Lead Security Engineer - Trading Technology
Security engineer job in Great Neck, NY
The Team:
The Security Engineering Lead will be responsible for designing, building, and maintaining the organization's security infrastructure. This role requires a highly skilled professional who can lead a team of engineers, implement innovative security solutions, and ensure the resilience of the organization's systems and networks. The ideal candidate will have extensive experience in security engineering, a strong technical background, and the ability to manage and deliver complex security projects.
**This Role does NOT provide sponsorship**
Salary: $150k-$190k base w/ 20% bonus
Responsibilities:
Leadership and Management: Lead and mentor a team of security engineers, fostering a culture of continuous learning and innovation. Build and scale a global team to meet organizational needs.
Architecting Security Solutions: Assist teams in designing and implementing advanced security solutions, including cloud security, privilege access management and application/system security.
Collaboration: Partner with software development, infrastructure, and operations teams to embed security into the development lifecycle and operational processes.
Performance Optimization: Regularly evaluate and optimize existing security tools and technologies to ensure maximum efficacy and efficiency.
Training and Knowledge Sharing: Develop and deliver technical security training to engineers and other staff, ensuring a strong organizational security posture.
Documentation and Reporting: Create detailed documentation for security systems and processes, and provide regular project reports senior management.
Required Skills and Experience:
Experience (3+ year) in people leadership roles, nurturing security engineers into high-performing teams.
Experience (5+ years) in a security engineering role, focusing on designing and implementing security solutions and managing security infrastructure, both on-premise and cloud.
Experience working with privilege and identity management solutions.
Experience with operating system security and system hardening.
Knowledge of network security principles, protocols, and technologies.
Strong analytical and problem-solving skills, with the ability to assess risks and develop appropriate security controls.
Excellent communication and interpersonal skills, with the ability to effectively communicate complex security concepts to technical and non-technical stakeholders.
Ability to work independently, prioritize tasks, and manage multiple projects simultaneously.
Strong leadership skills, with the ability to mentor and guide junior team members.
Skills and Experience That Would Help You Stand Out:
A bachelor's degree in Computer Science, Information Security, or a related field. A master's degree is a plus.
Professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or Certified Information Security Manager (CISM) are highly desirable.
Linux security experience
Familiarity with DevSecOps and integrating security into CI/CD pipelines.
Scripting experience.
Network Security Engineer
Security engineer job in Bethpage, NY
8+ years of experience in cybersecurity and network administration roles
5+ years of experience with various firewall platforms (Cisco Meraki, Palo Alto, Fortinet)
Experience with endpoint protection, SIEM solutions, and log management tools
Proficiency and knowledge of Azure Cloud Networking
Knowledge of compliance standards
CCNA, CCNP, Azure Network Engineer Associate
Telecom Industry experience
Experience partnering with 3rd party vendors for escalations
This role is responsible for designing, deploying, and maintaining secure, high-performance network solutions across Cisco switches, routers, Meraki office systems, and Firepower/ASA in the data center, all integrated with Azure cloud networking. The position focuses heavily on cybersecurity, including implementing and managing firewalls, intrusion prevention systems, and security appliances, performing vulnerability assessments, and enforcing security policies and incident response protocols. The individual will act as the backend resource for a 3rd party managed service, handling escalations and unresolved threats, while collaborating with internal teams on risk identification and security improvements. Daily tasks include configuring virtual networks and security groups in Azure, managing identity and access controls such as MFA, monitoring network performance, troubleshooting connectivity issues, and optimizing configurations for scalability and security. The role also involves working with SIEM tools for threat detection, generating compliance and performance reports, maintaining documentation, and providing security training to staff. Continuous improvement is key, requiring the candidate to stay current on emerging threats and technologies while ensuring the overall security posture of the environment.
This position is a 6 month contract to hire. It is a hybrid position in Bethpage, NY, Tues-Thurs. Insurance and 401K are offered during contract period as well as upon conversion. The converting salary for this role is $145,000-152,000.
Information Security Manager
Security engineer job in Danbury, CT
This role offers the chance to take real ownership of an organization's security posture and guide how it continues to evolve. The environment is supported by a managed services provider, and this position will serve as the internal point of leadership and direction for all security initiatives-both strategic and hands-on.
Principle Lead IT Security Analyst
Location: Danbury, CT -Hybrid
Salary - $130,000 - $160,000 +Bonus
This role offers meaningful visibility, influence, and a path to future leadership roles such as Security Manager or CISO.
You will work closely with senior leadership, drive priorities, lead the MSP, and represent the security function to internal stakeholders and external customers. The scope includes cloud security, infrastructure security, risk management, audits, tooling, and incident response. This is a strong role for someone who is confident technically and ready to broaden into leadership responsibility with clear visibility and influence.
Key Responsibilities
Lead and direct the MSP on all security-related work, ensuring accountability and alignment to security objectives.
Strengthen and mature Azure cloud and Microsoft infrastructure security measures.
Manage vulnerability assessments, incident response coordination, and threat analysis activities.
Lead audit and compliance efforts, including ISO, SOC2, NIST, and related standards and frameworks.
Evaluate current tools and identify opportunities to implement or enhance security solutions.
Represent the security function in internal meetings and customer discussions; clearly communicate risk posture, decisions, and rationale.
Conduct regular internal security reviews and status meetings with senior leadership.
Identify and recommend improvements to organizational security strategy and controls.
Ideal Background
Experience in a broad security role supporting cloud, infrastructure, monitoring, and risk management.
Ability to guide third-party partners or MSP resources in the execution of security initiatives.
Strong analytical and problem-solving skills; able to identify gaps and design practical solutions.
Comfortable working in a role that is both strategic and hands-on.
Clear, confident communication skills with both technical and non-technical audiences.
Organized, steady under pressure, and able to prioritize effectively.
Preferred Experience
Azure cloud security, Microsoft infrastructure security, and network security fundamentals.
Security monitoring/logging platforms, vulnerability scanning, incident response practices.
Familiarity with NIST or CIS frameworks and security audit requirements.
Experience evaluating and implementing new security tools or platforms.
Exposure to emerging security automation or AI-driven security tooling is a plus.
Network & CPE Engineer
Security engineer job in Bethpage, NY
Hiring: Network & CPE Engineer - SASE Infrastructure
Duration: 6 Months (Possible Extension)
Citizenship: USC and GC only
We're seeking an experienced Network & CPE Engineer skilled in SASE Infrastructure to support modernization and security transformation initiatives. This role will play a key part in designing, implementing, and optimizing secure, cloud-driven networking for a major telecom environment.
Must-Have Skills
Networking & SD-WAN expertise
Strong background in Cloud Security and Zero Trust frameworks
Hands-on SASE Platform experience (implementation, configuration, optimization)
Key Responsibilities
Support and enhance SASE-based network infrastructure
Engineer and troubleshoot CPE and SD-WAN solutions
Implement and enforce Zero Trust and cloud-security standards
Collaborate with cross-functional network and security teams
Contribute to ongoing network modernization initiatives
📩 Interested? Apply now or DM us to explore this opportunity! You can share profiles at ********************* OR Call us on *****************
Network Security Analyst
Security engineer job in White Plains, NY
We invite you to review our current business services professionals openings to learn about the opportunities available across the firm.
About Us
Skadden, Arps, Slate, Meagher & Flom LLP has forged a reputation as one of the most prestigious law firms in the world. Relying on innovation, intellect, teamwork and tenacity, our lawyers deliver the highest quality advice and novel solutions to our clients' legal issues. We are known for handling the most complex transactions, litigation/controversy issues, and regulatory matters, as well as for the strong partnerships we build with clients and each other. Our attorneys, who reflect a broad range of experiences and perspectives, work together seamlessly across 50-plus practices and 21 offices in the world's major financial centers.
The Opportunity
We are seeking two Network Security Analysts to join our Firm. These positions will be based in our White Plains office (hybrid), and please note the roles have different shift times, listed below. The Network Security Analysts are responsible for implementing and supporting network security solutions for the Firm and, implementing and enforcing practical solutions to secure the Firm's internal and external network infrastructure.
Available Shift Times (EST- Hybrid)
1.) Saturday - Sunday: 7:00 a.m. - 8:00 p.m. EST & Monday 7:00 a.m. - 7:00 p.m.
2.) Monday - Friday: 2:00 p.m. - 10:00 p.m.
Note: The scheduled hours listed may be flexible and will be discussed during the interview process.
Responsibilities
Performs daily review of automated security reports and escalate as necessary.
Responds to system generated security alerts and coordinate responses.
Assists with internal audits, vulnerability scans and risk assessments.
Assists with annual penetration testing, review of findings and tracking issue resolution.
Participates in evaluating new technologies or new versions of existing products.
Works with project teams to implement secure network connectivity solutions.
Writes and maintains technical documentation including procedures and troubleshooting guides.
Demonstrates effective interpersonal, written and verbal communication skills to facilitate effective work relationships with others.
Manages Firm resources responsibly.
Complies with and understands Firm operation, policies and procedures.
Performs other related duties as assigned.
Qualifications
Knowledge of relevant firm computer software programs (e.g., Outlook, Excel, PowerPoint), with the ability to learn new software and operating systems
Proficient with Access, Project and Visio
Thorough knowledge of network management and security technologies and approaches
Thorough knowledge of security techniques, latest protocols and defenses
Proficient with Microsoft Active Directory and Operating Systems
Basic ability to program scripts and batch files
Demonstrates effective interpersonal and communication skills, both verbally and in writing
Demonstrates close attention to detail
Excellent analytical, troubleshooting, organizational, and planning skills
Ability to handle multiple projects and shifting priorities
Ability to handle sensitive matters and maintain confidentiality
Ability to organize and prioritize work
Ability to work well in a demanding and fast-paced environment
Ability to work well independently as well as effectively within a team
Ability to use discretion and exercise independent and sound judgment
Flexibility to adjust hours and work the hours necessary to meet operating and business needs
Education/Experience
Bachelor's degree or equivalent
Minimum of two years' experience in multi-national enterprise IT
Culture & Life at Skadden
What makes Skadden special is our people and the culture, community and spirit of collaboration we have created. We believe in teamwork and inspiring each other to be our best in an atmosphere that promotes professionalism and excellence in all that we do. We know that inclusion and drawing on the strength of a wide spectrum of talent only make us better and is vital to the firm's success. Our goal is for everyone at the firm to enjoy a challenging career with opportunities for development and growth and to support the well-being of our attorneys and business services professionals.
Benefits
The overall well-being of our team is important to us. We offer generous benefits to help you achieve wellness in all areas of your life.
Competitive salaries and year-end discretionary bonuses.
Comprehensive health care (medical, dental, vision), savings plan/401(k) and voluntary benefits.
Generous paid time off.
Paid leave options, including parental.
In-classroom, remote, and on-demand learning and professional development opportunities.
Robust well-being classes and programs.
Opportunities to give back and make an impact in local communities.
For further details, please visit: *******************************************************
Skadden is an Equal Opportunity Employer (Disability/Vet/other protected categories). For more information, please visit Skadden.com/careers.
The starting base salary for this position is expected to be within the range listed under Salary Details. Actual salary will be determined based on skills, experience (to the extent relevant) and other-job related factors, consistent with applicable law.
Salary Details
$125,000 -$140,000
EEO Statement
Skadden is an Equal Opportunity Employer. It does not discriminate against applicants or employees based on any legally impermissible factor including, but not limited to, race, color, religion, creed, sex, national origin, ancestry, age, alienage or citizenship status, marital or familial status, domestic partnership status, caregiver status, sexual orientation, gender, gender identity or expression, change of sex or transgender status, genetic information, medical condition, pregnancy, childbirth or related medical conditions, sexual and reproductive health decisions, disability, any protected military or veteran status, or status as a victim of domestic or dating violence, sexual assault or offense, or stalking.
Applicants who require an accommodation during the application process should contact Lara Bell at **************.
Skadden Equal Employment Opportunity Policy
Skadden Equal Employment Opportunity Policy
Applicants Have Rights Under Federal Employment Law
Applicants Have Rights Under Federal Employment Law
In accordance with the Transparency in Coverage Rule,
click here to review machine-readable files made available by UnitedHealthcare:
Transparency in Coverage
Auto-ApplyNYPA SAP Security Analyst (CWP 1179)
Security engineer job in White Plains, NY
Outcomes. Delivered.
Voyatek, formerly GCOM Software and OnCore Consulting, delivers outcome-driven technology solutions to public sector agencies and higher education institutions nationwide.
For example, our technology:
Facilitates access to nutritious food for children of mothers participating in the WIC program
Supports first responders in reducing opioid overdoses within their communities
Empowers colleges and universities to identify and thwart financial aid fraud
Equips teachers with valuable insights to identify students requiring additional support
Enhances efficiency for state tax agencies, leading to 99% faster return processing and quicker refunds for taxpayers
With a focus on Tax & Revenue, Health & Human Services, and Justice & Public Safety, Voyatek combines the scale to support large complex projects with the agility and accessibility of a boutique solutions provider. Together, Voyatek and its customers work to improve population wellbeing, create safer communities, and foster a thriving economy.
We're more than a technology company -- we're an outcomes company.
We encourage our employees to think differently, ask tough questions, and relentlessly pursue what's best for our customers and the residents they serve.
We believe that the value of technology is defined by its human impact. If you agree, you've come to the right place.
Voyatek is seeking applicants to occupy the position of SAP Security Analyst within our team.
Client Details:
The New York Power Authority (NYPA) is the largest state public power organization in the United States, renowned for its role in providing clean, affordable, and reliable energy. NYPA's mission is to power New York with clean energy while driving economic growth and sustainability. It focuses on reducing greenhouse gas emissions, modernizing the state's energy infrastructure, and promoting energy efficiency and innovation across sectors.
New York Power Authority's (“NYPA”) current on-premise Enterprise Resource Planning (“ERP”) system, SAP ECC 6.0, is almost 20 years old and is approaching technological obsolescence. Systems Application and Products (“SAP”) has already released its statement of intent to end new development on that platform and is planning on removing it from standard support on December 31, 2027. Project Luminate is a program to replace NYPA's current on-premise ERP system with a cloud-based system to ensure an adaptable environment able to meet NYPA's needs. In 2023, NYPA awarded a contract to Gartner Inc. to perform a detailed readiness assessment to define key requirements that the new system has to meet and to identify current business process improvements that are critical to be addressed as a precursor to the transition to a cloud-based platform.
Key Responsibilities:
Participate in SAP GRC project, enhancement and support and other relevant assignments (as needed) and provisioning across various ERP application environments following the organizational guideline and procedure and perform the below activities.
Configure and maintain SAP GRC tools, including Access Control, Risk Management, and Process Control and IAG.
Provision and manage user accounts and access to SAP systems, ensuring that all access is granted in accordance with established policies.
Design, configure, and maintain roles, authorizations, and user access within S/4HANA, ensuring appropriate access levels for users.
Generate reports and conduct audits to monitor SAP security & ITGC controls and ensure compliance including SOD management and configuration.
Investigate and resolve GRC-related issues, providing timely support to users and other IT teams.
Maintain comprehensive documentation of security policies, procedures, and role designs.
Work with cross-functional teams, including IT, business users, and auditors, to ensure alignment of security requirements and best practices.
Qualifications:
SAP ERP (S/4 Hana is added plus), Workday, Active Directory group, GRC AC 10.1 and above, Microsoft Azure, success factor, applicable functional knowledge for SAP security in the area like Finance, MM, ISU billing etc., SAP audit & compliance.
Bachelor's degree in engineering, IT, or related field.
7-10 years of hands-on industry experience in SAP GRC AC and PC implementation and administration.
Familiarity with SAP S/4HANA system landscapes, including Fiori authorizations in cloud-based environment (SAP RISE).
Proficiency in using SAP security tools and configurations.
Ability to identify, analyze, and resolve complex security and compliance issues.
Strong interpersonal and communication skills, with the ability to effectively collaborate with diverse teams.
The wage range for this role reflects the wide array of factors considered in compensation decisions. These factors include, but are not limited to, skill sets, experience, training, licensure and certifications, and geographic location. Compensation decisions are based on the unique facts and circumstances of each case. A reasonable estimate of the hourly range is $74.00 - $84.00.
At Voyatek, we believe in supporting our employees with a comprehensive benefits package designed to enhance their well-being and professional growth. Please note that eligibility for certain benefits may vary based on your role and employment status.
Health, Dental, and Vision Insurance
Medical, Limited, & Dependent Flexible Spending Accounts (FSA)
Health Savings Account (HSA) with Employer Contributions
Company-Paid and Voluntary Life Insurance
Long and Short-Term Disability Insurance
Accident, Critical Illness, & Hospital Indemnity Insurance
401(k) Retirement Plan with Company Match and Immediate Vesting
Wellhub Fitness and Wellness Platform
Pet Insurance
Training Opportunities
Employee Referral Bonus Program
We are committed to fostering a workplace that supports both your personal and professional aspirations.
As part of our commitment to maintaining a compliant workplace, all final candidates will undergo and must pass a comprehensive background screening prior to starting work. This screening may include, but is not limited to, verification of employment history, education, criminal records, and other relevant checks. For certain positions, additional client-specific background screenings may be required in the future, in accordance with client requirements.
Voyatek does significant work with Federal and State tax and revenue authorities. If applicable to this role, all hires will be required to obtain a Federal Public Trust Clearance (Moderate Background Investigation). This clearance process may start upon offer acceptance; and must be cleared prior to working on these projects.
If you think you are a good fit for us, we encourage you to apply. Check out our career website for all open positions!
Voyatek provides equal employment opportunities to all employees and applicants for employment. Voyatek will make employment decisions without regard to race, color, creed, ancestry, national origin, citizenship, sex or gender (including pregnancy, childbirth, and pregnancy-related conditions), gender identity or expression (including transgender status), sexual orientation, marital status or domestic violence victim status, religion, age, disability, genetic information, service in the military, or any other characteristic protected by applicable federal, state, or local laws and ordinances. Employment decisions include all terms and conditions of employment, including recruitment and hiring, job assignment/placement, promotion, upgrading, demotion, termination, layoff, recall, transfer, leave of absence, rates of pay or other compensation, internship, and training.
Application Security Engineer
Security engineer job in Garden City, NY
As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions.
Job Description
Are you looking for your next opportunity?
Sompo has a unique opportunity for an Application Security Engineer in our Information Security team.
Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers.
Our business, your impact, our opportunity:
What you'll be doing:
* Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations.
* Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection.
* Maintain a strong familiarity with:
* Sompo's full stack of security technologies and common application architectures
regulatory requirements for security and privacy technologies.
* The various Sompo teams who are non-technical subject matter experts on those regulations.
* Industry-standard approaches for aligning development, operations, and security.
* Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls.
* Application security review (development lifecycle, technology selection)
* Application security testing and instrumentation (production operations)
* Support of security tooling and automation
What you'll bring:
* Minimum of 5 years of experience in information security.
* Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages.
* Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria.
* Strong understanding of:
* HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight.
* Development and direct work experience with:
* Languages for automation, especially Python and Powershell, Query tools.
* Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis.
* Packet captures for low level network troubleshooting
* Application development building blocks, Web application security components
* Native security controls in the Microsoft stack (OS, Office, Edge)
* Ability to write ad hoc queries using one or more of the following:
* Splunk, Powershell, Regular expressions, SQL, XPATH
* Ability to write practical audience-relevant documentation related to troubleshooting.
* B.S. in Computer Science or Software Engineering
Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience.
At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees.
Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance.
We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs:
* Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
* Pharmacy benefits with mail order options
* Dental benefits including orthodontia benefits for adults and children
* Vision benefits
* Health Care & Dependent Care Flexible Spending Accounts
* Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
* Company-paid Disability benefits with very competitive salary continuation payments
* 401(k) Retirement Savings Plan with competitive employer contributions
* Competitive paid-time-off programs, including company-paid holidays
* Competitive Parental Leave Benefits & Adoption Assistance program
* Employee Assistance Program
* Tax-Free Commuter Benefit
* Tuition Reimbursement & Professional Qualification benefits
In today's world, what do we stand for?
Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo.
Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.
Auto-ApplyACTIVE DIRECTORY ENGINEER with Security Background
Security engineer job in Tarrytown, NY
SonSoft , Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. SonSoft Inc is growing at a steady pace specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled Services.
Job Description
LENGTH: 12 MONTHS, OPTION TO HIRE
JOB ID: 1912185274
JOB TITLE: ACTIVE DIRECTORY ENGINEER - SME
GC/EAD OR CITIZEN - OPTION TO HIRE
POSITION SUMMARY:
MUST HAVE a Security Background.
Responsible for supporting and maintaining Microsoft Active Directory.
Familiar with the Microsoft Windows Server Operating system, , and VMWare Virtualization technologies in the environment.
This includes planning for and responding to service outages and other problems, and being a Tier 3 escalation point for moderately complex Active Directory problems beyond the knowledge of other technical support staff.
Ensures customer satisfaction by advising customers on preventative maintenance and configurations which may impact product performance.
Takes responsibility for potential or desired follow-up services or problem escalation.
Fully qualified server engineer.
High degree of troubleshooting.
Self-starter needing little to no guidance.
Additional Information
NOTE : ONLY GCEAD , GC AND CITIZEN
Lead SAP Security & GRC admin- Full time perm job
Security engineer job in Stamford, CT
E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website ******************
Job Description
SAP Security & GRC
Additional Information
All your information will be kept confidential according to EEO guidelines.
Email Security Engineer
Security engineer job in Armonk, NY
**Introduction** The CISO Cybersecurity Operations Platform (CSOP) team is looking to add an engineer to the Analytics and Data Exploitation team. The Platform provides the technology, services and expertise required by IBM's Cyber Threat Detection and Response teams. We support the
Advanced Threat Detection (threat hunting, intelligence, incident response), Vulnerability
Detection and Response, Innovation and Remediation, Security Operations Centers and
Command Centers teams to deliver enterprise-wide security to one of the world's most
established technology companies. We process tens of billions of events per day, meaning
effective analysis and data exploitation practices are critical to our success. This is a technical
position within the Analytics and Data Exploitation team who employ commercial, open source
and in-house developed tools to deliver critical cybersecurity services such as event processing,
automation, complex analytics and support to digital investigations. This role operates across our
development, test, pre-production and production networks to create, maintain and improve our
services -an important component of which is fault-finding and the ability to work within
complex, dynamic environments.
The right candidate thrives in high-pressure situations and has practical experience working with
Big Data technologies -such as Spark, Hadoop and Elasticsearch. The role requires a proven,
practical knowledge of container orchestration technologies -specifically Kubernetes and RedHat
OpenShift. The work will include the design and optimization of container-deployed systems, as
well as the day-to-day engineering and administration of the orchestration environment. This
includes cluster management, Pod assignment / configuration, application virtual routing,
security, container image registry management and optimization of the runtime engines. Wider
knowledge of data ingestion, extraction, transformation and loading technologies is important -
including Streamsets and Flink. The role is rounded-out by some software development tasks -
all related to cyber security. These will involve Java, SQL, Python and automation scripting so experience with DevSecOps methods is highly advantageous. The Platform team employs hybrid cloud hosting and this includes provisioning, administration and management of services within environments spanning IBM Cloud, Amazon Web Services and Microsoft Azure.
About the Team
The CISO Cybersecurity Operations Platform (CSOP) team is looking to add an Email Security Engineer to the team. The CSOP provides the technology, services and expertise required by IBM's Cyber Threat Detection and Response teams. We support the Advanced Threat Detection (threat hunting, intelligence, incident response), Vulnerability Detection and Response, Remediation, Security Operations Center and Command Center teams to deliver enterprise-wide security to one of the world's most established technology companies.
**Your role and responsibilities**
Job Duties:
· Contribute to the day-to-day work that supports our critical cybersecurity analysis and
data processing workflows
· Protect organization against phishing, spoofing, malware, and advanced threats while maintaining user experience and compliance
· Familiarity with Exchange, ProofPoint Email Solutions, Powershell, Azure, and M365 suite
· Design, implement and maintain secure email solutions within the Microsoft 365 tenant and related servces
· Moniotr and respond to email-related security incidents, phishing attempts, and compromise events
· Support the team leadership to improve overall exploitation of technologies that best
serve our requirements
· Partner with CIO and CISO teams to develop email security policies, rules, and playbooks
- Work as part of a deeply technical, passionate team of engineers to tackle significant IT
challenges
**Required technical and professional expertise**
· 3 or more years' experience in an email security engineer or similar role
· Experience with Microsoft 365 Exchange or Proofpoint email solutions
· Hands on experience with SPF, DKIM, and DMARC configuration and rollout at an enterprise level
· Experience with (or a proven aptitude for) working within a fast-paced environment
where the success criteria are defined by external factors. This includes having to
change course quickly, based on the evolving needs of a complex and dynamic
environment
· Strong experience with incident response processes for phishing and email-based threats
· Experience with IBM Cloud, AWS, Azure or similar cloud environments
· Strong understanding of email protocols ISMPT, IMAP, POP3) and security controls
· Familiarity with SIEM tools for monitoring and automation on email threats
· Excellent problem-solving, communication, and documentation skills
**Preferred technical and professional experience**
· Experience with secure email gateways (Proofpoint, M365, etc)
· Microsoft certification
· Knowledge of zero trust frameworks and modern authentication methods (MFA, conditional access)
· Familiarity with cloud-native security tools (Sentinel, Defender, XDR)
· Understanding of email encryption solutions (TLS, S/MIME, PGP)
· Experience in large enterprise environments with hybrid Microsoft Exchange deployments
· Ansible experience is a strong advantage
IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.
Data Security Engineer
Security engineer job in Stamford, CT
What you'll do • Design and implement comprehensive data security architectures, with particular focus on database platforms (primarily SQL Server) • Develop and maintain enterprise-wide encryption strategies for securing structured and unstructured data both in transit and at rest, both and both on-premise and in the cloud
• Enhance logging, monitoring and SecOps capabilities of enterprise databases and other data stores
• Configure and optimize Identity and Access Management (IAM) solutions across data platforms and repositories to align to least privilege principles
• Implement Data Loss Prevention (DLP) strategies and controls
• Implement and maintain Information Rights Management (IRM) and Digital Rights Management (DRM) solutions
• Design and implement data tokenization strategies where appropriate
• Secure data processing pipelines and ensure appropriate controls for data workflows
• Create and maintain data security documentation, including policies, procedures, and standards
• Collaborate with development teams to ensure security best practices in data handling
• Conduct vulnerability assessments of the firm's database architecture and associated data storage and processing systems
• Assist in monitoring and managing security patching and upgrade processes for database platforms
What's required
• Bachelor's degree in computer science, cybersecurity, or related technical field
• 6+ years of experience in data/database security engineering and governance
• Deep expertise in database security, particularly SQL Server
• Comprehensive understanding of data warehouse/data lake architectures and tools, particularly Databricks (required)
• Subject matter expertise in Object Storage (eg: S3, Azure Blob, etc) and related security
• Understanding of Active Directory Delegation (constrained vs. unconstrained) and associated best practices
• Experience with 3rd-party SQL Server security governance and monitoring products (eg: Idera, Solarwinds)
• Extensive knowledge of encryption technologies for both structured and unstructured data
• Broad knowledge of secure data/file sharing solutions and ETL workflows
• Experience designing and implementing data tokenization solutions
• Experience with data classification and DLP technologies
• Scripting/automation capabilities (eg: SQL, PowerShell, Python)
• Commitment to the highest ethical standards
Qualifications
Ivy league
colleges education preferred or huge plus.
Additional Information
All your information will be kept confidential according to EEO guidelines.
Firewall Security Engineer
Security engineer job in Stamford, CT
Duration: 6+ Months Experienced Firewall administrator for operational implementation, maintenance and configuration of firewalls. Key Responsibilities: Performs maintenance and changes in firewalls as required. Implementation of new firewalls as required
Assists with troubleshooting network connectivity as it relates to firewalls
Utilizes change management, request, and ticketing systems, documents status updates and problem resolutions
Complete All assignments in a timely manner with an acceptable level of quality
Maintains documentation related to work area
Completes network change requests
Follows documented processes, procedures and policies
Performs customer service duties and responds to customer and project requests as defined by management
Other related duties assigned as needed.
Qualifications/Requirements:
Bachelor's degree and with 3 to 4 years of operational experience administering Firewalls
4 or more years networking/firewall background
Must have networking TCP/IP routing protocol experience
Desired Characteristics:
In-depth experience in security aspects of multiple platforms, operating systems, software, communications and network protocols is desired
Competency in verbal, written, and presentation communications and interpersonal understanding
Ability to understand customer's business needs.
Leadership of work teams/groups
Ability to work with all levels of employees
Highly motivated and able to work effectively under minimal supervision in a fast-paced environment
Team-oriented, placing priority on quality and the successful completion of team goals
Organization and planning skills that include: time management, project coordination and management, and the ability to handle multiple deadlines and associated pressures.
Competency in developing effective solutions to business problems
Ability to analyze problems and to make decisions
REQUIRED SKILLS
YEARS OF EXPERIENCE
WHEN THE SKILL WAS LAST USED
Expert knowledge of Cisco Security products, ASA and Firepower
Expert knowledge of NSX
Expert knowledge of Palo Alto systems
Security Certifications a Plus
Must have networking TCP/IP routing protocol experience
Networking/firewall background
Operational experience administering Firewalls
Additional Information
All your information will be kept confidential according to EEO guidelines.
Senior Cyber Security Engineer
Security engineer job in Shelton, CT
For over 75 years, BIC has been creating ingeniously simple and joyful products that are a part of every heart and home.
As a member of our team, you'll be a part of reigniting a beloved brand as we continue to reimagine everyday essentials in new, sustainable and responsible ways.
Our "roll up your sleeves and get the job done" approach to work creates an environment where self-starters, problem solvers and innovative thinkers thrive. BIC team members are empowered to take ownership of their careers and bring their unique perspectives to the table to make a meaningful impact on our mission.
It's a colorful world - make your mark by joining the BIC team today.
As Senior Cybersecurity Engineer, you will collaborate and partner with a global, cross-functional team to build cybersecurity capabilities and improve maturity. This role involves designing, implementing, and managing security technology to protect the company from cyber threats. Besides, you will support incident response, investigations, playbook development and efforts to identify and mitigate risk.
In this role you will:
Analyze, triage, and investigate alerts from various sources to determine the appropriate response or escalation
Document analysis, findings, and actions for case management and metrics
Support security incident response planning, procedure/playbook development and investigations
Participate in on-call rotation for off-hours escalations
Administer, optimize, and maintain the health of security tools, such as endpoint protection and response (EDR), network detection and response (NDR), and logging pipelines (Syslog/Cribl).
Assist with remediation of identified security risks
Minimum 6 years' experience in Information Technology or Cybersecurity
IT or cybersecurity certifications from industry recognized sources preferred
What you bring to BIC:
Minimum 6 years' experience in Information Technology or Cybersecurity
IT or cybersecurity certifications from industry recognized sources preferred
Prior experience interpreting or analyzing log data and working with log pipelines
Triaging alerts from various sources, following playbooks, and escalating legitimate issues
Knowledge of security tools such as endpoint protection, firewalls, intrusion prevention, SIEM and EDR (CrowdStrike)
Strong understanding of Windows server and desktop operating systems, networking fundamentals, security concepts, Active Directory, Microsoft Azure, Office 365.
In-depth analytical and problem-solving skills to resolve complex issues
BIC is an Equal Opportunity Employer. We strongly commit to hiring people with different backgrounds and experiences to help us build better products, make better decisions, and better serve our customers. We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, veteran status, disability status, or similar characteristics. All employment is decided based on qualifications, merit, and business need.
BIC is not seeking assistance or accepting unsolicited resumes from search firms for this employment opportunity. Regardless of past practice, all resumes submitted by search firms to any team member at BIC via email, or directly to a BIC team member in any form without a valid written search agreement in place for that position will be deemed the sole property of BIC, and no fee will be paid in the event the candidate is hired by BIC as a result of the referral or through other means.
Senior Security Ops Analyst - Incident Response
Security engineer job in New Hyde Park, NY
We are seeking a Senior Security DevOps Engineer who will be responsible for a variety of objectives resulting in risk mitigation and remediation of internal & external security threats. This role performs advanced threat analysis, threat intelligence gathering & reporting, incident response activities, improves accuracy of security systems, improves existing processes, and works on Cybersecurity focused projects.
Contract to hire
Onsite 2 days a week located in New York
Cybersecurity - Cyber Intelligence & Incident Response
Responds to and remediates email, endpoint, threat intelligence, and network-based threats; provides forensic investigation and support.
Provides after-hours support as needed for response activities.
Integration experience.
Collaborates with cross divisional and Cybersecurity teams to continuously improve security capabilities and response to threats in the most efficient and effective manner.
Assists with projects to implement advanced technologies to prevent & identify malicious behavior within cloud environments, networks, endpoints, and email technologies.
Operates products such as SIEM, SOAR, threat intelligence platforms, advanced email protection, EDR, cloud security products, IDS/IPS, Zero Trust tooling, and other security technologies.
Scripting experience.
Implements and performs threat analysis utilizing industry standard frameworks (kill chain/diamond model) and techniques.
Proposes and helps review security plans and policies to improve environmental security.
Maintains and produces metrics, operational playbooks, process diagrams and documentation for the Cybersecurity program.
AWS and/or Azure knowledge.
Produces and distributes operational and tactical threat intelligence reports.
Other duties may be assigned as needed to address new security threats facing the enterprise.
Ability to:
Demonstrate great teamwork and partnership with internal teams for resolution of security-based issues.
Python programming tasks and understand of programming in general.
Perform security event correlation, triage, and analysis.
Apply security Threat Intelligence while responding to and investigating security events or Incidents.
Identify when an application, network, system, or user has been compromised by an internal or external threat.
Work on multiple projects to improve security capabilities.
Exercise strong understanding of defense-in-depth security best practices.
Apply security engineering and architecture concepts to best understand how to employ the most effective security monitoring, response, and threat reporting.
Demonstrate effective communication of security issues and topics to management and others.
Work well under pressure and within a high paced environment.
Maintain operational guidelines and standards for Cybersecurity.
Cyber security Architect
Security engineer job in West Babylon, NY
Job DescriptionBenefits:
401(k)
401(k) matching
Competitive salary
Title: Cyber security Architect Work authorization: US Citizen Key Responsibilities Design and develop enterprise-class architecture across assigned technologies.
Manage project tasks, timelines, deliverables, and technical resources.
Review firewall policies to identify, analyze, and report cybersecurity gaps.
Assess firewall interface configurations and provide detailed findings on security risks.
Review and validate firewall zones for proper segmentation and compliance.
Create comprehensive documentation, diagrams, and technical artifacts to support system architecture.
Collaborate with cross-functional teams to ensure secure, scalable, and reliable system implementations.
Required Qualifications
Minimum Experience: 8+ years of enterprise-level experience in technical architecture or related fields.
Certifications: Multiple industry and/or vendor certifications (e.g., CISSP, CCNP/CCIE, AWS/Azure Architect, Security+).
Education: Bachelors Degree in Computer Science or related field.
Equivalent education or experience may be substituted.
Preferred Skills
Strong knowledge of cybersecurity frameworks and industry best practices.
Expertise in firewall technologies, configurations, and policy management.
Excellent analytical, documentation, and diagramming skills (e.g., Visio, Lucidchart).
Ability to communicate complex technical concepts to both technical and non-technical stakeholders.
Experience leading technical teams or acting as a project technical lead.
Workday Application Security Analyst
Security engineer job in White Plains, NY
**Duration: 12 months contract (with possible extension)** ***Note: Open to candidates who are willing to relocate at their own expense.** + The Workday Application Security Analyst is responsible for ensuring the confidentiality, integrity, and availability of data within the Workday system.
+ They design, implement, and maintain security configurations, including roles, permissions, and access controls, to protect organizational data and comply with company policies, industry standards, and regulatory requirements.
**Job Functions & Responsibilities**
+ Develop and implement security roles, domain security policies, data and business process security within Workday
+ Ensure secure integration with other on‐premise and cloud applications like GRC tools
+ Configure and manage access permissions to ensure users have the appropriate level of access to data and functionality
+ Ensure compliance with company policies, industry standards (like SOC 2), and regulatory requirements (like GDPR)
+ Conduct regular security audits and assessments to identify vulnerabilities and areas for improvement
+ Assist in investigating and responding to security incidents, identifying root causes, and implementing preventive measures
+ Collaborate with IT, HR, and other stakeholders to align security efforts with business needs and ensure effective communication of security policies and procedures
+ Create and maintain documentation for security policies, procedures, and configurations, and provide training to users on security best practices
+ Stay abreast of Workday updates, industry trends, and emerging security threats to continuously improve security configurations and processes
+ Familiarity with other ERPs like SAP is preferred
+ Familiarity with GRC and Workday SoD (Segregation of Duties) management is desired
**Skills**
+ SAP ERP (S/4 HANA is a plus)
+ Workday
+ Active Directory group management
+ GRC AC 10.1 and above
+ Microsoft Clienture
+ SuccessFactors
+ Applicable functional knowledge for SAP security areas like Finance, MM, ISU billing, etc.
+ SAP audit & compliance
**Education & Certifications**
+ Bachelor's degree in engineering, IT, or related field
+ 7-10 years of hands‐on industry experience in Workday Security implementation and administration
+ Strong ITGC compliance knowledge for Workday
+ Familiarity with Workday risk management and GRC integration
+ Ability to identify, analyze, and resolve complex security and compliance issues
+ Strong interpersonal and communication skills, with the ability to effectively collaborate with diverse teams
** About US Tech Solutions:**
US Tech Solutions is a global staff augmentation firm providing a wide range of talent on-demand and total workforce solutions. To know more about US Tech Solutions, please visit *********************** (*********************************** .
US Tech Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Technical-Security -Architect
Security engineer job in Westwood, NJ
Full Time Position : Compensation : TBD- based on experience US Citizens and those authorized to work in the US are encouraged to apply. Unfortunately we are unable to offer sponsorships at this time. We're looking for a cut above the rest, someone who is not only technical but also has the skill set as an Architect to design Checkpoint and launch it. Very important that you actually knows how to hold a conversation and walk a client through the process.
Qualifications
Must have
:
Proficiency in Check Point products (Firewall, VPN etc)
Experience with Blue Coat products (Proxy SG, WAN acceleration, Packetshaping, etc.), Citrix NetScaler or IP Load balancing product and WebSense products
Very important that you actually knows how to hold a conversation and walk a client through the process.
Must be analytical, and have extreme good organizational skills
Certifications in above technologies CCSE, CCSI, CCSA, CISSP (Not required, but a plus to have)
Thank you,
John Anton
Additional Information
All your information will be kept confidential according to EEO guidelines.
Technical-Security -Architect
Security engineer job in Westwood, NJ
The corporation is built around the enterprise relationships that they have as a service provider and an expertise in the industry of technology.
Job Description
Location: Metro Area
Full Time Position:
Compensation: TBD- based on experience
US Citizens and those authorized to work in the US are encouraged to apply. Unfortunately we are unable to offer sponsorships at this time.
We're looking for a cut above the rest, someone who is not only technical but also has the skill set as an Architect to design Checkpoint and launch it. Very important that you actually knows how to hold a conversation and walk a client through the process.
Qualifications
Must have:
Proficiency in Check Point products (Firewall, VPN etc)
Experience with Blue Coat products (Proxy SG, WAN acceleration, Packetshaping, etc.), Citrix NetScaler or IP Load balancing product and WebSense products
Very important that you actually knows how to hold a conversation and walk a client through the process.
Must be analytical, and have extreme good organizational skills
Certifications in above technologies CCSE, CCSI, CCSA, CISSP (Not required, but a plus to have)
Thank you,
John Anton
Additional Information
All your information will be kept confidential according to EEO guidelines.
Network Security Engineer
Security engineer job in Montvale, NJ
Strong TIER 2-3 Network Security Engineer who can assist with Fine tuning QRadar, WAF's, and /or has experience with Sourcefire. Tuning and troubleshooting QRadar to deliver optimal performance in high volume enterprise customer environments • Configuring and troubleshooting network and security devices, various operating systems, and applications such as web, mail and database services
•Develop / Tune Anomaly, Behavioral and Threshold Rules to identify unusual events in the environment
Additional Information
All your information will be kept confidential according to EEO guidelines.
SAP Identity Management
Security engineer job in Stamford, CT
E*Pro Consulting service offerings include contingent Staff Augmentation of IT professionals, Permanent Recruiting and Temp-to-Hire. In addition, our industry expertise and knowledge within financial services, Insurance, Telecom, Manufacturing, Technology, Media and Entertainment, Pharmaceutical, Health Care and service industries ensures our services are customized to meet specific needs. For more details please visit our website *****************
We have been retained for providing recruiting assistance, for direct hires, by one of the world-leading information technology consulting, services, and business process outsourcing organization that envisioned and pioneered the adoption of the flexible global business practices that today enable companies to operate more efficiently and produce more value.
Job Description
Required Skills:
• knowledge of SAP Identity Management 7.2 version
• knowledge of SAP IDM integration points with SAP and non-SAP products/tools
• LDAP/Active Directory, PD-Org, NWBC, Solution Manager 7.1.
• Experience in SAP security, SAP GRC is a plus.
• Basis experience is a plus
• 6+ years of SAP Identity Management Implementation and support experience.
• Experience as the SAP IDM SME in at least 2 implementations
• Experience with gap analysis and strategic roadmap/blueprint development
• Experience in configuring SAP IDM for user provisioning in a complex SAP landscape comprising of ABAP, JAVA and duel stack systems as well as non-SAP systems
• Involve in Onsite-Offshore coordination activities (handover-takeover, off business hour activity tracking, offshore reporting)
• Provide SAP IDM support to SAP implementation as well as support teams and internal customers/clients
Additional Information
All your information will be kept confidential according to EEO guidelines.