Resident Network Engineer
Security engineer job in Worcester, MA
Job Description/Purpose:
This is an Onsite role and the Resident Engineer's work location would be 474 Main St, Worcester, MA 01608.
Reporting to the Manager of Advanced Services, this is a highly technical role, providing post-sales support of Junipers Network Products. The Resident Engineer will reside at customer location and is expected to have expertise on Juniper products deployed or to be deployed within the customer's service provider network and provide technical and operational support on network issues, on-going certification and testing efforts.
Typical Activities:
Day to day support and troubleshooting for network issues
Applying industry best practices to the design, planning, and implementation of the network and the tools driving it
Applying extensive industry experience to optimize network performance and proactively analyze potential enhancements
Understand concepts of modeling design optimization
Key Responsibilities:
This may require long work hours or occasional on call weekend support. Technical support to the customer may require the Resident Engineer to:
Understand the customer's organizational structure and become familiar with the customer's network implementation and support processes and procedures to help in designing a network that is available and sustainable.
To hold network information gathering workshops with the Customer to understand the Customer's existing network design and technical requirements of new network designs.
Carry out testing of new tools, features, and functionality as required by the customer in a laboratory environment and to help develop plans to implement and verify that they are operating correctly in the live network
Test patches and fixes to operating software and to ensure that they are implemented and functioning correctly in the pre-production test network and then live network as implementation plans dictate.
Hold technology workshops with the customer to discuss equipment and network problems, and to provide case status updates, including the reasons for any problems encountered and the workarounds and/or solutions that are being tried
Support design and planning of Juniper MX, QFX, EX series and associated solutions within customer's commercial network
Support ongoing efforts in defining best practice policies for Juniper product applications used by customer
To peer with other employees performing similar Resident Engineering roles where lessons learned may help minimize risk associated with major network upgrades or changes in the network.
The RE will be expected to develop secondary skills in other products in the Juniper product portfolio.
Skills and Experience:
Preferred candidates for this position should have a Bachelor's Degree in Engineering or Computer Science with JNCIE certification. Candidates for this role MUST have a minimum 5 years experience providing implementation and technical support of networking products in LAN, WAN, or Internet services environments with either a technology vendor or a service provider environment.
Candidates should be able to demonstrate the following competencies:
Strong interpersonal skills.
Demonstrated ability to break-down work activity to achieve project goals
Demonstrated ability to communicate project status and identify risk
The ability to work independently and to function in a team environment.
Strong customer interface and presentation skills
Demonstrated ability to manage multiple projects and work calmly under pressure.
Programming and scripting experience preferred (Python, Ruby, shell, awk, slax, etc…)
Familiar with operation of management tools and network analyzers.
Trend analysis to help deliver more efficient solutions to customer network
An understanding of the protocols surrounding IP service provider networks. These skills include but are not limited to:
IP/Routing experience (OSPF, ISIS, BGP, MPLS-TE, RSVP, LDP, IPv6, Routing Policy)
Understanding of Multicast strongly preferred
Routing protocol operation, migration, and scaling mechanisms
Routing policies at BGP peering points
VPNs and the associated tunneling technologies (MPLS,EVPN, L3VPN, VPLS)
Ethernet switching and 802.1Q, QOS
Software Define Networking (SDN)
Focal Technologies:
The ideal candidate for this role should be able to demonstrate the following competencies:
Service Provider architecture experience
JUNOS CLI experience across MX, QFX, EX series
Must understand BGP and route reflector topologies
Must be able to communicate effectively and technically with internal JTAC, Escalation and Engineering teams.
Must be able to communicate effectively with the customer.
Scripting skills (Slax, Python, Ansible)
Test equipment (such as Spirent, Agilent N2X, and Ixia) a plus
Network management tools such as SNMP, Syslog, etc.
JNCIE- SP Preferred.
Desired Experience 7-10 yrs
Network Engineer
Security engineer job in Waltham, MA
Length: 6 months + (temp to perm potential)
24x7 support team with on-call rotation
Skills
The infrastructure services engineer will provide reliable and flexible support to all components of client's infrastructure, including systems, networking, data center operations, cloud infrastructure, telecom, and others. This role will be dedicated to maintenance and management of these systems, as well as responding to all alerts to ensure maximum reliability.
Skills
3+ years' experience with a variety of infrastructure tools (VMWare, Cisco, Windows Server OS, etc.)
Experience with public cloud providers (AWS, Azure) and associated infrastructure management a plus
Knowledge of networking protocols and technologies (DNS, DHCP, SNMP, TCP/IP)
Solid knowledge of and previous experience using scripting technologies (PowerShell or Python)
Thorough understanding of managing servers in large corporate settings, covering security protocols, compliance with policies, and handling exceptions or changes
Excellent communication and documentation skills
Ability to work well as part of a large team
Proven ability to troubleshoot and resolve production issues while making sensible decisions in times of stress
Product Security Engineer, Instagram
Security engineer job in Providence, RI
The Instagram Security Ecosystems team is seeking a product-focused security engineer interesting in enabling Instagram product teams to develop features with a focus on security and user safety. You will be relied upon to directly work with Instagram engineers, hardening both product features and our protective frameworks that make life harder for bad actors on the Instagram platform.
**Required Skills:**
Product Security Engineer, Instagram Responsibilities:
1. Threat Modeling and Security Architecture: Work directly with product managers and technical leads on threat models and security architecture for novel Instagram features or products
2. Security Reviews: Perform manual design and implementation reviews of web, mobile, and native code
3. Developer Guidance: Provide guidance and education to developers that help prevent the authoring of vulnerabilities
4. Automated Analysis and Secure Frameworks: Work with other security teams to improve Instagram's static and dynamic analysis and frameworks to scale coverage
5. Bug Bounty: Help provide technical guidance to our world class bug bounty program and independent security researchers
6. Industry Impact: Push the industry forward through conference talks and open source projects to contribute broadly to security for the world
**Minimum Qualifications:**
Minimum Qualifications:
7. B.S. or M.S. in Computer Science, Cybersecurity, or related field, or equivalent experience
8. 8+ years of experience finding vulnerabilities in interpreted languages (Python, PHP)
9. Extensive, proven experience in threat modeling and secure systems design
10. Experience with exploiting common security vulnerabilities
**Preferred Qualifications:**
Preferred Qualifications:
11. Product software engineering or product management experience
12. Experience in security consulting or other leadership-facing security advisory roles
13. Familiarity with cybersecurity investigations, abuse operations, and/or security incident response
14. Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
**Public Compensation:**
$177,000/year to $251,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Infrastructure Security Engineer - 4pm - midnight shift
Security engineer job in Foxborough, MA
Select Cyber, an Information Security recruitment specialty firm, seeks to fill the following role for our client:
Information Security Analyst
Responsibilities :
Must have the ability to support a flexible schedule in support of 7x24 staff and on-call responsibilities.
Responsibilities include the construction of networks from existing design diagrams and documents as-build updates.
Pre and Post-deployment responsibilities include strong understanding and adherance to customer change management processes, change requests, integration, support/troubleshooting, upgrades, and scaling to meet demand.
The candidate will proactively scan, patch, upgrade, model, document, backup, protect and expand the network.
Work with vendors to resolve problems via ticketing portals and escalating issues to team lead and/or management as needed.
Strong experience with Linux and Windows operating system upgrades and patches.
Ability to solve problems quickly and automate processes.
A solid understanding of networking/distributed computing environment concepts;
Understands principles of routing
Must be well versed in TCP/IP, IPSec, VLANs, system hardening, and troubleshooting.
Requirements:
Bachelor's degree or equivalent and 5+ years of related experience in a 7x24 operations environment.
Strong Networking background combined with Strong Security
5-7 years of Network Security Engineering experience or relevant certifications such as CCNP, CCNA, SANS, CISSP, etc.
Expert level knowledge of installing, deploying, documenting, and troubleshooting firewall products, such as Junipers, Fortinet, Stonesoft, Palo Alto, Cisco.
Strong interpersonal and communications skills
Strong ability to solve problems quickly and automate processes.
A solid understanding of networking/distributed computing environment concepts; understands principles of routing
Experience with firewall products
Experience with securing an enterprise environment
Experience with enterprise class security networking technologies
OT Security Engineer
Security engineer job in Cambridge, MA
Site Name: USA - Massachusetts - Cambridge Are you looking for an opportunity to enhance your project management expertise within a cutting-edge global environment? If so, this Facilities Engineering Manager role could be an ideal opportunity to explore.
As OT Security Engineer you will provide technical expertise and implementation resources for all automation and control systems activities on new and existing equipment and facilities in the New England Region.
This role will provide YOU the opportunity to lead key activities to progress YOUR career, these responsibilities include some of the following:
* Liaising with the Site Team with assets residing on the OT with aiding in reviews, audits and any questions / queries with relation to OT security
* Maintaining the OT security standard requirements on the identified workstreams OT
* Ensuring vendors are managed appropriately at site in terms of OT security compliance
* Responsible for OT security related works in the identified workstream, including Capital Projects, to ensure they comply with the GSK OT Security standards, guidance, processes and procedures
* Support delivery of cyber security training to the site
* Responsible for engaging with GSK OT teams to deliver projects or provide service
* Responsible for input into improvement strategies to deliver business benefits.
* Responsible for providing technical input during solution design, development, testing and implementation
* To act as an OT Network Technical authority on related matters where required
* To act as an advocate for OT Cybersecurity, enabling supply divisions to maximize the exploitation of technology
Why you?
Basic Qualifications:
We are looking for professionals with these required skills to achieve our goals:
* Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related field.
* 5+ years of experience in cybersecurity, with at least 2 years focused on OT environments.
* Knowledge of ICS, SCADA, and OT security principles.
* Familiarity with OT protocols (e.g., Modbus, OPC, DNP3) and security tools (e.g., Splunk, Palo Alto Networks, Siemens TIA Portal).
* Experience with regulatory frameworks such as NIST, IEC 62443, and ISO 27001.
Preferred Qualifications:
If you have the following characteristics, it would be a plus:
* Exposure to IT infrastructure and Cyber Security risk reduction
* Effective communication skills with the ability to interface with operational, capital projects and senior management within the organization
* Certifications such as CISSP, GICSP, or ISA/IEC 62443 Cybersecurity Expert.
* Strong problem-solving and analytical skills.
* Ability to communicate complex technical risks to non-technical stakeholders.
* Experience in the pharmaceutical or manufacturing industry is a plus.
Why GSK?
At GSK, we value the contributions of every team member and are committed to offering a supportive and dynamic work environment. Here's what you'll enjoy as part of our team:
* Purpose-Driven Work: Play a key role in protecting the systems that help us deliver life-saving medicines.
* Career Growth: Access to training, certifications, and development opportunities to advance your career.
* Inclusive Culture: Work in a collaborative and diverse environment where innovation thrives.
* Competitive Benefits: Comprehensive health coverage, retirement plans, and family-friendly perks.
#LI-GSK
We encourage you to apply if you are passionate about making a difference and have the skills to thrive in this role. Join us in creating a healthier world!
Please visit GSK US Benefits Summary to learn more about the comprehensive benefits program GSK offers US employees.
Why GSK?
Uniting science, technology and talent to get ahead of disease together.
GSK is a global biopharma company with a purpose to unite science, technology and talent to get ahead of disease together. We aim to positively impact the health of 2.5 billion people by the end of the decade, as a successful, growing company where people can thrive. We get ahead of disease by preventing and treating it with innovation in specialty medicines and vaccines. We focus on four therapeutic areas: respiratory, immunology and inflammation; oncology; HIV; and infectious diseases - to impact health at scale.
People and patients around the world count on the medicines and vaccines we make, so we're committed to creating an environment where our people can thrive and focus on what matters most. Our culture of being ambitious for patients, accountable for impact and doing the right thing is the foundation for how, together, we deliver for patients, shareholders and our people.
If you require an accommodation or other assistance to apply for a job at GSK, please contact the GSK Service Centre at ************** (US Toll Free) or *************** (outside US).
GSK is an Equal Opportunity Employer. This ensures that all qualified applicants will receive equal consideration for employment without regard to race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, genetic information (including family medical history), military service or any basis prohibited under federal, state or local law.
Important notice to Employment businesses/ Agencies
GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.
Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, GSK may be required to capture and report expenses GSK incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure GSK's compliance to all federal and state US Transparency requirements. For more information, please visit the Centers for Medicare and Medicaid Services (CMS) website at *********************************
Auto-ApplyOT Security Engineer
Security engineer job in Cambridge, MA
Are you looking for an opportunity to enhance your project management expertise within a cutting-edge global environment? If so, this Facilities Engineering Manager role could be an ideal opportunity to explore.
As OT Security Engineer you will provide technical expertise and implementation resources for all automation and control systems activities on new and existing equipment and facilities in the New England Region.
This role will provide YOU the opportunity to lead key activities to progress YOUR career, these responsibilities include some of the following:
Liaising with the Site Team with assets residing on the OT with aiding in reviews, audits and any questions / queries with relation to OT security
Maintaining the OT security standard requirements on the identified workstreams OT
Ensuring vendors are managed appropriately at site in terms of OT security compliance
Responsible for OT security related works in the identified workstream, including Capital Projects, to ensure they comply with the GSK OT Security standards, guidance, processes and procedures
Support delivery of cyber security training to the site
Responsible for engaging with GSK OT teams to deliver projects or provide service
Responsible for input into improvement strategies to deliver business benefits.
Responsible for providing technical input during solution design, development, testing and implementation
To act as an OT Network Technical authority on related matters where required
To act as an advocate for OT Cybersecurity, enabling supply divisions to maximize the exploitation of technology
Why you?
Basic Qualifications:
We are looking for professionals with these required skills to achieve our goals:
Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related field.
5+ years of experience in cybersecurity, with at least 2 years focused on OT environments.
Knowledge of ICS, SCADA, and OT security principles.
Familiarity with OT protocols (e.g., Modbus, OPC, DNP3) and security tools (e.g., Splunk, Palo Alto Networks, Siemens TIA Portal).
Experience with regulatory frameworks such as NIST, IEC 62443, and ISO 27001.
Preferred Qualifications:
If you have the following characteristics, it would be a plus:
Exposure to IT infrastructure and Cyber Security risk reduction
Effective communication skills with the ability to interface with operational, capital projects and senior management within the organization
Certifications such as CISSP, GICSP, or ISA/IEC 62443 Cybersecurity Expert.
Strong problem-solving and analytical skills.
Ability to communicate complex technical risks to non-technical stakeholders.
Experience in the pharmaceutical or manufacturing industry is a plus.
Why GSK?
At GSK, we value the contributions of every team member and are committed to offering a supportive and dynamic work environment. Here's what you'll enjoy as part of our team:
Purpose-Driven Work: Play a key role in protecting the systems that help us deliver life-saving medicines.
Career Growth: Access to training, certifications, and development opportunities to advance your career.
Inclusive Culture: Work in a collaborative and diverse environment where innovation thrives.
Competitive Benefits: Comprehensive health coverage, retirement plans, and family-friendly perks.
#LI-GSK
We encourage you to apply if you are passionate about making a difference and have the skills to thrive in this role. Join us in creating a healthier world!
Please visit GSK US Benefits Summary to learn more about the comprehensive benefits program GSK offers US employees.
Why GSK?
Uniting science, technology and talent to get ahead of disease together.
GSK is a global biopharma company with a purpose to unite science, technology and talent to get ahead of disease together. We aim to positively impact the health of 2.5 billion people by the end of the decade, as a successful, growing company where people can thrive. We get ahead of disease by preventing and treating it with innovation in specialty medicines and vaccines. We focus on four therapeutic areas: respiratory, immunology and inflammation; oncology; HIV; and infectious diseases - to impact health at scale.
People and patients around the world count on the medicines and vaccines we make, so we're committed to creating an environment where our people can thrive and focus on what matters most. Our culture of being ambitious for patients, accountable for impact and doing the right thing is the foundation for how, together, we deliver for patients, shareholders and our people.
If you require an accommodation or other assistance to apply for a job at GSK, please contact the GSK Service Centre at ************** (US Toll Free) or *************** (outside US).
GSK is an Equal Opportunity Employer. This ensures that all qualified applicants will receive equal consideration for employment without regard to race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), parental status, national origin, age, disability, genetic information (including family medical history), military service or any basis prohibited under federal, state or local law.
Important notice to Employment businesses/ Agencies
GSK does not accept referrals from employment businesses and/or employment agencies in respect of the vacancies posted on this site. All employment businesses/agencies are required to contact GSK's commercial and general procurement/human resources department to obtain prior written authorization before referring any candidates to GSK. The obtaining of prior written authorization is a condition precedent to any agreement (verbal or written) between the employment business/ agency and GSK. In the absence of such written authorization being obtained any actions undertaken by the employment business/agency shall be deemed to have been performed without the consent or contractual agreement of GSK. GSK shall therefore not be liable for any fees arising from such actions or any fees arising from any referrals by employment businesses/agencies in respect of the vacancies posted on this site.
Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, GSK may be required to capture and report expenses GSK incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure GSK's compliance to all federal and state US Transparency requirements. For more information, please visit the Centers for Medicare and Medicaid Services (CMS) website at *********************************
Auto-ApplyCloud Security Engineer
Security engineer job in Waltham, MA
More than 1,000 organizations worldwide-from 25 Fortune 100 companies to small enterprises-use Bit9 + Carbon Black to increase security, reduce operational costs and improve compliance. Leading managed security service providers (MSSP) and incident response (IR) companies have made Bit9 + Carbon Black a core component of their advanced threat prevention, threat detection and incident response services. With Bit9 + Carbon Black, you can arm your endpoints against advanced threats.
Job Description
We are looking for a Cloud Security Engineer who can provide hands-on technical engineering and ownership of the growing cloud security program, across multiple providers. You will work closely with our Product Management group as well our Cloud Operations team to help build secure and robust systems responsible for serving all of Bit9 + Carbon Black customers.
Role Description:
The Cloud Security Engineer provides cyber security expertise in the analysis, assessment, development, and evaluation of security solutions and architectures to secure applications, operating systems, databases, and networks. Additionally, the Cloud Security Engineer assists in the development of cyber security requirements, conducts security risk assessments, evaluates security services and technologies, and reviews and documents information security policies and procedures as well as provides monitoring and oversight for alerts in this environment.
Key Responsibilities:
Serves as the subject matter expert (SME) on Cloud Security for Bit9 + Carbon Black
Develops standards, policies and procedures as well as best practices documentation.
Participate in efforts that tailor the company's security policies and standards for use in cloud environments
Translate security and technical requirements into business requirements, and communicate security risks to different audiences ranging from business leaders to engineers.
Propose and/or design technical solutions, which include creating prototypes and proofs of concept while maintaining a security mindset
Lead and influence multi-disciplinary teams in implementing and operating Cyber Security controls.
Work closely with application developers and database administrators to deliver creative solutions to complex technology challenges and business requirements.
Provides Info security architecture & systems engineering consulting to other IT and business teams.
Automate security controls, data and processes to provide better metrics and operational support
Utilize cloud-based APIs when appropriate to write network/system level tools for securing cloud environments
Stay current on emerging security threats, vulnerabilities and controls.
Identify and Implement new security technologies and best practices into Bit9's Cloud offerings
Evaluates new technologies against established requirements and validate the security of the technology.
Create technical and managerial level reports and risk assessments for Cloud based applications and infrastructure
Identify processes/procedures for how to handle a cloud security event, including forensic isolation and mitigation with Digital Forensics and Incident Response (DFIR/IR) teams
Supports the monitoring and maintaining network security suite of tools.
Identify new security threats by conducting continual monitoring, penetration testing, vulnerability assessments and log analysis
Qualifications
Bachelor's degree in related business or technical areas, or an equivalency of education and work experience.
Minimum of 5-7 years of IT Security and/or security engineering experience
5-7 years related experience in Computer Security, with proven focus on Cloud Security. Clear passion for cloud Security and Cloud technologies.
Must have experience with virtualization (cloud or non-cloud)
Expert knowledge of Cloud infrastructure, security architectures, and standards
Deep technical knowledge of Amazon Web Services, and FedRAMP
Able to demonstrate clear understanding of current threats to Cloud infrastructure and/or IT infrastructures at technical and managerial levels
Able to automate/script daily tasks through Python, Bash or equivalent
Experience with web-based applications or web-services
Proficient in Linux system design, automation and operations
Experience in designing and implementing standards, specifications and procedures.
Demonstrated ability to take initiative and accountability for achieving results.
Strong interpersonal, oral, and written communication skills
Knowledge of network and web related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
Skilled in discussing complex security issues in understandable business terms.
Very detailed knowledge of system security vulnerabilities and remediation techniques
Security certification desired (e.g., CISSP, GIAC, CEH, etc)
Experience using Microsoft Visio
Additional Information
About us: Cyber attacks are now the new normal. Advanced hackers, nation states, organized crime groups and nefarious actors are doing anything and everything they can to get their hands on valuable information that isn't theirs. With more than enough attack vectors out there, we at Bit9 + Carbon Black are looking for more creative and committed security professionals to protect today's top organizations.
Bit9 + Carbon Black is an equal opportunity employer.
Senior Cyber Security Analyst (42466)
Security engineer job in Smithfield, RI
Senior Cyber Security Analyst is an experienced cyber security individual who maintains the security of an organization's technical environment. They study existing security hardware and software, evaluate new security options and makes recommendations for improvement. Senior Cyber Security Analyst also identifies weak spots in a cyber security system that may be breached and creates procedures to manage threats. Senior Cyber Security Analyst monitors networks for suspicious activity and potential cyber threats. They keep up on threat intelligence, install and maintain security software and encryption. They are responsible for aiding in the planning of security systems, implementing policy and identifying business processes that may violate intended and acceptable use policies. They monitor and remediate vulnerabilities. Senior Cyber Security Analyst works on advanced, complex technical projects or business issues requiring state of the art technical or industry knowledge.
Duties and Responsibilities
Responsibilities include, but are not limited to the following:
* Assist in developing, operating, and evolving Cloud Access Security solutions and capabilities
* Performs system security administration on designated technology platforms, including operating systems, applications and network security devices, in accordance with the defined policies, standards and procedures of the organization, as well as with industry best practices and vendor guidelines
* Performs installation and configuration management of security systems and applications, including policy assessment and compliance tools, network security appliances and host-based security systems
* Performs threat and vulnerability assessments, followed by appropriate remedial action, to ensure that systems are protected from known and potential threats and are free from known vulnerabilities Research, recommend, and implement streamlined automation processes
* Develops and maintains documentation for security systems and procedures
* Conducts network monitoring and intrusion detection analysis using various computer network defense tools, such as intrusion detection/prevention systems, firewalls and host-based security systems
* Provide support to one or more projects simultaneously. Delivers projects on schedule
* Deploys cloud-centric detection to detect threats related to cloud environments and services used by the organization
* Assists and trains junior team members in the use of security tools, the preparation of security reports and the resolution of security issues
* Applies patches where appropriate and, removes or otherwise mitigates known control weaknesses, such as unnecessary services or applications or redundant user accounts, as a means of hardening systems in accordance with security policies and standards Correlates activity across assets (endpoint, network, apps) and environments (on-premises, cloud) to identify patterns of anomalous activity
* Using threat intelligence information research emerging threats and vulnerabilities to aid in the identification of incidents
* Job Knowledge - Remains up-to-date in assigned area of responsibility: possesses skills and knowledge to perform job effectively; efficiently and safely; acquires, understands, and applies technical and professional information and skills; understands and adheres to policies and procedures
* Supports the creation of security incident response, business continuity/disaster recovery plans, including conducting tests, publishing test results and making changes necessary to address deficiencies
* Analyzes problems and alternative solutions and takes appropriate timely action to achieve desired business results. Seeks unique and novel solutions to problems and considers impact of final resolution
* Perform security standards testing against computers before implementation to ensure security
* Provide Key Performance Metrics to our Risk Management team to help coordinate risk tracking.
* Educate internal teams on information security best practices.
* Assist in technical audits of IT Systems and controls.
* Other duties as assigned.
* Corporate Compliance Responsibility - As an essential function, responsible for complying with Neighborhood's Corporate Compliance Program, Standards of Business Conduct, applicable contracts, laws, rules and regulations, policies and procedures as it applies to individual job duties, the department, and the Company. This position must exercise due diligence to prevent, detect and report unlawful and/or unethical conduct by fellow co-workers, professional affiliates and/or agents
Engineer, Information Security and Risk
Security engineer job in Providence, RI
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Security Engineer
Security engineer job in Cambridge, MA
POS-7094
Job Overview: We are seeking a Security Engineer with expertise in implementing and troubleshooting security tools to enhance and support our security infrastructure. This role focuses on evaluating, deploying, and maintaining a suite of security technologies that protect our organization's assets. The ideal candidate will have extensive experience in security engineering, hands-on tool deployment, and troubleshooting complex issues within various security solutions.
Key Responsibilities:
Security Tool Implementation: Lead the planning, deployment, and configuration of security tools, ensuring they meet organizational needs and integrate seamlessly with existing systems. Experience with SASE tools such as (Netskope/Zscaler), EDR tools such as (Crowdstrike/SentinelOne), Endpoint Privilege Management, Application Allowlisting, Email Security, SIEM Management and Detection Engineering
Troubleshooting and Support: Diagnose and resolve issues with security tools in real-time to maintain their effectiveness, reduce downtime, and ensure optimal performance.
Tool Evaluation and Testing: Research, test, and recommend new security technologies based on the latest threat landscape and organizational needs. Lead proof-of-concept (POC) projects to assess potential new tools.
System Integration: Work closely with IT and other teams to ensure security tools are effectively integrated with various systems, including cloud and on-premises environments.
Automation and Optimization: Develop scripts and automation processes to improve the efficiency and reliability of security tools, minimizing repetitive tasks and reducing time-to-response.
Documentation and Knowledge Sharing: Create and maintain detailed documentation of security tool configurations, troubleshooting procedures, and best practices to ensure consistent processes and knowledge transfer.
Collaboration: Collaborate with other security teams, such as incident response and vulnerability management, to identify tool requirements, share insights, and improve overall security capabilities.
Training and Mentorship: Act as a subject matter expert on security tools, providing training and guidance to junior team members and stakeholders.
Qualifications:
Experience: 3+ years of experience in cybersecurity, with a focus on security engineering, tool deployment, and troubleshooting.
Education: Bachelor's degree in Computer Science, Information Security, or related field (or equivalent experience).
Certifications: Relevant certifications, such as CISSP, GIAC, CEH, or vendor-specific certifications for security tools (e.g., CrowdStrike, Netskope, Tenable, or similar).
Technical Skills:
Strong hands-on experience with a variety of security tools, such as endpoint protection, SIEM, vulnerability management, EDR, DLP, and network security tools.
Deep troubleshooting skills across both hardware and software security solutions.
Familiarity with scripting languages (Python, PowerShell, Bash) for automation of tasks related to tool deployment and management.
Understanding of network protocols, cloud environments, and security frameworks (MITRE ATT&CK, NIST, CIS).
Experience with configuring and managing tools in cloud environments (AWS, Azure, or GCP).
Soft Skills:
Strong analytical and problem-solving abilities with attention to detail.
Excellent communication skills to collaborate across teams and convey technical information effectively.
Ability to work independently and manage multiple projects in a fast-paced environment.
Cash compensation range: 108000-172000 USD Annually
-
Cash compensation range: 108000-172000 USD Annually
Pay & Benefits
The cash compensation below includes base salary, on-target commission for employees in eligible roles, and annual bonus targets under HubSpot's bonus plan for eligible roles. In addition to cash compensation, some roles are eligible to participate in HubSpot's equity plan to receive restricted stock units (RSUs). Some roles may also be eligible for overtime pay. Individual compensation packages are tailored to your skills, experience, qualifications, and other job-related reasons.
This resource will help guide how we recommend thinking about the range you see. Learn more about HubSpot's compensation philosophy.
Benefits are also an important piece of your total compensation package. Explore the benefits and perks HubSpot offers to help employees grow better.
At HubSpot, fair compensation practices aren't just about checking off the box for legal compliance. It's about living out our value of transparency with our employees, candidates, and community.
Annual Cash Compensation Range:$108,000-$162,000 USD
We know the
confidence gap
and
impostor syndrome
can get in the way of meeting spectacular candidates, so please don't hesitate to apply - we'd love to hear from you.
If you need accommodations or assistance due to a disability, please reach out to us using this form.
At HubSpot, we value both flexibility and connection. Whether you're a Remote employee or work from the Office, we want you to start your journey here by building strong connections with your team and peers. If you are joining our Engineering team, you will be required to attend a regional HubSpot office for in-person onboarding. If you join our broader Product team, you'll also attend other in-person events such as your Product Group Summit and other gatherings to continue building on those connections.
If you require an accommodation due to travel limitations or other reasons, please inform your recruiter during the hiring process. We are committed to supporting candidates who may need alternative arrangements
Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Germany Applicants: (m/f/d) - link to HubSpot's Career Diversity page here.
India Applicants: link to HubSpot India's equal opportunity policy here.
About HubSpot
HubSpot (NYSE: HUBS) is an AI-powered customer platform with all the software, integrations, and resources customers need to connect marketing, sales, and service. HubSpot's connected platform enables businesses to grow faster by focusing on what matters most: customers.
At HubSpot, bold is our baseline. Our employees around the globe move fast, stay customer-obsessed, and win together. Our culture is grounded in four commitments: Solve for the Customer, Be Bold, Learn Fast, Align, Adapt & Go!, and Deliver with HEART. These commitments shape how we work, lead, and grow.
We're building a company where people can do their best work. We focus on brilliant work, not badge swipes. By combining clarity, ownership, and trust, we create space for big thinking and meaningful progress. And we know that when our employees grow, our customers do too.
Recognized globally for our award-winning culture by Comparably, Glassdoor, Fortune, and more, HubSpot is headquartered in Cambridge, MA, with employees and offices around the world.
Explore more:
HubSpot Careers
Life at HubSpot on Instagram
By submitting your application, you agree that HubSpot may collect your personal data for recruiting, global organization planning, and related purposes. Refer to HubSpot's Recruiting Privacy Notice for details on data processing and your rights.
Auto-ApplySr security Engineer
Security engineer job in Woonsocket, RI
Job Overview: We are seeking a highly skilled and experienced Senior Security Engineer to join our IAM Engineering organization. The ideal candidate will have extensive solution-building experience across various Ping Identity products, including PingFederate, Ping DaVinci, PingOne, PingCentral, PingAccess, PingDirectory, AWS, and PingID Mobile. This role focuses on engineering rather than operations, and a background in Identity and Access Management (IAM) is a significant plus. Key Responsibilities:
Design, develop, and implement IAM solutions using Ping Identity products such as PingFederate, PingDaVinci, PingOne, PingCentral, PingAccess, PingDirectory, and PingID Mobile.
Architect and build secure and scalable IAM frameworks and solutions tailored to meet business and technical requirements.
Collaborate with cross-functional teams to integrate IAM solutions with various applications and systems, ensuring seamless authentication and authorization processes.
Develop and maintain AWS-based IAM solutions, leveraging cloud services to enhance security and scalability.
Provide technical leadership and mentorship to junior engineers, fostering a culture of continuous learning and innovation.
Conduct thorough security assessments and audits of IAM systems, identifying and mitigating potential risks and vulnerabilities.
Stay current with the latest trends and best practices in IAM and security engineering, applying this knowledge to improve existing solutions.
Work closely with stakeholders to understand their requirements and translate them into technical specifications and solutions.
Develop and maintain comprehensive documentation for IAM solutions, including design documents, configuration guides, and operational procedures.
Qualifications:
Bachelor's degree in computer science, Information Security, or a related field. A master's degree is a plus.
Minimum of 8+ years of overall experience in security engineering or a related field.
At least 3+ years of experience with Ping Identity products, including PingFederate, Ping DaVinci, PingOne, PingCentral, PingAccess, PingDirectory, and PingID Mobile.
At least 5+ years of experience with cloud services, particularly AWS.
Strong engineering background with hands-on experience in building and deploying IAM solutions.
Proficiency with AWS services and IAM integrations in cloud environments.
In-depth understanding of IAM principles, including authentication, authorization, single sign-on (SSO), multi-factor authentication (MFA), and directory services.
Experience with any programming language is a plus(Java preferably).
Excellent problem-solving skills and the ability to troubleshoot complex IAM issues.
Strong communication and collaboration skills, with the ability to work effectively in a team-oriented environment.
Relevant certifications such as CISSP, CISM, or similar are a plus.
Preferred Experience:
Experience in Identity and Access Management (IAM) in large-scale enterprise environments.
Familiarity with security standards and protocols such as SAML, OAuth, OpenID Connect, and LDAP.
Experience with DevOps practices and tools for automation and continuous integration/continuous deployment (CI/CD).
Compensation: $140,000.00 per year
Who We Are CARE ITS is a certified Woman-owned and operated minority company (certified as WMBE). At CARE ITS, we are the World Class IT Professionals, helping clients achieve their goals. Care ITS was established in 2010. Since then we have successfully executed several projects with our expert team of professionals with more than 20 years of experience each. We are globally operated with our Head Quarters in Plainsboro, NJ, with focused specialization in Salesforce, Guidewire and AWS. We provide expert solutions to our customers in various business domains.
Auto-ApplySecurity Engineer II
Security engineer job in Providence, RI
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
Senior Data Security Software Engineer
Security engineer job in Hopkinton, MA
The Software Engineering team delivers next-generation application enhancements and new products for a changing world. Working at the cutting edge, we design and develop software for platforms, peripherals, applications and diagnostics - all with the most advanced technologies, tools, software engineering methodologies and the collaboration of internal and external partners.
Join us to do the best work of your career and make a profound social impact as a **Senior Data Security Software Engineer** on our Software Engineering Team in Hopkinton, Massachusetts.
**What you'll achieve**
As a **Senior Data Security Software Engineer** , you will be responsible for developing security related software that will be integrated into Dell's server and storage products.
**You will:**
+ Contribute to the design and architecture of new or re-engineered embedded security-related software
+ Build and review design, functional, technical and user documentation
+ Develop, review and implement test strategies for software products and systems
**Take the first step towards your dream career**
Every Dell Technologies team member brings something unique to the table. Here's what we are looking for with this role:
**Essential Requirements**
+ 5+ years software development experience, including embedded systems, or equivalent skill
+ Highly skilled in C, Java and/or Python
+ Proficient at debugging and writing efficient code
+ Ability to pick up new languages, tools and operating systems quickly
+ Exposure to, or knowledge of, Federal Information Processing Standards (FIPS), Post Quantum Cryptography (PQC), Commercial National Security Algorithm (CNSA) Suite 2.0 and CNSS Policy 15
**Desirable Requirements**
+ Bachelor' degree in Computer Engineering or related field
+ Familiarity with Transport Layer Security (TLS), Key Management/Data At Rest Encryption (DARE)
**Compensation**
Dell is committed to fair and equitable compensation practices. The base salary range for this position is $149,600K - $193,600K.
**Benefits and Perks of working at Dell Technologies**
Your life. Your health. Supported by your benefits. You can explore the overall benefits experience that awaits you as a Dell Technologies team member - right now at MyWellatDell.com
**Who we are**
We believe that each of us has the power to make an impact. That's why we put our team members at the center of everything we do. If you're looking for an opportunity to grow your career with some of the best minds and most advanced tech in the industry, we're looking for you.
Dell Technologies is a unique family of businesses that helps individuals and organizations transform how they work, live and play. Join us to build a future that works for everyone because Progress Takes All of Us.
Dell Technologies is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. Read the full Equal Employment Opportunity Policy here (******************************************************************** .
**Job ID:** R281745
Endpoint Security Engineer - Configuration Compliance (INTL LATAM)
Security engineer job in Woonsocket, RI
A large healthcare company is seeking an experienced Endpoint Security Engineer - Configuration Compliance to join its enterprise security team focusing on MSB. The client is over $370Bn in revenue and operates over 9,000 locations. They are dedicated to putting people first from their customers to their employees, engaging with customer feedback to further innovate to provide the best care possible, simplifying processes for care, creating a trusting environment, and to creating the safest and highest quality of care to keep patients protected. The client is dedicated to giving back to those around them. They have stared a Foundation to provide financial support to the communities to help with areas such as maternal health, mental health, scholarships, free health services/screenings, etc.
The Senior Endpoint Security Engineer plays a critical role in defining, implementing, and managing secure policy configuration policies across the organization's IT systems and infrastructure. This role ensures that security policy configurations are aligned with industry best practices and focuses on ensuring compliance with security standards, minimizing security gaps, vulnerabilities, and risk, through configuration management, and supporting organizational goals for a strong security posture. The Senior Endpoint Security Engineer works closely with IT, DevOps, and security teams to enforce secure baselines and automate policy compliance. This role is for process improvement for MSB so going through for the current workflow and each step to ensure proper documentation and solutioning in areas where there are deficiencies. It will be 70% working alongside leadership for improvement and 30% hands-on
Key Responsibilities:
Secure Policy Configuration Management (Hardening)
· Develop, implement, and maintain secure configuration policy framework and baselines for operating systems, databases, applications, and network devices (e.g., firewalls, routers).
· Collaborate with stakeholders to align secure configuration policies with business and compliance requirements.
· Automate configuration scanning, remediation, and validation processes by developing and integrating workflows using tools like Qualys, ServiceNow, and APIs or scripting languages to enhance efficiency and scalability.
· Regularly review and update policies to reflect changes in the threat landscape or regulatory requirements.
· Stay informed of emerging security threats, compliance requirements, and best practices related to secure configurations.
· Implement and maintain tools, processes, and configuration scan templates aligned with policy changes to continuously monitor, detect, and enforce secure configurations (e.g., Minimum Security Baseline scanners, configuration management tools).Conduct security audits and assessments to identify deviations and implement corrective actions.
· Develop and deliver executive-level reports on compliance with configuration policies, including metrics on policy adherence and risk mitigation.
· Lead root cause analysis and remediation efforts for configuration-related security incidents.
Collaboration and Integration
· Work closely with IT, DevOps, and Security Operations teams to ensure secure configuration policies are integrated into system and application lifecycles.
· Partner with compliance and risk teams to ensure configurations meet regulatory standards (e.g., PCI DSS, HIPAA, SOX).
· Provide guidance and support during internal and external audits.
Continuous Improvement and Training
· Promote a culture of security awareness and best practices within the organization.
· Drive automation initiatives to streamline configuration management processes.
· Provide training and resources to ensure teams understand and adhere to secure configuration policies.
Compensation:
$15/hr to $20/hr.
Exact compensation may vary based on several factors, including location, skills, experience, and education.
Employees in this role will enjoy a comprehensive benefits package starting on day one of employment, including options for medical, dental, and vision insurance. Eligibility to enroll in the 401(k) retirement plan begins after 90 days of employment. Additionally, employees in this role will have access to paid sick leave and other paid time off benefits as required under the applicable law of the worksite location.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
- 3-5+ years of experience in information security, with a focus on secure configuration management or related areas.
- 5+ years of hands-on experience with Qualys and the Policy Audit module
- background in secure configuration frameworks including CIS Benchmarks and configuration management tools (e.g., Qualys, Rapid7, Tanium).
- 5+ years of strong understanding of operating systems (Windows, Linux, mac OS) and network device configurations.
- 5+ years with security architecture awareness.
- Strong grasp of how configuration compliance integrates with vulnerability, asset, and change management systems.
- Strong communication and ability to drive meetings with stakeholders - Proficient knowledge and experience with database query languages (e.g., MySQL, SQL).
- Knowledge of security monitoring and ITSM platforms (e.g., Splunk, ServiceNow, Archer).
- Strong knowledge of compliance standards (e.g., ISO 27001, PCI DSS, HIPAA).
- Experience with system hardening and secure configuration standards/frameworks (e.g., NIST SP 800-53, DISA STIGs).
- Proven ability to diagnose and resolve technical issues within Qualys PC, agent-based systems, and automation framework.
- Qualys Query Language (QQL) for data analysis, validation and reporting.
- Familiarity with scripting languages (e.g., Python, PowerShell, Bash) for automation.
- Certified Information Systems Security Professional (CISSP).
- Certified Information Systems Auditor (CISA).
- CompTIA Security+ or Cybersecurity Analyst (CySA+).
- Qualys Security Configuration Assessment (SCA).
Systems Security Analyst/Cyber Defense Analyst
Security engineer job in Newport, RI
DecisiveInstincts, LLC has an immediate opportunity for a Systems Security Analyst / Cyber Defense Analyst in Newport, RI. This position requires a Top Secret/SCI clearance.
Immediate Opportunity: Systems Security Analyst / Cyber Defense Analyst
Location: Newport, RI
Clearance Required: Top Secret/SCI
Key Responsibilities
Analyze, document, and develop integration, testing, operations, and maintenance for system security.
Utilize cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to monitor and mitigate threats.
Apply defensive measures to identify, analyze, and report security events.
Coordinate threat and mitigation strategies across the enterprise.
Required Experience
Network & Security Operations:
Install, configure, and maintain security devices on EDU, SIPRNET, DMZ, and commercial ISP networks.
Ensure compliance with DoD security and information assurance policies.
Support unclassified and classified information security services.
Security Tools & Technologies:
Operate ACAS, McAfee HBSS, Corelight, and Cortex for threat detection and management.
Implement SOAR orchestration and SIEM event correlation & analysis.
Manage cloud security systems for DLP, email security, and threat prevention.
Perform vulnerability scanning, penetration testing, and firewall administration.
Cybersecurity Expertise:
Analyze network alerts and identify causes of security incidents.
Conduct security reviews, gap analysis, and risk mitigation.
Apply knowledge of cyber threats, attack vectors, and mitigation strategies.
Understand TCP/IP, DHCP, DNS, and OSI Model.
Perform packet-level analysis and collect data from cyber defense resources.
Education & Certifications
Degree Requirement:
Bachelor's in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science (ABET-accredited or CAE-designated institution).
Certifications may be considered in lieu of a degree.
************Direct Applicants Only - No Agencies or Third-Party Recruiters***********
Auto-ApplySr. Information Systems Security Engineer
Security engineer job in Wellesley, MA
Sun Life U.S. is one of the largest providers of employee and government benefits, helping approximately 50 million Americans access the care and coverage they need. Through employers, industry partners and government programs, Sun Life U.S. offers a portfolio of benefits and services, including dental, vision, disability, absence management, life, supplemental health, medical stop-loss insurance, and healthcare navigation. We have more than 6,400 employees and associates in our partner dental practices and operate nationwide.
Visit our website to discover how Sun Life is making life brighter for our customers, partners and communities.
Job Description:
The Sr Information Security Engineer will report to the Manager, Security Engineering. The Sr Information Security Engineer will be among a team of engineers responsible for security configurations and engineering for all information security systems, for on-premise and cloud-based security systems. This role will be responsible for the management and maintenance of all Information Security systems. These systems include: Security Data Loss Prevention, Identity and Access Management, Authentication Platforms, Advanced Malware and Anti-Virus, Web Filter, Proxy, SIEM (Security Incident Event Manager), File Integrity Monitoring, IPS/IDS, Database Activity Monitoring, Threat Intelligence, Secure Configuration Management, and Network Security along with the direct security configuration aspects of VCenter, Citrix, Windows Active Directory, Exchange, and any other Information Systems.
Qualifications
BS and the equivalent of 7 years working in Information Security or equivalent 10 years of work experience, in a highly regulated environment, preferably in Healthcare or Fintech, in which there are demonstrated progressive levels of responsibility, experience, and leadership and hands-on experience with the implementation and configuration of security controls in on-prem and cloud-based environments
Experience working on an Agile team and familiarity with the Agile Scrum methodology and creation of user stories in Agile discipline
Extensive experience with Identity and Access Management, Vulnerability Management, Database Security, Network Security, Active Directory, Patch Management, Web Application Firewalls, and Advanced Malware solutions
Extensive working knowledge of configuring and managing Identity and Access Platforms, Firewalls, Switches, Routers, Network Sensors, Endpoint Controls, Server Controls, and Data Loss Prevention is required
Security certifications preferred (CISSP, OSCP, CISM, GIAC) or with a requirement of obtaining within 12 months upon hire
Knowledge of Python, Regex, PowerShell, SQL, JSON, and XML and at least some experience in an object-oriented programming language is desirable but not required
Excellent verbal and written communication skills
Effective organization, prioritization, negotiation and influencing skills
Responsibilities
Lead configuration and implementation of all information security systems
Manage all information security systems and ensure proactive patching levels
Act as backup or lead Scrum Master for Security Engineering team as assigned by Security team leadership, creating user stories assigned to engineering and operations team members
Configure and engineer all Endpoint Security controls
Configure and engineer all Network Security controls
Configure and engineer all Server Security controls
Configure and engineer all Database Security controls
Configure and engineer all identities and permissions and single sign-on for contractors and employees
Develops peers and staff by providing direction, support, and mentoring in areas of expertise
Other duties as needed or required.
Not ready to apply yet but want to stay in touch? Join our talent community to stay connected until the time is right for you!
Life is brighter when you work at Sun Life
-
Excellent benefits and wellness programs to support the three pillars of your well-being - mental, physical and financial - including generous vacation and sick time, market-leading paid family, parental and adoption leave, a partially-paid sabbatical program, medical plans, company paid life and AD&D insurance as well as disability programs and more
-
Retirement and Stock Purchase programs to help build and enhance your future financial security including a 401(k) plan with an employer-paid match as well as an employer-funded retirement account
-
A flexible work environment with a friendly, caring, collaborative and inclusive culture
-
Great Place to Work Certified in Canada and the U.S.
-
Named as a “Top 10” employer by the Boston Globe's “Top Places to Work” two years running
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
If you are a California resident, the salary range for this position is:
-
Southern California region: $93,200 - $139,800 annually
-
Central California region: $98,200 - $147,300 annually
-
Northern California region: $105,000 - $157,500 annually
If you are a Colorado or Nevada resident, the salary range for this position is $ 89,000 - $133,500 annually
If you are a Connecticut or Maryland resident, the salary range for this position $93,200 - $139,800 annually
If you are Washington or Rhode Island resident, the salary range for this position is $98,200 - $147,300 annually
If you are a New York resident, the salary range for this position is $171,400 - $257,100 annually
We consider various factors in determining actual pay including your skills, qualifications, and experience. In addition to salary, this position is eligible for incentive awards based on individual and business performance as well as a broad range of competitive benefits.
Sun Life Financial is a leading provider of group insurance benefits in the U.S., helping people protect what they love about their lives. More than just a name, Sun Life symbolizes our brand promise of making life brighter -for our customers, partners, and communities. Join our talented, diverse workforce and launch a rewarding career. Visit us at
***************
/us to learn more.
At Sun Life we strive to create a flexible work environment where our employees are empowered to do their best work. Several flexible work options are available and can be discussed throughout the selection process depending on the role requirements and individual needs.
#LI-remote
Not ready to apply yet but want to stay in touch? Join our talent community to stay connected until the time is right for you!
We are committed to fostering an inclusive environment where all employees feel they belong, are supported and empowered to thrive. We are dedicated to building teams with varied experiences, backgrounds, perspectives and ideas that benefit our colleagues, clients, and the communities where we operate. We encourage applications from qualified individuals from all backgrounds.
Life is brighter when you work at Sun Life
At Sun Life, we prioritize your well-being with comprehensive benefits, including generous vacation and sick time, market-leading paid family, parental and adoption leave, medical coverage, company paid life and AD&D insurance, disability programs and a partially paid sabbatical program. Plan for your future with our 401(k) employer match, stock purchase options and an employer-funded retirement account. Enjoy a flexible, inclusive and collaborative work environment that supports career growth. We're proud to be recognized in our communities as a top employer. Proudly Great Place to Work Certified in Canada and the U.S., we've also been recognized as a "Top 10" employer by the Boston Globe's "Top Places to Work" for two years in a row. Visit our website to learn more about our benefits and recognition within our communities.
We will make reasonable accommodations to the known physical or mental limitations of otherwise-qualified individuals with disabilities or special disabled veterans, unless the accommodation would impose an undue hardship on the operation of our business. Please email ************************* to request an accommodation.
For applicants residing in California, please read our employee California Privacy Policy and Notice.
We do not require or administer lie detector tests as a condition of employment or continued employment.
Sun Life will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including applicable fair chance ordinances.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Job Category:
IT - Technology Services
Posting End Date:
31/10/2025
Auto-ApplySecurity Engineer Investigator, Insider Trust
Security engineer job in Providence, RI
As part of Meta Security, our Insider Trust team is dedicated to identifying and responding to insider threats that target our data. Our mission is to detect, investigate, and mitigate damage caused by insider threats. We handle a wide range of abuse cases, including misuse of user data, intellectual property theft, and leaks of sensitive information.We are seeking an experienced Security Engineer to join the team. This role involves investigating, hunting, and automating internal signals to detect malicious activities related to insider threats.
**Required Skills:**
Security Engineer Investigator, Insider Trust Responsibilities:
1. Perform analysis, and threat hunting from a variety of log sources (e.g., individual host logs, network traffic logs) to identify potential insider threats
2. Create workflows and automations to streamline signal detection, threat hunts, and investigative processes
3. Collaborate with software and production engineering teams to build scalable and adaptable solutions for insider threat investigations
4. Identify gaps in our infrastructure and work with cross-functional partners to improve visibility through logging and automation
5. Build operational workflows and actions to auto-resolve false positives and provide context, scaling investigation capabilities
6. Prioritize efforts to maximize impact by enhancing visibility, automating processes, and scaling investigative capabilities
7. Coach, mentor, and support team members to foster long-term career growth, job satisfaction, and success
**Minimum Qualifications:**
Minimum Qualifications:
8. Bachelor's degree in Computer Science, Engineering, or equivalent experience
9. 5+ years of experience in Detection & Response Engineering, Insider Threat, or a similar Security Engineering role
10. Technical and procedural expertise in conducting security investigations, including response, forensics, and large-scale log analysis
11. Experience with attacker tactics, techniques, and procedures
12. Proficiency in coding or scripting in one or more general-purpose programming languages
**Public Compensation:**
$147,000/year to $208,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Cloud Security Engineer
Security engineer job in Waltham, MA
More than 1,000 organizations worldwide-from 25 Fortune 100 companies to small enterprises-use Bit9 + Carbon Black to increase security, reduce operational costs and improve compliance. Leading managed security service providers (MSSP) and incident response (IR) companies have made Bit9 + Carbon Black a core component of their advanced threat prevention, threat detection and incident response services. With Bit9 + Carbon Black, you can arm your endpoints against advanced threats.
Job Description
We are looking for a Cloud Security Engineer who can provide hands-on technical engineering and ownership of the growing cloud security program, across multiple providers. You will work closely with our Product Management group as well our Cloud Operations team to help build secure and robust systems responsible for serving all of Bit9 + Carbon Black customers.
Role Description:
The Cloud Security Engineer provides cyber security expertise in the analysis, assessment, development, and evaluation of security solutions and architectures to secure applications, operating systems, databases, and networks. Additionally, the Cloud Security Engineer assists in the development of cyber security requirements, conducts security risk assessments, evaluates security services and technologies, and reviews and documents information security policies and procedures as well as provides monitoring and oversight for alerts in this environment.
Key Responsibilities:
Serves as the subject matter expert (SME) on Cloud Security for Bit9 + Carbon Black
Develops standards, policies and procedures as well as best practices documentation.
Participate in efforts that tailor the company's security policies and standards for use in cloud environments
Translate security and technical requirements into business requirements, and communicate security risks to different audiences ranging from business leaders to engineers.
Propose and/or design technical solutions, which include creating prototypes and proofs of concept while maintaining a security mindset
Lead and influence multi-disciplinary teams in implementing and operating Cyber Security controls.
Work closely with application developers and database administrators to deliver creative solutions to complex technology challenges and business requirements.
Provides Info security architecture & systems engineering consulting to other IT and business teams.
Automate security controls, data and processes to provide better metrics and operational support
Utilize cloud-based APIs when appropriate to write network/system level tools for securing cloud environments
Stay current on emerging security threats, vulnerabilities and controls.
Identify and Implement new security technologies and best practices into Bit9's Cloud offerings
Evaluates new technologies against established requirements and validate the security of the technology.
Create technical and managerial level reports and risk assessments for Cloud based applications and infrastructure
Identify processes/procedures for how to handle a cloud security event, including forensic isolation and mitigation with Digital Forensics and Incident Response (DFIR/IR) teams
Supports the monitoring and maintaining network security suite of tools.
Identify new security threats by conducting continual monitoring, penetration testing, vulnerability assessments and log analysis
Qualifications
Bachelor's degree in related business or technical areas, or an equivalency of education and work experience.
Minimum of 5-7 years of IT Security and/or security engineering experience
5-7 years related experience in Computer Security, with proven focus on Cloud Security. Clear passion for cloud Security and Cloud technologies.
Must have experience with virtualization (cloud or non-cloud)
Expert knowledge of Cloud infrastructure, security architectures, and standards
Deep technical knowledge of Amazon Web Services, and FedRAMP
Able to demonstrate clear understanding of current threats to Cloud infrastructure and/or IT infrastructures at technical and managerial levels
Able to automate/script daily tasks through Python, Bash or equivalent
Experience with web-based applications or web-services
Proficient in Linux system design, automation and operations
Experience in designing and implementing standards, specifications and procedures.
Demonstrated ability to take initiative and accountability for achieving results.
Strong interpersonal, oral, and written communication skills
Knowledge of network and web related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
Skilled in discussing complex security issues in understandable business terms.
Very detailed knowledge of system security vulnerabilities and remediation techniques
Security certification desired (e.g., CISSP, GIAC, CEH, etc)
Experience using Microsoft Visio
Additional Information
About us: Cyber attacks are now the new normal. Advanced hackers, nation states, organized crime groups and nefarious actors are doing anything and everything they can to get their hands on valuable information that isn't theirs. With more than enough attack vectors out there, we at Bit9 + Carbon Black are looking for more creative and committed security professionals to protect today's top organizations.
Bit9 + Carbon Black is an equal opportunity employer.
Engineer, Information Security and Risk
Security engineer job in Providence, RI
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, Information Security and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Product Security Engineer- India
Security engineer job in Westborough, MA
We are seeking a Product Security Engineer to work with one of our Large Medical Device Clients. The Product Security Engineering Contractor will assist with product security tasks, deliverables, and support for the product security and systems engineering teams. This role requires technical expertise, knowledge of safety critical systems, and the ability to work in a team environment to ensure security and resilience of our current and developing digital products.
Responsibilities:
· Understand and adhere to Quality Management System requirements
· Contribute to the development/maintenance of threat models, product security risk documentation, and other QMS deliverables
· Identify and consult on requirements to help address and mitigate security risks and vulnerabilities.
· Serve as subject matter expert to the development teams, be security minded and raise the level of understanding and compliance.
· Leverage tools like Polaris (Blackduck) to perform and triage SAST, DAST, SCA scans.
· Collaborate with the team on the security testing and security signals
· Support compliance with regulatory requirements, industry standards, and internal policies governing product security.
· Stay informed about new tools, regulations, standards, and best practices of the industry.
Compensation:
$10/hr to $14/hr
Exact compensation may vary based on several factors, including skills, experience, and education.
Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401K retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
Education*:
- Bachelor's degree in computer science, information technology, cybersecurity, or related area required, or minimum of 5 years' experience in a relevant industry.
Experience*:
- Minimum of 2 years' experience working as a Software Security Engineer position
Skills:
- Experience with embedded technology and software security.
- Experience in using Secure Software Development Lifecycle (SSDLC) within agile framework.
- Expertise in threat modelling, security risk management, secure coding, secure system development, and DevSecOps
- Knowledge of application security and code analysis tools such as Polaris / BlackDuck, or similar.
- Experience with security techniques, standards, and methods for authentication and authorization, applied cryptography, security vulnerabilities and remediation in Windows .NET and Azure environments.
- Solid technical background and understanding of all aspects of security research and development.
- Excellent analytical and troubleshooting skills.
- Ability to work both independently and in a team environment.
- Excellent communication skills, oral and written.
Other Considerations (travel/hours availability, etc.):
- Work time outside of "normal" work hours may be required from time to time.