Post job

Security engineer jobs in The Pinery, CO

- 1,098 jobs
All
Security Engineer
Information Security Engineer
Information Security Analyst
Hacker
Cyber Security Analyst
Network Security Architect
Information Security Manager
Network Engineer
Data Security Analyst
Defense Analyst
Senior Security Engineer
Systems Engineer
Network Security Analyst
Security System Engineer
Cyber Security Engineer
  • System Dev Engineer II, Analytics ADC

    Amazon Web Services, Inc. 4.7company rating

    Security engineer job in Denver, CO

    Application deadline: Jan 28, 2026 The Analytics Agentic AI GovCloud team is at the forefront of delivering AWS Agentic AI cloud services to our customers in GovCloud environments. We are dedicated to pushing the boundaries of what is possible in this rapidly evolving field, leveraging the power of cloud computing and the latest advancements in data technologies. With a focus on expanding Agentic AI services across GovCloud regions, driving automation investments, and delivering open-source solutions, we are at the forefront of modernization. Our teams are innovating new ways of building massively scalable distributed systems and delivering the next generation of cloud computing with Amazon Q products like Q Business, Q Developer and Kiro. We are seeking a Systems Development Engineer II who can think big and simplify solutions to complex problems, all while ensuring our customers continue to have the best experience possible! A successful Systems Development Engineer II joining the team will be an innovator, building solutions and working closely with Amazon's largest and most demanding government customers to address their specific needs across a suite of Analytics services in GovCloud environments. They will drive the resolution of technical issues and work diligently to improve the customer experience. The candidate selected must obtain and maintain a security clearance at the TS/SCI with polygraph level. Upon start, the selected candidate will be sponsored for a commensurate clearance for each government agency for which they perform AWS work. 10012 Key job responsibilities The ideal candidate will: - Be great fun to work with. Our company credo is "Work hard. Have fun. Make history". The right candidate will love what they do and instinctively know how to make work fun. - Have strong Linux & Networking Fundamentals. The ideal candidate will have deep experience working with Linux, preferably in a large scale, distributed environment. You understand networking technology and how servers and networks inter-relate. You regularly take part in deep-dive troubleshooting and conduct technical post-mortem discussions to identify the root cause of complex issues. - Have strong software and skills. The ideal candidate will have deep experience working with systems in a large scale, distributed environment. You understand networking technology and how servers and networks inter-relate. You are comfortable facilitating deep-dive troubleshooting and leading technical post-mortem discussions to identify the root cause of complex issues. - Love to solve problems. The ideal candidate will love leading teams to solve difficult technical problems related to AWS service builds and operations in air-gapped cloud environments. You have a solid understanding of systems design, operations, automation, and process improvement. - Think Big. The ideal candidate will work on projects building and deploying solutions across ADC partitions and regions. You will strive build a culture to improve and streamline processes to allow for work on a massive scale. A day in the life As a Systems Development Engineer II in Analytics, you will build innovative solutions, expand services into GovCloud regions, and improve our operations to provide resiliency and the best experience for our customers. You influence technical strategy and architectural decisions within the team and with partner teams and make data-driven decisions. You bring in best practices in operational and engineering excellence by actively contributing to ticket resolution and infrastructure improvements. Successful candidates will be expected to show leadership on strong Bias for Action, Invent and Simplify, Insist on the Highest Standards, and Deliver Results. You will develop, build, and operate AWS Agentic AI services that enable customers to optimize their data. Our engineering teams support services running in air gapped regions that are isolated from the public internet creating unique engineering challenges and opportunities for innovation. The Analytics team is responsible for diving deep to resolve operational challenges, innovating to automate operational tasks, build open source solutions for our customers, supporting execution of various security campaigns (blocked software, host patching), and parity programs. As a Systems Development Engineer II you will: - Work cross functionally to foster a constructive dialogue, harmonize discordant views, and lead the resolution of contentious issues. - Love to code. Whether its building tools in Java or solving complex system problems in Python, the ideal candidate will love using technology to solve problems. You have a solid understanding of software development methodology and know how to use the right tool for the right job. - Think Big. The ideal candidate will build and deploy solutions across thousands of devices. You will strive to improve and streamline processes to allow for work on a massive scale. About the team Why AWS Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Utility Computing (UC) AWS Utility Computing (UC) provides product innovations - from foundational services such as Amazon's Simple Storage Service (S3) and Amazon Elastic Compute Cloud (EC2), to consistently released new product innovations that continue to set AWS's services and features apart in the industry. As a member of the UC organization, you'll support the development and management of Compute, Database, Storage, Internet of Things (IoT), Platform, and Productivity Apps services in AWS, including support for customers who require specialized security solutions for their cloud services. Inclusive Team Culture Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. Mentorship and Career Growth We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Diverse Experiences Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. BASIC QUALIFICATIONS- Bachelor's degree in computer science or equivalent - 3+ years of non-internship professional software development experience - Experience programming with at least one modern language such as C++, C#, Java, Python, Golang, PowerShell, Ruby - Knowledge of systems engineering fundamentals (networking, storage, operating systems) - 1+ years of designing or architecting (design patterns, reliability and scaling) of new and existing systems experience PREFERRED QUALIFICATIONS- 5+ years of administrative experience in networking, storage systems, operating systems and hands-on systems engineering experience - Experience working in an Agile environment using the Scrum methodology - Experience with CI/CD pipelines build processes - Experience in automating, deploying, and supporting large-scale infrastructure - Current, active US Government Security Clearance of Top Secret with SCI eligibility or above Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit ********************************************************* for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. For salaried roles, your Amazon package will include listed sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at ****************************************************** Colorado $129,200 - $174,800 annually
    $129.2k-174.8k yearly 2d ago
  • Mission Relevant Terrain Cyber Analyst

    Keenbee Talent Soluitions

    Security engineer job in Colorado Springs, CO

    A leading federal contractor is seeking a highly skilled Mission Relevant Terrain - Cyber (MRT-C) Analyst to support cyberspace mission assurance activities for high-priority U.S. Space Force (USSF) operations. This role plays a critical part in identifying mission dependencies, assessing cyber vulnerabilities, and enabling defensive cyber actions that directly support national security missions. The ideal candidate brings deep experience in mission analysis, cybersecurity, and space mission systems, with the ability to translate technical findings into actionable insights for mission owners, cyber operators, and program offices. Responsibilities Essential Duties Conduct MRT-C analysis on mission systems and coordinate follow-on defensive cyber actions supporting top-priority USSF missions and assets. Perform mission analysis to identify cyber dependencies, vulnerabilities, and develop mission-focused defense strategies. Analyze cyberspace activities affecting command, control, operational processes, and dependent space mission systems to ensure mission success. Identify, evaluate, and implement mitigation strategies for risks within cyberspace terrain critical to mission accomplishment. Develop mission thread data supporting mission owners, cybersecurity personnel, defensive cyber operators, and program teams in assessing acceptable mission risk caused by cybersecurity deficiencies. Produce and deliver Operational Risk Assessments (ORA) and Asset Defense Plans (ADP). Evaluate MRT-C results against system vulnerabilities and threat activity to identify Key Terrain - Cyber (KT-C) for each USSF mission. Support MRT-C teams in analyzing mission systems to determine cyber dependencies, security risks, mission vulnerabilities, and protective measures. Accurately enter and maintain mission data within the Mission Assurance Decision Support System (MADSS). Qualifications Required Skills & Knowledge Strong understanding of critical vs. non-critical systems and networks, including how organizations defend, respond, and prioritize security actions. Experience conducting assessments to identify deviations from acceptable configurations, enclave policies, or security baselines. Ability to measure defense-in-depth effectiveness against known vulnerabilities. Solid understanding of mission analysis techniques, FMA-C methodologies, and mission dependency mapping. Extensive knowledge of Mission Assurance disciplines, including risk management, mission mapping, vulnerability assessments, and defensive cyber capabilities. Ability to solve complex problems involving diverse information systems. Familiarity with MADSS or similar mission assurance data repositories. Strong verbal and written communication skills, with excellent time management and interpersonal abilities. Minimum Requirements 4+ years of experience in mission analysis, information security technologies, or supporting USSF mission capabilities. TS/SCI clearance required. CISSP or Security+, and at least one of the following: GICSP GCED PenTest+ GSEC OR a B.S. in IT, Cybersecurity, Data Science, Information Systems, or Computer Science from an accredited or CAE-designated institution. Ability to travel up to 25%. Preferred Qualifications Bachelor's degree from an accredited institution. Experience with Functional Mission Analysis - Cyber (FMA-C). Familiarity with U.S. Space Force capabilities, systems, and mission assets.
    $68k-93k yearly est. 18d ago
  • Network Engineer

    Beacon Hill 3.9company rating

    Security engineer job in Denver, CO

    Requirements 7+ years of experience as a network engineer (Cisco, route/switch, BGP, overlay and underlay) Load balancer experience (very important). This team uses A10 and F5. Automation experience; this team uses Python for automation YAML (to define, configure, and automate network infrastructure) Git for network configurations Intangibles: Excellent communications kills Humble and hard-working personality Beacon Hill is an equal opportunity employer and individuals with disabilities and/or protected veterans are encouraged to apply. California residents: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. If you would like to complete our voluntary self-identification form, please click here or copy and paste the following link into an open window in your browser: ***************************************** Completion of this form is voluntary and will not affect your opportunity for employment, or the terms or conditions of your employment. This form will be used for reporting purposes only and will be kept separate from all other records. Company Profile: Beacon Hill Technologies, a premier National Information Technology Staffing Group, provides world class technology talent across all industries utilizing a complete suite of staffing services. Beacon Hill Technologies' dedicated team of recruiting and staffing experts consistently delivers quality IT professionals to solve our customers' technical and business needs. Beacon Hill Technologies covers a broad spectrum of IT positions, including Project Management and Business Analysis, Programming/Development, Database, Infrastructure, Quality Assurance, Production/Support and ERP roles. Learn more about Beacon Hill and our specialty divisions, Beacon Hill Associates, Beacon Hill Financial, Beacon Hill HR, Beacon Hill Legal, Beacon Hill Life Sciences and Beacon Hill Technologies by visiting ************* Benefits Information: Beacon Hill offers a robust benefit package including, but not limited to, medical, dental, vision, and federal and state leave programs as required by applicable agency regulations to those that meet eligibility. Upon successfully being hired, details will be provided related to our benefit offerings. We look forward to working with you. Beacon Hill. Employing the Future™
    $66k-87k yearly est. 5d ago
  • Azure Network Engineer

    Prominent 4.2company rating

    Security engineer job in Greenwood Village, CO

    Prominent is assisting our client with a contract to hire opportunity for an Azure Network Engineer onsite in Greenwood Village, CO or Omaha, NE. The Azure Network Engineer is responsible for designing, implementing, and maintaining Azure networking solutions. This role involves optimizing performance, resiliency, scale, and security of Azure networking solutions. The engineer proactively monitors network environments to identify issues and minimize risks and resolves connectivity issues. No visa sponsorship is available for this opportunity! C2C or 1099 not available for this opportunity! Relocation assistance not available. An Azure Network Support Engineer should have expertise in: Core Network Infrastructure: Understanding of virtual networks, subnets, and network security groups. Hybrid Connectivity: Experience with VPNs, ExpressRoute, and other connectivity solutions. Application Delivery Services: Knowledge of load balancers, application gateways, and traffic managers. Private Access to Azure Services: Implementing private endpoints and service endpoints. Network Security: Implementing firewalls, network security groups, and other security measures. Microsoft Certified: Azure Network Engineer Associate certification is recommended.
    $67k-90k yearly est. 5d ago
  • Product Security Engineer, AI

    Meta 4.8company rating

    Security engineer job in Denver, CO

    Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys. **Required Skills:** Product Security Engineer, AI Responsibilities: 1. Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more 2. Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities 3. Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products **Minimum Qualifications:** Minimum Qualifications: 4. BS or MS in Computer Science or a related field, or equivalent experience 5. 8+ years of experience finding vulnerabilities in interpreted languages. Knowledge of best practice secure code development 6. Experience with exploiting common security vulnerabilities 7. Knowledge of common exploit mitigations and how they work 8. Coding and scripting experience in one or more general purpose languages **Preferred Qualifications:** Preferred Qualifications: 9. Experience creating software that enables security processes, especially those leveraging AI/ML for automation or augmentation 10. Experience integrating or building AI-powered tools to assist with vulnerability detection, code review, or threat modeling 11. Experience creating software that enables security processes 12. 8+ years of experience finding vulnerabilities in C/C++ code 13. Contributions to the security community (public research, blogging, presentations, bug bounty) 14. Demonstrated ability to collaborate with AI researchers or engineers to apply AI in security workflows **Public Compensation:** $177,000/year to $251,000/year + bonus + equity + benefits **Industry:** Internet **Equal Opportunity:** Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment. Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
    $177k-251k yearly 60d+ ago
  • Cloud Network Security Architect

    Fortinet 4.8company rating

    Security engineer job in Denver, CO

    Fortinet is seeking a Cloud Network Security Architect specializing in cloud networking, SD-WAN on-ramp design, and SASE convergence. As part of Fortinet's Cloud Architecture team, this role drives the design and deployment of secure, high-performance connectivity across public cloud, data center, and edge environments. The ideal candidate combines strong DevOps engineering skills with deep understanding of secure cloud networking architectures, including dynamic routing constructs, transitive routing models, and cloud-native route services. This role will work closely with Product Management, R&D, Field Engineering, and global customers to develop reference architectures, integrations, and automation for secure, adaptive cloud connectivity. Responsibilities: Design and implement secure cloud network architectures that leverage Fortinet SD-WAN, SASE, and cloud-native routing to deliver optimized multi-cloud connectivity. Develop automation workflows and DevOps pipelines for network provisioning, telemetry, and policy enforcement, using services such as Terraform, Ansible, and cloud-native templates. Architect solutions using transitive routing, route services, dynamic path selection, and zero trust segmentation to enable secure, scalable network topologies. Partner with Product Management and Development teams to identify feature integrations that enhance secure cloud networking capabilities. Lead proof of concept deployments and customer solution validations across public and hybrid cloud environments. Develop and maintain reference architectures, scripts, and code repositories applying industry best practices. Provide architectural guidance on secure traffic steering, network segmentation, and cloud interconnects. Support Professional Services and Sales Engineering teams in customer design and migration projects. Create organizational workflow enhancements to deliver public cloud-sourced services, such hands-on labs, customer POCs, tool integration, data enrichment and other uses Provide technical guidance on Public Cloud matters to internal stakeholders Document and maintain script and application libraries or repositories Provide technical guidance on Public Cloud integration and development, ex. the use of CSP APIs and how they can be leveraged Translate business requirements to programmatic logic Develop customer-facing documentation Create reference designs and code that applies CSP best practices Advise Product and field Engineering on solution options, feature requirements, and reference designs. Requirements: 5+ years of experience in cloud networking, network security, or secure SD-WAN/SASE design. Strong development and scripting experience in one or more languages (Python, Node.js, C#, Go, or equivalent). Familiarity with CI/CD tools (Git, Jenkins) and IaC orchestration (Terraform, Ansible, or CloudFormation). Experience with IaaS and SaaS networking constructs such as VPCs/VNets, route tables, peering, VPNs, and load balancers. Knowledge of BGP, transitive routing, network segmentation, and traffic engineering in cloud environments. Hands-on experience with containerized environments (Docker, Kubernetes) and cloud-native network policies. Proficiency with data formats such as YAML, JSON, or XML. Familiarity with cloud security services (CNAPP, CASB, CWP, SCA, DAST). Strong communication skills and ability to collaborate across engineering, product, and customer-facing teams. Experience in network security highly desired, including VPN, Proxies, Authentication, etc. Technical writing and network documentation skills highly desired Kubernetes and Docker experience required Education: Bachelor's degree in Computer Science or similar and/or equivalent experience required Master's preferred Fortinet offers employees a variety of benefits, including medical, dental, vision, life and disability insurance, 401(k), 11 paid holidays, vacation time, and sick time as well as a comprehensive leave program. Wage ranges are based on various factors including the labor market, job type, and job level. On target earnings for this position is expected to be $170,000 - $280,000 per year. Exact salary offers will be determined by factors such as the candidate's subject knowledge, skill level, qualifications, experience, and geographic location. All roles are eligible to participate in the Fortinet equity program, and this position is also eligible for commissions based on the terms of the Sales Compensation Plan
    $170k-280k yearly Auto-Apply 43d ago
  • Secret Mid-Level Cyber Threat Emulation Analyst

    Insight Global

    Security engineer job in Colorado Springs, CO

    A client of Insight Global's is looking for a Secret Mid-Level Cyber Threat Emulation Analyst, to join their team! This position will play a key role in supporting the Missile Defense Agency (MDA). Job Responsibilities: - Perform proactive and reactive cybersecurity duties on customer networks to strengthen enterprise-wide security posture. - Analyze assets, threats, and vulnerabilities to identify weaknesses and enhance network defenses; measure effectiveness of defense-in-depth architecture. - Develop, review, and update Defensive Cyber Operations (DCO) procedures, processes, manuals, and related documentation. - Generate vulnerability assessment reports, escalate findings, and support enterprise-wide incident response in compliance with DoD regulations; lead cyber events and investigations from start to finish. - Execute Cyber Threat Emulation (CTE) actions using automated validation tools; create dashboards and reports detailing vulnerabilities, remediation steps, and security posture assessments. - Draft and submit Cyber Tasking Orders (CTOs) to address issues identified during CTE engagements; implement Higher Headquarters Tasking Orders (HHQ) and Fragmentary Orders as directed. - Mentor and train analysts at all levels; collaborate with Cyberspace Domain Awareness (CDA) to develop evaluation criteria and methodologies aligned with HHQ and industry best practices. This position is onsite full-time in Colorado Springs, CO or Huntsville, Alabama. This is a six month contract to hire opportunity and the salary range for this role is between $120,000 - $132,000/yr depending on years and level of experience, education, and certifications. This role requires an Active Secret Clearance or higher. Typical benefits offered include flexible work schedules, educational reimbursement, retirement benefits (401K match), employee stock purchase plan, health benefits, tax saving options, disability benefits, life and accident insurance, voluntary benefits, paid time off and paid holidays, and parental leave. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: **************************************************** Skills and Requirements - DoD Secret Security Clearance (Top Secret Preferred) - DoD 8570.01-M IAT Level II certification with Continuing Education (CE) - (CySA+, GICSP, GSEC, Security+ CE, SSCP) - 6+ years of general work experience - 4 years of experience directly related to: Performing manual or automated penetration test in an enterprise environment Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments Experience performing the full life cycle of incident response and enterprise-level monitoring - 1+ years of management or leadership experience in a team environment - Currently hold, or obtain within 6 months of start date, a PenTest+ certification - Bachelor's degree, or higher, in Cybersecurity, Computer Science or related field - Experience working with Cyber Threat Emulation tools, policies, and procedures - Experience operating custom software on top of a Linux platform - Experience with security analysis and solutions in a WAN/LAN environment to include Routers, Switches, Network Devices, and Operating Systems (e.g., Windows, and Linux) - Experience with other Security Operations Centers (SOC)/DCO tools/applications, such as Firewalls, Intrusion Detection Systems / Intrusion Prevention Systems, Network Security Manager, Bluecoat, Barracuda, etc. - Experience performing security compliance scans across a WAN (ACAS/Nessus preferred) - Background in configuration, troubleshooting, and deployment of host-based security (ESS preferred) - Experience mentoring and training personnel in an evolving, high-paced environment - Familiarity with DoD Security Operations Centers (SOC) (aka CSSP) and DCO/Cybersecurity Service Provider (CSSP)-guiding security policies and procedures
    $120k-132k yearly 60d+ ago
  • Senior Manual Ethical Hacker

    Bank of America 4.7company rating

    Security engineer job in Denver, CO

    At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day. One of the keys to driving Responsible Growth is being a great place to work for our teammates around the world. We're devoted to being a diverse and inclusive workplace for everyone. We hire individuals with a broad range of backgrounds and experiences and invest heavily in our teammates and their families by offering competitive benefits to support their physical, emotional, and financial well-being. Bank of America believes both in the importance of working together and offering flexibility to our employees. We use a multi-faceted approach for flexibility, depending on the various roles in our organization. Working at Bank of America will give you a great career with opportunities to learn, grow and make an impact, along with the power to make a difference. Join us! Job Description: Manual Ethical Hacking is part of the Application Development Security Framework Program within Bank of America's Cyber Security Assurance Offensive Security group. The program provides services to assess the security resilience of the bank's applications to malicious hacking activity. This senior technical role is responsible performing and leading ethical hacking assessments of the bank's technologies, applications, and cyber security controls while adapting testing methods to evolving and emerging threats. Key responsibilities include leading and performing research, understanding the bank's security policies, working with appropriate partners to complete assessments and simulations, identifying misconfigurations and vulnerabilities, and reporting on associated risk. These individuals partner closely with security partners, CIO clients and multiples lines of business. These individuals are expected to perform application security-oriented dynamic and static assessments across a multitude of technologies including web UI, web APIs, mobile and cloud, including associated source code. Key Responsibilities in order of importance: Perform assigned analysis of internal and external threats on information systems and predict future threat behavior. Incorporate threat actors' tactics, techniques, and procedures into offensive security testing to identify high-value vulnerabilities/chained attacks. Developing Proof-of-concepts for exploitation. Perform assessments of the security, effectiveness, and practicality of multiple technology systems. Leverage innovative thinking to help solve problems or introduce new ideas to processes or products applicable to offensive security. Prepare and present detailed technical information for various media including documents, reports, and notifications. Provide clear and practical advice regarding managing risks. Learn and develop advanced technical and leadership skills, mentor Junior and Intermediate assessors in technical tradecraft and soft skills. Respond to security incidents and provide technical assistance to leadership across the Information Security organization. Required Skills: Minimum of 5+ years of professional pentesting, application security or ethical hacking experience, preferably in a large, complex, enterprise environment Detailed technical knowledge in at least 5 of the following areas: security engineering application architecture authentication and security protocols application session management applied cryptography common communication protocols mobile frameworks single sign-on technologies exploit automation platforms Web APIs Cloud environments LLM security Able to manually identify and reproduce findings, discuss remediation concepts, develop PoCs for vulnerabilities, use scripting/coding techniques, proficiently execute common penetration testing tools, triage, and support incidents, and produce high value findings Experience performing manual web application assessments i.e., must be able to simulate a OWASP Top 10 vulnerabilities without the use of tools Experience performing manual code reviews for security relevant issues Experience working with DAST and SAST tools to identify vulnerabilities Knowledge of network and Web related protocols/technologies (e.g., UNIX/LINUX, TCP/IP, Cookies) Experience with vulnerability assessment tools and penetration testing techniques. Solid programming/debugging skills, development frameworks, CVE and CWE research/reproduction Threat Analysis, threat modelling and SBOM analysis Innovative thinking, threat actor simulation Technology Systems Assessment Technical Documentation Advisory Desired: CEH, OSCP/OSCE/OSWE/GXPN/GPEN/GWAPT/GMOB/All Practitioner Certs [Port Swigger BSP Academy]/Cloud Cert(s)/ eWPT; eWPTX; eMAPT [INE Pentester Academy] Strong programming/scripting skills This job will be open and accepting applications for a minimum of seven days from the date it was posted. Shift: 1st shift (United States of America) Hours Per Week: 40 Pay Transparency details US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540), US - NJ - Jersey City - 101 Hudson St - 101 Hudson (NJ2101), US - WA - Seattle - 401 Union St - Rainier Square (WA1510) Pay and benefits information Pay range$160,000.00 - $205,000.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligible This role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.
    $160k-205k yearly Auto-Apply 60d+ ago
  • Infrastructure Security Engineer

    Digitalocean 3.7company rating

    Security engineer job in Denver, CO

    Dive in and do the best work of your career at DigitalOcean. Journey alongside a strong community of top talent who are relentless in their drive to build the simplest scalable cloud. If you have a growth mindset, naturally like to think big and bold, and are energized by the fast-paced environment of a true industry disruptor, you'll find your place here. We value winning together-while learning, having fun, and making a profound difference for the dreamers and builders in the world. We are looking for an Infrastructure Security Engineer who is passionate about building and maintaining robust systems and tools that keep DigitalOcean's production and corporate infrastructure safe, secure, and defensible. As an Infrastructure Security Engineer at DigitalOcean, you will join a dynamic team dedicated to revolutionizing cloud computing and AI. You will be a key technical contributor who owns the implementation of robust security solutions for defined problems within the team's scope. Reporting to the Infrastructure Security Manager, you will secure our production environment and corporate systems by implementing security tools and processes. You will embody the InfraSec philosophy of "yes, and" rather than "no" by providing secure-by-design solutions while removing obstacles to productivity. What You'll Do: Own the implementation of small-to-medium sized security projects and solutions, focusing on the team's primary areas of expertise: Identity and Access Management and Security Infrastructure Management. Develop, test, and deploy code/scripts for security tooling, enhancing Security Alerting, Logging, and Visibility systems to provide near-realtime notification of security-relevant changes and potential breaches. Actively manage and operate core security infrastructure, including remote access management solutions and systems related to Identity lifecycle, authentication policies, and centralized secrets management. Participate in core team processes, including on-call rotations, and directly contribute to triage alerts and collaborate with the Incident Response team when necessary. Assess the security of systems by maintaining and monitoring security controls on corporate and platform infrastructure (e.g., vulnerability scanners, host-based security tools, and network security monitoring) to identify and close visibility gaps. Partner with technical teams across Engineering and Infrastructure to advocate for and guide the adoption of security best practices, ensuring access controls limit risk by restricting access by business role and need-to-know. What You'll Add to DigitalOcean: 2+ years of experience as a security engineer or security operations analyst, demonstrating the ability to work on small and defined security problems where the solution might not be fully defined. Strong understanding of Linux systems, services, and deployment models (e.g., Ubuntu). Experience with automating security tooling and workflows, including event enrichment, reduction, and correlation. Experience with engineering and maintaining Identity and Access Management systems (e.g., LDAP, Single Sign-On, VPN or Zero Trust solutions). Proficiency in scripting (Python, Bash, or equivalent) to efficiently automate tasks and streamline processes. Clear and effective written and verbal communication skills for technical writing, presenting, and providing security guidance. Bonus Qualifications: Experience with Vulnerability Management processes, focused on prioritizing known vulnerabilities for remediation at scale. Familiarity with network security concepts and experience in auditing network security configurations to identify vulnerabilities or misconfigurations. Experience managing Centralized Secrets Management platforms. Familiarity with Configuration as Code software (e.g., Chef, Salt, Ansible, Terraform). Compensation Range: $102,800.00 - $128,500.00 *This is a remote role JR: 2025-7360 #LI-Remote #LI-AS1 Why You'll Like Working for DigitalOcean We innovate with purpose. You'll be a part of a cutting-edge technology company with an upward trajectory, who are proud to simplify cloud and AI so builders can spend more time creating software that changes the world. As a member of the team, you will be a Shark who thinks big, bold, and scrappy, like an owner with a bias for action and a powerful sense of responsibility for customers, products, employees, and decisions. We prioritize career development. At DO, you'll do the best work of your career. You will work with some of the smartest and most interesting people in the industry. We are a high-performance organization that will always challenge you to think big. Our organizational development team will provide you with resources to ensure you keep growing. We provide employees with reimbursement for relevant conferences, training, and education. All employees have access to LinkedIn Learning's 10,000+ courses to support their continued growth and development. We care about your well-being. Regardless of your location, we will provide you with a competitive array of benefits to support you from our Employee Assistance Program to Local Employee Meetups to flexible time off policy, to name a few. While the philosophy around our benefits is the same worldwide, specific benefits may vary based on local regulations and preferences. We reward our employees. The salary range for this position is based on market data, relevant years of experience, and skills. You may qualify for a bonus in addition to base salary; bonus amounts are determined based on company and individual performance. We also provide equity compensation to eligible employees, including equity grants upon hire and the option to participate in our Employee Stock Purchase Program. DigitalOcean is an equal-opportunity employer. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service. Application Limit: You may apply to a maximum of 3 positions within any 180-day period. This policy promotes better role-candidate matching and encourages thoughtful applications where your qualifications align most strongly.
    $102.8k-128.5k yearly Auto-Apply 12d ago
  • Security Engineer

    Attainx Inc.

    Security engineer job in Boulder, CO

    Job Title: Security Engineer Location: Must reside within a commutable distance of Asheville, NC, or Boulder, CO to work onsite as required. Hybrid/onsite Clearance: Must have an active NOAA Public Trust clearance or active Secret security clearance. Citizenship: US Citizenship Required Position Type: Full Time/Exempt Salary Range: US market data minimum $115,000.00 - $145,000.00 maximum wage range. You will receive a competitive total rewards package that is applicable to the U.S. only. The salary range may vary based on experience, skillset, and geographical location. AttainX, Inc. is seeking a detail-oriented and highly skilled Application Security Analyst to join our federal cybersecurity team. The ideal candidate will have hands-on experience integrating security tools in CI/CD pipelines and identifying vulnerabilities in web applications through both manual testing and automated analysis tools. Qualifications and Education Requirements: Basic Minimum Qualifications: 5+ years of experience in application security or a related field. Identify, analyze, and mitigate application security vulnerabilities using tools like Checkmarx, Invicti, Black Duck, etc. Collaborate with development teams to integrate secure coding practices and prioritize vulnerability remediation throughout the SDLC. Maintain container images supporting different automated CI/CD security scanning phases. Hands-on experience with static and dynamic application security testing (SAST/DAST). Familiarity with tools such as Invicti, Checkmarx, Black Duck, and similar platforms. Strong understanding of secure coding practices and application vulnerabilities (e.g., OWASP Top 10). Experience working within a Cloud Environment required. (AWS experience preferred) Experience with CI/CD tools and pipelines, integrating security throughout the software development lifecycle (SDLC). Ability to interpret and explain security findings to developers and provide remediation guidance. Excellent communication skills and strong documentation ability. Possess at least ONE (1) of the following professional certifications: CompTIA Security+ Electronic Commerce Council Certified Ethical Hacker (CEH) Certified Information Systems Security Professional (CISSP) Preferred Qualifications: Experience working in Agile development environments with DevSecOps practices. Experience supporting application security for federal agencies. Education / Experience: 5+ years of relevant experience in application security, software development, or DevSecOps. Skills: Application Security, Static & Dynamic Analysis, CI/CD Integration, OWASP Top 10, Security Tooling: Invicti, Checkmarx, Black Duck, GitLab CI/CD Duties: We are searching for an Application Security Analyst to support secure development and implementation of applications. Duties include: Conduct security reviews and static code analysis to identify application vulnerabilities. Integrate SAST, DAST, and SCA tools into CI/CD pipelines. Collaborate with developers to remediate vulnerabilities and promote secure coding practices. Generate and present risk-based security reports to engineering and management teams. Maintain security tooling configurations and ensure up-to-date signatures and policies. Non-Essential Functions: General Duty Requirements About Us: AttainX Inc. is SBA Certified 8(a), Women Owned Small Business (WOSB), Economically Disadvantaged WOSB (EDWOSB), CMMI Level 3, ISO 9001:2015 certified QMS and Silver Level SaFe Partner. For more than 12 years, AttainX, Inc. has delivered emergent technologies, software products, and high-quality services that meet the needs of our Federal Government customers. The last 4 years have shown significant company growth as we have increased our contracts portfolio and hold the “Best in Class” contract vehicles, GSA MAS and OASIS Small Business and 8(a) Pools 1, 2 and 3. In addition, we are prime on several Agency Specific IDIQ's and BPA's with the National Oceanic and Atmospheric Administration, Department of Energy, Navy, Health and Human Service and the Defense Intelligence Agency. AttainX is dedicated to quality and best practices for the services we provide. We understand our people are the key ingredient to ensuring our customers Mission and Goals are met with excellence. Benefits: We are proud to offer competitive compensation and benefits packages to include paid vacation, medical, dental, vision, matching 401K plan, tuition/training reimbursement, and Long & Short-Term Disability. EEO Commitment: AttainX Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, genetic information, veteran status, or any other status protected by applicable federal, state, or local law. We are committed to providing equal employment opportunities for individuals with disabilities and protected veterans in compliance with Section 503 of the Rehabilitation Act of 1973 and the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA). Accommodations: If you are an individual with a disability and would like to request a reasonable workplace accommodation, please send an email to **************. Indicate the specifics of the assistance needed. Physical Demands: Sitting and working on a computer for long, continuous periods each day; effective communications by telephone, email, and face-to-face; standing, walking, and sitting; handling and feeling objects or controls; reaching; talking and hearing; lifting and/or moving up to 10 pounds; and specific vision abilities including close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust and focus. Work Environment: The noise level in the work environment is usually moderate.
    $115k-145k yearly Auto-Apply 60d+ ago
  • Cyber Threat Emulation Analyst

    Launchtech

    Security engineer job in Colorado Springs, CO

    or Huntsville, AL - Redstone Arsenal (On-site) Clearance Required: Active Secret Clearance (or higher) Travel Required: Up to 10% LaunchTech is seeking a Mid-Level Cyber Threat Emulation Analyst to support the Missile Defense Agency (MDA). In this role, you will strengthen enterprise cyber defenses by conducting threat emulation, vulnerability analysis, incident response, and cyber operations assessments. You will contribute directly to improving the agency's defensive posture while mentoring analysts and executing cyber threat emulation engagements aligned with real-world adversary tactics. What You'll Do As a Mid-Level Cyber Threat Emulation Analyst, you will: Perform Defensive Cyber Operations (DCO) and Cyber Security Service Provider (CSSP) duties outlined in Evaluator Scoring Metrics (ESM) Perform cybersecurity duties on customer networks to improve enterprise-wide security posture Analyze correlated asset, threat, and vulnerability data against known adversary exploits and techniques to determine operational impacts and strengthen defensive posture Support the development, review, and updates of DCO procedures, processes, manuals, and other documentation Measure defense-in-depth effectiveness against known vulnerabilities Generate vulnerability assessment reports and escalate findings for review Support enterprise Incident Response in accordance with DoD regulations and instructions Lead cyber events and incident investigations from start to conclusion, including data gathering, analysis, and reporting Instruct, evaluate, and mentor analysts at junior, mid, and senior levels; support development of exploitation analyst training plans Receive, review, and implement Higher Headquarters Tasking Orders (HHQ) and Fragmentary Orders weekly Perform Cyber Threat Emulation (CTE) actions using Automated Security Validation toolsets per HHQ direction Execute CTE actions within approved network zones using specific adversary tactics, techniques, and procedures (TTPs) Create dashboards and reports communicating post-engagement analysis, vulnerabilities, recommended remediations, system security posture assessments, and incident response results Draft and submit Cyber Tasking Orders (CTOs) to address findings discovered during CTE engagements Collaborate with the Cyberspace Domain Awareness (CDA) team to develop evaluation criteria and methodologies aligned with HHQ inspection requirements and industry best practices What You Bring Basic Requirements: Must have 6, or more, years of general (full-time) work experience Must have 4 years of combined experience with: Performing manual or automated penetration tests in an enterprise environment Practical experience with vulnerability assessment, cybersecurity frameworks, or conducting risk assessments Experience performing the full life cycle of incident response and enterprise-level monitoring Must have 1 year of experience in management or leadership in a team environment Must have a current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) (CySA+, GICSP, GSEC, Security+ CE, SSCP) Must have, or obtain within 6 months of start date, a PenTest+ certification Must have an active DoD Secret Security Clearance Desired Requirements: Have a Bachelor's degree, or higher, in Cybersecurity, Computer Science, or related field Have experience with Cyber Threat Emulation tools, policies, and procedures Have experience operating custom software on a Linux platform Have experience with security analysis and solutions in WAN/LAN environments (Routers, Switches, Network Devices, Windows, Linux) Have experience with SOC/DCO tools including Firewalls, Intrusion Detection/Prevention Systems, Network Security Manager, Bluecoat, Barracuda, etc. Have experience performing security compliance scans across a WAN (ACAS/Nessus preferred) Have a background in configuration, troubleshooting, and deployment of host-based security (ESS preferred) Be able to mentor and train personnel in a high-paced environment Be familiar with DoD Security Operations Centers (SOC/CSSP) Be familiar with DCO/CSSP-guiding security policies and procedures Have an active DoD Top Secret clearance Why LaunchTech? At LaunchTech, we don't just fill seats, we bring in people who want to make an impact. We deliver Excellence, Period. You will join a mission-driven team where your expertise directly strengthens national defense and advances cybersecurity excellence. We offer competitive benefits, including: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Opportunities to make a meaningful impact while advancing your career And more Ready to Join the LaunchTech Crew? If you're ready to apply your cyber expertise to mission-critical defense operations, we want to hear from you. LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law.
    $68k-93k yearly est. Auto-Apply 37d ago
  • Classification Information Security Analyst

    National Renewable Energy Laboratory 4.1company rating

    Security engineer job in Golden, CO

    **Posting Title** Classification Information Security Analyst . . Type** Regular . **Hours Per Week** 40 . **Working at NLR** NLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation's primary laboratory for energy systems research and development. Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth. At NLR, you'll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being. **Job Description** The Office of Laboratory Protection (LP) is an organization focused on providing a secure, safe, and resilient NLR community. LP supports more than 4,000 staff located at four sites and the associated infrastructure. LP is comprised of a team of highly skilled managers and technical subject matter experts dedicated to personnel security, physical security, access control, information security, foreign national access management, emergency management, and protective force operations. The Safeguards & Security Group Manager is seeking a skilled and motivated Classification Information Security Analyst to join our team. This pivotal role is primarily responsible for the continued implementation and management of the Controlled Unclassified Information (CUI) program, while also supporting Classified Matter Protection and Control (CMPC), and Operations Security (OPSEC) programs as necessary. The successful candidate will ensure that CUI requirements are integrated into organizational operations and information management processes. This role requires close collaboration with Legal, Export Control, Business Development, Information Governance, IT, and other stakeholders to ensure compliance with DOE and other federal agencies information protection policies. Responsibilities include: **Policy Expertise:** + Maintain up-to-date knowledge of federal OPSEC, CUI, and Classification policies, laws, and regulations. **Program Management:** + Lead the continued implementation and oversight of the CUI program, including policy, program, and procedure reviews and updates. + Collaborate with peer CUI specialists to develop and integrate CUI management solutions into NLR's broader information protection framework. + Support the OPSEC and CMPC programs in coordination with INFOSEC assurance analysts. + Provide strategic planning, risk management, and program oversight. + Mentor staff to ensure compliance with applicable requirements documents and procedures. + Coordinate CUI misuse determination, resolution, and reporting. + Conduct internal reviews and audits to ensure adherence to security requirements. **Training & Education:** + Review and revise existing CUI training materials; participate in working groups to enhance awareness programs. + Provide guidance on proper marking, handling, and safeguarding of CUI, classified, and sensitive information. + Support onboarding and refresher training for NLR personnel. **Analysis & Recommendations:** + Analyze information to determine appropriate CUI, OPSEC, and classification controls for NLR programs and initiatives. + Work to resolve security related issues that impact organizational goals. **Document Review & Incident Management:** + Assist in the review of information as requested to identify and protect sensitive and classified information. + Assist with the oversight of proper labeling of CUI documents. + Participate in the analysis and investigation of incidents of security concern. **Stakeholder Engagement and Relationship Building:** + Collaborate with internal stakeholders (Legal, IT, Program Management, project managers) to ensure consistent CUI compliance. + Build strong working relationships with DOE, lab leadership, and staff to balance security priorities with research and operations objectives in a customer focused manner. **Additional Responsibilities:** + Prepare and maintain lab level procedures, training, and internal SOPs + Promote a culture of safety, respect, accountability, and professionalism. + Other duties as assigned by management. . **Basic Qualifications** Relevant Bachelor's Degree and 5 or more years of experience or equivalent relevant education/experience. Or, relevant Master's Degree and 3 or more years of experience or equivalent relevant education/experience. Or, relevant PhD or equivalent relevant education/experience. Or, relevant JD or equivalent relevant education/experience. Complete understanding and wide application of technical principles, theories and concepts in the field. General knowledge of other related disciplines. Considerable knowledge of laws, regulations, principles, procedures and practices related to specific field. Strong leadership, project management and problem solving skills. Ability to use various computer software programs. DOE Q or TS Clearance: Must be able to obtain and maintain a DOE security clearance at the DOE (Q) and SCI access or DoD (TS) and SCI level. SCI access may require a polygraph examination. Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE O 472.2A for additional information. *** Must meet educational requirements prior to employment start date.** **Additional Required Qualifications** + Bachelor's degree in a relevant field and at least 8 years of relevant experience in information security or reviewing research documents (or equivalent combination of education and experience). + Ability to respond to inquiries about document markings and accountability requirements. + Experience developing and delivering training on protecting CUI, proprietary, or classified information. + Motivated self-starter with the ability to work independently and as part of collaborative teams across the laboratory and DOE complex. + Strong problem-solving skills, with the ability to adapt to shifting priorities and meet deadlines. + Proficient in Microsoft Office. + Ability to use discretion and maintain strict confidentiality. + Ability to work both independently and collaboratively in a team-based environment. + Ability to obtain and maintain a TS clearance (see basic qualifications). **Preferred Qualifications** . **Job Application Submission Window** The anticipated closing window for application submission is up to 30 days and may be extended as needed. **Annual Salary Range (based on full-time 40 hours per week)** Job Profile: Professional III / Annual Salary Range: $81,500 - $146,700 NLR takes into consideration a candidate's education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee's salary history will not be used in compensation decisions. **Benefits Summary** Benefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement. ***** Based on eligibility rules **Badging Requirement** NLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation. **Drug Free Workplace** NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug. If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn. **Submission Guidelines** Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application. . **Equal Opportunity Employer** All qualified applicants will receive consideration for employment without regard basis of age (40 and over), color, disability, gender identity, genetic information, marital status, domestic partner status, military or veteran status, national origin/ancestry, race, religion, creed, sex (including pregnancy, childbirth, breastfeeding), sexual orientation, and any other applicable status protected by federal, state, or local laws. **Reasonable Accommodations (******************************************************* **E** **-Verify** ************************ **For information about right to work, click here (************************************************************************************************** for English or** **here (************************************************ for Spanish.** E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce. The National Laboratory of the Rockies (NLR) is a leader in the U.S. Department of Energy's effort to secure an environmentally and economically sustainable energy future. With locations in Golden and Boulder, Colorado, and a satellite office in Washington, D.C., NLR is the primary laboratory for research, development, and deployment of renewable energy technologies in the United States. NLR is subject to Department of Energy (DOE) access restrictions. All candidates must be authorized to access the facility per DOE rules and guidance within a reasonable time frame for the specified position in order to be considered for an interview and for hiring. DOE rules for site access during the interview process depend on whether the candidate is interviewed on-site, off-site, or via telephone or videoconference. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation. Additionally, DOE contractor employees are prohibited from participating in certain Foreign Government Talent Recruitment Programs (FGTRPs). If a candidate is currently participating in an FGTRP, they will be required to disclose their participation after receiving an offer of employment and may be required to disengage from participation in the FGTRP prior to commencing employment. Any offer of employment is conditional on the ability to obtain work authorization and to be granted access to NLR by the Department of Energy (DOE). **Drug Free Workplace** NLR is committed to maintaining a drug-free workplace in accordance with federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug. If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn. Please review the information on our Hiring Process (************************************************* website before you create an account and apply for a job. We also hope you will learn more about NLR (**************************** , visit our Careers site (****************************** , and continue to search for job opportunities (**************************************** at the lab.
    $81.5k-146.7k yearly 15d ago
  • Security Engineer

    Quantix

    Security engineer job in Englewood, CO

    Since 2002, Quantix ProTech has successfully delivered IT resources and solutions to companies while building a solid reputation for integrity and consistent quality. Quantix ProTech continues to partner with the commercial sector for specialized IT placement and staffing services. Quantix ProTech was recently featured in US News and World Report and Forbes. Job Title: Security Engineer Location: Denver, CO Type: Direct Hire Job Description: Our client in the Denver, Colorado area is looking for a Security Engineer to join their team on a direct hire basis. This person will join a small team that is developing a dedicated Security focus for the organization. This is a hands on position that will assist in reviewing potential and existing security threats, This position will provide monitoring, documentation, research, and risk analysis expertise to the company. Required Skills: 1) Cloud Servers / Security. 2) Google and MAC environment. 3) SOC2. 4) Linux command line scripting. 5) Application logging experience. Desired Skills: 1) ERP Experience. 2) Legal industry / financial Services experience. 3) Certifications (ISC2, ISACA, etc.) 4) Federal security assessments, major consulting firm experience. Qualifications Required Skills: 1) Cloud Servers / Security. 2) Google and MAC environment. 3) SOC2. 4) Linux command line scripting. 5) Application logging experience. Desired Skills: 1) ERP Experience. 2) Legal industry / financial Services experience. 3) Certifications (ISC2, ISACA, etc.) 4) Federal security assessments, major consulting firm experience. Additional Information All your information will be kept confidential according to EEO guidelines. If your interested, send a copy of your resume at henriquez@quantixinc. com or reach me at ************.
    $74k-101k yearly est. 60d+ ago
  • Microsoft 365 Security Engineer with Intune and Purview experience

    CapB Infotek

    Security engineer job in Denver, CO

    For one of our ongoing long term Multiyear project we are seeking a skilled and proactive Microsoft 365 Security Engineer to lead the assessment, enhancement, and implementation of Microsoft 365 security measures within our client's organizations. This role will focus on evaluating our current Microsoft 365 security posture, providing strategic recommendations, and implementing advanced security controls to safeguard our client's digital environment. Local candidates around Denver Preferred. QUALIFICATIONS Deep understanding of Microsoft 365 security components such as Azure AD, Microsoft Defender for Office 365, Microsoft Cloud App Security, and Intune. Proficiency in Microsoft security technologies and tools, including Purview Information Protection, DLP, data lifecycle management, records management, and Azure data governance Experience in implementing security controls for Identity and Access Management, Conditional Access, Threat Protection, and Data Loss Prevention within Microsoft 365. Experience with security frameworks such as NIST, ISO 27001, and CIS Controls Relevant certifications PREFERRED SKILLS Experience with PowerShell scripting for automation and reporting in Microsoft 365. Familiarity with Security Information and Event Management (SIEM) tools. Knowledge of zero-trust principles and their application within M365 environments.
    $74k-101k yearly est. 60d+ ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Security engineer job in Denver, CO

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills. **Responsibilities:** + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Experience with scripting languages (e.g., PowerShell, Python) for automation and integration. + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Understanding of DevOps practices. + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. + Adaptability to stay ahead of evolving IAM technologies and security threats. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 35d ago
  • Security engineer

    360 It Professionals 3.6company rating

    Security engineer job in Denver, CO

    This is Sushil Singh from 360 IT Professionals Inc. We are based in Fremont, California that offers complete technology services in IT staffing, Mobile development, Web development and Cloud computing . 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement. Qualifications CCNa or CCNP+ or CCSA and Linux Additional Information W2 only or local
    $81k-106k yearly est. 60d+ ago
  • Privacy, Cybersecurity, and Data Innovation (DE)

    Safrest Resources

    Security engineer job in Denver, CO

    We are seeking entrepreneurial associates in law school class years 2013 through 2019 to join our privacy, cybersecurity, and data innovation practice group. Chambers USA 2020 recognized Gibson Dunn for Privacy & Data Security nationwide, highlighting the firms highly regarded privacy and cybersecurity offering. Our team is sought after and growing, and represents leading global platforms and disruptive technology companies on their most critical regulatory, litigation, product and business strategies and disputes. Candidates should have strong privacy, cybersecurity and/or technology company experience, and ideally have worked in a broad range of regulatory, technology and compliance counseling, government investigations, and related litigation matters. Experience with Federal Trade Commission consumer protection-related regulatory matters is also desirable. The team is collaborative and dynamic, and this opportunity offers great professional growth for the right candidate. Candidates to have three to seven years of substantive experience at a leading law firm and strong academic credentials. The annual compensation range for this position is between $295,000 and $450,000. The salary offered within this range will depend upon qualifications and other operational considerations. Benefits offered for this position include health care; retirement benefits; paid days off, including sick time, and vacation time; parental leave; basic life insurance; Flexible Spending Accounts; as well as discretionary, performance-based bonuses.
    $65k-90k yearly est. 60d+ ago
  • F5 Security Engineer - Active TS/SCI with CI Poly

    ENS Solutions, LLC

    Security engineer job in Colorado Springs, CO

    Job Description Participate in the development and support of customer technical requirements Champion a collaborative, team-based environment, sharing standard methodologies and success and building positive relationships Plan, Design, Develop, Implement and Operate F5 products such as LTM, ASM, BIG-IQ and APM Manage the configuration on multiple physical and virtual F5 across multiple data centers Develop scripts and tools to automate configuration of a large number of network security devices distributed across multiple data centers Propose and implement system enhancements that will improve the performance and reliability of the network security infrastructure Applies capacity planning configuration changes as demanded by the business Address performance, scalability, and service architecture administration issues Design, install, configure, maintain network security services, equipment and devices Plan and support network security infrastructure Provide clear technical documentation and written procedures for issues identified and addressed Monitoring and troubleshooting of platform and OS based problems, network security infrastructure and connectivity issues Perform launch testing for new software releases and the introduction of new features Coordinate equipment orders including physical or virtual appliances, as well as upgrading, monitoring, testing and servicing the systems as needed Demonstrates knowledge of a broad range of technology towers i.e.: Storage, Virtualization, Intel, Networking, Data Center Migration and Disaster Recovery Knowledge of risk and controls landscape, ensuring company-wide standards are met Participate in change and incident management Anticipating potential problems and acting to minimize the impact they may have on the project or unit Ability to collaborate with different technology towers to achieve common goals Requirements Bachelor's degree in computer science, information systems, telecommunications, or an engineering focused field Must have an Active TS/SCI and willing to obtain a CI Poly 5+ years of relevant F5 experience with F5 LTM, ASM, BIG-IQ, and/or APM administration and life cycle management including experience with advanced iRule creation and troubleshooting Ability to handle multiple complex F5 configurations and deployments at once Understanding of networking at all layers of the OSI model; and Previous experience with web application technologies Experience deploying, managing, and troubleshooting network systems, switching, and routing protocol standards such as: TCP/IP, MPLS, OSPF, BGP, SDN, and 802.1x. Experience managing and troubleshooting DNS, DHCP, IPAM, and NTP in a large multi-site environment Ability to manage multiple stands of work simultaneously. Executes within a customer-centric environment. Excellent verbal and written communication skill Hands on experience with Python and APIs Self-driven with the ability to manage workload without direct supervision Must have the F5 201 certification 8570 IAT Level II Certification required Preferred Skills/Qualifications Experience with Infoblox DDI, Microsoft DNS, Dyn, VMWare Automation products (vRO, vRA) Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance
    $74k-101k yearly est. 31d ago
  • Network Security Analyst

    Cymertek

    Security engineer job in Aurora, CO

    Network Security AnalystLOCATIONAurora, CO 80014CLEARANCETS/SCI Full Poly (Please note this position requires full U.S. Citizenship) KEY SUMMARYWe are looking for a detail-oriented and proactive Network Security Analyst to join our cybersecurity team. In this role, you will monitor, analyze, and protect the organization's network infrastructure against potential threats and vulnerabilities. You will be responsible for identifying security risks, responding to incidents, and implementing measures to safeguard sensitive information. Collaborating with cross-functional teams, you will play a key role in enhancing the organization's overall network security posture. The ideal candidate is passionate about cybersecurity, thrives in a dynamic environment, and is committed to staying ahead of emerging threats and technologies. *** Please note that our job openings are dynamic and can open or close quickly (much faster than we can publish). If you do not see an opening you are looking for, know that we see almost all types of positons. We strive to keep our listings up to date, but please consider submitting your current resume. Our team will work with you to identify the most recent opportunities that align with your skillset and career goals. We look forward to you joining our family. *** SIMILAR CAREER TITLESCybersecurity Analyst, Information Security Analyst, Security Operations Center (SOC) Analyst, Network Defense Analyst, Threat Intelligence Analyst, IT Security Specialist, Vulnerability Analyst, Incident Response Analyst, Security Monitoring Analyst, Cyber Defense Analyst, Infrastructure Security Analyst, etc.DEGREE (Level Desired) Bachelor's DegreeALTERNATE EXPERIENCEGeneral comment on degrees: Most contracts allow additional experience (4-5 years) in lieu of a Bachelor's Degree. Some contracts give 4-5 years experience credit for a Bachelor's Degree. Some contracts give 2 years experience credit for a Master's Degree. We will work with you to find the right fit.POSITION RESPONSIBILITIES Monitor network traffic for anomalies Investigate and resolve security incidents Maintain and update security systems Generate and analyze security reports Assist in developing incident response plans Ensure adherence to security policies REQUIRED SKILLS Proficiency in monitoring tools like IDS/IPS Strong analytical and problem-solving skills Understanding of network protocols (TCP/IP, DNS) Knowledge of malware analysis tools Ability to interpret security logs Familiarity with vulnerability scanning tools DESIRED SKILLS Experience with advanced threat detection Knowledge of forensics methodologies Understanding of regulatory frameworks (e.g., GDPR, HIPAA) Experience with SOC workflows Familiarity with automation and scripting Knowledge of threat intelligence platforms PLUG IN to CYMERTEK - And design your future... YOUR FOREVER CAREER STARTS HERE Are you looking for more than just a job? Join a company where employees are treated like family, and your career is built to last. We are a growing small business and a trusted federal contractor offering full scope consulting services in information technology, cybersecurity, and analyst workforce development. At our company, you come first. We're committed to creating an environment where you'll thrive professionally and personally. We provide meaningful, challenging work using cutting-edge technologies while investing in your growth and success. With direct access to company leadership, a laid-back and inclusive atmosphere, and exceptional work-life balance, you'll feel valued every day. We also believe in taking care of our family - both yours and ours. Our benefits are phenomenal, family-friendly, and designed with your well-being in mind. From employee and family events to career-long support, we create a community you'll never want to leave. Ready to make your next move the best one? Join us and experience the difference. BENEFITS Excellent Salaries Flexible Work Schedule Cafeteria Style Benefits 10% - 401k Matching (Vested Immediately) Additional 401k Profit Sharing 30 days Paid Leave/Holiday (No Use or Lose!) The day off for your birthday Medical/Dental/Vision - 100% employee coverage. ($1200 allowance - or a bonus) HSA/FSA AFLAC Long Term/Short Term Disability - 100% employee coverage. No cost to you. Life Insurance - 100% employee coverage. No cost to you. Additional Discretionary Life Insurance Paid Training No long, wordy reviews with tons of paperwork!!! Referral bonus program with recurring annual payments HOW TO APPLY Email us at ***************** or apply today: **************** Want to see what our employees think? Click here . EQUAL OPPORTUNITY EMPLOYER STATEMENT Cymertek is proud to be an Equal Opportunity Employer committed to fostering an inclusive and diverse workplace. We embrace and celebrate differences in our employees, recognizing that a diverse workforce enhances our creativity, innovation, and overall success. At Cymertek, employment decisions are made based on merit, qualifications, and business needs without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by applicable laws. We believe in creating an environment where all individuals are treated with respect and dignity, and where opportunities for professional growth and advancement are accessible to everyone, regardless of background or identity.
    $60k-80k yearly est. Easy Apply 60d+ ago
  • Classification Information Security Analyst

    Nrel

    Security engineer job in Golden, CO

    Posting Title Classification Information Security Analyst . . Type Regular . Hours Per Week 40 . Working at NLR NLR is located at the foothills of the Rocky Mountains in Golden, Colorado is the nation's primary laboratory for energy systems research and development. Join the National Laboratory of the Rockies (NLR), where world-class scientists, engineers, and experts are accelerating energy innovation through breakthrough research and systems integration. From our mission to our collaborative culture, NLR stands out in the research community for its commitment to an affordable and secure energy future. Spanning foundational science to applied systems engineering and analysis, we focus on solving complex challenges to deliver advanced, secure, reliable, and cost-effective energy solutions. Our work helps strengthen U.S. industries, support job creation, and promote national economic growth. At NLR, you'll find a mission-driven environment supported by state-of-the-art facilities, multidisciplinary research teams, and strong collaborations with industry, academia, and other national laboratories. We offer robust professional development opportunities, and a competitive benefits package designed to support your career and well-being. Job Description The Office of Laboratory Protection (LP) is an organization focused on providing a secure, safe, and resilient NLR community. LP supports more than 4,000 staff located at four sites and the associated infrastructure. LP is comprised of a team of highly skilled managers and technical subject matter experts dedicated to personnel security, physical security, access control, information security, foreign national access management, emergency management, and protective force operations. The Safeguards & Security Group Manager is seeking a skilled and motivated Classification Information Security Analyst to join our team. This pivotal role is primarily responsible for the continued implementation and management of the Controlled Unclassified Information (CUI) program, while also supporting Classified Matter Protection and Control (CMPC), and Operations Security (OPSEC) programs as necessary. The successful candidate will ensure that CUI requirements are integrated into organizational operations and information management processes. This role requires close collaboration with Legal, Export Control, Business Development, Information Governance, IT, and other stakeholders to ensure compliance with DOE and other federal agencies information protection policies. Responsibilities include: Policy Expertise: * Maintain up-to-date knowledge of federal OPSEC, CUI, and Classification policies, laws, and regulations. Program Management: * Lead the continued implementation and oversight of the CUI program, including policy, program, and procedure reviews and updates. * Collaborate with peer CUI specialists to develop and integrate CUI management solutions into NLR's broader information protection framework. * Support the OPSEC and CMPC programs in coordination with INFOSEC assurance analysts. * Provide strategic planning, risk management, and program oversight. * Mentor staff to ensure compliance with applicable requirements documents and procedures. * Coordinate CUI misuse determination, resolution, and reporting. * Conduct internal reviews and audits to ensure adherence to security requirements. Training & Education: * Review and revise existing CUI training materials; participate in working groups to enhance awareness programs. * Provide guidance on proper marking, handling, and safeguarding of CUI, classified, and sensitive information. * Support onboarding and refresher training for NLR personnel. Analysis & Recommendations: * Analyze information to determine appropriate CUI, OPSEC, and classification controls for NLR programs and initiatives. * Work to resolve security related issues that impact organizational goals. Document Review & Incident Management: * Assist in the review of information as requested to identify and protect sensitive and classified information. * Assist with the oversight of proper labeling of CUI documents. * Participate in the analysis and investigation of incidents of security concern. Stakeholder Engagement and Relationship Building: * Collaborate with internal stakeholders (Legal, IT, Program Management, project managers) to ensure consistent CUI compliance. * Build strong working relationships with DOE, lab leadership, and staff to balance security priorities with research and operations objectives in a customer focused manner. Additional Responsibilities: * Prepare and maintain lab level procedures, training, and internal SOPs * Promote a culture of safety, respect, accountability, and professionalism. * Other duties as assigned by management. . Basic Qualifications Relevant Bachelor's Degree and 5 or more years of experience or equivalent relevant education/experience. Or, relevant Master's Degree and 3 or more years of experience or equivalent relevant education/experience. Or, relevant PhD or equivalent relevant education/experience. Or, relevant JD or equivalent relevant education/experience. Complete understanding and wide application of technical principles, theories and concepts in the field. General knowledge of other related disciplines. Considerable knowledge of laws, regulations, principles, procedures and practices related to specific field. Strong leadership, project management and problem solving skills. Ability to use various computer software programs. DOE Q or TS Clearance: Must be able to obtain and maintain a DOE security clearance at the DOE (Q) and SCI access or DoD (TS) and SCI level. SCI access may require a polygraph examination. Eligibility requirements: To obtain a clearance, an individual must be at least 18 years of age; U.S. citizenship is required except in very limited circumstances. See DOE O 472.2A for additional information. * Must meet educational requirements prior to employment start date. Additional Required Qualifications * Bachelor's degree in a relevant field and at least 8 years of relevant experience in information security or reviewing research documents (or equivalent combination of education and experience). * Ability to respond to inquiries about document markings and accountability requirements. * Experience developing and delivering training on protecting CUI, proprietary, or classified information. * Motivated self-starter with the ability to work independently and as part of collaborative teams across the laboratory and DOE complex. * Strong problem-solving skills, with the ability to adapt to shifting priorities and meet deadlines. * Proficient in Microsoft Office. * Ability to use discretion and maintain strict confidentiality. * Ability to work both independently and collaboratively in a team-based environment. * Ability to obtain and maintain a TS clearance (see basic qualifications). Preferred Qualifications . Job Application Submission Window The anticipated closing window for application submission is up to 30 days and may be extended as needed. Annual Salary Range (based on full-time 40 hours per week) Job Profile: Professional III / Annual Salary Range: $81,500 - $146,700 NLR takes into consideration a candidate's education, training, and experience, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the Colorado Equal Pay for Equal Work Act, a potential new employee's salary history will not be used in compensation decisions. Benefits Summary Benefits include medical, dental, and vision insurance; short*- and long-term disability insurance; pension benefits*; 403(b) Employee Savings Plan with employer match*; life and accidental death and dismemberment (AD&D) insurance; personal time off (PTO) and sick leave; paid holidays; and tuition reimbursement*. NLR employees may be eligible for, but are not guaranteed, performance-, merit-, and achievement- based awards that include a monetary component. Some positions may be eligible for relocation expense reimbursement. Limited-term positions are not eligible for long-term disability or tuition reimbursement. * Based on eligibility rules Badging Requirement NLR is subject to Department of Energy (DOE) access restrictions. All employees must also be able to obtain and maintain a federal Personal Identity Verification (PIV) card as required by Homeland Security Presidential Directive 12 (HSPD-12), which includes a favorable background investigation. Drug Free Workplace NLR is committed to maintaining a drug-free workplace in accordance with the federal Drug-Free Workplace Act and complies with federal laws prohibiting the possession and use of illegal drugs. Under federal law, marijuana remains an illegal drug. If you are offered employment at NLR, you must pass a pre-employment drug test prior to commencing employment. Unless prohibited by state or local law, the pre-employment drug test will include marijuana. If you test positive on the pre-employment drug test, your offer of employment may be withdrawn. Submission Guidelines Please note that in order to be considered an applicant for any position at NLR you must submit an application form for each position for which you believe you are qualified. Applications are not kept on file for future positions. Please include a cover letter and resume with each position application. . Equal Opportunity Employer All qualified applicants will receive consideration for employment without regard basis of age (40 and over), color, disability, gender identity, genetic information, marital status, domestic partner status, military or veteran status, national origin/ancestry, race, religion, creed, sex (including pregnancy, childbirth, breastfeeding), sexual orientation, and any other applicable status protected by federal, state, or local laws. Reasonable Accommodations E-Verify ******************** For information about right to work, click here for English or here for Spanish. E-Verify is a registered trademark of the U.S. Department of Homeland Security. This business uses E-Verify in its hiring practices to achieve a lawful workforce.
    $81.5k-146.7k yearly Auto-Apply 15d ago

Learn more about security engineer jobs

How much does a security engineer earn in The Pinery, CO?

The average security engineer in The Pinery, CO earns between $64,000 and $116,000 annually. This compares to the national average security engineer range of $77,000 to $141,000.

Average security engineer salary in The Pinery, CO

$87,000
Job type you want
Full Time
Part Time
Internship
Temporary