidance, assurance and information protection to maintain the confidentiality, integrity, and availability of Compeer critical resources. Contributes knowledge and expertise to ensure that information assets are protected and secure. In this position, you will guide solutions to promote secure business-to-business initiatives, third-part relationships, outsourced solutions and vendors. Provides mentorship and guidance to less experienced team members.
A typical day:
Remains current with new security threats and assess systems and solutions to ensure they can defend the business.
Researches capabilities of current and new disruptive solutions on the market and makes recommendations to security group on a consistent basis.
Develops security team standards, policies, procedures and processes.
Support and provide direction for use of technical systems, monitors for unusual and suspicious activity across a wide range of products, data centers, and cloud systems.
Partners with Business Technology on security configuration standards for systems and business applications.
Participates in technical and non-technical projects requiring information security oversight and to ensure policies and procedures are met.
Provides cybersecurity guidance to leadership.
Ensures that cybersecurity-enabled products or other compensating security control technologies or processes reduce identified risk to an acceptable level.
Performs security reviews, identifies gaps in security architecture, and develops a security risk management plan.
Implements security measures to resolve vulnerabilities, mitigate risks, and recommend security changes to system or system components as needed.
Analyzes and reports system security posture trends.
Analyzes cyber defense policies and configurations and evaluates compliance with regulations and organizational directives.
Prepares audit reports that identify technical and procedural findings and provide recommended remediation strategies/solutions.
Leads the Incident Response Team during activations for security or operational events.
Coordinates, leads and conducts adversary simulation, hunt teaming, assumed breaches and whitebox penetration tests. Develops and executes attack plans, scripts, tools and methodologies to strengthen the offensive operations.
Plans and coordinates the delivery of classroom techniques and formats (e.g., lectures, demonstrations, interactive exercises, and multimedia presentations) for the most effective learning environment.
The skills and experience we prefer you have:
Bachelor's degree in security management, cybersecurity, computer science, management information systems, or business with technical training in networking, technical support or security or an equivalent combination of education and experience sufficient to perform the essential functions of the job.
Expert-level experience in physical asset security, information technology, risk management, security services, or infrastructure technology.
CISSP certification preferred.
Ability to adapt and stay a step ahead of cyber attackers and stay up to date on the latest attack methods.
Expert experience driving measurable improvement in monitoring and response capabilities at scale.
Expert ability to identify and resolve problems, utilizing strong analytical skills.
Advanced experience in cloud computing technologies, including software, infrastructure and platform-as-a-service, as well as public, private and hybrid environments.
Expert knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), public key infrastructure (PKI), identity and access management (IDAM) systems, antivirus and firewalls, in addition to endpoint detection and response (EDR), threat intelligence platforms, data loss prevention (DLP), security automation and orchestration, deception technologies, application controls, and other network and system monitoring tools.
Experience with purple teaming (red and blue) to train, identify and remediate issues cohesively.
Advanced experience with Amazon Web Services (AWS) or Microsoft Azure.
Expert experience conducting risk analysis to protect the business and adhere with compliance requirements and privacy laws.
Expert experience with vulnerability and penetration testing engagements.
Advanced knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
Expert knowledge of what constitutes a network attack and a network attack's relationship to both threats and vulnerabilities.
Knowledge of multiple cognitive domains and tools and methods applicable for learning in each domain.
Knowledge of media production, communication, and dissemination techniques and methods, including alternative ways to inform via written, oral, and visual media.
Knowledge of training and education principles and methods for curriculum design, teaching and instruction for individuals and groups, and the measurement of training and education effects.
How we will take care of you:
Our job titles may span more than one career level (associate, senior, principal, etc.). The actual title and base pay offered is dependent upon many factors, such as: training, transferable skills, work experience, business needs and market demands. The base pay range is subject to change and may be modified in the future. This role is eligible for variable compensation and other benefits.
Base Pay$103,100-$156,400 USD
Compeer Financial is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law.
Must be authorized to work for any employer in the United States. Compeer is unable to sponsor or take over sponsorship of an employment visa at this time.
Click here to view federal employment laws applicable for applicants.
$103.1k-156.4k yearly 3d ago
Staff Systems Security Engineer
Northrop Grumman 4.7
Security engineer job in Rolling Meadows, IL
RELOCATION ASSISTANCE: Relocation assistance may be available CLEARANCE TYPE: SAPTRAVEL: Yes, 10% of the TimeDescriptionAt Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive spirit has enabled us to be at the forefront of many technological advancements in our nation's history - from the first flight across the Atlantic Ocean, to stealth bombers, to landing on the moon. We look for people who have bold new ideas, courage and a pioneering spirit to join forces to invent the future, and have fun along the way. Our culture thrives on intellectual curiosity, cognitive diversity and bringing your whole self to work - and we have an insatiable drive to do what others think is impossible. Our employees are not only part of history, they're making history.
We are seeking capable, talented, and motivated team-contributors at our Northrop Grumman Rolling Meadows site. Our products range from advanced sensing technologies to state-of-the-art targeting and tracking systems that are deployed in Electro-Optical Infrared (EOIR) and Radio Frequency Electronic Warfare (RFEW) systems. These systems are designed, developed, built, integrated, and tested by the capable folks at our company to protect the lives of US and Allied warfighters in present and future conflicts. Enjoy a culture where your voice is valued and start contributing to our team of passionate professionals providing real-life solutions to our world's biggest challenges. We take pride in creating purposeful work and allowing our employees to grow and achieve their goals every day by Defining Possible. With our competitive pay and comprehensive benefits, we have the right opportunities to fit your life and launch your career today. If you are interested in consideration to be included as a part of this team, we would invite you to apply.
Northrop Grumman Mission Systems Sector (NGMS) is seeking a Staff Systems SecurityEngineer to join our Systems SecurityEngineering team. The SecurityEngineering team is cross-disciplinary across the security domain; encompassing embedded Systems Engineering, Cybersecurity, Software Security and Anti-Tamper Engineering.
Roles & Responsibilities:
· Design/develop system architectures and generate system designs to be implemented in a cost-effective manner.
Implement and ensure compliance with government policies (e.g., JSIG, DAAPM, NIST 800-53, CNSSI 1253, DODI 5200.39, etc.) by reviewing process tailoring needs and approving documented procedures.
Guide and monitor technical documentation/publication to document trades studies, system designs, analysis, and results related to a systems security posture such as identifying Critical Program Information (CPI) and creation of Anti-Tamper Plans
Develop an understanding of system interfaces and how to protect them.
Assist with the definition of key capabilities and performance requirements.
Adapt production and development products to meet unique customer needs and support the development of system security functions.
Collaborate with securityengineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Support technical work products developed by the larger engineering team in support of major milestone deliveries (e.g.: SRR, SVR, PDR, CDR, TRR, PRR).
Authoring technical documentation such as white papers, proposal technical volumes, and program milestone briefings.
Collaborate with securityengineering team(s), across a portfolio of programs, through the duration of program execution to solve issues and to prepare for requirements sell off.
Other duties may include technical leadership, business capture activities, interfacing with industry partners and the USG.
This position will be full-time, on-site at our Rolling Meadows, IL location.
This position is contingent upon Funding/Contract award, special access program and acquiring and maintaining the necessary US Government security clearance per customers' requirements prior to start.
Basic Qualifications for a Staff Systems SecurityEngineer:
Bachelor's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 12+years of related experience, a Master's degree in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 10+ years of related experience or a PhD in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields with 7+ years of related experience.
3 years of cumulative experience on DoD based platforms and/or systems regarding the application of Cybersecurity RMF or Anti-Tamper with competencies in security threat analysis, systems architecture, engineering design, requirements derivation, validation, and verification.
Must have demonstrated experience in leading teams to solve technical problems, including decomposition, root cause analysis, solution development, implementation and monitoring
Experience contributing to and/or making technical presentations to internal and external customers.
Ability to obtain and maintain a minimum of a Secret Clearance with additional customer specified clearance prior to start.
Preferred Qualifications for a Staff Systems SecurityEngineer:
Advanced degrees in Electrical Engineering, Software Engineering, Computer Engineering, Computer Science, Cybersecurity, or related technical fields.
Experience with design verification testing, reverse engineering, embedded software development, Cybersecurity, or Anti-Tamper Possess a DoD 8140 certification, e.g. CompTIA Security+, CISSP, or similar. Experience with proposals and creating basis of estimates (BOEs)
Primary Level Salary Range: $163,200.00 - $244,800.00The above salary range represents a general guideline; however, Northrop Grumman considers a number of factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions.Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Annual bonuses are designed to reward individual contributions as well as allow employees to share in company results. Employees in Vice President or Director positions may be eligible for Long Term Incentives. In addition, Northrop Grumman provides a variety of benefits including health insurance coverage, life and disability insurance, savings plan, Company paid holidays and paid time off (PTO) for vacation and/or personal business.The application period for the job is estimated to be 20 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.Northrop Grumman is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO and pay transparency statement, please visit *********************************** U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.
$63k-80k yearly est. Auto-Apply 60d+ ago
Network Security Analyst / Network Engineer/ System Admin
Collabera 4.5
Security engineer job in Illinois
Established in 1991, Collabera has been a leader in IT staffing for over 22 years and is one of the largest diversity IT staffing firms in the industry. As a half a billion dollar IT company, with more than 9,000 professionals across 30+ offices, Collabera offers comprehensive, cost-effective IT staffing & IT Services. We provide services to Fortune 500 and mid-size companies to meet their talent needs with high quality IT resources through Staff Augmentation, Global Talent Management, Value Added Services through CLASS (Competency Leveraged Advanced Staffing & Solutions) Permanent Placement Services and Vendor Management Programs.
Collabera recognizes true potential of human capital and provides people the right opportunities for growth and professional excellence.
Job Description
Location: 100 Abbott Park Road, Lake County, Abbott Park, IL 60064
Duration: 6+ months (could go beyond)
Roles:
• Network Directory and Infrastructure Services Administration.
• Knowledge of domain administration and troubleshooting, Active Directory, MS FIM, Exchange, MS Office365 and supporting technologies, MS Azure, NPS, Federation and SQL Server administration required.
Responsibilities:
• Provide technical Level III problem isolation and resolution for a Global Active Directory Network.
• Configures and performs advanced diagnostics on infrastructure components and cloud based applications.
• Understands and repairs Domain infrastructure including DNS, DHCP, ADLDS, ADFS and FIM Sync.
• Understands and can configure/install Win Server 2008r2/2012r2 technologies for domain controllers and Radius Authentication servers.
• Repair and recover from hardware or software failures.
• Rotate on-call and must be available to work a varied shift schedule in a 7x24 hour operations center environment.
• Initiate major outage communication technical bridges as requested.
• Apply fix procedures as instructed for repetitive events as instructed and coordinate with impacted constituencies.
Competencies:
• Superior knowledge of Active Directory overall and its administrative components.
• Perform domain administration for 61,000+ workstations including domain controllers, NPS, Win 2003/2008R2/2012 server hardware, dynamic host configuration protocol (DHCP), domain name servers (DNS) configuration integrated with active directory, desktop configuration and end user support.
• Candidate will have worked in an AD environment that has done acquisition and divestiture work, Candidate will have worked with products such as ADMT, and ADLDS and the roles they play in M&A activities such as management of active directory structure in creation, administration of organizational units (OU), containers and sub containers throughout the domain from geographic to organizational standards, while setting policies and permissions.
• Candidate should have expert knowledge of Federation protocols including OAuth, SAML, WSFed, and a deep understanding of the IDP and SP roles associated with Federation environments.
• Candidate will have worked with Office 365 from an Identity standpoint and have an understanding of Azure Active Directory Sync and Identity Federation for Cloud services.
• Expertise should include attribute mapping and troubleshooting as well as rule sets associated with AADSync.
• Candidate must be able to correctly configure servers and clients for all services.
• Can isolate and repair most DNS and IP service problems.
• Understands and uses the appropriate tools in all instances during problem isolation and repair.
• Possesses an in depth understanding of communications technologies and can isolate and resolve most infrastructure issues.
Qualifications
• Associates Degree Minimum, prefer Computer Science or technology area or telecommunications science business minor
• Three (3) to six (6) months of specialized technical courses in Win and Active Directory technology's typically provided by vendors, technical societies, or equivalent experience.
Additional Information
To know more about this position, please contact:
Himanshu Prajapat
************
**********************************
$83k-112k yearly est. Easy Apply 3d ago
Senior Manual Ethical Hacker
Bank of America Corporation 4.7
Security engineer job in Chicago, IL
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being an inclusive workplace, attracting and developing exceptional talent, supporting our teammates' physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.
Bank of America is committed to an in-office culture with specific requirements for office-based attendance and which allows for an appropriate level of flexibility for our teammates and businesses based on role-specific considerations.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity.
This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code.
Key Responsibilities in order of importance:
* Perform assigned analysis of internal and external threats on information systems and predict future threat behavior.
* Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks.
* Developing Proof-of-concepts for exploitation.
* Perform assessments of the security, effectiveness, and practicality of multiple technology systems.
* Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security.
* Prepare and present detailed technical information for various media including documents, reports, and notifications.
* Provide clear and practical advice regarding managing risks.
* Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills.
* Respond to security incidents and provide technical assistance to leadership across the Information Security organization.
Required Skills:
* Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment
* Detailed technical knowledge in at least 5 of the following areas:
* securityengineering
* application architecture
* authentication and security protocols
* application session management
* applied cryptography
* common communication protocols
* mobile frameworks
* single sign-on technologies
* exploit automation platforms
* Web APIs
* Cloud environments
* LLM security
* Mobile application analysis
* Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings
* Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools
* Experience performing manual code reviews for security relevant issues
* Experience working with DAST and SAST tools to identify vulnerabilities
* Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies)
* Experience with vulnerability assessment tools and penetration testing techniques.
* Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction
* Threat Analysis, threat modelling and SBOM analysis
* Innovative thinking, threat actor simulation
* Technology Systems Assessment
* Technical Documentation
* Advisory
Desired:
* CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy]
* Strong programming/scripting skills
* Frida
* Binary analysis (disassembly skills)
Skills:
* Advisory
* Innovative Thinking
* Technical Documentation
* Technology System Assessment
* Threat Analysis
* Adaptability
* Collaboration
* Scenario Planning and Analysis
* Test Engineering
* Written Communications
* Attention to Detail
* Information Systems Management
* Issue Management
* Presentation Skills
* Prioritization
This job will be open and accepting applications for a minimum of seven days from the date it was posted.
Shift:
1st shift (United States of America)
Hours Per Week:
40
$94k-131k yearly est. 9d ago
Cyber Security Analyst 3
Cdo Technologies Inc. 4.5
Security engineer job in Scott Air Force Base, IL
Are you ready to apply cutting-edge technologies to solve real world problems? Do you thrive in an environment where people leverage technology and processes to build innovative and sustainable solutions? You might just be a perfect fit for the CDO team. Since 1995, CDO Technologies has delivered the best solutions for unique business problems in the commercial and federal sectors ranging from Asset Management to IT Services. CDO employees demonstrate integrity, embrace teamwork, and embody
a Can Do
attitude in the delivery of superior customer service.
Position Summary
Demonstrated knowledge of system security. Possesses familiarity with cyber threats, malicious cyber threat actor motivations, and working knowledge of threat analysis and enterprise level cyber threat mitigation strategies. Must have networking experience in addition to cyber security. Work is delivered on-site at Scott AFB, IL.
Minimum Requirements
8+ Years of experience is required.
Experience should include:
Network experience with controlled interfaces, routers, switches, firewalls, and access or transfer cross domain solutions
Experience with Risk Management and preparing approval documentation for authorization/approval
Cybersecurity and Information Assurance documentation and analysis
Experience with different domains, security, integration, and interoperability
Experience with reviewing engineering data for Joint, DoD, and AF Networks
Must possess a DoD 8570.01 Level II Certification (Such as Security+, CAP, or GSLC)
Must possess a BA or BS in Computer Science, Electronics Engineering, or other Engineering or Technical Discipline
Secret Security Clearance is required.
What can a CDO employee expect?
At CDO Technologies, we believe in taking care of our employees with a comprehensive benefits package. Our health and welfare benefits include two medical plan options along with a LiveHealth program to see a doctor online anytime day or night. CDO offers dental, vision, and a Flexible Spending Account for medical or childcare. Employees may also enroll in a 401(k) plan with their first paycheck. Full-time employees also receive company paid short and long-term disability and life insurance. We also provide tuition reimbursement, professional development, and certification reimbursements. Finally, CDO also offers employees a generous leave program including paid holidays, vacation, and sick leave.
CDO is an equal opportunities employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender identity, sexual orientation, national origin, disability, or veteran status.
$70k-90k yearly est. Auto-Apply 5d ago
Infrastructure Security Analyst
Tekwissen 3.9
Security engineer job in Bloomington, IL
Required: · Must Have: Citrix Netscaler support and configuration · Significant experience in supporting network security devices such as firewalls and proxies with emphasis on remote access technologies such as VPN and Citrix Netscaler · Significant experience in TCP/IP networking, including network design and troubleshooting.
· 1 to 2 years experience in network sniffers and packet analysis.
· 1 to 2 years experience in general security.
Desired Skills:
· Some experience in scripting languages such as Shell and Perl.
· Strong customer service and results focus.
· Strong organizational, communication, and interpersonal skills.
· Strong problem resolution and decision making skills.
· Working both independently and in a team environment.
· Ability to handle competing priorities.
· Able to consult other Business areas.
· Sound decision-making ability regarding matters of moderate to high complexity and importance.
· Strong analytical and problem-solving skills to solve complex problems logically and systematically
· Self-motivated; Ability to work independently on matters of moderate to high complexity and importance with only broad direction.
· High technical aptitude.
· Security and/or Network Certification is a plus, especially CISSP
Additional Information
All your information will be kept confidential according to EEO guidelines.
$70k-93k yearly est. 3d ago
Security Systems Engineer - Research & Testing
Zbeta Consulting
Security engineer job in Chicago, IL
Full-time Description
WHO WE ARE:
At ZBeta we endeavor to be the most sought-after Security Partner in the world. This drives every decision we make, and the most effective way to realize this goal is through garnering a reputation for excellence and innovation in everything we do. The ZBeta Innovation Lab (LabZ) initiative is a specialized team and program with the mission of inventing, developing, testing, and analyzing better ways, both big and small, to do physical security - for us, for our clients, and for the industry. LabZ seeks to optimize the value of physical security to the client's business mission, to optimize the value of the solutions we recommend, design, deliver, and manage, and to continuously identify opportunities to perform at a higher level. The LabZ program helps ensure that ZBeta and its approach are always data-driven, technology-led, and human-centered.
Find out more about us here.
WHO YOU ARE:
You are a forward-thinking strategic partner with a passion for the physical security mission and for building programs, optimizing operations, and delivering integrated solutions. You excel in fast-paced settings where your leadership abilities can catalyze meaningful action and tangible progress towards objectives. You thrive in a workplace culture that is:
Innovative
Excellence Focused
Reliable
Detail Oriented
Adaptable
Highly Organized
Client Obsessed
Curious
Resilient
Does this sound like you? If so, join us in our mission to redefine security standards and make a lasting difference in our community.
WHAT YOU'LL DO:
The Physical Security Research Engineer (PSRE) is a critical resource of the ZBeta LabZ team and will conduct research and proof of concept (PoC) testing at the LabZ facility for clients and internal teams. The PSRE assists in requirements gathering, testing, and report production in the ZBeta LabZ program and leads, develops, manages, and completes key LabZ efforts for the testing and analysis of stand-alone and integrated physical security technology solutions. The PSRE is familiar with security software applications, integrations, and network-connected devices and engages both internally and externally, working collaboratively with other LabZ engineering resources and with project and production team members.
The PSRE will help grow, mature, and optimize the LabZ program by contributing to the tools and processes LabZ uses to effectively evaluate physical security products against real-world design requirements and generate research reports.
This is an in-office position at the ZBeta LabZ location in Schiller Park, IL. Relocation assistance provided.
Core Competencies
Growth Minded: High self-awareness of strengths and areas for development with a curiosity and appetite for change and innovation
Data-Driven: Strong analytical skills, with the ability to work effectively with data and think critically
Collaborative: Ability to solicit and understand multiple perspectives and maximize the application of team talent and experience
Evaluative: Ability to evaluate outputs rigorously to ensure consistent excellence in delivery
Tactical: Ability to recognize current priorities, manage changes and risks, and efficiently clear roadblocks and resolve issues
Position Responsibilities
The essential duties and responsibilities include, but are not limited to the following:
ZBeta Lab Environment
In partnership with ZBeta LabZ team, maintain a ZBeta test/dev environment of technology solutions that represent both client and industry standards.
Work with ZBeta IT to build appropriate server environments and remote access abilities for LabZ platforms.
Load, configure, and update Lab environment software applications, and wire, connect, and configure test hardware, devices, and technologies.
Design and build (or manage the production of) custom testing apparatus, devices, and mechanisms.
Maintain current knowledge of and training in key applications and products.
Solution Testing
Work with ZBeta LabZ team and client resources to plan, implement, and conduct hands-on testing of physical security products, applications and functions, and integrated solutions.
Lead the development of testing concepts to address client and industry needs, challenges, & opportunities.
Manage and execute testing scope related to server, application, and IoT elements.
Create test plans and testing requirement documentation, record and analyze testing results, and document outcomes and conclusions in testing reports.
Research & Requirements Gathering
Conduct studies and analysis of technology categories, trends, solution proposals, and industry approaches.
Research, collect, and analyze relevant documentation and data to reach meaningful conclusions, form opinions of value propositions, generate ideas for solutions and approach improvement, and categorize study topics in terms of potential application and impact to client and industry needs and expectations.
Work with consultants to gather requirements for client proof of concept tests and internal teams for quarterly research projects.
Research Program Development
Assist in the development and ongoing management of process, approach, and standards for the research performed in the ZBeta LabZ program.
Identify opportunities and initiatives for improvements in the efficiency and thoroughness of ZBeta LabZ research deliverables.
Hold regular research update meetings to review, improve, and manage the status of ongoing projects and deliverables.
Requirements
WHAT YOU'LL NEED:
Experience:
5+ years of physical security industry and technology experience. 3+ years of experience in a software or hardware engineering role.
Education:
Bachelor's degree in engineering, computer science, or related technical field, or equivalent work experience
Knowledge:
Knowledge of and working familiarity with server and network storage solutions, operating systems architecture and key considerations, and network architecture models and principles.
Professional knowledge of and training in the principles of electrical systems, components, and circuits.
Skills:
Highly proficient in the use of Microsoft Office applications including Word, Excel, PowerPoint, Teams, OneNote and Visio
Proficiency in project management tools, such as MS Project, SharePoint and QuickBase
Training and manufacturer certification in multiple industry-leading platforms and equipment components, with particular emphasis on software applications and network-connected security devices. Genetec and LenelS2 experience a plus.
Abilities:
Demonstrated excellence in communication and interpersonal skills, with proven ability to communicate and present complex information to technical and non-technical stakeholders, both verbally and in written form
Strong technical documentation, technical writing, and data analysis and interpretation skills
Exceptional attention to detail and highly organized, with the ability to prioritize and balance workloads
Team player with the ability to establish collaborative working relationships across all levels of the organization
Self-directed problem solver who takes the initiative to start projects, work unsupervised, complete tasks independently, solve roadblocks, and address issues before they become problems
Physical Demands:
Lifting and Carrying: Ability to lift and carry equipment weighing up to 50 lbs or more, including cameras, control panels, and tools.
Climbing and Crawling: Must be able to climb ladders, scaffolding, and operate a high lift to install and maintain equipment
Manual Dexterity: Requires good hand-eye coordination and fine motor skills for handling tools, wiring components, and making precise adjustments to security systems
Kneeling, Squatting, and Crawling: Must be comfortable kneeling, squatting, or crawling to install or troubleshoot security equipment.
WHAT WE OFFER:
Competitive salary based on job-related skills, experience, and qualifications
Our excellent benefits package includes 100% paid premiums on health, dental, vision, and life insurance, a 401(k) retirement plan, and significant work schedule and workplace flexibility.
Diverse and supportive culture
WHAT'S IMPORTANT TO KNOW:
Full-time, in-office role at our Schiller Park, IL LabZ facility (relocation assistance provided). While ZBeta is a remote-first company, this role requires hands-on, on-site lab work.
This position is not eligible for visa sponsorship
Candidates must be able to meet client and/or government security screening requirements for the role
This position requires verification of U.S. citizenship due to citizenship-based legal restrictions. As a condition of employment, the successful candidate will be required to provide proof of citizenship.
The successful completion of a background check is required upon hire and every two years thereafter
We look forward to connecting with individuals who are passionate about our mission and can bring diverse contributions to our team - not just those who check all the boxes.
We are committed to creating a supportive, encouraging environment where everyone can fully express their diverse perspectives, showcase their talents, and grow their knowledge, skills, and abilities.
The base pay offered will depend on factors, including but not limited to job-related knowledge, skills, experience, and internal equity. At ZBeta, new hires are rarely placed at the top of the pay range; compensation is determined by the specific circumstances of each position and candidate.
A note to third-party recruiters - we do not accept unsolicited agency resumes, and we are not responsible for any fees related to unsolicited resumes.
Salary Description $110,000 - $130,000
$110k-130k yearly 60d+ ago
Information Security Analyst
Vedder Price Careers 4.4
Security engineer job in Chicago, IL
Vedder Price's Chicago office is seeking an Information Security Analyst. The Information Security Analyst is primarily responsible for maintaining technologies to ensure the security of the firm's systems. Thorough understanding on both product based solutions and fundamental security best practices are vital to this role. The Information Security Analyst will collaborate with other Engineers and SMEs, to apply and support best practices for information and cyber security, system building, change management, account management, documentation, and user experience management.
As the Information Security Analyst, your job duties will include but not be limited to:
Serve as a technical resource at the firm for information security issues.
Collaborate with other staff in the Technology Department to ensure that security standards are developed and enforced in the course of implementing or upgrading firm technology, educating others on security best practices.
Administration, troubleshooting and resolving issues with security infrastructure on Vedder Price's network, including the following:
SASE (Secure Access Service Edge) firewalls
Intrusion detection and prevention
Vulnerability management
Identity Management
Microsoft Windows systems, Including Defender, Azure and M365
Review of business processes, recommendation and implementation of supportable security changes including any relevant tools to better secure those processes
Evaluation of security practices around identity management, remote solutions, including AVD and privileged remote access
Participation in incident response plan for vulnerabilities or other security events
Investigation of actual and suspected security breaches
Ensure consistent security policies are being applied to any hosted or cloud-based services being utilized by the firm
Log review and reporting on security devices and identified Windows systems
Generating evidence for compliance/audit
Working with vendors as necessary to supplement our security capabilities, and recommend their use when appropriate
Backup assistance for other Network Operations team members as necessary
Assistance with all projects and tasks related to the firm as directed by the Senior Manager Infrastructure & Security and the Information Security Architect
Assists the Information System Architect in developing and documenting security standards as needed
Skills & Competencies:
Expert-level proficiency with key technologies to be supported, including demonstrated willingness and ability to develop expertise in new technologies as needed
Demonstrated competence in detecting and eliminating technical issues in complex systems, utilizing monitoring and other analysis tools to ensure optimal system performance
Investment in understanding technologies outside of those directly supported by the Analyst, including demonstrated basic awareness of key functionality of systems that interact with or depend upon the systems directly managed by the Analyst
Ability to participate in assessing business purpose of managed systems and to recommend operational or efficiency-related improvements
Ability to act independently to meet goals and objectives identified by senior management, including the ability to assist in the creation of project plans and manage time effectively
High-level involvement in providing optimal performance and responsive support. Works to ensure optimal performance and reliability of systems while also providing mentoring and knowledge transfer to other Engineers and Technical Support Specialists. Acknowledges key role in responding to alerts and assisting Technical Support in analysis and resolution of issues
Accepts responsibility for understanding firm Information Security Standards and applying those standards to ensure security of managed systems
Effective communication skills, both written and oral. Strong interpersonal skills required to communicate with all other technology team members, members of the firm (users of systems), and clients. Must have customer service attitude and ability to work well with other groups.
Superior understanding of the firm's goals and objectives, with demonstrated ability to apply technology in solving business problems
Strong organizational skills, capability to schedule and coordinate multiple activities in results-oriented environment. Initiative and ability to enforce policies and procedures through influence
Qualifications & Required Experience:
Bachelor's Degree in computer related field or equivalent work experience
Minimum five (5) years' experience in Information Technology required
Experience in the legal industry a plus
Must subscribe to being highly available and responsive to occasional after-hours issues, as the firm operates on a 24x7 basis
Position also requires the ability to work under pressure to meet strict deadlines
Computer Skills:
To perform this job successfully, an individual must be proficient in the following software and/or their equivalent:
Experience with Microsoft and Azure security tools, Cato Networks, BeyondTrust, Tenable Nessus and Sumo Logic preferred
Compensation Range: $95,000/yr. to $110,000/yr
At Vedder Price, we believe in recognizing and rewarding our employees' contributions. Our comprehensive Total Rewards Package includes:
Competitive Salary: We offer a competitive base salary commensurate with skills and experience.
Bonus Program: Discretionary annual bonus program.
Retirement Planning: Discretionary profit sharing and 401(k) matching to help you plan for your future.
Health and Wellness: Comprehensive health, dental, and vision plans, along with optional health savings and flexible spending accounts, firm-paid Life and Disability benefits, and wellness programs to support your overall well-being.
Paid Time Off: Competitive time off package including vacation days, paid holidays, sick time and personal days.
Professional Development: Opportunities for continuous learning and career growth through firm provided training programs.
Employee Recognition: Anniversary and Vedder Praise Programs to celebrate your achievements and milestones.
Work-Life Balance: Hybrid work model and family-friendly policies.
Additional Perks: Employee discount program, pre-tax commuter benefits, back up child & elder care, Employee Assistance Program (EAP), fitness center discounts and more.
Join Vedder Price and be part of a team that values hard work and dedication!
Equal Employment Opportunity
Vedder Price P.C. is an equal opportunity employer. We value and encourage diversity and solicit applications from all qualified applicants without regard to race, color, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability (where applicant is qualified to perform the essential functions of the job with or without reasonable accommodations), medical condition, protected veteran status, gender identity, genetic information, or any other characteristic protected by federal, state, or local law. We participate in E-verify.
Applicants who are interested in applying for a position and require special assistance or an accommodation during the process due to a disability should contact the Vedder Price Recruiting Team at vprecruiting@vedderprice.com.
$95k-110k yearly 7d ago
Data and System Security Engineer
Ayr Global It Solutions 3.4
Security engineer job in Lincolnshire, IL
AYR Global IT Solutions is a national staffing firm focused on cloud, cyber security, web application services, ERP, and BI implementations by providing proven and experienced consultants to our clients. Our competitive, transparent pricing
model and industry experience make us a top choice of Global System
Integrators and enterprise customers with federal and commercial
projects supported nationwide.
Job Role: Data and System SecurityEngineer
Location: Lincolnshire, IL
Duration: 6+ Months
Qualifications
Job Description:
Data and System Securityengineer
Experience with data encryption management solutions, such as Vormteric and CloudLink
Experience with PKI management solutions, such as ADCS and External providers
Investigative and analytical problem solving skills
Customer service/support experience
Additional Skills:PKI
Knowledge of encryption management technologies, such as Vormetric, CloudLink.
Additional Information
If anyone might be intersted please send resumes to kmarsh@ayrglobal (dot) com or you can reach me direct at **************
$74k-102k yearly est. 3d ago
Cyber Security Analyst
Mindlance 4.6
Security engineer job in Oakbrook Terrace, IL
Mindlance is a national recruiting company which partners with many of the leading employers across the country. Feel free to check us out at *************************
Job Title: Cyber Security Analyst
Duration: 12 Months
Location: Oakbrook Terrace, IL
Job Description:
Responsible for planning, designing, and implementing a process for cyber security monitoring, incident detection, and incident response. 1-3 yrs of experience and a Bachelor's degree in IT systems or a related discipline.
Position Requirements:
- Configuration and administration of logging aggregation and security event monitoring tools (like Industrial Defender, Splunk, etc.)
- Configuration and maintenance of performance monitoring tools (like Solarwinds, Uptime, CA Spectrum, etc.)
o Understands and can configure tools and endpoint systems to use SNMP for monitoring
- General IT Support (application patching, client updates, remote access and administration tools)
- General Networking knowledge (IP Networking, OSI Stack, etc.)
Additional Information
Thanks & Regards'
___________________________________________________________________________
Vikram Bhalla | Team Recruitment | Mindlance, Inc. | W: ************
All your information will be kept confidential according to EEO guidelines.
$70k-90k yearly est. 60d+ ago
Sr Security Analyst
Now Health Group 4.9
Security engineer job in Bloomingdale, IL
ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties may be assigned.
· Collaborate with the Security team, IT Leaders, organizational stakeholders, and the Head of IT in the development and execution of Information Security strategies.
· Protect NOW Health Group's on-premises and Coud systems, networks, and applications against all security breaches.
· Act as a technical point of contact during security incidents.
· Contain, investigate, remediate, and document information security incidents.
· Research threat actors, tactics, techniques, procedures, malware, and other Indicators of Compromise (IoC).
· Assess, monitor, and report IT vulnerabilities.
· Prepare and analyze security reports to identify trends and drive secure behaviors throughout the organization.
· Perform forensic analysis.
· Assist in developing security standards, policies, and procedures for NOW Health Group.
· Participate in management and implementation of IT projects and help deliver them on time, on budget and according to required specifications.
· Stay up to date on latest security technologies, techniques, vendors, and make recommendations to enhance the cybersecurity posture of the company.
· Provide mentorship and training to Security and IT Teams.
· Some after-hours and on-call support will be required.
SAFETY RESPONSIBILITY STATEMENT
Supports a culture of safety; follows all workplace health and safety procedures. Responsible for safety performance in respective area. Ensures the implementation of, adherence to, and enforcement of workplace health and safety requirements. Ensures activities are completed to promote and enforce safe behaviors by supervisors and employees. Ensures injury prevention efforts are effectively implemented. Fulfills responsibilities as outlined in the company safety management plan.
QUALIFICATIONS
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required.
· Minimum 10 years of security-specific work experience.
· Hands-on experience with security technologies including SIEM, IDPs, EDR software, proxies, and firewalls.
· Knowledge of penetration testing, network security, patch management, and the techniques used to expose and correct security flaws.
· Proficiency with the MITRE ATT&CK framework and threat intelligence applications.
· The ability to identify and spotlight vulnerabilities in on-premises and remote networks, remediate problems, and prevent security breaches.
· Experience with threat-led penetration testing, attack simulation, and red/blue team exercises.
· Experience managing a ticket queue, working on multiple issues at once, while providing regular updates to customers, leadership, and teammates.
· Experience with network monitoring and management tools, including network analyzers.
· A strong focus on attention to detail, timely delivery, and satisfying user requirements.
· Develop and maintain relationships with key business areas and platform owners to provide ongoing assurance, helping to identify security risks in applications.
EDUCATION and/or EXPERIENCE
· Bachelor's degree from four-year college or university; and at least nine years of related cybersecurity experience and/or training; or equivalent combination of education and experience.
· Must have at least one of the following certifications: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CompTIA Advanced Security Practitioner (CASP+).
LANGUAGE SKILLS
· Good oral and written communication skills.
· Ability to effectively respond to requests, present information, and drive adoption of Security practices across the organization.
· Ability to read, analyze, apply and improve technical SOPs.
· Ability to read and interpret documents such as procedure manuals, professional journals, operating and maintenance instructions, and safety rules.
· Strong ability to create detailed documentation to drive efficiency of operations.
REASONING ABILITY
· Soft skills such as analytical thinking, problem-solving, attention to detail, critical thinking, and data driven analysis.
· Sound decision making and trouble-shooting ability with an aptitude for solving difficult problems using creative solutions.
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
WORK ENVIRONMENT
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
2025 BENEFITS AT A GLANCE
$96k-123k yearly est. 2d ago
Business Analyst/ Information Security Governance Analyst
Govserviceshub
Security engineer job in Chicago, IL
Role -Business Analyst/ Information Security Governance Analyst
Project Overview: We are seeking an analyst with experience in governance of security products, authentication, authorization, and access management with business analysis background. These resources will support the SaaS initiatives
Contractor's Role: As a member of Governance team you will play a vital role in ensuring the secure implementation of various solutions (Hybrid and Cloud) developed in technologies like Java, .Net etc.
Experience level: Level 3
Qualifications
- Bachelor's degree in computer science, audit or a related discipline and experience in information security, or an equivalent combination of education and work experience.
- Excellent consultative and communication skills, and the ability to work effectively with client, partner, and IT management and staff.
- 5 -6 years of experience in the Information Security or Audit role.
- Strong collaboration skills and a analytical ability
- Knowledge of SOX methodology implementation for applications & Internal & External Audit executions
Requirements
Nice to Haves:
- Knowledge on Obsidian Remediation
Tasks & Responsibilities
- Drive governance and risk framework around applications using authentication and authorization
- Define and respond to risks surrounding the business functions and the security capabilities
- Define and respond to audits from internal and external parties
- Knowledge of control execution and design
- Collect and maintain evidence of control testing
- Collect and maintain evidence of application attestation to standards
$76k-107k yearly est. 13d ago
SAP Security
Cygnus Professionals 3.2
Security engineer job in Chicago, IL
Job Title: SAP Security Architect Duration for Contract: 5 Months + - ECC 6.0 Security design / architecture is the base requirement for the role. - 7+ years of experience in application or SAP ECC, BI, HR, portal and CRM security architecture, design and administration.
Summary:
Provide solutions architecture oversight for new development projects specific to SAP according to timelines and budget, while following accepted programming, testing and change control standards, and accepted business intelligence technology best practices.
Job Responsibilities:
• Define and document the structure, connections and relationships of business processes, organizational work groups, SAP data models, SAP applications, user interfaces, applications interfaces, SAP infrastructure and network topology.
• Provide standards, guidelines and statements of direction for IT system architectures, establishing a framework that constrains the design of systems for the purpose of integration of systems and accessibility of data supporting various business processes and functions.
• Define, design and develop the SAP enterprise systems information architecture to enable cross functional operational reporting and performance optimization.
• Identify strategic opportunities and drive cross-business and cross-functional change.
Skills:
• Knowledge of ITIL and SDLC.
• Experience in business system application design, development and installation.
• Experience in planning/architecture development and support.
• Experience designing and implementing advanced SAP application architectures.
Education/Experience:
• Bachelor's degree in Computer Science or a related field.
• Master's degree in Business or Management Information Systems preferred.
• 8-10 years of SAP functional systems experience.
• SAP Certification preferred.
Additional Information
All your information will be kept confidential according to EEO guidelines.
$68k-94k yearly est. 3d ago
Information Security Governance, Risk and Compliance Analyst
Green Thumb Industries 4.4
Security engineer job in Chicago, IL
The Role
We're looking for an Information Security Governance, Risk & Compliance Analyst to join our growing Information Security team. This role will be reporting to the Manager of Information Security Governance, Risk & Compliance. Our security team works to create a strong Information Security function within GTI that enables the business to continue its tremendous growth. The Information Security Governance, Risk & Compliance Analyst is responsible for maintaining continuous compliance with security policies, industry laws, and regulations (HIPAA, SOX, NIST, etc.). The candidate must communicate effectively with business partners and team members to help raise the level of security awareness, security compliance, and security risk. The candidate will perform environment-specific risk assessments factoring in both qualitative and quantitative risks and assist with the deployment of various controls based on those assessments. This role will also involve ongoing monitoring and improvement of security governance, ensuring a proactive approach to risk management.
The role is based out of our Chicago, office. While the role is primarily remote, you need to live in the Chicagoland area and commute to the office on an as needed basis.
Responsibilities
Own the relationship working with IT and business stakeholders to perform ongoing internal and vendor risk assessments, providing reporting to stakeholders, and ensuring appropriate action is taken.
Update and track KPIs from the Information Security risk register and work with stakeholders on developing Corrective Action Plans to address risks.
Provide guidance to newer staff working with internal IT stakeholders for vulnerability management, ensuring vulnerabilities are remediated in accordance with policy and SLAs.
Own the process for working with IT and business stakeholders to perform ongoing compliance reviews in line with security policies, information security regulations (HIPAA, SOX/ITGC), and security frameworks (NIST, MITRE, etc.).
Assist with ongoing internal operations and tasks, including ITGC security reviews.
Spearhead the ongoing internal and external SOX and HIPAA audits and other security audits that are relevant to GTI's business.
Provide updates and insight during the development and maintenance of Information Security policies, standards and procedures, aligning with NIST.
Lead the identification of security training and awareness initiatives for the organization.
Participate in incident response tabletops, business continuity tests, and other compliance activities and exercises.
Maintain KPIs and KRIs for Information Security risk & compliance activities.
Execute tasks as a member of the Information Security team as assigned by management.
Provide mentorship and guidance to Associate Information Security GRC Analysts.
Stay up to date on relevant laws and regulations to ensure continuous compliance and audit readiness.
Collaborate with the IT and security teams in response to security incidents, ensuring proper documentation and reporting.
Qualifications
3+ years of experience with responsibilities relating to security and compliance.
Bachelor's degree or higher in Information Security or Information Technology may help you stand out but is not required. Demonstrated work experience can be substituted.
Strong written and oral communication skills.
Strong conceptual understanding of Information Security theories.
Knowledge of network, application, and cloud security controls.
Knowledge of regulatory frameworks and compliance standards such as NIST, MITRE, OWASP, HIPAA, PCI-DSS and SOX.
Strong analytical and problem-solving skills with well-organized and structured work habits, and the ability to identify and mitigate risks.
Security certifications, such as CRISC, CISA are preferred, but not required.
We're doing some big things, and we'll find some roadblocks along the way, big and small. A big part of this role is keeping an even keel and finding the route through or around the obstacles.
This role requires lots of communication with customers and everyone at GTI. Your colleagues will rely on your ability to translate security requirements into digestible bits of information for them. Customers will expect you to quickly articulate components of the GTI security program to help them assess risk, including as part of the business development process.
An insatiable intellectual curiosity and the ability to learn quickly in a complex space.
Additional Requirements
Must pass any and all required background checks
Must be and remain compliant with all legal or company regulations for working in the industry
Must be a minimum of 21 years of age
#LI-HYBRID
The pay range is competitive and based on experience, qualifications, and/or location of the role. Positions may be eligible for a discretionary annual incentive program driven by organization and individual performance.
Green Thumb Pay Range$80,000-$100,000 USD
$80k-100k yearly Auto-Apply 2d ago
Security & Fire Systems Engineer III
Johnson Controls Holding Company, Inc. 4.4
Security engineer job in Calumet City, IL
Build your best future with the Johnson Controls team
As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, places and the planet. Join a winning team that enables you to build your best future! Our teams are uniquely positioned to support a multitude of industries across the globe. You will have the opportunity to develop yourself through meaningful work projects and learning opportunities. We strive to provide our employees with an experience, focused on supporting their physical, financial, and emotional wellbeing. Become a member of the Johnson Controls family and thrive in an empowering company culture where your voice and ideas will be heard - your next great opportunity is just a few clicks away!
What we offer
Paid vacation/holidays/sick time - 15 days of vacation first year
Comprehensive benefits package including 401K, medical, dental, and vision care - Available day one
Extensive product and on the job/cross training opportunities with outstanding resources
Encouraging and collaborative team environment
Dedication to safety through our Zero Harm policy
Check us Out: A Day in a Life at Johnson Controls:
What you will do
Under specific direction, assists in the design, configuration, and operation of building systems including security, fire, and other low voltage control sub-systems (i.e. lighting, nurse call, data networks, etc.) to meet the intent of the project requirements. Assists in the development of software programs, commissioning and troubleshooting to ensure proper operations of the building control system. Provides detailed information and submittals to communicate design and operation to customers, consultants, Johnson Controls field installation team and subcontractors.
How you will do it
Design and configure technically complex Security & Fire systems as defined by the contract documents. Create flow diagrams, sequence of operations and bill of material, network layouts and electrical schematics as required.
Develop and test software programs necessary to operate the system per the intent of the project requirements.
Use your ability to integrate different Security subsystems with each other.
Coordinate and create the necessary drawings and equipment schedules for submittals and installation.
Select, order, and track the delivery of materials for assigned projects.
Coordinate factory-mounting processes to meet factory and project schedule.
Assist in the loading and commissioning of all system and network-level controllers as required. Assist in validation of complete system functionality and troubleshoot problems with subcontractors and other trades to ensure proper operation.
Provide field change information to the project team for the creation of as-built drawings and software.
Keep management and JCI contractor or customer informed of job progress and issues. Assist in performing site-specific training for owner / operator on the total building control system.
Participate in release meeting with project field team. Perform value engineering to provide cost effective results while maintaining customer satisfaction.
Adhere to safety standards. Operate with a high degree of regard to employee and subcontractor safety.
What we look for:
Required
Experience in setting up application deployment (Installation, Configuration, Integration with other components) on Cloud environment based on underlying Application Architecture
Experience in Disaster Recovery setup
Administration, Maintenance and support of the Application instances on Reference, Validation and Customer environments
Identify any known incident resolutions using a knowledge management system
Apply identified resolutions to the incident and interact with the customer to ensure the incident has been properly resolved
Antivirus - Symantec (Installation, updates and remediation's of antivirus client for servers and computers
Off-shift support for machine moves quarterly maintenance
Deployment of physical and virtual server deployment, troubleshooting and maintenance
Ability to learn security software programs (I.E. C-cure9000, Milestone, Genetec)
Strong technical skills in the domain of Windows Server 2008/2012, Microsoft Hyper-V and SCCM/SCOM/SCVMM is essential
Basic MS SQL database and scripting skills is an asset Basic MS SQL database and scripting skills is an asset
HIRING SALARY RANGE: $85,000 - $106,000 Salary to be determined by the education, experience, knowledge, skills, and abilities of the applicant, internal equity, location and alignment with market data.) This role offers a competitive Bonus plan that will take into account individual, group, and corporate performance. This position includes a competitive benefits package. For details, please visit the About Us tab on the Johnson Controls Careers site at *****************************************
#LI - AD2
#LI - DS1
Johnson Controls International plc. is an equal employment opportunity and affirmative action employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, protected veteran status, genetic information, sexual orientation, gender identity, status as a qualified individual with a disability or any other characteristic protected by law. To view more information about your equal opportunity and non-discrimination rights as a candidate, visit EEO is the Law. If you are an individual with a disability and you require an accommodation during the application process, please visit here.
$85k-106k yearly Auto-Apply 60d+ ago
Systems Engineer
It360 Inc.
Security engineer job in Peoria, IL
Job Title: Systems Engineer
Employment Type: Full-Time
Salary Range: $40,000 - $70,000 per year, based on experience and qualifications
About the Role
IT360, Inc. is seeking a Systems Engineer to join our growing team. This strategic, client-facing role is responsible for designing, implementing, and supporting our customers' IT environments. You will work with a variety of technologies to deliver secure, efficient, and scalable solutions tailored to client needs.
Key Responsibilities
Provide advanced IT support for Microsoft business applications and virtual environments (Citrix, Microsoft, VMware)
Design, implement, and maintain solutions using Windows Server, Exchange, SQL, SharePoint, Office 365, Azure, and related tools
Support and manage disaster recovery and business continuity solutions
Maintain and troubleshoot WAN/LAN connectivity, firewalls, routers, and remote access (VPN, RDP, VDI, Citrix)
Document systems and provide technical consulting, reviews, and recommendations
Communicate with clients regarding project progress, planned maintenance, and service incidents
Additional Duties
Ensure a high standard of customer service and satisfaction
Collaborate with team members and escalate complex issues as needed
Gain a deep understanding of client business needs and how technology aligns with their goals
Accurately track time, tasks, and expenses in the ticketing system
Stay current with industry trends, tools, and certifications
Qualifications
Professional IT certifications preferred (e.g., Microsoft MCP, MCSA, MCSE; Citrix CCEA/CCIA; Cisco CCNA; SonicWall CSSA; VMware VCP)
Strong communication, diagnostic, and troubleshooting skills
Ability to manage multiple tasks and shift priorities in a fast-paced environment
Proficient with IT service delivery tools and remote support systems
Self-motivated with a strong attention to detail and desire to learn
Compensation & Benefits
Salary: $40,000 - $70,000 annually, depending on experience and qualifications. This position may be eligible for performance-based incentives.
Benefits
(subject to eligibility and length of employment)
:
Health insurance allowance up to $400/month
Employer-paid group life insurance policy valued at $100,000
3% employer match on retirement savings plan
Aflac individual accident insurance
High-speed internet reimbursement up to $40/month
$40/month cellular phone allowance
8 paid holidays annually
Paid vacation: 5 days/year to start, increasing to 10 days/year after 3 years of service
Access to Safe Ride Home Program (Uber ridesharing)
Apply today and become part of a team that delivers reliable IT solutions with a personal touch.
$40k-70k yearly 7d ago
Network Engineer II
Reliable Software Resources 3.9
Security engineer job in Peoria, IL
Organizations today are not only challenged by the constantly changing and emerging technologies, but are also confronted with difficulties in acquiring adequate human resources to meet the dynamics of the different IT Project initiatives. It becomes imperative to any business organization to utilize the most cost-effective ways of acquiring talent for immediate and long-term projects with a specific or niche skill set.
Since our inception, Reliable Software has been offering IT consulting services to the clients which enable them to maximize their IT investment and that has made us extremely competent enough to work on any IT consulting project for any industry domain. We offer world-class business solutions leveraging widely accepted strategies and technologies on different platforms and these services come at competitive rates. We design end to end business solutions from conceptualization to implementation as per the client's requirements.
To acquire strategic skills in a timely and cost-effective manner, many companies turn to Reliable Software for quality IT resource management. Reliable Software has the ability to quickly respond to technology initiatives by strategically acquiring skills and managing available resources. With customers ranging in size from startups to Fortune 500 enterprises, we understand the ever increasing need for talented IT professionals in the development of new technologies. Reliable Software is in business to help you maintain your competitive advantage by cost-effectively delivering highly skilled consultants when and how you need them most.
Reliable Software helps you address technical resource requirements with contract services. We invite you to see the difference working with Reliable Software and our strength is in our people and we are ready to work hard for you. Our broad portfolio of solutions enables us to meet your specific staffing requirements across all technologies and domains and below is the list
Greetings from Reliable Software Resources Inc!!!
This is Sreekanth G from Reliable Software Resources Inc and I am writing to see whether you are interested in an exciting/challenging opportunity at Peoria, IL Onsite.
Our client is interested in hiring a Network Engineer II who can use Network, Perl, WSA(windows server admin), and CISCO.
Please let us know whether you would like to be considered. We hope you do as this is truly a great opportunity to make a difference. If you are interested please respond back to this e-mail with your updated resume and a summary of your key skills and the compensation you are looking for. You can also reach me at 248-237-7009.
The details of the position are as mentioned below:
Kindly find the JD below for your reference
Title: Network Engineer II
Location: Peoria, IL
Duration: Long term
Term: Contract / Fulltime
Interview Process: Phone then Skype/On-Site
Remote Option: No
Required: Tasks & Duties
Excellent communication Skills are required
1.) 2-4 year's experience with Perl/PHP programming
2.) Familiarity with Unix Scripting
3.) Windows Server Administration
Job Description:
Team's primary function is Network management and monitoring for over 15,000 devices in enterprise network of over 400 locations.
The team has a proprietary system called VNOC for network monitoring that is written primarily in Perl/PHP.
Environment also includes Cisco ACS, Cisco Prime, NetQoS. MySQL database is used for hosting and the tools run on Windows Servers (2003/2008).
The team is strong in networking but they have a skill gap in programming (PHP/Perl) to be able to make much needed enhancements in the tools.
Could also be responsible for new development as needed.
Required Qualifications:
• A minimum of 2 to 4 years job related experience.
• Programming background preferably in Perl and PHP
• Very strong analytical skills
• Very good written communication and documentation skills
• Good oral communication and interpersonal skills - (English is key)
• High customer focus
• Good planning & organizing skills
• Process-oriented
• Knowledge of SQL
• Windows Server 2003/2008 administration
Experience required in at least 2 of the following areas:
• System integration
• Data Modelling
• Design and implementation of Distributed Applications (Web, Java)
• HTML design/formatting
Desired Qualifications:
• MediaWiki formatting for documentation
• General knowledge of TCP/IP protocols, and WAN/LAN using ping/traceroute
• Familiar with Cisco IOS and basic router configuration files
• Linux experience searching and editing files
• Ability to train users with technical and non-technical backgrounds
If interested, please send a reply with your Updated Resume
Additional Information
All your information will be kept confidential according to EEO guidelines.
$60k-76k yearly est. 3d ago
System Engineer
GFI Digital
Security engineer job in Champaign, IL
The Field Engineer provides a high level of in-person customer service implementing, maintaining, resolving technical issues, supporting, and optimizing all customer workstation and server hardware, software, and network equipment and connectivity. Must be customer service orientated, have effective verbal and communication and provide proactive work on behalf of our clients.
Responsible for working through ticketing system to configure, implement, monitor, manage, and support all of clients IT environments including;
Windows workstations
Server hardware and server operating systems
Anti-virus/malware software and remediation
Email systems such as Office 365 and/or Exchange and SPAM Filtering
Network switches, firewalls and access points
Backup systems and data recovery
Administer and maintain end user accounts, permissions and access rights
Provide 3rd party vendor management assistance
Produce accurate documentation related to client environments and issue resolution
Ensure that Service Level Agreements are met for all customers
This role must also be able to;
Setup, deploy and replace Windows desktops and laptops
Setup and install Windows operating systems, Microsoft Office Suite, and other Windows applications
Setup and install network equipment such as switches, firewalls and/or wireless access points
Setup, deploy, replace and support server hardware and Windows Server operating systems
Setup, deploy and support server virtualization such as; Microsoft Hyper-V and VMWare
Coach and mentor junior staff
Experience
Three to five years hands on experience configuring, deploying, supporting and troubleshooting PC hardware, Windows operating systems and Windows applications, server hardware and operating systems and networking equipment networking hardware and protocols. Experience working with 3rd party vendors.
Education
College diploma or university degree in the field of computer science preferred. Industry certifications such as Microsoft, CompTIA, Cisco and other is a plus but not required.
Interpersonal Skills
Onsite Engineer must be customer service focused. This is a direct customer interactive role so strong written and verbal skills with the ability to speak in user-friendly terms as well as communicate with technical peers. Collaboration with peers to problem solve and find the best solution and outcomes for clients is a must.
Work Conditions
This position will have local travel with 90% of time at client sites, so a clean driving record is required. There will be limited after hours work but must be available for On-Call support when required. This role may require the ability to sit or stand for extended periods of time. The ability to lift and transport moderately heavy objects such as computer equipment and peripherals. May require climbing of ladders or working in confined spaces such as under desks, data closets, etc.
**Salary based on experience**
Benefits
401(k)
401(k) matching
Dental insurance
Employee assistance program
Employee discount program
Flexible spending account
Health insurance
Health savings account
Life insurance
Paid time off at hire date
Referral program
Vision insurance
How much does a security engineer earn in Normal, IL?
The average security engineer in Normal, IL earns between $67,000 and $121,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.