IT Security Engineer
Security engineer job in Quincy, MA
Job Title: Security Engineer
Department: Technology
Reports To: VP of Technology
Pay Range: $150,000 - $175,000 per year, depending on experience
FLSA Status: Exempt
WHO WE ARE:
Bay State Milling Company is a family-owned leader in grain-based food ingredients, proudly serving the industry since 1899. For over 125 years, we've been on a mission to promote the growth of nutritious, sustainable, and accessible food choices. Our portfolio spans flours, grains, seeds, and innovative plant-based ingredients, all crafted to meet evolving consumer demands for healthfulness, great taste, and affordability.
Rooted in five generations of ownership, we combine deep milling expertise with forward-thinking innovation. From our flagship mill in Winona, Minnesota to facilities across North America, we partner with growers and customers to deliver quality and trust at every step. Guided by our core values-Integrity, Creativity, Collaboration, Caring, and Quality-we relentlessly pursue better for the food system and the communities we serve.
JOB SUMMARY:
The Security Engineer plays a critical role in safeguarding Bay State Milling's digital assets, infrastructure, and data. This position is responsible for designing, implementing, and maintaining security solutions that protect against cyber threats and ensure compliance with industry standards and regulatory requirements. The Security Engineer collaborates closely with all areas of the technology team and business stakeholders to assess risks, respond to incidents, and continuously improve the company's security posture.
ROLE & RESPONSIBILITIES:
Design and implement secure network, system, and application architectures.
Evaluate and deploy security tools, technologies, and frameworks.
Monitor systems for security breaches and investigate incidents.
Lead response efforts for security events, including containment, remediation, and reporting.
Conduct regular vulnerability assessments and penetration testing.
Coordinate remediation efforts with infrastructure and application teams.
Ensure compliance with internal policies, industry standards (e.g., NIST, ISO 27001), and regulatory requirements.
Support audits and risk assessments and maintain documentation of security controls.
Develop and deliver security awareness programs for employees.
Provide guidance and training to technical teams on secure coding and system hardening.
Manage and enforce identity and access controls across systems and applications.
Implement role-based access and least privilege principles.
Integrate security into cloud environments and CI/CD pipelines.
Collaborate with Development teams to embed security into development workflows.
Stay current with emerging threats, technologies, and best practices.
Recommend and implement improvements to security policies, procedures, and tools.
MINIMUM EDUCATION & WORK REQUIREMENTS:
Bachelor's degree in computer science, Information Security, Cybersecurity, or a related field.
Minimum of 5 years of firsthand experience in cybersecurity engineering, security operations, or related technical roles.
Preferred certifications can include CISSP, CISM, or Cybersecurity Architect
Proven experience with security technologies such as firewalls, SIEM, IDS/IPS, endpoint protection, and cloud security platforms.
Experience working in hybrid & cloud-native environments (e.g., AWS, Azure, GCP).
Familiarity with secure software development practices and DevSecOps integration.
KNOWLEDGE, SKILLS, AND ABILITIES:
Strong understanding of network protocols, operating systems (Windows, Linux), and cloud infrastructure.
Deep knowledge of cybersecurity frameworks (e.g., NIST, MITRE ATT&CK, ISO 27001).
Experience with SIEM platforms (e.g., Splunk, Sentinel), EDR solutions, and threat intelligence tools.
Ability to assess and mitigate risks in complex enterprise environments.
Strong analytical and problem-solving skills with attention to detail.
Excellent communication skills, with the ability to translate technical risks into business impact.
Ability to work independently and collaboratively in cross-functional teams.
Familiarity with regulatory requirements such as GDPR, or CCPA.
Experience with container security (e.g., Kubernetes, Docker) and infrastructure-as-code (e.g., Terraform, CloudFormation).
Infrastructure Security Engineer - 4pm - midnight shift
Security engineer job in Foxborough, MA
Select Cyber, an Information Security recruitment specialty firm, seeks to fill the following role for our client:
Information Security Analyst
Responsibilities :
Must have the ability to support a flexible schedule in support of 7x24 staff and on-call responsibilities.
Responsibilities include the construction of networks from existing design diagrams and documents as-build updates.
Pre and Post-deployment responsibilities include strong understanding and adherance to customer change management processes, change requests, integration, support/troubleshooting, upgrades, and scaling to meet demand.
The candidate will proactively scan, patch, upgrade, model, document, backup, protect and expand the network.
Work with vendors to resolve problems via ticketing portals and escalating issues to team lead and/or management as needed.
Strong experience with Linux and Windows operating system upgrades and patches.
Ability to solve problems quickly and automate processes.
A solid understanding of networking/distributed computing environment concepts;
Understands principles of routing
Must be well versed in TCP/IP, IPSec, VLANs, system hardening, and troubleshooting.
Requirements:
Bachelor's degree or equivalent and 5+ years of related experience in a 7x24 operations environment.
Strong Networking background combined with Strong Security
5-7 years of Network Security Engineering experience or relevant certifications such as CCNP, CCNA, SANS, CISSP, etc.
Expert level knowledge of installing, deploying, documenting, and troubleshooting firewall products, such as Junipers, Fortinet, Stonesoft, Palo Alto, Cisco.
Strong interpersonal and communications skills
Strong ability to solve problems quickly and automate processes.
A solid understanding of networking/distributed computing environment concepts; understands principles of routing
Experience with firewall products
Experience with securing an enterprise environment
Experience with enterprise class security networking technologies
Senior Manager, Information Security Office Consultant
Security engineer job in Providence, RI
Company DescriptionJobs for Humanity is partnering with Capital One to build an inclusive and just employment ecosystem. Therefore, we prioritize individuals coming from the following communities: Refugee, Neurodivergent, Single Parent, Blind or Low Vision, Deaf or Hard of Hearing, Black, Hispanic, Asian, Military Veterans, the Elderly, the LGBTQ, and Justice Impacted individuals. This position is open to candidates who reside in and have the legal right to work in the country where the job is located.
Company Name: Capital One
Job Description201 Third Street (61049), United States of America, San Francisco, CaliforniaSenior Manager, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What You'll Do:
Act as a central Information Security point of contact for the Enterprise Platform team
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Product security consulting in Authentication/Access Management /Identity application and experienced in Authentication and industry-standard protocol for authorization/authorization
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 8 years of experience working in cybersecurity or information technology
At least 7 years of experience providing guidance and oversight of Security concepts
At least 7 years of experience performing security risk assessments and security architecture reviews
At least 7 years of experience with architecture, software design, networking, and cloud infrastructure
At least 5 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
3+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
4+ years of experience in IAM or related areas
Experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
Familiarity with Cloud patch management practices such as system rehydration and image management
Experience utilizing Agile methodologies
Experience with Software Security Architecture
Experience with Application Security
Experience with Threat Modeling
Experience with Penetration Testing or Vulnerability Management
Experience with integrating SaaS products into an Enterprise Environment
Experience with securing Container services
Splunk-Fu / Enterprise Monitoring experience
Financial services industry experience
Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Experience in Offensive and Defensive Security techniques
Experience in a regulated environment
Strong conceptual thinking, influence and communication skills
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $230,100 - $262,700 for Sr Manager, Cyber TechnicalSan Francisco, California (Hybrid On-Site): $243,800 - $278,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to [email protected]
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Senior Cyber Security Analyst (42466)
Security engineer job in Smithfield, RI
Senior Cyber Security Analyst is an experienced cyber security individual who maintains the security of an organization's technical environment. They study existing security hardware and software, evaluate new security options and makes recommendations for improvement. Senior Cyber Security Analyst also identifies weak spots in a cyber security system that may be breached and creates procedures to manage threats. Senior Cyber Security Analyst monitors networks for suspicious activity and potential cyber threats. They keep up on threat intelligence, install and maintain security software and encryption. They are responsible for aiding in the planning of security systems, implementing policy and identifying business processes that may violate intended and acceptable use policies. They monitor and remediate vulnerabilities. Senior Cyber Security Analyst works on advanced, complex technical projects or business issues requiring state of the art technical or industry knowledge.
Duties and Responsibilities
Responsibilities include, but are not limited to the following:
* Assist in developing, operating, and evolving Cloud Access Security solutions and capabilities
* Performs system security administration on designated technology platforms, including operating systems, applications and network security devices, in accordance with the defined policies, standards and procedures of the organization, as well as with industry best practices and vendor guidelines
* Performs installation and configuration management of security systems and applications, including policy assessment and compliance tools, network security appliances and host-based security systems
* Performs threat and vulnerability assessments, followed by appropriate remedial action, to ensure that systems are protected from known and potential threats and are free from known vulnerabilities Research, recommend, and implement streamlined automation processes
* Develops and maintains documentation for security systems and procedures
* Conducts network monitoring and intrusion detection analysis using various computer network defense tools, such as intrusion detection/prevention systems, firewalls and host-based security systems
* Provide support to one or more projects simultaneously. Delivers projects on schedule
* Deploys cloud-centric detection to detect threats related to cloud environments and services used by the organization
* Assists and trains junior team members in the use of security tools, the preparation of security reports and the resolution of security issues
* Applies patches where appropriate and, removes or otherwise mitigates known control weaknesses, such as unnecessary services or applications or redundant user accounts, as a means of hardening systems in accordance with security policies and standards Correlates activity across assets (endpoint, network, apps) and environments (on-premises, cloud) to identify patterns of anomalous activity
* Using threat intelligence information research emerging threats and vulnerabilities to aid in the identification of incidents
* Job Knowledge - Remains up-to-date in assigned area of responsibility: possesses skills and knowledge to perform job effectively; efficiently and safely; acquires, understands, and applies technical and professional information and skills; understands and adheres to policies and procedures
* Supports the creation of security incident response, business continuity/disaster recovery plans, including conducting tests, publishing test results and making changes necessary to address deficiencies
* Analyzes problems and alternative solutions and takes appropriate timely action to achieve desired business results. Seeks unique and novel solutions to problems and considers impact of final resolution
* Perform security standards testing against computers before implementation to ensure security
* Provide Key Performance Metrics to our Risk Management team to help coordinate risk tracking.
* Educate internal teams on information security best practices.
* Assist in technical audits of IT Systems and controls.
* Other duties as assigned.
* Corporate Compliance Responsibility - As an essential function, responsible for complying with Neighborhood's Corporate Compliance Program, Standards of Business Conduct, applicable contracts, laws, rules and regulations, policies and procedures as it applies to individual job duties, the department, and the Company. This position must exercise due diligence to prevent, detect and report unlawful and/or unethical conduct by fellow co-workers, professional affiliates and/or agents
Engineer, Information Security and Risk
Security engineer job in Providence, RI
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Sr security Engineer
Security engineer job in Woonsocket, RI
Job Overview: We are seeking a highly skilled and experienced Senior Security Engineer to join our IAM Engineering organization. The ideal candidate will have extensive solution-building experience across various Ping Identity products, including PingFederate, Ping DaVinci, PingOne, PingCentral, PingAccess, PingDirectory, AWS, and PingID Mobile. This role focuses on engineering rather than operations, and a background in Identity and Access Management (IAM) is a significant plus. Key Responsibilities:
Design, develop, and implement IAM solutions using Ping Identity products such as PingFederate, PingDaVinci, PingOne, PingCentral, PingAccess, PingDirectory, and PingID Mobile.
Architect and build secure and scalable IAM frameworks and solutions tailored to meet business and technical requirements.
Collaborate with cross-functional teams to integrate IAM solutions with various applications and systems, ensuring seamless authentication and authorization processes.
Develop and maintain AWS-based IAM solutions, leveraging cloud services to enhance security and scalability.
Provide technical leadership and mentorship to junior engineers, fostering a culture of continuous learning and innovation.
Conduct thorough security assessments and audits of IAM systems, identifying and mitigating potential risks and vulnerabilities.
Stay current with the latest trends and best practices in IAM and security engineering, applying this knowledge to improve existing solutions.
Work closely with stakeholders to understand their requirements and translate them into technical specifications and solutions.
Develop and maintain comprehensive documentation for IAM solutions, including design documents, configuration guides, and operational procedures.
Qualifications:
Bachelor's degree in computer science, Information Security, or a related field. A master's degree is a plus.
Minimum of 8+ years of overall experience in security engineering or a related field.
At least 3+ years of experience with Ping Identity products, including PingFederate, Ping DaVinci, PingOne, PingCentral, PingAccess, PingDirectory, and PingID Mobile.
At least 5+ years of experience with cloud services, particularly AWS.
Strong engineering background with hands-on experience in building and deploying IAM solutions.
Proficiency with AWS services and IAM integrations in cloud environments.
In-depth understanding of IAM principles, including authentication, authorization, single sign-on (SSO), multi-factor authentication (MFA), and directory services.
Experience with any programming language is a plus(Java preferably).
Excellent problem-solving skills and the ability to troubleshoot complex IAM issues.
Strong communication and collaboration skills, with the ability to work effectively in a team-oriented environment.
Relevant certifications such as CISSP, CISM, or similar are a plus.
Preferred Experience:
Experience in Identity and Access Management (IAM) in large-scale enterprise environments.
Familiarity with security standards and protocols such as SAML, OAuth, OpenID Connect, and LDAP.
Experience with DevOps practices and tools for automation and continuous integration/continuous deployment (CI/CD).
Compensation: $140,000.00 per year
Who We Are CARE ITS is a certified Woman-owned and operated minority company (certified as WMBE). At CARE ITS, we are the World Class IT Professionals, helping clients achieve their goals. Care ITS was established in 2010. Since then we have successfully executed several projects with our expert team of professionals with more than 20 years of experience each. We are globally operated with our Head Quarters in Plainsboro, NJ, with focused specialization in Salesforce, Guidewire and AWS. We provide expert solutions to our customers in various business domains.
Auto-ApplySr. Engineer Cyber Security
Security engineer job in Marlborough, MA
The Senior Cyber Security Engineer at Doble Engineering will leverage Cyber Security related technical skills across various security initiatives while collaborating with IT, engineering, and product teams. This highly visible role will require the person to stay on top of the latest security issues and technologies shaping the industry. This role will have exposure to emerging trends in areas like Cloud, AI Security, and Critical Infrastructure Protection. Our environment provides opportunities to translate security concepts into functioning solutions through collaborations with various engineering teams. This position will be located at Doble's Marlborough facility and will report directly to the Cyber Security Manager.
ESSENTIAL JOB FUNCTIONS
* Support Doble Cybersecurity Solutions including performing weekly patch management process, maintain NERC CIP compliance and SLAs, weekly customer calls, and contribute to sustaining the product enhancement.
* Lead security activities within the SDLC including Code Reviews, Threat Modeling, SAST, DAST, & SCA.
* Lead Penetration Testing on Doble products such as Web, Thick, and API applications.
* Conduct periodic security reviews to evaluate the effectiveness of existing security measures.
* Collaborate with internal and external stakeholders to ensure technology solutions meet security requirements.
* Serve as a Subject Matter Expert (SME) for Cyber Security for other Departments queries, recommendations and needs.
* Coordinate with different teams within the organization to ensure software, hardware
and network security.
* Respond to and mitigate incidents and security threats, performing digital forensics and incident response when necessary.
* Maintain Cybersecurity policies, standards, and procedures.
* Develop training and guidance materials on security awareness and best practices to other personnel.
* Staying up to date with the latest security threats and trends.
* Manage and/or contribute to additional security projects and tasks as needed.
* Ability to prototype and implement new security tools and technologies.
QUALIFICATIONS
EDUCATION:
* Bachelor's degree in Cybersecurity, Computer Science, or related field
REQUIRED EXPERIENCE:
* 5+ years of experience as a security engineer or equivalent
* The ideal candidate will have an in-depth understanding of the NIST based on practical working experience and a functional knowledge of security standards such as NERC CIP, ISO 27001, IEC 62443.
* Solid understanding of the OWASP Top 10, OWASP ASVS, and other security frameworks.
* Proven cyber security experience with Firewall, Cloud, and SIEM tools (e.g., Azure, Secureworks MDR, Synk, Fortinet, KnowBe4, BitSight etc.)
* Expert with manual vulnerability testing, exploit development, and static code analysis, using commercial and open-source penetration testing tools like Burp Suite, OWASP ZAP, Metasploit, SQLMap, etc.
* Excellent analytical and problem-solving skills.
* High level of attention to detail and quality of work product.
* Ability to work independently with minimal oversight and within a team environment.
* Strong organizational skills; ability to accomplish multiple tasks within the agreed upon timeframes through effective prioritization of duties and functions in a fast-paced environment.
* Strong written and oral communication skills, including the ability to present ideas and suggestions clearly and effectively.
* Good judgment, a sense of urgency, and a commitment to high standards of ethics, regulatory compliance, customer service, and business integrity.
PREFERRED EXPERIENCE (Not Required):
* Master's degree in Cybersecurity, Computer Science or other relevant technical discipline
* 5+ years of experience in a security engineer or related role.
* 2-5 years of hands-on penetration testing experience.
* 2-5 years' experience using endpoint security tools to investigate.
* Operational experience with incident response, vulnerability management, network and security monitoring.
* Certification in one or more of the following: CISSP, OSCP, OSCE, GPEN, CEH, Azure, Security+.
* Demonstrated enthusiasm for Information Security (e.g. GitHub repo, blogs, presentations, conference talks, local security association member, participated in free skill-building / hacking challenges - SANS Holiday Hack, HackerOne CTF, HackTheBox, etc.).
* Demonstrated ability to lead and mentor security team members, fostering continuous improvement and collaboration.
* Knowledge of AI security and generative AI systems.
* Knowledge of various security and risk assessment tools.
* Familiarity with networking protocols and components.
* Ability to clearly explain complex security issues to leadership.
* Familiarity with regulatory compliance in the Power Industry.
Knowledge, Skills & Abilities
* Possess core competencies around security assessments, patch management, and a good understanding of frameworks such as NIST
* Strong communication skills
* Analytical thinking
* Occasional travel up to 10% may be required to support the position's responsibilities
* Occasional off hours work may be required
PHYSICAL REQUIREMENTS:
While performing the duties of this job the employee is often required to stand, sit, use computers, read, write, type, use copy machines, file paperwork, use telephones, and utilize written and oral communication to interact with clients, co-workers, and customers. Reasonable accommodations may be made to enable individuals to perform the essential functions of this job. Must be capable of lifting 30 pounds. Must use assistance when lifting 50 or more pounds.
Actual base salary offered to the hired applicant will be determined based on their work location, level, qualifications, job related skills, as well as relevant education or training experience.
Salary Pay Range Minimum $116,426.92 - Midpoint $145,533.65
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
We are an Equal Employment Opportunity employer that values the strength diversity brings to the workplace. All qualified applicants, regardless of race, color, religion, gender, sexual orientation, marital status, gender identity or expression, national origin, genetics, age, disability status, protected veteran status, or any other characteristic protected by applicable law, are strongly encouraged to apply.
The Americans with Disabilities Act of 1990 (ADA) prohibits discrimination by employers, in compensation and employment opportunities, against qualified individuals with disabilities who, with or without reasonable accommodation, can perform the "essential functions" of a job. A function may be essential for any of several reasons, including: the job exists to perform that function, the employee holding the job was hired for his/her expertise in performing the function, or only a limited number of employees are available to perform that function.
Applicants must be authorized to work for any employer in the United Sates. Doble Engineering is unable to sponsor or take over sponsorship of an employment visa at this time.
Security Engineer II
Security engineer job in Providence, RI
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
Senior Systems Security Engineer (ONSITE)
Security engineer job in Marlborough, MA
Country: United States of America Onsite U.S. Citizen, U.S. Person, or Immigration Status Requirements: Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
Secret - Current
Raytheon Company, Managed by Collins Aerospace
Collins Aerospace, an RTX company, is a leader in technologically advanced and intelligent solutions for the global aerospace and defense industry. Collins Aerospace has the capabilities, comprehensive portfolio, and expertise to solve customers' toughest challenges and to meet the demands of a rapidly evolving global market. You will be a member of a multi-disciplinary group of System, Hardware and Software Engineers. We are a growing business developing new products in an aggressive and competitive market. The new designs are exciting and technically challenging.
The Protected Communication Systems (PCS) team is hiring Senior Systems Security Engineers to support programs for our US military and various international customers, keeping the world safe from foreign threats. PCS supports multiple Collins contracts and is seeking to fill roles across several open contracts - our goal is to align each new hire with a position that best suits their skills and allows for career growth. This is not an IT or programming role-instead this is an embedded cybersecurity role that focuses on technical writing, system security analysis, and requirements assessment. The ideal candidate will be skilled in requirement allocation and decomposition, analyzing system models (Model-Based System Engineering experience a plus), assessing security vulnerabilities, and formal cybersecurity verification (including vulnerability scanning). The candidate will report to the Lead Systems Security Engineer and work collaboratively with cross-functional teams.
What You Will Do
* Support system certification and accreditation efforts, including NIST Risk Management Framework (RMF) and National Security Agency (NSA) compliance
* Aid in the development of full lifecycle solutions from CONOPS to Validation
* Support cybersecurity requirement decomposition, allocation, implementation, and verification utilizing system engineering practices
* Analyze system requirements, models, and diagrams to identify potential security vulnerabilities
* Support system trade studies, requirements analysis, allocation to subsystems
* Participate in system design discussions and provide security engineering input
* Support lab activities including definition, setup, configuration management, and testing
* Collaborate with systems engineers and developers to integrate security considerations into system design
* Execute Integration, Dry Run, and Formal Qualification Testing
* Maintain awareness of evolving security threats and industry best practices
Qualifications You Must Have
* Experience with Risk Management Framework (RMF) and familiarity with NIST RMF procedures
* Strong integration and test experience include test procedure development, test execution, test reporting, and test automation
* Strong technical writing skills and ability to develop security documentation
* Proficient in tooling to include Microsoft products, or task boards (Jira, IBM EWM, etc.)
* Strong analytical skills with the ability to perform deep dives into system requirements
* Ability to interpret system models, diagrams, and architectures to assess security risks
* Willingness to learn about satellite systems, communication systems, and evolving security technologies
* Typically requires a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 5 years prior relevant experience or an Advanced Degree in a related field and minimum 3 years of experience
* Active and transferable SECRET clearance is required prior to start date
* U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Qualifications We Prefer
* Experience with National Security Agency (NSA) cryptographic certification requirements
* Experience with cybersecurity verification activities (including automated vulnerability scanning tools)
* Familiarity with DOORS, JIRA, Cameo, or other system modeling tools (not required, but preferred)
* Security-related certifications (e.g., Security+, CISSP, CEH, etc.) are a plus but not required
* Prior experience working with security protocols in embedded systems, aerospace, or communications is a plus
* Experience in System Level Integration, Verification, and Validation (IV&V) for ground based, ship, submarine, or airborne platforms
* Familiarity with DoD focused security assessment tools, e.g. SCC, NMAP, Evaluate-STIG, Nessus, ACAS, Vulnerator, eMASSster, etc.
* Familiarity with penetration test tooling, e.g. Kali Linux
What We Offer
* Medical, dental, and vision insurance
* Three weeks of vacation for newly hired employees
* Generous 401(k) plan that includes employer matching funds and separate employer retirement contribution, including a Lifetime Income Strategy option
* Tuition reimbursement program
* Student Loan Repayment Program
* Life insurance and disability coverage
* Optional coverages you can buy pet insurance, home and auto insurance, additional life and accident insurance, critical illness insurance, group legal, ID theft protection
* Birth, adoption, parental leave benefits
* Ovia Health, fertility, and family planning
* Adoption Assistance
* Autism Benefit
* Employee Assistance Plan, including up to 10 free counseling sessions
* Healthy You Incentives, wellness rewards program
* Doctor on Demand, virtual doctor visits
* Bright Horizons, child and elder care services
* Teladoc Medical Experts, second opinion program
* This position is eligible for relocation assistance
* And more!
Learn More & Apply Now!
Do you want to be a part of something bigger? A team whose impact stretches across the world, and even beyond? At Collins Aerospace, our Mission Systems team helps civilian, military and government customers complete their most complex missions - whatever and wherever they may be. Our customers depend on us for intelligent and secure communications, missionized systems for specialized aircraft and spacecraft and collaborative space solutions. By joining our team, you'll have your own critical part to play in ensuring our customer succeeds today while anticipating their needs for tomorrow. Are you up for the challenge? Join our mission today.
* Please ensure the role type (defined below) is appropriate for your needs before applying to this role.
ONSITE: Employees who are working in Onsite roles will work primarily onsite. This includes all production and maintenance employees, as they are essential to the development of our products.
At Collins, the paths we pave together lead to limitless possibility. And the bonds we form - with our customers and with each other -- propel us all higher, again and again.
Apply now and be part of the team that's redefining aerospace, every day.
Employee Referral Eligible
As part of our commitment to maintaining a secure hiring process, candidates may be asked to attend select steps of the interview process in-person at one of our office locations, regardless of whether the role is designated as on-site, hybrid or remote.
The salary range for this role is 82,000 USD - 164,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.
Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.
Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.
This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.
RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplySenior Principal Systems Security Engineer (Program Protection / Anti-Tamper) - (On-site Marlborough, MA) P5
Security engineer job in Marlborough, MA
Country:
United States of America Onsite
U.S. Citizen, U.S. Person, or Immigration Status Requirements:
Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Security Clearance:
DoD Clearance: Secret
At Raytheon, the foundation of everything we do is rooted in our values and a higher calling - to help our nation and allies defend freedoms and deter aggression. We bring the strength of more than 100 years of experience and renowned engineering expertise to meet the needs of today's mission and stay ahead of tomorrow's threat. Our team solves tough, meaningful problems that create a safer, more secure world.
Job Summary
Raytheon is seeking a Senior Principal Systems Security Engineer (Program Protection / Anti-Tamper) - P5 to join our elite Systems Security Engineering (SSE) team for the Systems Directorate in developing solutions to protect the Warfighter's technology advantage. Systems Security Engineering creates holistic security solutions leveraging Cybersecurity, Software Assurance, and Supply Chain Risk Management to support Program Protection on embedded weapons systems. Join our highly visible team and perform technically challenging assignments, which will directly contribute to protecting our nation and our Warfighters. The individual will work with the program and customer in the development of the system, providing strategic input and planning for the system, applications, architecture, and design in a dynamic, agile development environment. This is an onsite position at Raytheon in Marlborough , MA
What You Will Do
Support implementation of SSE solutions into RTX products
Interact with customer to define SSE requirements, solutions, trades, costs, implementation, system impacts, and effectiveness
Support developing plans and estimates, task execution, project tracking, reporting, and risk identification and mitigation plans
Plan and guide SSE implementations in customer systems
Consult and assist program line management with SSE architectures and issues
Attack threat modeling / Critical Program Information Assessments
Developing top-level system requirements, and flowing down requirements and implementation concepts to subsystem
Understanding, and compliance with, DoD technology release and export licensing policies
Validate secure configuration of routers, switches, firewalls, servers, operating systems, applications, and other assets, using
DoD approved scanning and assessment tools such as ACAS, STIG, SCAP Compliance Checker, and HBSS
Performing Task Lead duties (e.g., task planning, product owner, scrum master)
Qualifications You Must Have
Typically requires a Bachelor's in Science, Technology, Engineering, or Mathematics (STEM) and 10 years of prior relevant experience
Active and transferable U.S. government issued DoD Secret security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance
Experience in technical leadership
Experience in the fields of System Security Engineering, computer technology reverse engineering, AT, cybersecurity, or embedded security
Qualifications We Prefer
Experience in design, development and fielding of SSE systems
Software, Firmware, & Microelectronics Engineering, Cryptography and FPGA design
Attack threat modeling / Critical Program Information Assessments
Attack threat modeling / Critical Program Information Assessments
Experience in the implementation and business growth of SSE implementation throughout the entire life cycle
Experience in solutions meeting robust SSE systems security requirements
DoD Top Secret clearance with current SSBI within last 5 years desired
Cyber Certifications in accordance with DoDD 8570/DoDD 8140 such as CISSP, GSLC, CEH
Program management experience with SSE
Broad understanding of technology and working knowledge of DODI-S-5230.28
Aircraft/weapons integration experience
Strategic planning and proposal writing skills
Candidate must exhibit an exceptional degree of ingenuity, creativity, and resourcefulness
Excellent interpersonal skills with the ability to interact positively with coworkers, suppliers, stakeholders, and customers in a team environment
Experience contributing in a team environment for the purpose of developing creative solutions to technical problems
What We Offer
Our values drive our actions, behaviors, and performance with a vision for a safer, more connected world. At RTX we value: Trust, Respect, Accountability, Collaboration, and Innovation
Relocation Eligible - Relocation assistance is available
The salary range for this role is 124,000 USD - 250,000 USD. The salary range provided is a good faith estimate representative of all experience levels. RTX considers several factors when extending an offer, including but not limited to, the role, function and associated responsibilities, a candidate's work experience, location, education/training, and key skills.Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays. Specific benefits are dependent upon the specific business unit as well as whether or not the position is covered by a collective-bargaining agreement.Hired applicants may be eligible for annual short-term and/or long-term incentive compensation programs depending on the level of the position and whether or not it is covered by a collective-bargaining agreement. Payments under these annual programs are not guaranteed and are dependent upon a variety of factors including, but not limited to, individual performance, business unit performance, and/or the company's performance.This role is a U.S.-based role. If the successful candidate resides in a U.S. territory, the appropriate pay structure and benefits will apply.RTX anticipates the application window closing approximately 40 days from the date the notice was posted. However, factors such as candidate flow and business necessity may require RTX to shorten or extend the application window.
RTX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or veteran status, or any other applicable state or federal protected class. RTX provides affirmative action in employment for qualified Individuals with a Disability and Protected Veterans in compliance with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans' Readjustment Assistance Act.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Auto-ApplyInformation Security Analyst
Security engineer job in Norwell, MA
INFORMATION Department Security Reports To Information Security Manager Type Full-Time Rate Type Salary Work as part of ESG's Global Information Security Team to maintain the confidentiality, integrity, and availability of enterprise assets. The Security Analyst plays a critical role in supporting the organization's cybersecurity posture by monitoring, analyzing, and responding to security incidents and threats.
This position requires a strong technical foundation, analytical thinking, and understanding of cyber security threats.
Essential Functions
* Analyze security alerts to identify and respond to any security events or incidents.
* Support investigations, reporting and remediation activities of security events and incidents
* Manage, create, and update information security documentation.
* Provide support to ensure information security compliance with industry regulations and data privacy laws.
* Keep up to date with the latest security trends and technologies and recommend improvements to our security posture.
* Research the latest information security threats and vulnerabilities and prepare reports and presentations.
* Conducting vulnerability assessments on systems and applications, to identify and mitigate any security vulnerabilities.
* Participate in both internal and external audits.
* Ability to function in a fast-paced environment and effectively manage multiple tasks simultaneously.
* All other related duties as assigned.
Experience
* Two years' experience as a Security Analyst, or 2 years' experience in a related technical field.
* Knowledge of implementing, supporting, and auditing information security control frameworks such as, NIST, PCI DSS, ISO and SOC.
* Knowledge of security Incident event management and monitoring
* Supporting penetration testing and vulnerability management programs
* Security threat monitoring
* Strong communication skills with the ability to work collaboratively in a global team.
* Detail oriented and ability to focus on granular level compliance and security issues.
Education
Bachelor of Science in Computer Science or related field
Perks
By becoming a team member here at ESG, you'll have access to competitive health, dental, and vision coverage, as well as life insurance, and short term and long-term disability insurance. We value work life balance, and you'll benefit from our open time off and excellent 401K package. We also offer a generous paid parental leave and education assistance program.
Work Environment
This job operates in a hybrid work environment with a preference for being in the office two to three days a week. Full time remote can be considered for the right candidate and fit with the ESG North American operation.
Travel Requirements
Up to 5% travel may be required based on location.
ESG is an equal opportunity employer. Qualified candidates will receive consideration for employment without regard to race, color, religion, national origin, gender, sexual orientation, gender identity or expression, age, mental or physical disability, and genetic information, marital status, citizenship status, military status, protected veteran status or any other category protected by law.
Information System Security Officer
Security engineer job in Woods Hole, MA
Woods Hole Oceanographic Institution is searching for a highly skilled and cleared Information System Security Officer (ISSO) / Classified Systems Information Assurance Analyst to join our team, focusing exclusively on the security of classified information systems and networks. This critical role is responsible for ensuring the confidentiality, integrity, and availability of sensitive government information in accordance with stringent U.S. government (USG) security directives.
The ISSO will be instrumental in the authorization and accreditation(A&A) process, continuous monitoring, incident response, and the implementation of robust security controls for classified environments. The ideal candidate will possess a deep understanding of relevant security frameworks, policies, and a proven track record of maintaining secure classified systems. This is a regular, full-time, exempt position, and is eligible for full benefits.
ESSENTIAL FUNCTIONS
Authorization & Accreditation (A&A) / Risk Management Framework (RMF):
Lead or support the development, review, and submission of comprehensive security authorization packages (e.g., System Security Plans (SSPs), Risk Assessment Reports, Contingency Plans, Plan of Action and Milestones (POA&Ms)) for classified systems.
Ensure all classified systems maintain an Authority to Operate (ATO), Interim Authority to Test (IATT), or Authority to Connect (ATC) in accordance with RMF or legacy A&A processes (e.g., DIACAP).
Interpret and apply USG security policies, regulations, and guidelines, including but not limited to: NISPOM, DoD Instruction 8500.01, NIST SP 800-53, DCID 6/3, ICD 503, JSIG, and DISA STIGs.
Security Control Implementation & Enforcement:
Design, implement, and maintain security controls specific to classified systems, including secure configurations, access controls, auditing, media control, and classified spillage prevention/response.
Configure and manage specialized security tools relevant to classified environments (e.g., Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), Data Loss Prevention (DLP) solutions).
Perform rigorous hardening of operating systems (Windows, Linux), applications, and network devices based on DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
Vulnerability Management & Continuous Monitoring:
Conduct vulnerability scans, analyze results, and work with system administrators to remediate security weaknesses on classified systems.
Oversee and perform continuous monitoring activities, including reviewing audit logs, security events, and system alerts for anomalous behavior.
Track and ensure compliance with Information Assurance Vulnerability Management (IAVM) directives.
Incident Response & Classified Spillage:
Act as a primary point of contact and lead for security incidents and classified spillage events on assigned systems.
Execute incident response procedures, including containment, eradication, recovery, and detailed reporting to relevant government authorities.
Participate in forensic investigations as required for classified incidents.
Compliance & Audit Support:
Maintain meticulous documentation of all security artifacts, configurations, policies, and procedures for classified systems.
Support internal and external security inspections, audits, and assessments by government agencies (e.g., DCSA, DSS, NSA).
Develop and implement standard operating procedures (SOPs) for the secure operation of classified systems.
User Training & Guidance:
Provide guidance and training to users on proper handling, marking, and safeguarding of classified information and operation of classified systems.
Ensure all personnel accessing classified systems meet training requirements (e.g., security awareness, insider threat).
Configuration Management:
Manage and control changes to the hardware, software, and firmware of classified systems to maintain their security posture and accreditation.
MINIMUM QUALIFICATIONS
Security Clearance:
Active U.S. Government Security Clearance required at the SECRET level or above.
Education:
Bachelor's degree in Computer Science, Information Security, Cybersecurity, or equivalent experience.
Experience:
5 years of dedicated experience in Information Assurance/Cybersecurity within classified government or defense environments.
Demonstrable expertise in the Risk Management Framework (RMF) or equivalent A&A processes (e.g., DIACAP).
Hands-on experience with security tools and technologies used in classified environments (e.g., ACAS, HBSS, SIEM, dedicated firewalls).
Proven experience with DISA STIGs and their application to various operating systems and applications.
Technical Skills:
Strong understanding of network protocols, operating systems (Windows, Linux/Unix), and virtualized environments in a classified context.
Experience with encryption technologies and COMSEC devices.
Knowledge of scripting languages (e.g., PowerShell, Python, Bash) for automation and auditing is a plus.
Desired Certifications:
CISSP (Certified Information Systems Security Professional)
DoD 8570.01-M IAT Level II (e.g., CompTIA Security+, CySA+, CCNA Security, SSCP) or higher (IAM Level I, II, or III).
GIAC Certifications relevant to incident handling, forensics, or security auditing (e.g., GCIH, GCFA, GCCC, GSNA)
Additional Job Requirements
Salary Range: $114,000 to $148,000 USD
The salary range provided for this position reflects the expected minimum and maximum base pay for new hires. Actual compensation will be determined based on factors such as relevant skills, experience, and qualifications, as well as internal equity and market conditions. In addition to base salary, eligible employees also receive a comprehensive benefits package.
WHOI accepts applications on a rolling basis - applications will be reviewed as they are received, and we encourage you to submit your application as soon as possible to ensure full consideration. While we will continue to review applications until the position is filled, and early applicants may have an advantage in the selection process.
EEO Statement
Woods Hole Oceanographic Institution (WHOI) provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Auto-ApplyNetwork Security Engineer
Security engineer job in Quincy, MA
Duties and Responsibilities: * Support the Network and Security Manager and network engineering team with the design, maintenance, and day-to-day operation of our enterprise network across on-prem, branch, and hybrid environments. * Troubleshoot and resolve network tickets, including LAN/WAN issues, firewall- related problems, and connectivity incidents.
* Perform routine break/fix work, firmware updates, and hardware/software upgrades for firewalls, switches, and other network appliances.
* Implement firewall policy changes and assist with ongoing firewall rule maintenance and cleanup.
* Install and configure network devices (routers, switches, firewalls) under guidance from senior engineers.
* Maintain accurate network topology diagrams for headquarters, branches, and WAN infrastructure.
* Participate in a weekly on-call rotation with the network team.
* Provide Tier 1 and Tier 2 support for network-related escalations.
* Perform and verify backups of network device configurations.
* Handle additional network or security projects as assigned.
What we are looking for:
* 1+ years of hands-on experience in a corporate/enterprise network environment or strong academic background with meaningful internship experience.
* Solid understanding of networking fundamentals such as TCP/IP, VLANs, routing, and switching.
* Familiarity with routing protocols (OSPF, BGP, EIGRP).
* Exposure to enterprise networking hardware (Fortinet, Cisco, Juniper Mist, or similar).
* Ability to analyze and troubleshoot network connectivity issues efficiently.
* Strong communication skills and a willingness to learn from senior engineers.
* Ability to work on-site at least four days per week (primary work is hands-on with physical infrastructure).
Great- to- Haves:
* Certifications like CCNA (or in progress), CompTIA Network+, Fortinet NSE, or similar.
* Exposure to cloud networking concepts-especially GCP or AWS (e.g., VPCs, routing, firewalls, hybrid connectivity).
* Familiarity with virtualization and software-defined networking (Google Cloud networking, VMware NSX).
* Basic scripting skills (Python, PowerShell) for automation or configuration tasks.
Granite delivers advanced communications and technology solutions to businesses and government agencies throughout the United States and Canada. We provide exceptional customized service with an emphasis on reliability and outstanding customer support and our customers include over 85 of the Fortune 100. Granite has over $1.85 Billion in revenue with more than 2,100 employees and is headquartered in Quincy, MA. Our mission is to be the leading telecommunications company wherever we offer services as well as provide an environment where the value of each individual is recognized and where each person has the opportunity to further their growth and achieve success.
Granite has been recognized by the Boston Business Journal as one of the "Healthiest Companies" in Massachusetts for the past 15 consecutive years.
Our offices have onsite fully equipped state of the art gyms for employees at zero cost.
Granite's philanthropy is unparalleled with over $300 million in donations to organizations such as Dana Farber Cancer Institute, The ALS Foundation and the Alzheimer's Association to name a few.
We have been consistently rated a "Fastest Growing Company" by Inc. Magazine.
Granite was named to Forbes List of America's Best Employers 2022, 2023 and 2024.
Granite was recently named One of Forbes Best Employers for Diversity.
Our company's insurance package includes health, dental, vision, life, disability coverage, 401K retirement with company match, childcare benefits, tuition assistance, and more.
If you are a highly motivated individual who wants to grow your career with a fast paced and progressive company, Granite has countless opportunities for you.
EOE/M/F/Vets/Disabled
Systems Security Analyst/Cyber Defense Analyst
Security engineer job in Newport, RI
DecisiveInstincts, LLC has an immediate opportunity for a Systems Security Analyst / Cyber Defense Analyst in Newport, RI. This position requires a Top Secret/SCI clearance.
Immediate Opportunity: Systems Security Analyst / Cyber Defense Analyst
Location: Newport, RI
Clearance Required: Top Secret/SCI
Key Responsibilities
Analyze, document, and develop integration, testing, operations, and maintenance for system security.
Utilize cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to monitor and mitigate threats.
Apply defensive measures to identify, analyze, and report security events.
Coordinate threat and mitigation strategies across the enterprise.
Required Experience
Network & Security Operations:
Install, configure, and maintain security devices on EDU, SIPRNET, DMZ, and commercial ISP networks.
Ensure compliance with DoD security and information assurance policies.
Support unclassified and classified information security services.
Security Tools & Technologies:
Operate ACAS, McAfee HBSS, Corelight, and Cortex for threat detection and management.
Implement SOAR orchestration and SIEM event correlation & analysis.
Manage cloud security systems for DLP, email security, and threat prevention.
Perform vulnerability scanning, penetration testing, and firewall administration.
Cybersecurity Expertise:
Analyze network alerts and identify causes of security incidents.
Conduct security reviews, gap analysis, and risk mitigation.
Apply knowledge of cyber threats, attack vectors, and mitigation strategies.
Understand TCP/IP, DHCP, DNS, and OSI Model.
Perform packet-level analysis and collect data from cyber defense resources.
Education & Certifications
Degree Requirement:
Bachelor's in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science (ABET-accredited or CAE-designated institution).
Certifications may be considered in lieu of a degree.
************Direct Applicants Only - No Agencies or Third-Party Recruiters***********
Auto-ApplyMultiple permanent positions_Certified Security Architect_w2
Security engineer job in Cumberland, RI
360 IT Professionals is a Software Development Company based in Fremont, California that offers complete technology services in Mobile development, Web development, Cloud computing and IT staffing. Merging Information Technology skills in all its services and operations, the company caters to its globally positioned clients by providing dynamic feasible IT solutions. 360 IT Professionals work along with its clients to deliver high-performance results, based exclusively on the one of a kind requirement.
Job Description
We are looking to fill multiple full time positions as Information Security Architects in Cumberland RI.
Qualifications
A minimum of 5+ years of relevant security domain experience.
3+ years of hands on technical experience in network and perimeter security
A minimum of 3 years in an architecture role and be able to lead/step up as needed
Demonstrated expertise in integrating/developing security solutions in a 7x24 production environment
Prior experience in defining the technology strategy for a large, global organization, and the ability to influence and persuade peers and colleagues in other reporting structures
Strong Plus Skills:
Industry recognized certifications such as CISA, CISM, CISSP, or SANS GIAC are a plus
Virtualization Security experience is a strong plus (VMware ESX 6.x, Hytrust, Hypervisor, in-hypervisor malware control. Virtual NIC, NSX or equivalent.)
Knowledge of risk assessment methodologies, IT policies and standards
Knowledge of vulnerability identification tools, Qualys, Veracode, Qualys WAS.
Additional Information
In person interview is acceptable.
Network Security Engineer
Security engineer job in Framingham, MA
Must Have Technical/Functional Skills * Experience in handling Cisco Firepower / ASA firewall * Experience with Cisco Any connect VPN, IPSEC VPN, Firewall (FortiGate / Cisco) * Experience with Infoblox Administration and upgrade process * Network Troubleshooting, Packet Capture Analysis, Code Upgrade,
* Configurations and Engineering work
* Good to Have: Experience with handing Cisco Switches/Nexus,
* F5 load balancing, Routing experience.
Roles & Responsibilities
* Understanding of OSI models (L1-L4)
* Excellent Network troubleshooting skills, tcpdump and packet capture analysis
* Advanced knowledge on Fortinet v6.x & v7.x virtual firewalls; Forti Manager, Forti Analyzer & ADOM
* Advanced knowledge on Cisco ASA Site to Site and Client to Site VPN technology
* Good work experience in FortiGate firewalls, clustering models for consolidation,
* migration & hardware refresh related works
* Good work experience in Infoblox, DNS and DHCP services related engineering work
* Good communication skill
* Understanding of processes [Incident, Change & Problem]
* Understanding of monitoring tools [SolarWinds, Riverbed, Tuffin]
#LI-PL1
Salary Range-$70,000-$110,000 a year
TCS Employee Benefits Summary:
* Discretionary Annual Incentive.
* Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
* Family Support: Maternal & Parental Leaves.
* Insurance Options: Auto & Home Insurance, Identity Theft Protection.
* Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
* Time Off: Vacation, Time Off, Sick Leave & Holidays.
* Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.
Sr. Information Systems Security Engineer
Security engineer job in Wellesley, MA
Sun Life U.S. is one of the largest providers of employee and government benefits, helping approximately 50 million Americans access the care and coverage they need. Through employers, industry partners and government programs, Sun Life U.S. offers a portfolio of benefits and services, including dental, vision, disability, absence management, life, supplemental health, medical stop-loss insurance, and healthcare navigation. We have more than 6,400 employees and associates in our partner dental practices and operate nationwide.
Visit our website to discover how Sun Life is making life brighter for our customers, partners and communities.
Job Description:
The Sr Information Security Engineer will report to the Manager, Security Engineering. The Sr Information Security Engineer will be among a team of engineers responsible for security configurations and engineering for all information security systems, for on-premise and cloud-based security systems. This role will be responsible for the management and maintenance of all Information Security systems. These systems include: Security Data Loss Prevention, Identity and Access Management, Authentication Platforms, Advanced Malware and Anti-Virus, Web Filter, Proxy, SIEM (Security Incident Event Manager), File Integrity Monitoring, IPS/IDS, Database Activity Monitoring, Threat Intelligence, Secure Configuration Management, and Network Security along with the direct security configuration aspects of VCenter, Citrix, Windows Active Directory, Exchange, and any other Information Systems.
Qualifications
BS and the equivalent of 7 years working in Information Security or equivalent 10 years of work experience, in a highly regulated environment, preferably in Healthcare or Fintech, in which there are demonstrated progressive levels of responsibility, experience, and leadership and hands-on experience with the implementation and configuration of security controls in on-prem and cloud-based environments
Experience working on an Agile team and familiarity with the Agile Scrum methodology and creation of user stories in Agile discipline
Extensive experience with Identity and Access Management, Vulnerability Management, Database Security, Network Security, Active Directory, Patch Management, Web Application Firewalls, and Advanced Malware solutions
Extensive working knowledge of configuring and managing Identity and Access Platforms, Firewalls, Switches, Routers, Network Sensors, Endpoint Controls, Server Controls, and Data Loss Prevention is required
Security certifications preferred (CISSP, OSCP, CISM, GIAC) or with a requirement of obtaining within 12 months upon hire
Knowledge of Python, Regex, PowerShell, SQL, JSON, and XML and at least some experience in an object-oriented programming language is desirable but not required
Excellent verbal and written communication skills
Effective organization, prioritization, negotiation and influencing skills
Responsibilities
Lead configuration and implementation of all information security systems
Manage all information security systems and ensure proactive patching levels
Act as backup or lead Scrum Master for Security Engineering team as assigned by Security team leadership, creating user stories assigned to engineering and operations team members
Configure and engineer all Endpoint Security controls
Configure and engineer all Network Security controls
Configure and engineer all Server Security controls
Configure and engineer all Database Security controls
Configure and engineer all identities and permissions and single sign-on for contractors and employees
Develops peers and staff by providing direction, support, and mentoring in areas of expertise
Other duties as needed or required.
Not ready to apply yet but want to stay in touch? Join our talent community to stay connected until the time is right for you!
Life is brighter when you work at Sun Life
-
Excellent benefits and wellness programs to support the three pillars of your well-being - mental, physical and financial - including generous vacation and sick time, market-leading paid family, parental and adoption leave, a partially-paid sabbatical program, medical plans, company paid life and AD&D insurance as well as disability programs and more
-
Retirement and Stock Purchase programs to help build and enhance your future financial security including a 401(k) plan with an employer-paid match as well as an employer-funded retirement account
-
A flexible work environment with a friendly, caring, collaborative and inclusive culture
-
Great Place to Work Certified in Canada and the U.S.
-
Named as a “Top 10” employer by the Boston Globe's “Top Places to Work” two years running
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
If you are a California resident, the salary range for this position is:
-
Southern California region: $93,200 - $139,800 annually
-
Central California region: $98,200 - $147,300 annually
-
Northern California region: $105,000 - $157,500 annually
If you are a Colorado or Nevada resident, the salary range for this position is $ 89,000 - $133,500 annually
If you are a Connecticut or Maryland resident, the salary range for this position $93,200 - $139,800 annually
If you are Washington or Rhode Island resident, the salary range for this position is $98,200 - $147,300 annually
If you are a New York resident, the salary range for this position is $171,400 - $257,100 annually
We consider various factors in determining actual pay including your skills, qualifications, and experience. In addition to salary, this position is eligible for incentive awards based on individual and business performance as well as a broad range of competitive benefits.
Sun Life Financial is a leading provider of group insurance benefits in the U.S., helping people protect what they love about their lives. More than just a name, Sun Life symbolizes our brand promise of making life brighter -for our customers, partners, and communities. Join our talented, diverse workforce and launch a rewarding career. Visit us at
***************
/us to learn more.
At Sun Life we strive to create a flexible work environment where our employees are empowered to do their best work. Several flexible work options are available and can be discussed throughout the selection process depending on the role requirements and individual needs.
#LI-remote
Not ready to apply yet but want to stay in touch? Join our talent community to stay connected until the time is right for you!
We are committed to fostering an inclusive environment where all employees feel they belong, are supported and empowered to thrive. We are dedicated to building teams with varied experiences, backgrounds, perspectives and ideas that benefit our colleagues, clients, and the communities where we operate. We encourage applications from qualified individuals from all backgrounds.
Life is brighter when you work at Sun Life
At Sun Life, we prioritize your well-being with comprehensive benefits, including generous vacation and sick time, market-leading paid family, parental and adoption leave, medical coverage, company paid life and AD&D insurance, disability programs and a partially paid sabbatical program. Plan for your future with our 401(k) employer match, stock purchase options and an employer-funded retirement account. Enjoy a flexible, inclusive and collaborative work environment that supports career growth. We're proud to be recognized in our communities as a top employer. Proudly Great Place to Work Certified in Canada and the U.S., we've also been recognized as a "Top 10" employer by the Boston Globe's "Top Places to Work" for two years in a row. Visit our website to learn more about our benefits and recognition within our communities.
We will make reasonable accommodations to the known physical or mental limitations of otherwise-qualified individuals with disabilities or special disabled veterans, unless the accommodation would impose an undue hardship on the operation of our business. Please email ************************* to request an accommodation.
For applicants residing in California, please read our employee California Privacy Policy and Notice.
We do not require or administer lie detector tests as a condition of employment or continued employment.
Sun Life will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including applicable fair chance ordinances.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Job Category:
IT - Technology Services
Posting End Date:
31/10/2025
Auto-ApplyProduct Security Engineer- India
Security engineer job in Westborough, MA
We are seeking a Product Security Engineer to work with one of our Large Medical Device Clients. The Product Security Engineering Contractor will assist with product security tasks, deliverables, and support for the product security and systems engineering teams. This role requires technical expertise, knowledge of safety critical systems, and the ability to work in a team environment to ensure security and resilience of our current and developing digital products.
Responsibilities:
· Understand and adhere to Quality Management System requirements
· Contribute to the development/maintenance of threat models, product security risk documentation, and other QMS deliverables
· Identify and consult on requirements to help address and mitigate security risks and vulnerabilities.
· Serve as subject matter expert to the development teams, be security minded and raise the level of understanding and compliance.
· Leverage tools like Polaris (Blackduck) to perform and triage SAST, DAST, SCA scans.
· Collaborate with the team on the security testing and security signals
· Support compliance with regulatory requirements, industry standards, and internal policies governing product security.
· Stay informed about new tools, regulations, standards, and best practices of the industry.
Compensation:
$10/hr to $14/hr
Exact compensation may vary based on several factors, including skills, experience, and education.
Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401K retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: ****************************************************
Skills and Requirements
Education*:
- Bachelor's degree in computer science, information technology, cybersecurity, or related area required, or minimum of 5 years' experience in a relevant industry.
Experience*:
- Minimum of 2 years' experience working as a Software Security Engineer position
Skills:
- Experience with embedded technology and software security.
- Experience in using Secure Software Development Lifecycle (SSDLC) within agile framework.
- Expertise in threat modelling, security risk management, secure coding, secure system development, and DevSecOps
- Knowledge of application security and code analysis tools such as Polaris / BlackDuck, or similar.
- Experience with security techniques, standards, and methods for authentication and authorization, applied cryptography, security vulnerabilities and remediation in Windows .NET and Azure environments.
- Solid technical background and understanding of all aspects of security research and development.
- Excellent analytical and troubleshooting skills.
- Ability to work both independently and in a team environment.
- Excellent communication skills, oral and written.
Other Considerations (travel/hours availability, etc.):
- Work time outside of "normal" work hours may be required from time to time.
IT Security Engineer
Security engineer job in Quincy, MA
Job Description
Job Title: Security Engineer
Department: Technology
Reports To: VP of Technology
Pay Range: $150,000 - $175,000 per year, depending on experience
FLSA Status: Exempt
WHO WE ARE:
Bay State Milling Company is a family-owned leader in grain-based food ingredients, proudly serving the industry since 1899. For over 125 years, we've been on a mission to promote the growth of nutritious, sustainable, and accessible food choices. Our portfolio spans flours, grains, seeds, and innovative plant-based ingredients, all crafted to meet evolving consumer demands for healthfulness, great taste, and affordability.
Rooted in five generations of ownership, we combine deep milling expertise with forward-thinking innovation. From our flagship mill in Winona, Minnesota to facilities across North America, we partner with growers and customers to deliver quality and trust at every step. Guided by our core values-Integrity, Creativity, Collaboration, Caring, and Quality-we relentlessly pursue better for the food system and the communities we serve.
JOB SUMMARY:
The Security Engineer plays a critical role in safeguarding Bay State Milling's digital assets, infrastructure, and data. This position is responsible for designing, implementing, and maintaining security solutions that protect against cyber threats and ensure compliance with industry standards and regulatory requirements. The Security Engineer collaborates closely with all areas of the technology team and business stakeholders to assess risks, respond to incidents, and continuously improve the company's security posture.
ROLE & RESPONSIBILITIES:
Design and implement secure network, system, and application architectures.
Evaluate and deploy security tools, technologies, and frameworks.
Monitor systems for security breaches and investigate incidents.
Lead response efforts for security events, including containment, remediation, and reporting.
Conduct regular vulnerability assessments and penetration testing.
Coordinate remediation efforts with infrastructure and application teams.
Ensure compliance with internal policies, industry standards (e.g., NIST, ISO 27001), and regulatory requirements.
Support audits and risk assessments and maintain documentation of security controls.
Develop and deliver security awareness programs for employees.
Provide guidance and training to technical teams on secure coding and system hardening.
Manage and enforce identity and access controls across systems and applications.
Implement role-based access and least privilege principles.
Integrate security into cloud environments and CI/CD pipelines.
Collaborate with Development teams to embed security into development workflows.
Stay current with emerging threats, technologies, and best practices.
Recommend and implement improvements to security policies, procedures, and tools.
MINIMUM EDUCATION & WORK REQUIREMENTS:
Bachelor's degree in computer science, Information Security, Cybersecurity, or a related field.
Minimum of 5 years of firsthand experience in cybersecurity engineering, security operations, or related technical roles.
Preferred certifications can include CISSP, CISM, or Cybersecurity Architect
Proven experience with security technologies such as firewalls, SIEM, IDS/IPS, endpoint protection, and cloud security platforms.
Experience working in hybrid & cloud-native environments (e.g., AWS, Azure, GCP).
Familiarity with secure software development practices and DevSecOps integration.
KNOWLEDGE, SKILLS, AND ABILITIES:
Strong understanding of network protocols, operating systems (Windows, Linux), and cloud infrastructure.
Deep knowledge of cybersecurity frameworks (e.g., NIST, MITRE ATT&CK, ISO 27001).
Experience with SIEM platforms (e.g., Splunk, Sentinel), EDR solutions, and threat intelligence tools.
Ability to assess and mitigate risks in complex enterprise environments.
Strong analytical and problem-solving skills with attention to detail.
Excellent communication skills, with the ability to translate technical risks into business impact.
Ability to work independently and collaboratively in cross-functional teams.
Familiarity with regulatory requirements such as GDPR, or CCPA.
Experience with container security (e.g., Kubernetes, Docker) and infrastructure-as-code (e.g., Terraform, CloudFormation).
Engineer, Information Security and Risk
Security engineer job in Providence, RI
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills.
**Responsibilities:**
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Experience with scripting languages (e.g., PowerShell, Python) for automation and integration.
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Understanding of DevOps practices.
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
+ Adaptability to stay ahead of evolving IAM technologies and security threats.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************