Bank Information Security Governance Senior
Security engineer job in Tampa, FL
Why USAA?
At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families.
Embrace a fulfilling career at USAA, where our core values - honesty, integrity, loyalty and service - define how we treat each other and our members. Be part of what truly makes us special and impactful.
The Opportunity
We are seeking a dedicated Bank Information Security Governance Senior.
We offer a flexible work environment that requires an individual to be in the office 4 days per week. This position can be based in our Phoenix, AZ; San Antonio, TX; Plano, TX; Colorado Springs, CO; Chesapeake, VA; Charlotte, NC or Tampa, FL offices. Relocation assistance is not available for this position.
What you'll do:
Supports the first line of defense in ensuring the effectiveness of Information Security (IS) governance, IS risk management, and compliance programs within the Bank Technology Office. Collaborates with Information Technology (IT) and IS teams, business stakeholders, Compliance, Risk Management, Audit Services, and external parties to support IS governance and IS risk and compliance-based initiatives. Acts as a key liaison between the Association's IS function and various Bank business units, ensuring alignment with enterprise security policies and standards.
Continuously monitors IS environments to identify emerging risks related to cybersecurity, infrastructure, applications, and third-party services. Provides consultative services across Bank.
Provides expert insights on the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the Bank organization's specific needs and strategic objectives.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Conducts forward-looking risk assessments for new technology initiatives, system changes, and digital transformation projects.
Analyzes incident trends and control gaps to anticipate potential risk scenarios and recommend preventive measures.
Partners with and leads IT/IS teams to embed IS risk considerations early in the project lifecycle and ensure timely mitigation strategies.
Leads the development, implementation, and continuous improvement of IT governance frameworks (e.g., COBIT, ITIL) tailored to the organization's specific needs and strategic objectives.
Defines, maintains, and enforces IS policies, standards, and procedures to ensure compliance with relevant laws, regulations, and industry best practices.
Ensures IS risk compliance with legal, regulatory, and contractual requirements, coordinating audits and assessments.
Provides governance oversight for IS related initiatives, ensuring they adhere to established standards, policies, and risk management practices.
Mentors junior members of the IS governance team, providing guidance and support in their professional development.
Enhances, and maintains awareness of the risk governance framework and its elements (RCSA).
Performs root cause analysis to determine likelihood, impact, and mitigation approaches of identified risks.
Prepares metrics reporting and participates in the metrics refresh process.
Maintains awareness of cloud computing principles and AI and understands potential IS risks inherent within this discipline.
Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures.
What you have:
Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field; OR 4 years of related experience (in addition to the minimum years of experience required) may be substituted in lieu of degree.
6 years experience supporting IS governance, IS risk management, compliance, or IT audit activities
In-depth knowledge and application of IT governance frameworks such as COBIT, ITIL, ISO 27001, and NIST, CIS Controls and CMMC
Experience working on and implementing IT and/or IS policies, standards, and procedures.
Experience leading and coordinating IS audits and assessments and ensuring compliance with regulatory requirements.
A strong understanding of regulatory and compliance requirements applicable to the organization.
Ability to interpret complex IT/IS environments and detect early warning signals.
Experience in identifying potential failure points and simulating risk scenarios.
Proficiency in using data to identify trends, anomalies, and emerging risks.
Understanding of cloud, cybersecurity, and digital transformation risks.
Ability to articulate risk insights and influence stakeholders to take preventive actions.
Familiarity with GRC platforms, vulnerability management tools, and risk dashboards.
What sets you apart:
Information Technology or Security certifications (e.g., CISA, CRISC, CISM, CISSP, CGEIT, CIA, NIST, COBIT, etc.).
Familiarity with financial institutions regulations (GLBA, FFIEC Handbooks, PCI DSS)
Work experience in highly regulated work environments including other large financial institutions
Experience with data-driven analysis using AI tools and collaborating to drive process innovation
Highly self-motivated individual capable of working independently and proactively handling their workload with minimal direct supervision.
Strong analytical skills and demonstrated experience collaborating effectively with leadership at all levels within an organization.
Compensation range: The salary range for this position is: $114,080-$218,030.
USAA does not provide visa sponsorship for this role. Please do not apply for this role if at any time (now or in the future) you will need immigration support (i.e., H-1B, TN, STEM OPT Training Plans, etc.).
Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location.
Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors.
The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job.
Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals.
For more details on our outstanding benefits, visit our benefits page on USAAjobs.com.
Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting.
USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Auto-ApplyChannel Security Engineer
Security engineer job in Tampa, FL
We are seeking a Channel Security Engineer (SE) based in Miami to partner closely with our Channel Sales team. This role is instrumental in driving technical alignment and growth across Fortinet's partner ecosystem. The SE will play a key role in pre-sales technical support, partner enablement, solution development, and driving joint strategy with our channel partners.
The ideal candidate will possess a strong network security background, with additional experience in cloud security, SASE, application security, OT, and SecOps being highly desirable. Experience working with or for resellers, MSSPs, or security vendors is considered a strong asset.
We are looking for:
Develop and execute a joint strategy in collaboration with your aligned Channel Account Manager (CAM), aligning partner initiatives with Fortinet's overall goals.
Collaborate with Fortinet field teams (sales, SEs, marketing, overlays) and partner stakeholders (sales, technical, professional services, managed services) to build and launch joint go-to-market solutions.
Drive sales growth in core network security while expanding partner capabilities across the broader Fortinet portfolio.
Consult on the development of managed service offerings with key partners to address evolving customer and market demands.
Act as the primary technical contact for assigned partners, working closely with the aligned CAM(s) to support and advance the partnership.
Maintain a deep technical understanding of Fortinet products, the competitive landscape, and the latest security trends to articulate Fortinet's value and differentiation.
Confidently present Fortinet solutions through whiteboarding, demonstrations, technical planning, and collaborative customer discussions…both remotely and in person.
Manage multiple deals and initiatives simultaneously while ensuring a positive and professional experience for partners and customers.
Deliver weekly updates to leadership on progress, partner engagement, and strategic initiatives.
Host and participate in technical webinars, hands-on demos, and other partner-facing enablement activities.
Support partner technical training events, including Fast Tracks and workshops, for SEs, Solutions Architects, and Professional Services engineers.
Travel to partner sites and attend partner events (including occasional after-hours commitments) as needed to support relationship development and technical engagement.
Engage across multiple business units within the partner ecosystem, including Cloud, Security, Pre-Sales, and Managed Services, prioritizing efforts based on mutual objectives.
Candidates experience:
5-8 years of experience in technical pre-sales roles such as Pre-Sales Engineer, Solutions Architect, or Security Specialist.
A proven ability to think strategically and act independently to drive sales opportunities to technical closure.
A background in managing end-to-end technical aspects of deals, including scoping, solution design, and closure.
Demonstrated problem-solving skills that have directly contributed to successful outcomes and key wins.
Experience in building and maintaining technical relationships with channel partners, and the ability to effectively communicate with both internal and external stakeholders.
Strong public speaking, presentation, and training skills, with the ability to convey complex technical topics to diverse audiences.
Excellent written and verbal communication skills.
Ability to clearly explain technical solutions and architectures using whiteboarding, Visio, or similar diagramming tools.
A strong foundation in networking and security protocols, including TCP/IP, IPv4/IPv6, subnetting, DNS, HTTP, SMTP, RADIUS, LDAP, Active Directory, PKI, IKE, certificates, L2TP, SSL VPN, IPSEC, 802.1Q, VLANs, LACP, MD5, SSH, SSL, SHA1/512, 3DES, AES.
Hands-on experience with technical troubleshooting in complex network or security environments.
Deep technical knowledge in key technologies such as encryption and authentication, Wi-Fi, load balancing, application delivery, Ethernet switching, APIs, two-factor authentication, malware sandboxing, secure email gateways, WAF, cloud platforms (AWS, Azure), SDN, NFV, virtualization, centralized management tools, and security operations platforms (SIEM, EDR, MDR, XDR, NDR).
Previous experience working for a vendor or reseller is considered an asset.
Fortinet NSE certifications are an asset.
Why Join Us:
We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being.
Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.
Auto-ApplyCyber Security Engineer (Sign On Bonus included)
Security engineer job in Tampa, FL
Who we are.Platinum Technologies is a Northern Virginia based integrated solutions firm that specializes in Cybersecurity, Cloud and Digital Services to the Public Sector. Our team solves hard problems and helps our Mission Partners achieve their goals. If you are self-motivated, possess demonstrated learning agility, and are passionate about delivering high-quality work products - we want to hear from you. We lead with technical expertise, but that is just the tip of the iceberg - the ‘Why' matters. At Platinum, we don't hire people to do a job. We provide professional and leadership development to complement our self-motivated domain experts. Our teammates are dot-connecting leaders that operate in a mutually accountable environment to deliver thought leadership, expert technical analysis, and quality execution for our clients
You.Platinum Technologies currently has an opportunity for an experienced Cyber Security Engineer to help advance the security posture and lead the organization's Identity, Credential, and Access Management (ICAM) environment into compliance with Zero Trust operational and compliance requirements. We are offering a competitive sign-on bonus and relocation assistance for qualified candidates.
Located at MacDill AFB, Tampa, Florida. Candidate must hold an active TS/SCI clearance.
What you get to do.•Install, configure, and integrate the government-purchased Radiant Logic and SailPoint software suites.•Design and implement a federated Master User Record by integrating Radiant Logic with authoritative sources like Active Directory •Automate provisioning, deprovisioning, and role-based access assignments across applications and systems.•Enable identity governance workflows: Connect SailPoint to the MUR to establish foundational governance functions, including user access requests, approvals, and certification campaign•Drive integration of authoritative identity sources, attribute-based access controls (ABAC), and continuous monitoring to strengthen security posture and ensure adherence to federal cybersecurity mandates.•Collaborate with cross-functional teams to develop roadmaps, policies, and compliance frameworks that operationalize Zero Trust principals and support audit readiness•Design, develop, and implement security concepts, controls, and mechanisms.•Define and enforce identity and access control policies that align with organizational security and compliance standards.•Enforce information systems security policies to ensure compliance with regulatory and organizational security requirements.•Stay updated on emerging threats, vulnerabilities, and cybersecurity best practices to enhance organizational security posture. Required Skills.•BA/BS and minimum 2 -4 years of relevant experience •Active TS/SCI Clearance.•Current DoD 8140 - IAT II Certification (e.g., CompTIA Security, GICSP, CCNA Security, Cisco SCOR exam, CySA+). •Demonstrated experience in ICD 503 certification and accreditation processes.• Radiant Logic/SailPoint/Ping Certifications•Hands-on technical expertise in cybersecurity, including security assessments, system auditing, and secure system development.
Preferred Skills.•Strong written and verbal communication skills.•Familiarity with NIST SP 800-207 (Zero Trust Architecture) and OMB M-22-09 requirements.•Knowledge of Identity threat detection, risk-based authentication, Master User Record (MUR) or identity data consolidation• Hands-on experience with IAM tools (SailPoint, Okta, Ping Identity, ForgeRock, CyberArk, Azure AD, Radiant Logic).•Strong understanding of identity lifecycle management, provisioning, and deprovisioning.•Proficiency in scripting languages (PowerShell, Python, Bash, Java, or Groovy for SailPoint customization).
The Company is an Equal Opportunity/Affirmative Action employer. All qualified candidates will receive consideration for employment without regard to disability, protected veteran status, race, color, religious creed, national origin, citizenship, marital status, sex, sexual orientation/gender identity, age, or genetic information.
Auto-ApplyCyber Security Engineer
Security engineer job in Tampa, FL
Dark Wolf Solutions is seeking a Cyber Security Engineer to be an integral part of a collaborative team supporting USSOCOM Special Operations Forces Mission Program by providing cloud migration solutions, including application assessment, security requirement identification (IaaS vs. PaaS, bring-your-own-ATO, control inheritance), and architecture recommendations, resulting in seamless migrations. Platform Engineers will work in a fast-paced, collaborative environment to complete successful cloud-to-cloud migrations and are currently consulting on hardware-to-cloud migrations. The successful candidate will be comfortable in and have previous experience in Agile development, DevSecOps, Artificial Intelligence (AI) and Machine Learning (ML), data engineering, and cybersecurity environments. The candidate will be located in Tampa, FL and expected to be on-site at a customer location in a hybrid capacity. Key responsibilities include, but are not limited to:
Developing, reviewing, and critiquing assessment and authorization (A&A) documentation in compliance with DoD Cybersecurity policy and agency guidance, including DoD, ICD, CNSS, and NIST special publications.
Researching security standards/tools; reviewing or conducting system security and vulnerability assessments of cloud and on-prem environments in a fast-paced, demanding environment.
Supporting development and implementation of innovative methods to achieve compliance with government and commercial cybersecurity frameworks.
Researching and identifying best practices to harden and secure containers and Kubernetes clusters at scale.
Ensuring platform and networks are compliant with DoD policies.
Required Qualifications:
Bachelor Degree in Computer Science, Mathematics, or equivalent technical degree; or in lieu of degree, 3 years of equivalent industry experience
5+ years of relevant experience
Deep knowledge and experience with FedRAMP or Impact Level assessments
Familiar with commercial cloud providers and Kubernetes platforms
Knowledgeable on zero trust architecture concepts such as Google BeyondCorp
Extensive experience with NIST special publications, RMF and the various control families within
Advanced writing skills: able to clearly articulate ideas for executive level consumption
Advanced problem-solving skills: able to use prior experience and knowledge to address new situations; especially during interactions with clients
Advanced analytical skills: able to use prior experience and knowledge to seamlessly incorporate new knowledge or information during client interactions
US Citizenship and an active Secret security clearance
Desired Qualifications:
Previous experience with newer ATO strategies such as Fast Track or Continuous ATO
Knowledge of Platform One Iron Bank secure registry of hardened containers
Previous experience providing training in RMF or explaining cyber security concepts to others in a training like environment
The following certifications are desired: CEH, Security +, CISSP, CISM
This role is based out of Tampa, FL.
The salary range for this position is estimated to be between $150,000.00 - $170,000.00, commensurate on experience and technical skillset.
We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
Auto-ApplySystems Security Engineer - TS/SCI
Security engineer job in Tampa, FL
Our client is a government contractor founded in 2008 whose mission is to transform the way our customers approach constantly changing and complex problem sets by bringing to bear the latest in technology and the highest caliber of talent with a particular focus on Defense and National Security mission sets. They are seeking highly skilled and versatile Systems Security Engineer to join the centralized Zero Trust Leadership Cell (ZTLC) supporting U.S. Special Operations Command (USSOCOM) on the EDAT innovation contract.
Qualified Systems Security Engineer should have the below skills:
-A minimum of twelve (12+) years of progressive experience in IT/Cybersecurity, with at least 5 years focused on systems engineering, security engineering, or technical integration of complex enterprise systems within the DoD.
-Must possess an active DoD 8570 IASAE Level II certification (e.g., CASP+ CE, CISSP, CSSLP).
-Technical certifications in relevant domains such as Cloud (AWS/Azure Specialty), Networking (CCNP/JNCIP), or Identity (e.g., Okta, Ping) are highly valued.
-Broad technical expertise across multiple ZT pillars, including ICAM, Network Security (SDN, Segmentation), Cloud Security (AWS/Azure), Data Protection, and Endpoint Security.
-Strong understanding of Zero Trust Architecture (ZTA) principles (NIST 800-207) and the DoD ZT Reference Architecture.
-Knowledge of authentication and authorization protocols (e.g., SAML, OAuth, OIDC) and access control methods (PKI, MFA, ABAC).
This work is onsite in Tampa, Florida. Candidates must be a US Citizen with an active TS/SCI level government clearance. Salary for this role is up to $160K for qualified candidates.
Cloud Security Engineer / Specialist IS Architect (JP10020)
Security engineer job in Tampa, FL
Employment Type: Contract Business Unit: GIP - Security Architecture Duration: 10 months with likely extensions and/or conversion to permanent
3 Key Consulting is hiring Cloud Security Engineer for a consulting engagement with our direct client, a leading global biopharmaceutical company.
Job Description:
The Cloud Security Engineer will be reporting into the Global Information Protection Organization and will be based in Tampa, FL.
As a Specialist Cloud Security Engineer, you will be working with the Cloud Security Program helping advance AWS Cloud governance and audit posture, providing remediation strategies, and executing project activities to complete tactical objectives. You will play a key role in designing, deploying, and maintaining solutions, automate security assessments, audits, policy, and standard enforcements, and more.
Top Must Have Skills:
AWS Cloud Security
Privilege Access Management
Enterprise Key Management
Preferred Qualifications:
Comprehensive experience with Amazon AWS, understanding of Identity and Access Management, Data Protection, Secure DevOps, Security Operations, and other security domains for Cloud.
Working/Emerging knowledge of Enterprise Cloud Solutions across IaaS, PaaS & SaaS. This may include: AWS, Azure, OpenStack, Cloud Foundry, Salesforce, Microsoft Office 365, Box, etc.
Emerging Knowledge of Identity Governance, Cloud SOC/SIEM, Key Management & Encryption, Public, Private and Hybrid cloud solutions.
Good working knowledge of KMS, Encryption Technologies, Cryptographic Keys and usage.
Good hand-on experience with AWS foundation services related to compute, network, storage, content delivery, administration and security, deployment and management, automation technologies.
Technical experience should have Strong micro services programming (AWS Lambda, Docker, etc.)
Experience using AWS Cloud Services (EC2, DynamoDB, API Gateway, RDS, Lambda, CloudFront, CloudFormation, CloudWatch, Route 53, etc.)
Extensive experience architecting, designing and programming applications and RESTFUL Services in an AWS Cloud environment Experience architecting highly available systems that utilize load balancing, horizontal scalability and high availability.
Experience in one of the following: Java/Node.js/Python/JSON policy language
Good verbal and written communication skills
Team-oriented, placing priority on the successful completion of team goals
Self-starter with a high degree of initiative
CISSP or equivalent security-related industry certifications
AWS Certified Professional or higher
Day to Day Responsibilities:
Management and implementation of technologies and processes relating to assigned Global Information Protection capability including issue identification and resolution, integration with other tools, documentation, gap assessment, gap resolution and continuous improvement of the capability
Keep up-to-date, make recommendations, and participate in the implementation and continuous improvement of technologies and services in assigned information security domains
Work with and provide guidance to Security Operations and other Global Information Protection team activities on security strategies, processes, response and technologies
Support Incident Response on security incidents including contributing to mock security incident exercises
Define, provide, and improve measurement and analysis on the assigned services including the use of appropriate applications and tools for reporting
Participate in projects or initiatives where an IS Security Engineer is needed with a focus on ensuring inclusion of information security requirements
Participate in proactive research and provide recommendations for continuous improvement on information security technologies, processes and services
Develop, implement, and sustain operational scripts, data structures, libraries and programming code that optimize security in emergent compute patterns with diverse applications throughout the global environment.
Analyze, design, develop and operate programs, shell scripts, tests, and infrastructure automation capabilities in an advanced security context.
Collaborate cross-functionally with analysts, engineers, data scientists to achieve continuous improvement in cyber defense/resilience.
Red Flags:
Less than two years of service in top 3 skillset
Interview process:
3 phone panels. Immediately.
We invite qualified candidates to send your resume to *****************************. If you decide that you're not interested in pursuing this position, please feel free to look at the other positions on our website ******************************* You are welcome to also share this opportunity with anyone you think might be interested in applying for this role.
Regards, 3KC Talent Acquisition Team
Easy ApplyF5 Security Engineer - Active TS/SCI with CI Poly
Security engineer job in Tampa, FL
Job Description
Participate in the development and support of customer technical requirements
Champion a collaborative, team-based environment, sharing standard methodologies and success and building positive relationships
Plan, Design, Develop, Implement and Operate F5 products such as LTM, ASM, BIG-IQ and APM
Manage the configuration on multiple physical and virtual F5 across multiple data centers
Develop scripts and tools to automate configuration of a large number of network security devices distributed across multiple data centers
Propose and implement system enhancements that will improve the performance and reliability of the network security infrastructure
Applies capacity planning configuration changes as demanded by the business
Address performance, scalability, and service architecture administration issues
Design, install, configure, maintain network security services, equipment and devices
Plan and support network security infrastructure
Provide clear technical documentation and written procedures for issues identified and addressed
Monitoring and troubleshooting of platform and OS based problems, network security infrastructure and connectivity issues
Perform launch testing for new software releases and the introduction of new features
Coordinate equipment orders including physical or virtual appliances, as well as upgrading, monitoring, testing and servicing the systems as needed
Demonstrates knowledge of a broad range of technology towers i.e.: Storage, Virtualization, Intel, Networking, Data Center Migration and Disaster Recovery
Knowledge of risk and controls landscape, ensuring company-wide standards are met
Participate in change and incident management
Anticipating potential problems and acting to minimize the impact they may have on the project or unit
Ability to collaborate with different technology towers to achieve common goals
Requirements
Bachelor's degree in computer science, information systems, telecommunications, or an engineering focused field
Must have an Active TS/SCI and willing to obtain a CI Poly
5+ years of relevant F5 experience with F5 LTM, ASM, BIG-IQ, and/or APM administration and life cycle management including experience with advanced iRule creation and troubleshooting
Ability to handle multiple complex F5 configurations and deployments at once
Understanding of networking at all layers of the OSI model; and Previous experience with web application technologies
Experience deploying, managing, and troubleshooting network systems, switching, and routing protocol standards such as: TCP/IP, MPLS, OSPF, BGP, SDN, and 802.1x.
Experience managing and troubleshooting DNS, DHCP, IPAM, and NTP in a large multi-site environment
Ability to manage multiple stands of work simultaneously.
Executes within a customer-centric environment.
Excellent verbal and written communication skill Hands on experience with Python and APIs
Self-driven with the ability to manage workload without direct supervision
Must have the F5 201 certification
8570 IAT Level II Certification required
Preferred Skills/Qualifications
Experience with Infoblox DDI, Microsoft DNS, Dyn, VMWare Automation products (vRO, vRA)
Benefits
Essential Network Security (ENS) Solutions, LLC
is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.
Why ENS?
Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
Long & Short Term Disability Insurance
Group Term Life Insurance
Tuition, Certification & Professional Development Assistance
Workers' Compensation
Relocation Assistance
Cloud Security Engineer
Security engineer job in Tampa, FL
Insight Global is seeking a Cloud Security Engineer to join a financial organization in Florida. The Cloud Security Engineer is responsible for designing and implementing secure cloud architectures that meet business and regulatory requirements, managing identity and access controls, and deploying cloud-native security tools across platforms such as Azure, AWS, and Google Cloud. This role includes monitoring and responding to security alerts, conducting vulnerability and risk assessments, enforcing compliance with standards like GLBA and PCI DSS, and maintaining documentation and policies for hybrid environments. The engineer will leverage automation tools to streamline operations, partner with DevOps team to embed security into the SDLC, and provide training on best practices.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
-Bachelor's degree in Information Security, Computer Science, or related field (A comparable combination of work experience and training may be substituted for education requirements.)
-3+ years of experience in cloud security or a related role for a medium-to-large organizations
-Direct experience with cloud security solutions and tools for platforms like Azure, AWS, and Google Cloud
-At least one of the following Security Certifications (AWS Certified Security - Specialty, Microsoft Certified: Azure Security Engineer Associate, or Google Professional Cloud Security Engineer)
-Experience designing and enforcing secure access and authentication mechanisms, including the use of MFA, SSO, and IAM/IGA principles -Experience working for a financial organization or another highly regulated industry
-Proficiency in scripting and automation languages such as Python, PowerShell, or Bash
-Experience with the following Security tools: (Alt Zero, Palo Alto Primsa Access, Aqua Cloud Native, Microsoft Defender)
Lead Security Engineer
Security engineer job in Tampa, FL
Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies.
As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity and Technology Controls line of business, you are an integral part of team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and malicious behavior. As a core technical contributor, you are responsible for carrying out critical technology solutions with tamper-proof, audit defensible methods across multiple technical areas within various business functions.
Job responsibilities
Executes creative security solutions, design, development, and technical troubleshooting with the ability to think beyond routine or conventional approaches to build solutions and break down technical problems.
Minimizes security vulnerabilities by following industry insights and governmental regulations to continuously evolve security protocols, including creating processes to determine the effectiveness of current controls.
Works with stakeholders and business leaders to understand security needs and recommend business modifications during periods of vulnerability
Conducts discovery, vulnerability, penetration testing, and threat scenarios on multiple organizational assets to identify and assess if vulnerabilities are present, and executes threat modeling for multiple applications including external applications interacting with the internal JPMorgan Chase network.
Adds to team culture of diversity, equity, inclusion, and respect
Design, Build and Deploy scalable ETL pipelines leveraging Trino, py Spark, AWS Services (S3, Glue) for large-scale data processing.
Leverage AWS Services such as S3, SNS, Athena for storage, data query in the cloud environment.
Use tools like Kestra/Airflow to automate schedule and monitor complex data workflows ensuring smooth data flows and timely execution.
Use a wide array of data formats appropriate for building a Modern Data Stack
Leverage Docker and Kubernetes for containerization and orchestration to achieve scalable deployments.
Write and Optimize SQL queries for transformation, analysis with focus on performance.
Required qualifications, capabilities, and skills
Formal training or certification on security engineering concepts and 5+ years applied experience
Skilled in planning, designing, and implementing enterprise level security solutions
Advanced in one or more programming languages
Proficient in all aspects of the Software Development Life Cycle
Advanced understanding of agile methodologies such as CI/CD, Application Resiliency, and Security
Experience with threat modeling, discovery, vulnerability, and penetration testing
Strong Knowledge of AWS services such as S3, Athena, SNS, SQS , Glue
Experience with Apache Airflow and/or Kestra for automating data flows
Proficiency in py Spark for data processing
Proven experience with data formats, open table formats and data partitioning
Hands on Experience with Terraform for infrastructure deployment.
Preferred qualifications, capabilities, and skills
Familiarity with Serverless computing
Familiarity with Delta Lake, Apache Hudi , Iceberg
Knowledge of data security tools like OPA
Experience with distributed computing framework like Apache Spark
Experience effectively communicating with senior business leaders
Auto-ApplySCADA Cyber Security Engineer (Systems Reliability Division)
Security engineer job in Brandon, FL
Responsible for the performance of highly complex cyber security functions related to the design, installation, maintenance, auditing, investigation, and assessment of software applications, networks, and the County's enterprise level information systems. Responsible for proactively identifying and implementing security measures to prevent emerging vulnerabilities, utilizing a diverse array of tools and methodologies. Incumbent will use sound judgement to assess risk, conduct audits, collect and review data, collaborate with other technology divisions, and write reports to advise leadership.
Salary
$82,804 - $145,080
Ideal Candidate
This advanced level SCADA physical and cyber security position will be responsible for the protected access and overall integrity of the SCADA network, to include controlled data Integration, user and device security configurations, access control lists, encryption pass coding and data port security. Develops and maintains documentation of existing SCADA infrastructure including hardware, applications, protocols, communication links and system disaster recovery strategies. Evaluates and applies security updates, patches to all SCADA servers and workstations in accordance with ISA standards. Works with Network and Applications Engineering groups to troubleshoot and resolve issues associated with failures to maintain maximum system security and facilitates continuous improvement of SCADA system integrity and the SCADA environment. Assist with the secure integration of SCADA data to other areas of the business. Build and maintain automated data imports/exports and reports processes. Administers for the Department any operational or security policies associated with the network using firewalls, policy and rule initiation as well as authentication software. Develops and administers Departmental security policies to users related to the use of the SCADA network.
This position will provide Departmental wide highly technical and specialized computer and network security oversight associated with the Public Utilities Departments Supervisory Control and Data Acquisition System (SCADA). SCADA serves as the backbone to the Departments Water, Wastewater, Reclaimed Water and Pump Station computerized control systems. Due to continuous technological advancements, systems integration standardization hardware/software compatibility assessments, programming, multi-disciplinary diagnostics, troubleshooting, debugging, coding and process control program development are all vital to ensuring the preservation and protection of SCADA communication for 24-hour operations regulatory compliance and the protection of public health and the environment. The sophistication and continued expansion of multiple local area networks, a large cellular telemetry network and an independent wide area network makes it more vulnerable to cyber-attacks, incidental software or hardware corruption and occasional user misuses from both outside and inside influences. This position will provide the needed focus towards making the network more secure following guidelines for automation and information systems; provided by ICS and ISA standards for automation and systems information.
Minimum Qualifications
Bachelor's degree from an accredited college or university with a major in information security or another similar technology field; AND
Three years of experience in information security system administration and risk assessment within an enterprise environment, encompassing third-party risk, risk analysis, risk mitigation, and residual risk management.
Three years of experience leveraging industry-leading cybersecurity tools (SIEM, EDR, vulnerability scanning, and web application security) for comprehensive threat detection and mitigation.
OR
An equivalent combination of education (not less than a high school diploma/GED), training and experience that would reasonably be expected to provide the job-related competencies noted above.
Core Competencies
Customer Commitment
- Proactively seeks to understand the needs of the customers and provide the highest standards of service.
Dedication to Professionalism and Integrity
- Demonstrates and promotes fair, honest, professional and ethical behaviors that establishes trust throughout the organization and with the public we serve.
Organizational Excellence
- Takes ownership for excellence through one's personal effectiveness and dedication to the continuous improvement of our operations.
Success through Teamwork
- Collaborates and builds partnerships through trust and the open exchange of diverse ideas and perspectives to achieve organizational goals.
Duties and Responsibilities
Note: The following duties are illustrative and not exhaustive. The omission of specific statements of duties does not exclude them from the position if the work is similar, related, or a logical assignment to the position. Depending on assigned area of responsibility, incumbents in the position may perform one or more of the activities described below:
Conduct thorough assessments of software applications, networks, and systems to identify security vulnerabilities and weaknesses.
Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Collaborate with cross-functional teams to prioritize and mitigate vulnerabilities based on their potential impact and risk.
Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements.
Participate in designing and implementing security measures to prevent future vulnerabilities.
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Assist in incident response activities, analyzing security incidents to determine the root cause and providing recommendations for prevention.
Use frameworks such as MITRE ATT&CK to map adversary tactics and techniques and design hunting scenarios based on threat actor behavior.
Collaborate with incident response teams to validate incidents, identify root causes, and assist with post-mortem analysis.
Other related duties as assigned.
Job Specifications
Critical Thinking:
Exceptional critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Decision Making:
Demonstrates high personal integrity and the ability to handle confidential matters with sound judgment and professionalism.
Communication:
Proficient communication skills to effectively collaborate with both technical and non-technical stakeholders. Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Strategic Planning:
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Managerial/
Operational Skills:
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements. Participate in designing and implementing security measures to prevent future vulnerabilities.
Leadership:
Capable of serving as a Cyber Security Subject Matter Expert (SME) for externally managed technology projects from various departments.
Analytical Ability:
Excellent critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Managing
Complexity:
Extensive knowledge of cybersecurity best practices, including familiarity with CIS Critical Controls, NIST Cybersecurity Framework (CSF), MITRE ATT&CK Framework. Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Other:
Hands-on experience in incident response and recovery, utilizing MITRE and security best-practice assessment methodologies.
Physical Requirements
Speaking, vision, hearing, sitting, and standing. Use of office machinery such as PCs, Smart Phones, Tablets, and multi-function devices.
Work Category
Sedentary Work - Exerting up to 10 pounds of force occasionally, and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Emergency Management Responsibilities
In the event of an emergency or disaster, an employee may be required to respond promptly to duties and responsibilities as assigned by the employee's department, the County's Office of Emergency Management, or County Administration. Such assignments may be for before, during or after the emergency/disaster.
Auto-ApplyCyber Security Engineer
Security engineer job in Tampa, FL
Seeking a Mid Cyber Security Engineer to provide operational and integration support for an international, multi-vendor infrastructure, including networks, systems, and cybersecurity solutions. This is an on-site role in Tampa, FL, with remote opportunities based on project needs.
Responsibilities
Correlate threat data from various sources to establish the identity and modus operandi of potential adversaries.
Provide assessments and reports that enhance situational awareness and understanding of cyber threats.
Develop cyber threat profiles based on geographic region, country, group, or individual actors.
Produce cyber threat assessments from entity threat analysis.
Support investigations with computer forensic analysis, evidence seizure, data recovery, and network assessments.
Maintain proficiency in tools, techniques, countermeasures, and trends in vulnerabilities, data hiding, network security, and encryption.
Provide engineering and implementation support for integration, modernization, and installations for partner nations and allies in Eastern Europe and South America.
Design, test, and integrate cybersecurity devices into networks, deploying sensors, nodes, and agents for maximum effect.
Support multi-vendor infrastructure, including network, systems, and cybersecurity platforms.
Work with core cybersecurity technologies such as Gigamon (or similar) for packet forwarding/deduplication, and Trellix/FireEye/McAfee (or similar) for security stack applications and heuristic analysis.
Implement and tune SIEM solutions and data sources (NIDS, Firewalls/Proxies, Domain Controllers, etc.) to ensure effective monitoring.
Document network, system, and cybersecurity changes, including installation plans, checklists, and configuration baselines.
Qualifications
Required
High school diploma with 69 years of relevant experience (or equivalent).
Active Secret clearance.
Valid U.S. passport with ability to travel internationally up to 40% (Eastern Europe and South America).
Proficiency with network diagramming and productivity tools (Visio, Lucid, AutoCAD, etc.).
Current DoD 8570 IAT Level II Certification (Security+CE, CCNA Security, CySA+, CASP, etc.).
Entry-level experience in Cyber Network Defense (CND), Cybersecurity Operations, or current CCNA-level certification.
Preferred
Bachelors degree in a relevant field with 4+ years of experience (or equivalent combination of training and expertise).
Military background in Signal, Communications, Cyber, or Information Technology (highly desired).
Certifications such as CCNA Security, CCNA CyberOps, JNCIS-SEC, PCNSA, GIAC, or GCP.
Additional certifications or experience in Microsoft Systems MCSA, VMware, Cloud Security, Linux, or related areas.
Working Place: Tampa, Florida, United States Company : 2025 Sept 11 Virtual Career Fair - GovCIO
Information Security Analyst
Security engineer job in Tampa, FL
As an Information Security Analyst, you will have shared responsibility for implementing and maintaining company's security strategies and services while providing security guidance based on industry standards and best practices. The ideal candidate will ho have an educational background and/or experience to maintain and support assigned information security technologies with general leadership oversight.
*This position is located out of our Tampa, FL corporate office.
2 days a week in office are required*
Some of the regular responsibilities may include:
Provision, manage, monitor, test, and decommission security tools and applications.
Attend and lead small project meetings and enforce best practices.
Apply specialized security technical knowledge.
Evaluate, plan and implement security projects.
Remain current on assigned security tools and applications and apply skilled understanding of troubleshooting.
Document and resolve moderately complex problems.
Report progress to leaders.
Monitor and analyze Identity security incidents, and provide recommendations for remediation
Other duties as assigned or required.
Experience to be successful:
IT security risks and mitigation strategies.
Security Incident Response
Security frameworks, including ISO and NIST.
Company IT and HR policies.
Various IT security-related regulatory requirements.
IT security logging and monitoring strategies.
Deployment and use of sophisticated IT security monitoring tools.
Educational background: Bachelor's degree in computer science, Information Systems, or other related field; or has 2-5 years of relevant experience.
Technical Skills to understand the role:
Analytical ability
Analyzing Security System Logs, Security Tools, and Data
Communicating Up, Down, and Across All Levels of the Organization
Creating, Modifying, and Updating Security Information Event Management (SIEM)
Deep Understanding of Risk Management Frameworks
Discovering Vulnerabilities in Information Systems
Evaluating and Deconstructing Malware Software
Familiarity with Security Regulations and Standards
Implement and Maintain Security Frameworks for Existing and New Systems
Maintaining Security Records of Monitoring and Incident Response Activities
Monitoring Compliance with Information Security Policies and Procedures
Network and System Administration Experience
Responding to Requests for Specialized Cyber Threat Reports
Performing Cyber and Technical Threat Analyses
Performing Security Monitoring
Producing Situational and Incident-Related Reports
Providing Host-Based Forensics
Providing Timely and Relevant Security Reports
Responding to Security Events
Supporting and Managing Security Services
#LI-MB1
Benefits may include:
Comprehensive medical, prescriptions, dental and vision plans
401(k) plan with a discretionary company match
Shareholder Purchase and Reinvestment Plan
Basic life and accidental death and dismemberment insurance premium paid by the company
Voluntary supplemental life insurance for employees, spouses and dependent children
Fertility and Family Building Benefits
Paid Disability benefits
Paid time off programs
11 Company paid holidays per year
Flexible spending account
Health savings account (available to High Deductible Health Plan participants only)
Employee Assistance Program
Educational Assistance Program
Voluntary benefits, such as Critical Illness, Hospital Indemnity, Pet Insurance and Accident Insurance
Title insurance policies and certain escrow services for the employee's primary personal residence at no charge
Transportation benefit plan for mass transit, parking and vanpool, in several markets
Note: If you currently are employed by Old Republic Title (or one of its wholly owned affiliated companies) please get in touch with your human resources representative regarding the application process.
For California applicants, please click the following link to view our CCPA Applicant Notice
Old Republic Title is an Equal Opportunity Employer
Auto-ApplyCyber Security Systems Engineer
Security engineer job in Tampa, FL
The Cyber Security Systems Engineer provides cyber defense analysis and engineering support for MARCENT systems, ensuring resilience and compliance against advanced threats. This role engineers security solutions for MARCENT communications systems, conducts vulnerability assessments and security audits, implements DoD cybersecurity standards, and provides documentation and training on cyber defense posture. With 7-10 years of experience, the engineer applies expertise in network security analysis, packet inspection, threat hunting, vulnerability assessment, SIEM operations, and forensic analysis. By integrating technical expertise with operational awareness, the Cyber Security Systems Engineer ensures MARCENT systems remain secure, compliant, and ready to counter evolving cyber threats. *THIS EMPLOYMENT IS CONTINGENT UPON CONTRACT AWARD*
Responsibilities/Duties:
* Engineer security solutions for MARCENT communications and information systems.
* Conduct vulnerability assessments, penetration testing, and security audits to identify risks.
* Implement DoD cybersecurity standards and RMF requirements.
* Provide documentation, training, and guidance on MARCENT's cyber defense posture.
* Perform network security analysis, including packet inspection and traffic monitoring.
* Conduct threat hunting and vulnerability assessments to proactively identify risks.
* Operate SIEM platforms, triage alerts, and conduct malware behavior and forensic analysis.
* Apply frameworks such as the cyber kill chain and ATT&CK models to enhance defense strategies.
Supplemental Duties:
* Assist in developing SOPs for cyber defense operations and incident response.
* Support compliance audits and RMF documentation requirements.
* Contribute to after-action reviews and lessons learned from cybersecurity incidents.
Administrative Duties:
* Maintain compliance with MARCENT administrative procedures and reporting requirements.
* Ensure cybersecurity documentation is archived according to records management standards.
Supervisory Responsibilities:
None.
Education/Experience/Qualification:
* Bachelor's Degree in Cybersecurity, Computer Science, or related discipline required.
* 7-10 years of experience in cybersecurity engineering for DoD or military systems.
* DoD IAT II or above certification required (e.g., Security+, CISSP).
* Experience in network security analysis, packet inspection, and threat hunting.
* Proficiency in SIEM operations, alert triage, and forensic/malware behavior analysis.
* Experience with RMF documentation and compliance auditing.
* Familiarity with frameworks such as kill chain and ATT&CK models.
* Strong communication and briefing skills for both technical and non-technical audiences.
* TS/SCI clearance required.
Additional Skills:
* Ability to engineer innovative cybersecurity solutions tailored to operational needs.
* Strong analytical skills to assess risks and develop mitigation strategies.
* Proficiency with Microsoft Office Suite and cybersecurity tools.
* Attention to detail in documentation, compliance, and reporting requirements.
Location:
Primary workplace is MARCENT Headquarters, MacDill Air Force Base, Tampa, Florida.
Work Environment:
Office environment within a joint military/civilian/contractor staff. Includes coordination with cybersecurity teams, IT personnel, and external DoD partners.
Physical Demands:
Primarily sedentary office work with extensive computer use. May involve occasional travel to support cybersecurity inspections, training, or incident response activities.
Work Schedule:
Full-time, 40 hours per week. Monday-Friday, 0800-1600.
May require flexibility during cybersecurity incidents or system upgrades.
License and Other Requirements:
Valid U.S. Driver's License. Eligibility for issuance of a Common Access Card (CAC).
Salary and Benefits:
As stated during the hiring process.
Security Clearance:
TS/SCI clearance required.
Travel:
May include CONUS and OCONUS travel to support cybersecurity operations, training, and system sustainment.
Program Security Analyst
Security engineer job in Tampa, FL
Applied Research Solutions has an exciting new opportunity for a Program Security Analyst in support of Special Operations Forces Acquisition, Technology and Logistics' (SOF AT&L) Program Executive Office for SOF Warrior (PEO-SW). PEO-SW accepts and manages risk, takes personal initiative, and ensures results for the Nation's warriors. PEO-SW proves its worth in the fight in every action, every strike, and every operation. SOF Warrior executes with a sense of urgency and purpose in support of SOF operations every day.
**Why Work with us?**
Applied Research Solutions (ARS) is respected as a world-class provider of technically integrated solutions as we deliver premier talent and technology across our focused markets for unparalleled, continuous mission support. Awarded a Best Places to Work nominee since 2020, ARS recognizes that without our career- driven, loyal professionals, we would not be able to deliver state-of-the-art results for our mission partners. We firmly believe that prioritizing our employees is of the upmost importance. We provide a culture where our employees are challenged to meet their career goals and aspirations, while still obtaining a work/life balance. ARS employees are motivated through our industry competitive benefits package, our awards and recognition program, and personalized attention from ARS Senior Managers.
**Responsibilities Include:**
+ Support the Government Program Security Manager (PSM), Program Security Officer (PSO), and Special Access Program (SAP) Security Officer (GSSO)
+ Responsible for supporting security administration, management, and operations of DoD Special Access Programs and SAP facilities (SAPFs) managed by USSOCOM SOF AT&L Acquisition Security Directorate
+ Create and maintain secure environments for the execution of SAP acquisition programs.
+ Coordinate security matters for and with the Program Security Officer and the Government Program Manager when needed
+ Coordinate with internal and external stakeholders, including Other Government Agencies, to ensure protection of critical program information, execution of classified acquisition programs in accordance with approved Security Classification guides and Program Protection Plans
+ Facilitates compliance with OSD SAP Central Office and ASD(SO/LIC) SAPCO program policies and procedures based on changes to regulations and ongoing SAP transition activities.
+ Ability to establish performance goals and assess progress toward their achievement
+ Adjust work operations and program objectives to meet emergencies, changing programs, or production requirements within available resources
+ Other duties as assigned.
**Qualifications/Technical Experience Requirements:**
**Citizenship:** Must be a US citizen
**Clearance:** Must possess and maintain a TS w/SCI clearance
**Must have SAP Experience**
**Certifications:**
+ Center for Development and Security Excellence (CDSE) Security Fundamentals Professional Certification (SFPC)
+ CDSE Special Program Security Credential (SPSC)
**Education:** Bachelor's degree in acquisition/business, or related field
**Years of Experience:** Minimum 10 years working in federal government classified acquisition projects to include:
+ Facilitates compliance with OSD SAP Central Office and ASD(SO/LIC) SAPCO program policies and procedures based on changes to regulations and ongoing SAP transition activities
+ Creation and maintenance of secure environments for the execution of SAP acquisition programs.
+ supporting security administration, management, and operations of DoD Special Access Programs and SAP facilities (SAPFs)
All positions at Applied Research Solutions are subject to background investigations. Employment is contingent upon successful completion of a background investigation including criminal history and identity check.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans, and requires affirmative action by covered contractors and subcontractors to employ and advance in employment qualified protected veterans.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights (**************************** notice from the Department of Labor.
Security Systems Field Laborer
Security engineer job in Tampa, FL
At LaForce, we specialize in delivering access control, video surveillance, and intercom solutions that keep people and businesses secure. We're looking for a dedicated and skilled Security Integration Field Laborer in our Tampa, FL location to join our team. This role assists with installing and maintaining access control systems, video surveillance, and other electro-mechanical security products for commercial businesses.
What You'll Do:
As a Field Laborer, you will help with ensuring secure and functional installations for our customers. Every day will bring new challenges, from problem solving complex technical issues to learning new technologies in the security industry. Your day-to-day will include:
* Helping with installing and programming access control systems, CCTV, intercoms, security systems, and electrical hardware with precision and efficiency.
* Troubleshooting and adjusting new or existing systems to meet customer needs.
* Safely handling disassembly and removal of electrical products and door hardware.
* Training customers on new and existing systems and software.
* Producing quality results on time and within budget, representing the company professionally, and fostering strong customer relationships.
* Helping with accurate wiring diagrams upon project completion for future reference.
* Maintaining clear, professional communication with customers, sales staff, and supervisors.
* Operating a company vehicle safely and respectfully in accordance with company policy.
What You'll Bring:
We welcome applicants with technical certificates, equivalent professional experience, or relevant military experience in electrical or mechanical fields. The ideal candidate has knowledge of low-voltage electrical wiring, the ability to read wiring diagrams and blueprints, strong problem-solving skills, and a valid driver's license with a clean record.
Physical Requirements
This role demands physical stamina and precision, including:
* Frequently standing, walking, climbing ladders, and lifting up to 40 pounds.
* Occasionally carrying loads up to 75 pounds
* Performing tasks requiring elevated activity.
Why Join LaForce?
At LaForce, you're part of a team dedicated to growth, innovation, and excellence. From competitive pay to a supportive culture that values your ideas, we're here to help you thrive. You'll receive a cell phone stipend, company-provided tools, and comprehensive hands-on training.
How to Apply
Screening includes a drug test, background check, and driver's license verification. If you're passionate about security systems and looking to make a difference in the field, apply today! We look forward to meeting you!
Senior Security Analyst/ Asst. COMSEC Custodian - St. Pete/Largo, FL
Security engineer job in Saint Petersburg, FL
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
At Raytheon, the foundation of everything we do is rooted in our values and a higher calling - to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. Our team solves tough, meaningful problems that create a safer, more secure world.
Job Summary
Raytheon has an immediate opening for a Sr. Industrial Security Specialist/Alt COMSEC Custodian position located onsite in St. Petersburg, Florida.
This is a multi-faceted Industrial Security position working within a fast-paced, deadline driven environment. The candidate will help develop, administer and maintain a comprehensive security program in accordance with the 32 CFR Part 117, National Industrial Security Program Operating Manual (NISPOM) and the COMSEC Policy Manual 3-16.
What You Will Do
Perform various employee in-processing/out-processing security briefings/debriefings.
Process classified visits, incoming and outgoing.
Update security personnel access lists and databases accordingly.
Maintain classified document control/accountability of classified media shipped and received.
Receipt, custody, issue, safeguarding and accounting of COMSEC keying material and Controlled Cryptographic Items (CCI) IAW COMSEC Policy Manual 3-16.
Data entry and maintenance of the Distributed INFOSEC Accounting System (DIAS).
Submission of all required accounting reports, semi-annual and yearly audits and inspections
Assist with implementing Security Education and Media Control Plan
Assist with the implementation of local Standard Operating Procedures (SOP) and Operations Security (OPSEC) Plans, and Concept of Operations (CONOPs), etc.
Participate in a team environment to develop, update, and implement security policies and procedures in coordination with the company policies and government regulations.
Perform additional Industrial Security duties as needed.
Must able to obtain a Top Secret government security clearance within six months of employment.
Qualifications You Must Have
Typically requires a Bachelor's Degree or equivalent experience and minimum of two (2) years prior relevant security experience, or An Advanced Degree in a related field.
Experience with 32 CFR 117, DoD 5220.22-M (NISPOM) and COMSEC Policy 3-16
Experience in Industrial Security and COMSEC, working in a manufacturing environment
Qualification We Prefer
Knowledge of DISS and NISS
Knowledge of Distributed INFOSEC Accounting System (DIAS) software
Ability to communicate well with others both verbally and in writing
Completion of the
FSO Program Management for Possessing Facilities
IS030.CU curriculum located on the Defense Counterintelligence and Security Agency's (DCSA) Security Training, Education and Professionalization Portal (STEPP).
ISP Certification
What We Offer
Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Safety, Trust, Respect, Accountability, Collaboration, and Innovation.
This position is not eligible for relocation.
Learn More & Apply Now!
Please consider the following role type definition as you apply for this role. Onsite: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 66,000 USD - 130,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplyManager of Information Security
Security engineer job in Tampa, FL
Compensation: $110,000 - $150,000 based on experience and credentials Position Type: Full Time The IT Security Operations Manager oversees the operations of Suncoast Credit Union's security solutions. This individual establishes an enterprise security stance through policy implementation, architecture, and training processes. Key responsibilities include selecting appropriate security solutions and overseeing vulnerability audits and assessments. An ideal candidate is an ambassador who will interface with peers in the Systems and Network departments, along with other leaders, to share the organization's security vision and solicit involvement in achieving higher levels of enterprise security.
Responsibilities
* Create and maintain the security architecture design
* Budget, evaluate, and recommend solutions to current or potential security threats related to the computing environment
* Lead the design, implementation, operation, and maintenance of the Information Technology Security Framework based on the SANS Top 20 Critical Controls
* Ensure the confidentiality, integrity, and availability of data residing on or transmitted through enterprise workstations, servers, databases, and other data repositories
* Create and maintain the enterprise's security documents for standards, baselines, guidelines, and procedures
* Ensure the enforcement of enterprise security documents
* Collaborate with the Systems and Networking groups and other business units to ensure enterprise-wide understanding of security goals, solicit feedback, and foster cooperation
* Assist with the security awareness training program
* Select and acquire additional security solutions or enhancements to existing security solutions to improve overall enterprise security within the enterprise's existing procurement processes
* Oversee the deployment, integration, and initial configuration of new security solutions and enhancements to existing security solutions
* Supervise the design and execution of vulnerability assessments, penetration tests, and security audits
* Review and recommend new methods or procedures to make daily operations more efficient
* Set goals and objectives for team members to achieve operational and strategic results
* Direct and guide supervisors
* Develop and mentor directly reporting staff and respond appropriately to feedback or concerns
* Cultivate strong working relationships and build trust among team members
* Interpret and implement management policies, utilizing short-term planning, scheduling, and coordinating for the department
* Assist senior management with developing and implementing long-term and short-term business objectives
* Develop, monitor, and maintain the department budget in cooperation with senior management
* Assist the Vice President with regulatory compliance to ensure the department is in accordance with applicable laws and government regulations
* Maintain knowledge and understanding of current trends, laws, and issues affecting the area of expertise
Qualifications
* Bachelor's degree in information technology, information security, or related field (A comparable combination of education, work experience, and training may be substituted for education requirements)
* 7+ years of experience in enterprise security architecture design and enterprise security document creation, including management experience
* Ability to temporarily relocate out of state to provide support for business continuity during major incidents such as weather events
* Experience with designing and delivering employee security awareness training
* Experience with developing Business Continuity Plans and Disaster Recovery Plans
* Experience with various network protocols, firewalls, vulnerability assessment, penetration testing tools, remote access, network vulnerabilities, endpoint systems, vulnerabilities, and network management tools
* Strong understanding of IP, TCP/IP, and other network administration protocols.
* Proficient knowledge of security policies, standards, and procedures
* Ability to prioritize tasks by effectively managing competing and changing priorities to meet deadlines
* Accurate, detail-oriented, and organized with task management
* Ability to analyze and resolve complex problems
* Strong written, verbal, and interpersonal communication skills to interact effectively with members, staff, vendors, and government regulators
* Ability to influence others regarding policies, practices, and procedures
Benefits
* Financial Well-Being: Bonus Program up to 18%, 401K Matching up to 8%, Retirement Planning, Pay Increases based on Competency, Employee Loan Discounts, Flex Spending Accounts
* Wellness: Medical Coverage, Dental and Vision Coverage, Access to 4,000+ Gyms, Mental Health Resources, PTO Wellness Days, Short Term and Long Term Disability Coverage
* Work-Life Balance: 11 Paid Holidays, 3 weeks of Paid Time Off, 4 weeks of Paid Parental Leave, Birthday PTO
* Community Involvement: Paid Volunteer Hours
* Growth: Degree Assistance up to $5,000 per year
For more information, including additional benefits, please visit our benefits website at ************************************************
Responsibilities
* Create and maintain the security architecture design
* Budget, evaluate, and recommend solutions to current or potential security threats related to the computing environment
* Lead the design, implementation, operation, and maintenance of the Information Technology Security Framework based on the SANS Top 20 Critical Controls
* Ensure the confidentiality, integrity, and availability of data residing on or transmitted through enterprise workstations, servers, databases, and other data repositories
* Create and maintain the enterprise's security documents for standards, baselines, guidelines, and procedures
* Ensure the enforcement of enterprise security documents
* Collaborate with the Systems and Networking groups and other business units to ensure enterprise-wide understanding of security goals, solicit feedback, and foster cooperation
* Assist with the security awareness training program
* Select and acquire additional security solutions or enhancements to existing security solutions to improve overall enterprise security within the enterprise's existing procurement processes
* Oversee the deployment, integration, and initial configuration of new security solutions and enhancements to existing security solutions
* Supervise the design and execution of vulnerability assessments, penetration tests, and security audits
* Review and recommend new methods or procedures to make daily operations more efficient
* Set goals and objectives for team members to achieve operational and strategic results
* Direct and guide supervisors
* Develop and mentor directly reporting staff and respond appropriately to feedback or concerns
* Cultivate strong working relationships and build trust among team members
* Interpret and implement management policies, utilizing short-term planning, scheduling, and coordinating for the department
* Assist senior management with developing and implementing long-term and short-term business objectives
* Develop, monitor, and maintain the department budget in cooperation with senior management
* Assist the Vice President with regulatory compliance to ensure the department is in accordance with applicable laws and government regulations
* Maintain knowledge and understanding of current trends, laws, and issues affecting the area of expertise
Qualifications
* Bachelor's degree in information technology, information security, or related field (A comparable combination of education, work experience, and training may be substituted for education requirements)
* 7+ years of experience in enterprise security architecture design and enterprise security document creation, including management experience
* Ability to temporarily relocate out of state to provide support for business continuity during major incidents such as weather events
* Experience with designing and delivering employee security awareness training
* Experience with developing Business Continuity Plans and Disaster Recovery Plans
* Experience with various network protocols, firewalls, vulnerability assessment, penetration testing tools, remote access, network vulnerabilities, endpoint systems, vulnerabilities, and network management tools
* Strong understanding of IP, TCP/IP, and other network administration protocols.
* Proficient knowledge of security policies, standards, and procedures
* Ability to prioritize tasks by effectively managing competing and changing priorities to meet deadlines
* Accurate, detail-oriented, and organized with task management
* Ability to analyze and resolve complex problems
* Strong written, verbal, and interpersonal communication skills to interact effectively with members, staff, vendors, and government regulators
* Ability to influence others regarding policies, practices, and procedures
Benefits
* Financial Well-Being: Bonus Program up to 18%, 401K Matching up to 8%, Retirement Planning, Pay Increases based on Competency, Employee Loan Discounts, Flex Spending Accounts
* Wellness: Medical Coverage, Dental and Vision Coverage, Access to 4,000+ Gyms, Mental Health Resources, PTO Wellness Days, Short Term and Long Term Disability Coverage
* Work-Life Balance: 11 Paid Holidays, 3 weeks of Paid Time Off, 4 weeks of Paid Parental Leave, Birthday PTO
* Community Involvement: Paid Volunteer Hours
* Growth: Degree Assistance up to $5,000 per year
For more information, including additional benefits, please visit our benefits website at ************************************************
Auto-ApplySenior Security Systems Analyst
Security engineer job in Tampa, FL
Introduction This is highly responsible work in system and security administration across a variety of computer platforms and departments. Nature Of Work The Senior Security Systems Analyst plays a crucial role in safeguarding the integrity, confidentiality, and availability of sensitive information within the City of Tampa's digital infrastructure. As a key member of the Technology & Innovation Security Office, the incumbent will be responsible for designing, implementing, and maintaining robust security systems to protect against cyber threats, ensuring compliance with regulatory standards, and responding to security incidents. The Senior Security Systems Analyst will collaborate with various departments to assess security needs, recommend solutions, and contribute to the overall enhancement of the City of Tampa's cybersecurity posture.
Examples of Duties
Develops, implements, and maintains security architectures for critical systems and networks.
Designs and oversees the implementation of security measures to protect digital assets and sensitive information.
Monitors and analyzes security alerts, incidents, and vulnerabilities.
Conducts regular security assessments and penetration tests to identify and address potential weaknesses.
Responds promptly to security incidents and provides detailed post-event analyses.
Contributes to the development and enforcement of security policies, standards, and procedures.
Ensures compliance with relevant regulatory requirements and industry best practices.
Collaborates with other IT staff and departments to integrate security measures into the overall IT architecture.
Provides training and awareness programs to educate staff on security best practices.
Assess and prioritizes security risks, recommending appropriate mitigation strategies.
Conducts regular risk assessments and audits to identify and address potential vulnerabilities.
Leads the response to security incidents, including coordinating with internal and external stakeholders.
Conducts thorough investigations into security breaches, documenting findings and recommending corrective actions.
Evaluates and manages third-party security vendors and tools.
Collaborates with vendors to implement and maintain security solutions.
Knowledge, Skills & Abilities
Extensive knowledge of: cybersecurity principles, practices, and technologies; conducting internal security audits and assessments; conducting comprehensive risk assessments and presenting findings to stakeholders; coordinating with vendors and external partners to implement security solutions; implementing and managing security technologies, including firewalls, antivirus software, intrusion detection systems, and endpoint protection solutions.
Knowledge of: developing, implementing, and enforcing security policies, standards, and procedures; identifying and implementing improvements to enhance the overall security posture of the organization; security frameworks such as NIST, ISO 27001, and CIS Critical Security Controls; leading incident response efforts, including the ability to analyze and contain security incidents effectively.
Ability to: assess and prioritize security risks, understanding their potential impact on the organization; communicate technical details to non-technical stakeholders during incident response efforts; understand regulatory requirements applicable to government entities and the ability to ensure compliance; provide security training and awareness programs for staff; prioritize and manage multiple tasks efficiently, meeting deadlines and delivering high-quality results; troubleshoot and resolve security incidents promptly; pursue relevant certifications and professional development opportunities; staying current with emerging cybersecurity threats, trends, and technologies.
Skills in: critical thinking and a proactive approach to identifying and addressing security vulnerabilities; developing and implementing risk mitigation strategies and controls; conducting thorough security investigations, documenting findings, and recommending corrective actions; managing security projects from inception to completion; strong interpersonal skills for effective collaboration with cross-functional teams and various departments; strong analytical skills to assess complex security issues and provide effective solutions; excellent written and verbal communication skills to articulate complex security concepts to both technical and non-technical audiences.
Physical Requirements
Mostly sedentary, indoors, requires extended use of computer, typing and viewing monitor.
Minimum Qualifications
Bachelor's degree in Information Technology, Computer Science, or a related field. Proven experience (minimum of 5 years) in a senior-level security role, preferably within a government or public sector environment.
Licenses or Certifications
Possession of a valid drivers license may be required.
Relevant certifications (e.g., CISSP, CISM, or equivalent) is preferred.
Examination
Evaluation of education and experience. Drug testing is included in all pre-employment processing.
Comments
Employees may be required to work rotating shifts, including nights, weekends, holidays, and overtime as needed. During periods when the Mayor issues an emergency declaration for the City of Tampa, all employees may be required to work in preparation, response or recovery activities related to the stated emergency.
Conclusion
HELPFUL HINTS FOR COMPLETING YOUR APPLICATION: Please register before you begin the application process. This will enable you to view and re-use information from previously submitted applications to complete and submit any future applications. Please make certain your application is complete and the information you provide clearly demonstrates that you possess the minimum job qualifications as stated in the job announcement. Resumes can be submitted in support of an application, but not in lieu of an application. Resumes and copies of certifications or other required documents may be attached to your online application.
Program Security Analyst
Security engineer job in Tampa, FL
Applied Research Solutions has an exciting new opportunity for a Program Security Analyst in support of Special Operations Forces Acquisition, Technology and Logistics' (SOF AT&L) Program Executive Office for SOF Warrior (PEO-SW). PEO-SW accepts and manages risk, takes personal initiative, and ensures results for the Nation's warriors. PEO-SW proves its worth in the fight in every action, every strike, and every operation. SOF Warrior executes with a sense of urgency and purpose in support of SOF operations every day.
Why Work with us?
Applied Research Solutions (ARS) is respected as a world-class provider of technically integrated solutions as we deliver premier talent and technology across our focused markets for unparalleled, continuous mission support. Awarded a Best Places to Work nominee since 2020, ARS recognizes that without our career- driven, loyal professionals, we would not be able to deliver state-of-the-art results for our mission partners. We firmly believe that prioritizing our employees is of the upmost importance. We provide a culture where our employees are challenged to meet their career goals and aspirations, while still obtaining a work/life balance. ARS employees are motivated through our industry competitive benefits package, our awards and recognition program, and personalized attention from ARS Senior Managers.
Responsibilities Include:
Support the Government Program Security Manager (PSM), Program Security Officer (PSO), and Special Access Program (SAP) Security Officer (GSSO)
Responsible for supporting security administration, management, and operations of DoD Special Access Programs and SAP facilities (SAPFs) managed by USSOCOM SOF AT&L Acquisition Security Directorate
Create and maintain secure environments for the execution of SAP acquisition programs.
Coordinate security matters for and with the Program Security Officer and the Government Program Manager when needed
Coordinate with internal and external stakeholders, including Other Government Agencies, to ensure protection of critical program information, execution of classified acquisition programs in accordance with approved Security Classification guides and Program Protection Plans
Facilitates compliance with OSD SAP Central Office and ASD(SO/LIC) SAPCO program policies and procedures based on changes to regulations and ongoing SAP transition activities.
Ability to establish performance goals and assess progress toward their achievement
Adjust work operations and program objectives to meet emergencies, changing programs, or production requirements within available resources
Other duties as assigned.
Qualifications/Technical Experience Requirements:
Citizenship: Must be a US citizen
Clearance: Must possess and maintain a TS w/SCI clearance
Must have SAP Experience
Certifications:
Center for Development and Security Excellence (CDSE) Security Fundamentals Professional Certification (SFPC)
CDSE Special Program Security Credential (SPSC)
Education: Bachelor's degree in acquisition/business, or related field
Years of Experience: Minimum 10 years working in federal government classified acquisition projects to include:
Facilitates compliance with OSD SAP Central Office and ASD(SO/LIC) SAPCO program policies and procedures based on changes to regulations and ongoing SAP transition activities
Creation and maintenance of secure environments for the execution of SAP acquisition programs.
supporting security administration, management, and operations of DoD Special Access Programs and SAP facilities (SAPFs)
All positions at Applied Research Solutions are subject to background investigations. Employment is contingent upon successful completion of a background investigation including criminal history and identity check.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability, and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans, and requires affirmative action by covered contractors and subcontractors to employ and advance in employment qualified protected veterans.
Cyber Security Vulnerability Management Engineer
Security engineer job in Tampa, FL
Responsible for the performance of highly complex cyber security functions related to the design, installation, maintenance, auditing, investigation, and assessment of software applications, networks, and the County's enterprise level information systems. Responsible for proactively identifying and implementing security measures to prevent emerging vulnerabilities, utilizing a diverse array of tools and methodologies. Incumbent will use sound judgement to assess risk, conduct audits, collect and review data, collaborate with other technology divisions, and write reports to advise leadership.
The ideal candidate is a highly analytical and detail-oriented professional with a strong foundation in network security, threat detection, and incident response. They possess a deep understanding of security protocols, firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM platforms, endpoint protection technologies, and vulnerability and exposure management processes. The candidate should have hands-on experience with compliance and security standards such as HIPAA, PCI-DSS, NIST, and threat modeling frameworks like the MITRE ATT&CK framework. A successful Cyber Security Engineer is not only technically skilled but also an effective communicator, capable of translating complex security concepts into actionable insights for both technical and non-technical stakeholders. Certifications such as CISSP, CEH, or OSCP are highly desirable, along with a proactive mindset and a commitment to continuous learning in the ever-evolving threat landscape.
Starting Salary
$75,129 - $97,676 [max: $137,696]
Benefits
Click HERE to view our Benefits at a glance
Minimum Qualifications
Bachelor's degree from an accredited college or university with a major in information security or another similar technology field; AND
Three years of experience in information security system administration and risk assessment within an enterprise environment, encompassing third-party risk, risk analysis, risk mitigation, and residual risk management.
Three years of experience leveraging industry-leading cybersecurity tools (SIEM, EDR, vulnerability scanning, and web application security) for comprehensive threat detection and mitigation; OR
An equivalent combination of education (not less than a high school diploma/GED), training and experience that would reasonably be expected to provide the job-related competencies noted above.
Core Competencies
Customer Commitment
- Proactively seeks to understand the needs of the customers and provide the highest standards of service.
Dedication to Professionalism and Integrity
- Demonstrates and promotes fair, honest, professional and ethical behaviors that establishes trust throughout the organization and with the public we serve.
Organizational Excellence
- Takes ownership for excellence through one's personal effectiveness and dedication to the continuous improvement of our operations.
Success through Teamwork
- Collaborates and builds partnerships through trust and the open exchange of diverse ideas and perspectives to achieve organizational goals.
Duties and Responsibilities
Note: The following duties are illustrative and not exhaustive. The omission of specific statements of duties does not exclude them from the position if the work is similar, related, or a logical assignment to the position. Depending on assigned area of responsibility, incumbents in the position may perform one or more of the activities described below:
Conduct thorough assessments of software applications, networks, and systems to identify security vulnerabilities and weaknesses.
Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Collaborate with cross-functional teams to prioritize and mitigate vulnerabilities based on their potential impact and risk.
Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements.
Participate in designing and implementing security measures to prevent future vulnerabilities.
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Assist in incident response activities, analyzing security incidents to determine the root cause and providing recommendations for prevention.
Use frameworks such as MITRE ATT&CK to map adversary tactics and techniques and design hunting scenarios based on threat actor behavior.
Collaborate with incident response teams to validate incidents, identify root causes, and assist with post-mortem analysis.
Other related duties as assigned.
Job Specifications
Critical Thinking:
Exceptional critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Decision Making:
Demonstrates high personal integrity and the ability to handle confidential matters with sound judgment and professionalism.
Communication:
Proficient communication skills to effectively collaborate with both technical and non-technical stakeholders. Provide detailed reports outlining vulnerabilities, including their potential impact and recommendations for remediation.
Strategic Planning:
Stay updated with the latest security threats, attack vectors, and industry best practices to identify and address emerging vulnerabilities proactively.
Managerial/ Operational Skills:
Work closely with developers and system administrators to verify implementation of security patches, fixes, and improvements. Participate in designing and implementing security measures to prevent future vulnerabilities.
Leadership:
Capable of serving as a Cyber Security Subject Matter Expert (SME) for externally managed technology projects from various departments.
Analytical Ability:
Excellent critical thinking and situational awareness skills to identify systemic security issues through vulnerability and configuration data analysis.
Managing Complexity:
Extensive knowledge of cybersecurity best practices, including familiarity with CIS Critical Controls, NIST Cybersecurity Framework (CSF), MITRE ATT&CK Framework. Utilize various tools and methodologies to perform vulnerability scanning, penetration testing, and code review.
Other:
Hands-on experience in incident response and recovery, utilizing MITRE and security best-practice assessment methodologies.
Physical Requirements
Speaking, vision, hearing, sitting, and standing. Use of office machinery such as PCs, Smart Phones, Tablets, and multi-function devices.
Work Category
Sedentary Work - Exerting up to 10 pounds of force occasionally, and/or a negligible amount of force frequently or constantly to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Emergency Management Responsibilities
In the event of an emergency or disaster, an employee may be required to respond promptly to duties and responsibilities as assigned by the employee's department, the County's Office of Emergency Management, or County Administration. Such assignments may be for before, during or after the emergency/disaster.
Auto-Apply