Cloud Security Engineer
Security engineer job in Philadelphia, PA
The Cloud Security Engineer will play a pivotal role in the cloud security service delivery model. The role combines deep technical expertise, collaboration across internal and external teams to design, implement, and optimize cloud security controls and service lines. The candidate will support both project-based and continuous security initiatives, focusing on securing HOSPITAL's cloud migration, supporting cloud security tool optimization, cloud security processes for the Information Security team, cloud/hybrid controls, automation, and risk-driven security outcomes.
Proven experience in securing a multi-cloud environment.
Proven experience with Identity and access management in the cloud
Proven experience with all security service lines in a cloud environment and the supporting security tools and processes to be successful.
Demonstrate collaboration with internal stakeholders, vendors, and supporting teams to design, implement, and maintain security technologies across network, endpoint, identity, and cloud infrastructure.
Drive continuous improvement and coverage of cloud security controls by validating alerts, triaging escalations, and working with the MSP to fine-tune detection and prevention capabilities.
Lead or support the development of incident response plans, engineering runbooks, tabletop exercises, and system hardening guides.
Ensure alignment of security architectures with HOSPITAL's policies, standards, and external frameworks such as NIST SP 800-53, HIPAA, PCI-DSS, CISA ZTMM, CIS Benchmarks, and Microsoft CAF Secure Methodology, AWS CAF, AWS Well Architected framework, Google CAF
Participate in design and governance forums to provide security input into infrastructure, DevSecOps, and cloud-native application strategies.
Assist with audits, compliance assessments, risk remediation plans, and evidence collection with internal compliance and external third-party stakeholders.
Mentor and support junior InfoSec engineers through documentation, training, and peer reviews.
Hands-on experience in security engineering, systems integration, and cloud architecture (Azure preferred).
Proficiency in tools and domains such as: EDR (Microsoft Defender), SIEM (Sentinel or Splunk), CSPM (e.g., Wiz), IAM (Entra ID), VPNs/NGFWs, NAC, and encryption protocols.
Demonstrated understanding of secure configuration management, automation pipelines (e.g., Terraform, PowerShell), and vulnerability management platforms.
What you will do
A Principal Information Security Specialist has similar responsibilities to Information Security Specialist III personnel. However, a Principal Information Security Specialist is deemed to be the subject matter expert and in-house advisor on complex problems and issues. A Principal Information Security Specialist also:
Works independently to initiate assignments and draws upon extensive professional knowledge and experience to make independent judgments regarding analysis, evaluation, development, and implementation of enterprise long-term solutions and operating initiatives to ensure that enterprise architectural objectives are aligned with organizational needs and strategic goals.
Skills: Duties (cont'd):
Optimizes information management approaches through an understanding of evolving business needs and technology capabilities and ensures that projects do not duplicate functionality or diverge from each other and business and DTS strategies.
Shapes, designs, and plans specific service lines in product area and manages the risks associated with information and DTS assets through appropriate standards and security policies.
Functions as the Subject Matter Expert (SME) to maintain an understanding of HOSPITAL DTS business and clinical applications and the relationship to InfoSec and compliance solutions; assist Hospital stakeholders in understanding information protection needs that support the Hospital's business.
Works with other architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs and takes ownership of a particular solution offering.
Works with highly matrixed team of DTS personnel to support enterprise architecture and information security operations including, but not limited to, architecture and InfoSec principles around identity & access management models, cloud identify management providers, security information and event monitoring, and data loss prevention, perimeter (e.g. firewalls, IPS, web filtering), cloud and virtualization environments and network security (host-based firewalls, anti-virus, disk encryption).
Support and/or lead activities around InfoSec standards for business continuity and change management activities (e.g., table tops and change review board) and educates DTS Hospital management on security issues (e.g., Identity and Access Management (IAM), Role Based Access Control (RBAC) models.
Skills:
Demonstrates comprehensive knowledge and understanding of Information security principles, general and IT controls (e.g., access controls, risk management, change management, cloud security) and related information security policies and procedures.
Exhibits knowledge of industry regulatory standards and accreditation requirements or control frameworks (HIPAA, PCI, Joint Commission, NIST, Red Flags, ISO 27000 series).
Comprehensive knowledge of information security regulations, standards and leading practices, including understanding of EHR, cloud frameworks, identity access controls.
Good knowledge of basic database query techniques & data mining to analyze data or other related database functionality.
Knowledge of Microsoft Active Directory, UNIX, and Clinical Applications a plus.
Experience implementing application level security in clinical and financial systems (e.g., Epic, Lawson). ERP experience a plus.
General understanding of networking and communication techniques including WANs, LANs, Internet, Intranet, protocols, such as TCP/IP and their impact on security.
Microsoft, UNIX, Lawson, and Clinical Applications, Experience with industry standard SDLC methodologies; hands-on experience in Project Server methodologies, PMO project management skills, including use of MS productivity tools (Access, Word, PowerPoint, Visio, Project).
Experience with risk management frameworks.
Information Security Requirements
Understand and comply with all enterprise and IS departmental information security policies, procedures and standards.
Support the integration of information security in the development, design, and implementation of Hospital Technology Resources that process, transmit, or store HOSPITAL information.
Support all compliance activities related to state, federal regulatory requirements, healthcare accreditation standards, and all other applicable regulations that govern the use and disclosure of patient, financial, or other confidential information.
Cloud Security Engineer
Security engineer job in Philadelphia, PA
Apply now: Cloud Security Engineer (Principal InfoSec Specialist), location is Hybrid (Philadelphia, PA). The start date is 12/22/25 for this contract-to-hire position.
Job Title: Cloud Security Engineer (Principal InfoSec Specialist)
Location-Type: Hybrid (80% remote, 20% onsite - Philadelphia, PA)
Start Date Is: 12/22/25
Duration: 6-month contract-to-hire
Compensation Range: $80-102/hr on W2 ONLY
Job Description:
Serve as a subject matter expert for cloud security architecture and controls, driving risk-based outcomes and optimizing cloud security operations in a hybrid multi-cloud environment.
Day-to-Day Responsibilities:
Design, implement, and optimize cloud security controls and tools
Support cloud migration and secure cloud services delivery
Collaborate across internal teams and vendors on security architecture
Manage security tools like EDR, SIEM, IAM, CSPM
Lead or support incident response, system hardening, and compliance activities
Participate in audits, risk assessments, and governance forums
Mentor junior InfoSec engineers
Ensure alignment with industry standards and compliance frameworks
Requirements:
Must-Haves:
Bachelor's Degree
12+ years of IT experience, with 6+ years in InfoSec and 3+ years in IAM, RBAC, or related areas
Strong experience with cloud/virtualization technologies (Azure preferred)
Experience with multi-cloud security, identity management, and regulatory compliance
Proficiency in tools like Microsoft Defender, Sentinel/Splunk, Wiz, Entra ID, Terraform
CISSP certification
Nice-to-Haves:
Cloud security certifications (e.g., Azure Security Engineer, AWS Certified Security)
Experience working with high-performance matrixed teams
Familiarity with clinical systems (e.g., Epic, Lawson) and SDLC methodologies
Benefits:
This role is eligible to enroll in both Mondo's health insurance plan and retirement plan. Mondo defers to the applicable State or local law for paid sick leave eligibility
Cloud Security Engineer
Security engineer job in Philadelphia, PA
Our client is one of the largest Hospitals in the US. Based out of Philadelphia, they are looking to hire a Cloud Security Engineer on a Contract basis.
Contract Duration: 6 Month Contract (Potential for extension or conversion)
Required Skills & Experience
At least twelve (12) years industry related experience, including experience in one to two IT disciplines (such as technical architecture, network management, application development, middleware, information analysis, database management or operations) in a multitier environment.
CISSP Certification
At least six (6) years experience with information security, regulatory compliance and risk management concepts.
At least three (3) years experience with Identity and Access Management, user provisioning, Role Based Access Control, or control self-assessment methodologies and security awareness training.
Experience with Cloud and/or Virtualization technologies.
Demonstrates comprehensive knowledge and understanding of Information security principles, general and IT controls (e.g., access controls, risk management, change management, cloud security) and related information security policies and procedures.
Exhibits knowledge of industry regulatory standards and accreditation requirements or control frameworks (HIPAA, PCI, Joint Commission, NIST, Red Flags, ISO 27000 series).
Comprehensive knowledge of information security regulations, standards and leading practices, including understanding of EHR, cloud frameworks, identity access controls.
Good knowledge of basic database query techniques & data mining to analyze data or other related database functionality.
Knowledge of Microsoft Active Directory, UNIX, and Clinical Applications a plus.
Experience implementing application level security in clinical and financial systems (e.g., Epic, Lawson). ERP experience a plus.
General understanding of networking and communication techniques including WANs, LANs, Internet, Intranet, protocols, such as TCP/IP and their impact on security.
Microsoft, UNIX, Lawson, and Clinical Applications,
Experience with industry standard SDLC methodologies; hands-on experience in Project Server methodologies, PMO project management skills, including use of MS productivity tools (Access, Word, PowerPoint, Visio, Project).
Experience with risk management frameworks.
Information Security Requirements
Understand and comply with all enterprise and IS departmental information security policies, procedures and standards.
Support the integration of information security in the development, design, and implementation of Hospital Technology Resources that process, transmit, or store information.
Support all compliance activities related to state, federal regulatory requirements, healthcare accreditation standards, and all other applicable regulations that govern the use and disclosure of patient, financial, or other confidential information.
Daily Responsibilities
Optimizes information management approaches through an understanding of evolving business needs and technology capabilities and ensures that projects do not duplicate functionality or diverge from each other and business and DTS strategies.
Shapes, designs, and plans specific service lines in product area and manages the risks associated with information and DTS assets through appropriate standards and security policies.
Functions as the Subject Matter Expert (SME) to maintain an understanding of DTS business and clinical applications and the relationship to InfoSec and compliance solutions; assist Hospital stakeholders in understanding information protection needs that support the Hospital's business.
Works with other architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs and takes ownership of a particular solution offering.
Works with highly matrixed team of DTS personnel to support enterprise architecture and information security operations including, but not limited to, architecture and InfoSec principles around identity & access management models, cloud identify management providers, security information and event monitoring, and data loss prevention, perimeter (e.g. firewalls, IPS, web filtering), cloud and virtualization environments and network security (host-based firewalls, anti-virus, disk encryption).
Support and/or lead activities around InfoSec standards for business continuity and change management activities (e.g., table tops and change review board) and educates DTS Hospital management on security issues (e.g., Identity and Access Management (IAM), Role Based Access Control (RBAC) models.
You will receive the following benefits:
Medical Insurance - Four medical plans to choose from for you and your family
Dental & Orthodontia Benefits
Vision Benefits
Health Savings Account (HSA)
Health and Dependent Care Flexible Spending Accounts
Voluntary Life Insurance, Long-Term & Short-Term Disability Insurance
Hospital Indemnity Insurance
401(k) including match with pre and post-tax options
Paid Sick Time Leave
Legal and Identity Protection Plans
Pre-tax Commuter Benefit
529 College Saver Plan
Motion Recruitment Partners (MRP) is an Equal Opportunity Employer. All applicants must be currently authorized to work on a full-time basis in the country for which they are applying, and no sponsorship is currently available. Employment is subject to the successful completion of a pre-employment screening. Accommodation will be provided in all parts of the hiring process as required under MRP's Employment Accommodation policy. Applicants need to make their needs known in advance.
Security Incident Response Engineer III
Security engineer job in Philadelphia, PA
Are you considering a new role in Cyber Security and want to work in a company that is helping to change the world? Consider joining an organization serving the global scientific research community, supporting the brightest minds on the planet.
Are you a collaborative Incident Response Engineer looking to work for a mission driven global organization?
About the role, Elsevier is expanding its Global InfoSec Security Incident Response team. As a Security Incident Response Engineer, you will play a crucial role in our internal security support team, assisting with incident response investigations.
This team is entrusted with analyzing, triaging, scoping, containing, and providing guidance for remediation, as well as determining the root cause of security incidents. This team also is empowered by collecting and analyzing security incident-related data to identify indicators of attack and compromise.
Responsibilities:
Assisting in scoping security incidents and identifying indicators of attack and compromise.
Analyzing incident data from threat analytics tools.
Communicating recommendations and guidance based on security incident analysis.
Coordinating responses to security incidents with other security and consulting teams.
Developing, documenting, and implementing runbooks, capabilities, and techniques for Incident Response.
Performing security triage and analysis on endpoint, server, and network infrastructure.
Conducting activities necessary for immediate containment and short-term resolution of incidents.
Maintaining current knowledge of the threat landscape, emerging security threats, and vulnerabilities.
Investigating the root cause of complex security incidents.
Maintaining a high level of confidentiality.
Requirements
Possess experience in cybersecurity incident response or related fields.
Proven ability to analyze, triage, scope, contain, and remediate security incidents.
Have current and extensive knowledge of security technologies, tools, and processes.
Experience with major cloud providers, including cloud security, networking, and multi-cloud or hybrid deployments.
Have current skills in automation using PowerShell, Python, Java, or similar languages.
Experience in Linux and/or Mac administration. Experience in Network Security Administration or Systems Administration.
Experience supporting large, complex, and geographically distributed enterprise environments.
Preferred certifications: CISSP, CISM, SANS, GIAC, ethical hacking/penetration tester, or security risk assessment.
Elsevier employs 10,000 people worldwide, including over 2,500 technologists. We have supported the work of our research and health partners for more than 140 years. Growing from our roots in publishing, we offer knowledge and valuable analytics that help our users make breakthroughs and drive societal progress.
OT Security Engineer
Security engineer job in Collegeville, PA
Must have an OT background with life sciences experience
Deliver OT security firewall policy design and document
Investigate and deliver appropriate OT architectures for RD systems
Troubleshoot connectivity issues experienced during migration activities
Must be proficient in Palo Alto
Must have an OT background with life sciences experience
Knowledge of supporting technologies, Zscaler, Cisco network infrastructure, Azure, and Google cloud
Good to have
Experience using ServiceNow Preferred RD lab experience, knowledge of lab systems, such as LIMS. HPLC etc
Experience with project software (ADO) Generic US or UK based (US preferred)
Good communicator, role requires frequent conversations with the business
Note : If you are interested please share me your resumes to ********************* or else reach me at **********.
Senior Network Security Architect_ Onsite
Security engineer job in King of Prussia, PA
King of Prussia, Pennsylvania
Contract
Required Skills and Experience:
-Experience: Minimum 12 years of professional experience in network architecture, with at least 7 years focused on large-scale data center planning and deployment.
- Expert-level proficiency in Palo Alto Prisma (Cloud, Access, etc.) for cloud-native security and firewall management.
- Extensive experience with Zscaler for cloud security, zero-trust access, and secure web gateways.
- Advanced knowledge of Cisco Identity Services Engine (ISE) for network access control, policy enforcement, and identity management.
- Strong expertise in Aruba ClearPass for NAC, guest access, and device profiling.
- Proven experience implementing SASE solutions for secure, scalable cloud connectivity.
- Hands-on experience designing and deploying networks in multi-cloud environments (AWS, Azure, GCP).
- Deep understanding of data center networking (e.g., spine-leaf, VXLAN, BGP, EVPN).
- Proficiency in creating comprehensive LLD and HLD documentation for network and security architectures.
- Familiarity with network automation tools (e.g., Ansible, Terraform) and scripting (e.g., Python).
- Demonstrated success leading large-scale network and security deployments, including Prisma, Zscaler, Cisco ISE, and ClearPass integrations.
- Exceptional verbal and written communication skills, with the ability to convey complex technical concepts to diverse audiences.
Certifications:
- Palo Alto Networks Certified Network Security Architect (PCNSA/PCNSE).
- Zscaler Certified Cloud Professional (ZCCP) or equivalent.
- Cisco CCIE Security or CCNP Security.
- Aruba Certified ClearPass Professional (ACCP).
- AWS Certified Solutions Architect, Microsoft Azure Solutions Architect, or Google Cloud Professional Cloud Architect.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience).
Information Security Specialist
Security engineer job in Horsham, PA
Delta Information Systems, Inc. is seeking a highly skilled Information Security Specialist to protect and secure critical systems, data, and intellectual property in a fast-paced Aerospace & Defense environment.
This role is responsible for implementing and managing security controls, ensuring compliance with strict regulatory requirements, and defending against advanced cyber threats. The ideal candidate will bring deep technical knowledge, strong problem-solving skills, and the ability to work across teams to maintain the confidentiality, integrity, and availability of sensitive information that supports our national security mission.
This is a fully onsite position located in Horsham, PA.
Key Responsibilities
Implement, monitor, and maintain security tools, including firewalls, intrusion detection/prevention systems, endpoint protection, and SIEM platforms.
Perform continuous monitoring, vulnerability assessments, penetration testing, and risk analysis of systems and networks.
Ensure compliance with DoD, NIST 800-171, CMMC, ITAR, DFARS, and other regulatory frameworks.
Champion the company's certification to CMMC Level 2.
Develop, document, and enforce cybersecurity policies, procedures, and incident response plans.
Support Government and customer security audits, preparing evidence and remediation plans as required.
Investigate and respond to cybersecurity incidents, performing root-cause analysis and recommending corrective actions.
Collaborate with IT, Engineering, Program Management, and Security teams to embed cybersecurity best practices into operations and product development.
Provide cybersecurity awareness training to employees with a focus on handling sensitive defense-related data.
Stay current on emerging cyber threats, nation-state tactics, and evolving compliance regulations impacting aerospace and defense.
Qualifications
Required:
Bachelor's degree in Information Security, Computer Science, or related field (or equivalent experience).
5+ years of experience in information security, IT security operations, or cybersecurity.
Strong knowledge of NIST 800-171, CMMC, and DFARS cybersecurity requirements.
Experience developing, implementing and achieving CMMC compliance.
Experience supporting DoD or government contracts with cybersecurity compliance needs.
Hands-on experience with security infrastructure: SIEM, IDS/IPS, endpoint security, and network monitoring tools.
Strong understanding of Windows, Linux, and cloud environments (Microsoft Office 365, Deltek Costpoint).
Excellent analytical, documentation, and communication skills.
U.S. Citizenship (required due to defense industry regulations).
Preferred:
Active security clearance (Secret or higher), or ability to obtain one.
Relevant certifications: CISSP, CISM, Security+, CEH, or GIAC.
Experience with RMF (Risk Management Framework) and STIG compliance.
Familiarity with secure software development, DevSecOps practices, or classified system security.
Compensation
Competitive salary
Outstanding benefits package
100% Paid Coverage for Medical, Dental, and Vision
401(k) Employer Match
Employee Stock Ownership Program (company funded)
Life Insurance (company funded)
Short-Term Disability (company funded)
Long-Term Disability (company funded)
Vacation & Sick
Holidays: 11 days
HealthCare FSA
Dependent Care FSA
What We Offer
Opportunities for training, certifications, and career growth.
A mission-driven culture where your work contributes to national security.
Exposure to advanced technologies and programs critical to the aerospace and defense sector.
About Delta Information Systems, Inc.
Delta Information Systems (DIS) is an industry-leading supplier of high-quality aerospace telemetry products for Flight Test, Missile Test, Range Safety, Launch Support and Satellite Command and Control applications. Their products address the complete telemetry chain from Data Acquisition, Storage, Transport and Distribution to Telemetry Processing and Display. DIS customers include all DoD entities, all Major Primes, Integrators, Gov Labs, Aircraft & Missile Manufacturers, & Launch Facilities.
In addition, Delta Information Systems (DIS) designs and develops sophisticated electronic equipment that is specifically designed to reliably operate in harsh environments. They deliver critical video communications capability for manned and unmanned Intelligence, Surveillance and Reconnaissance (ISR) programs.
Systems Engineer (MSP)
Security engineer job in Oreland, PA
Systems Engineer (MSP) - T3 Escalations + Projects
📍 Oreland, PA (hybrid)
💰 $80,000 - $105,000
🖥️ MSP Experience Required
Join a fast-growing IT services firm where you'll drive infrastructure + cloud deployments, handle advanced escalations, and build long-term client relationships. This role blends hands-on engineering, project delivery, and light technical account management - ideal for a tech who wants ownership, client visibility, and growth.
What You'll Do
Serve as the top technical escalation point for complex issues
Lead infrastructure, cloud, and security projects end-to-end
Support and configure Microsoft 365, Azure AD, Windows Server, Intune
Manage VMware/Hyper-V and networking (firewalls, VLANs, VPNs, routing)
Oversee and harden backup, DR & EDR/security platforms
Mentor junior engineers & help elevate the tech stack and processes
Work closely with leadership, clients, and internal engineering teams
What You Bring
3+ years in an MSP supporting multiple clients (must-have)
Microsoft 365 / Azure / AD / Intune
Windows Server 2016-2025
VMware / Hyper-V
Networking + firewalls
Datto / Veeam / similar
Benefits
Bi Annual Bonuses
Medical, dental, vision
401(k)
PTO + holidays
Certification support & growth opportunities
Work in a tight-knit team where your voice matters
Network Engineer
Security engineer job in Mount Laurel, NJ
Locals Only! Network Engineer Mount Laurel, NJ: 100% Onsite! 12 + Months $55-60/HR
In-Person Interview Required!
Must Have: Network engineer with SDWAN and NGFW experience is required.
Nice to Have: Experience with LTE/5G or wireless carriers is a nice-to-have.
API, scripting, python, etc skills are nice-to-have
Desired Skills and Experience
Locals Only!
Network Engineer
Mount Laurel, NJ: 100% Onsite!
12 + Months
$55-60/HR
In-Person Interview Required!
Dexian stands at the forefront of Talent + Technology solutions with a presence spanning more than 70 locations worldwide and a team exceeding 10,000 professionals. As one of the largest technology and professional staffing companies and one of the largest minority-owned staffing companies in the United States, Dexian combines over 30 years of industry expertise with cutting-edge technologies to deliver comprehensive global services and support.
Dexian connects the right talent and the right technology with the right organizations to deliver trajectory-changing results that help everyone achieve their ambitions and goals. To learn more, please visit ********************
Dexian is an Equal Opportunity Employer that recruits and hires qualified candidates without regard to race, religion, sex, sexual orientation, gender identity, age, national origin, ancestry, citizenship, disability, or veteran status.
Platform Engineer - Security
Security engineer job in Camden, NJ
Since 1869 we've connected people through food they love. We're proud to be stewards of amazing brands that people trust. Our portfolio includes the iconic Campbell's brand, as well as Michael Angelo's, Pace, Pacific Foods, Prego, Rao's Homemade, Swanson, and V8. In our Snacks division, we have brands like Cape Cod, Goldfish, Kettle Brand, Lance, Late July, Pepperidge Farm, Snack Factory, and Snyder's of Hanover. Here, you will make a difference every day. You will be supported to build a rewarding career with opportunities to grow, innovate and inspire. Make history with us. Why Campbell's… Benefits begin on day one and include medical, dental, short and long-term disability, AD&D, and life insurance (for individual, families, and domestic partners). Employees are eligible for our matching 401(k) plan and can enroll on the first day of employment with immediate vesting. Campbell's offers unlimited sick time along with paid time off and holiday pay. If in WHQ - free access to the fitness center. Access to on-site day care (operated by Bright Horizons) and company store. Giving back to the communities where our employees work and live is very important to Campbell's. Our "Campbell's Cares" program matches employee donations and/or volunteer activity up to $1,500 annually. Campbell's has a variety of Employee Resource Groups (ERGs) to support employees.
Who we are looking for…
The Campbell's Company is looking for an senior-level Engineer - Information Security to join our critical and highly visible Information Security team. This position will primarily be responsible for managing the lifecycle and effectiveness of key security tools and processes. You will work closely with the Architecture and Risk Management teams to ensure that security controls are in place and appropriately managing risk throughout the Information Technology, Operational Technology, and Cloud environments.
What you will do…
Essential responsibilities will include but not be limited to:
* Design, deploy, and integrate security tools and processes
* Design, deploy, integrate Privilege Access Management (PAM) services for Linux and Windows environments
* Experience in developing, testing, and deploying ZeroTrust security strategies focused on identity, device, and network contexts
* Cloud (Azure / AWS) security engineering
* Develop and implement automation strategies tied to both administrative maintenance of the environment, as well as contribute to the overall detection engineering efficiency
* Active Directory security hardening
Job Complexity
* Manage multiple, concurrent project and task assignments, placing proper priorities on tasks and attention to detail to follow through all assignments to completion
* Create and manage the lifecycle of documentation to support the architecture and operations of security systems
* Continuously improve operational playbooks and knowledge transfer material to enable operational support teams to handle increasingly complex tasks to enable Engineering time is focused on the most valuable work
* Serve as an incident escalation point
* Provide thought leadership and communications expertise in the development of policies, standards, procedures, and other communication for the department
* Provide thought leadership on key performance indicators for measuring success objectively
* Integrate existing and new tools and supporting resources into our security intelligence platform, with the goal of deriving actionable data
* Keep current with the latest news and events surrounding cyber threats and security
* Evaluate new technologies and processes that enhance security capabilities
What you bring to the table… (Must Have)
* Bachelor's degree in a computer science or information technology discipline
* 5+ years of relevant work experience, including:
* 2 years of experience as an Information Security Analyst with experience within at least two of the following disciplines: networking, system hardening, identity and access management, or privileged access management
* 1 year of experience in system or firewall administration
* Deep understanding of Linux identity engineering and administration
* 2 years of experience working with privileged access management platforms across Windows, Linux, network device, and containerized platforms
* Significant experience working with automation scripting leveraging at least 3 of the following: python, PowerShell, API based integrations, and no/low-code workflow automation platforms.
* Strong knowledge of L4-L7 protocols such as SSL, HTTP, DNS, SMTP, and IPsec
* Deep understanding of TCP/IP, computer networking, routing, and switching, and encryption technologies and standards
* Knowledge of identity and access management principles (SSO, MFA, ModernAuth)
It would be great if you have… (Nice to Have)
* CISSP certification is a plus
* Cloud security experience is a plus
* Conceptual understanding of the Cyber Kill Chain and MITRE ATT&CK framework
* Experience with Manufacturing environments is a plus
* Experience with leveraging LLM's or statistical analysis to drive operational insights
* Strong capacity to understand vectors and the risks associated with them
* Experience with deploying and managing distributed architecture layer 7 firewalls
* Experience with IDS/IPS, penetration and vulnerability testing
* Strong security policy knowledge and experience
* Strong ability to clearly communicate and document complex concepts
* Data protection tools and processes - Data Loss Prevention [DLP], Rights Management Services [RMS], Cloud Access Security Broker [CASB]
More about the job…
* This position reports to the Senior Manager for Security Architecture and Engineering
Compensation and Benefits: The target base salary range for this full-time, salaried position is between
$131,400-$188,900
Individual base pay depends on work location and additional factors such as experience, job-related skills, and relevant education or training. Total pay may include other forms of compensation. In addition, we offer competitive health, dental, 401k and wellness benefits beginning on the first day of employment. Please ask your Talent Acquisition Partner for more information about our total rewards package.
The Company is committed to providing equal opportunity for employees and qualified applicants in all aspects of the employment relationship, including consideration for employment, without regard to race, color, sex, sexual orientation, gender identity, national origin, citizenship, marital status, protected veteran status, disability, age, religion, or any other classification protected by law.
Auto-ApplyPhysical Security Engineer
Security engineer job in King of Prussia, PA
Due to continued growth, ENERCON's Nuclear Services Design Instrumentation and Controls Group has immediate openings for Physical Security Technicians/Engineers to join our team. In this dynamic role, you'll forge powerful relationships with both internal teams and external clients, especially in the cutting-edge field of Physical Security, while leading engineering efforts to deliver innovative solutions. You'll drive project success by solving complex technical challenges, ensuring top-quality results, and guiding your team to exceed customer expectations with every step! This role can be located in the following locations:
King of Prussia, PA
Crane Clean Energy Center - Middletown, PA
Remote in Palo, IA
Palisades - Covert, MI
Birmingham, AL
Naperville, IL (Suburb of Chicago)
Kennesaw, GA (Suburb of Atlanta)
This role can be Full Time, Part Time, or LTLB (Contract).
Responsibilities
Imagine a day where you're at the forefront of collaboration, working with engineering teams and clients to deliver cutting-edge solutions in Physical Security. You lead technical discussions, resolve challenges, and ensure designs meet all requirements. Your guidance keeps projects on track while you research improvements, propose innovations, and provide key updates to senior management-making a real impact and strengthening vital relationships every step of the way.
Relationship Building & Client Interaction: Work interactively with internal engineering and external clients to develop strong relationships, particularly in Physical Security. Ability to interface with site physical security management and engineering stakeholders
Engineering Support & Technical Leadership: Provide direct engineering support to project engineering staff to ensure design products satisfy customer expectations, contract requirements, and regulatory requirements. Provide technical leadership and support to engineering staff. Guide and review deliverables, review progress, and update senior management, as needed
Issue Resolution & Quality Assurance: Facilitate resolution of inter-disciplinary and cross-disciplinary technical and quality issues. Research and assess best practices, proposing methods and improvements
Project Planning & Execution: Plan and direct the timely execution of assigned engineering activities. Work with the Project Engineer (PE), engineering supervision, and project management to provide timely updates of progress, challenges, and implementation
#LI-MB1
Qualifications
A minimum of 3 years of relevant design engineering and or technician experience is required for this role
Bachelor's Degree in engineering field is preferred, HS Diploma/GED and equivalent relevant experience is required
Experience with AIM or NSMART security platforms is highly preferred
Experience in the design, installation, and testing of large scale (complete systems) digital control and computer monitoring system upgrades at power plants preferred
Types of upgrades include replacement of Turbine/Generator Control Systems with DCS platforms, process computer, and cybersecurity systems
Nuclear plant design experience and/or field experience working for a nuclear QA Program preferred
Must be proficient with MS Word, Excel, Visio, Access and PowerPoint
Good verbal and written communication skills and the ability to comprehend and convey detailed technical data
Knowledge of Physical Security related principles, standards, and regulations
An ability to perform walkdowns across multiple areas at a nuclear power plant and to provide feedback to the engineers on deviations from plant equipment when compared with plant drawings (i.e. as-built walkdowns)
Demonstrated leadership ability to manage multiple tasks and projects and ability to work effectively with all levels of staff and management
Excellent verbal and written communication skills including demonstrated ability to present to clients
Ability to travel to client sites for meetings and walkdowns, approximately 30% of the time
Senior level should be familiar with the Standard Design Process and Digital Engineering Guide
Pay Range USD $85,000.00 - USD $165,000.00 /Yr. Additional Information
About ENERCON:
At Enercon Services, Inc. (ENERCON), we're driven by our people-and we're proud to offer rewarding careers in a culture of excellence. We provide a comprehensive benefits package and professional development opportunities that support your long-term growth.
What We Offer:
Enjoy full benefits for you and your dependents starting day one, no waiting period
Flexible work arrangements, including hybrid and alternative schedules
401(k) with employer matching
Tuition reimbursement
Professional Engineer (PE) license support and incentives
Want to see the full picture? Click HERE to see our Comprehensive Benefits
Salary Range Information:
If a salary range is listed, it reflects the typical range for this full-time position based on the role, level, and location. Individual compensation within the range will be determined by factors such as work location, relevant experience, job-related skills, and education or training.
Eligibility to Work:
Candidates must be legally eligible to work in the US without requiring current or future sponsorship.
Ability to pass a pre-employment and random drug and alcohol screenings, ENERCON and client specific background checks, and annual motor vehicle record (MVR) according to company and client policies.
Equal Opportunity Employer:
ENERCON does not discriminate in employment opportunities or practices based on race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by law.
Connect with Us: *************** | LinkedIn
Auto-ApplyCyber Security Analyst
Security engineer job in Media, PA
As the Cyber Security Analyst, you will design and implement IT security policies and systems to protect the organization's computer networks from cyber-attacks. You will also help develop organization-wide best practices for IT security, including security training for staff. You will monitor computer networks for security issues, install security software, and document all security issues or breaches you find. You will report vulnerabilities to management as identified and in a timely manner and ensure remediation.
Essential Duties
Under the general direction of the CIO, the Cyber Security Analyst will:
* Create countywide cybersecurity policies for approval and implementation.
* Perform daily monitoring and support of all systems and networks to identify security issues.
* Investigate security breaches and other cybersecurity incidents.
* Install security measures and operate software to protect systems and information infrastructure, including firewalls, IDS/IPS, and other security systems.
* Document security breaches and assess the damage they cause.
* Work with the IT team to perform tests and uncover network vulnerabilities.
* Fix detected vulnerabilities to maintain a high-security standard.
* Stay current on IT security trends and news.
* Recommend changes to company policies to advance best practices for IT security.
* Perform vulnerability scanning and penetration testing.
* Help colleagues install security software and understand information security management.
* Participate in disaster recovery testing.
* Work cross-functionally as needed to improve the security posture of the organization, including SQA and development team resources.
* Coordinate the collection of security controls evidence in support of certification and customer audits; participate in audits as needed.
* Assist with completion of security questionnaires for customers, partners, and RFP responses.
Qualifications
* 3 years of experience working with Windows operating systems.
* 3 years of experience working with cloud services from a security perspective.
* 5 years of experience working with networking equipment, including switches, routers, firewalls, proxy servers, VPNs, and IDS/IPS.
* Detailed knowledge of network troubleshooting tools such as Fiddler, Wireshark, and Traceroute.
* 3 years of experience working with identity and access authorization systems such as Active Directory, LDAP, and Radius.
* Strong working knowledge of encryption protocols, ciphers, and the configuration of systems.
* Knowledge of current computer security practices and network protocols.
* Experience with Nexpose, Metasploit, or similar security software.
* Customer service-focused and detail-oriented.
* Ability to work effectively as an individual contributor and collaboratively in workgroups.
Physical Requirements
While performing the duties of this position, the employee is frequently required to read documents in paper and electronic form, sit, walk, and talk or hear. Occasionally, the employee will need to stand and climb stairs; reach above shoulder height; and kneel, stoop, crouch, or squat. On rare occasions, the employee will need to lift or carry items.
Work Environment
* 8:30 a.m. to 5:00 p.m. 40 weekly hours.
* Extended hours may be required to meet agency needs.
Contact
To
Security Analyst
Security engineer job in Philadelphia, PA
Established in 1991, Collabera has been a leader in IT staffing for over 22 years and is one of the largest diversity IT staffing firms in the industry. As a half a billion dollar IT company, with more than 9,000 professionals across 30+ offices, Collabera offers comprehensive, cost-effective IT staffing & IT Services. We provide services to Fortune 500 and mid-size companies to meet their talent needs with high quality IT resources through Staff Augmentation, Global Talent Management, Value Added Services through CLASS (Competency Leveraged Advanced Staffing & Solutions) Permanent Placement Services and Vendor Management Programs.
Collabera recognizes true potential of human capital and provides people the right opportunities for growth and professional excellence. Collabera offers a full range of benefits to its employees including paid vacations, holidays, personal days, Medical, Dental and Vision insurance, 401K retirement savings plan, Life Insurance, Disability Insurance.
Job Description
Job Details:
Title: Security Specialist
Location: Philadelphia, PA
Duration: 3 month (may extend)
Division: Intellectual Property and Science
Required Skills:
• Active Secret clearance (Public Trust) required.
• Provide security technical advisory and directions to technical and research teams
• Maintain operational security posture for the program to ensure government information security requirements and information systems security policies, standards, and procedures are established and followed.
• Assist with the management of security aspects of the information system and performs day-to-day security operations of the system.
• Evaluate security solutions to ensure they meet security requirements for processing classified information.
• Prepare Standard Operating Procedures that meet the security requirements for the business' clients
• Perform vulnerability/risk assessment analysis to support certification and accreditation.
• Provides configuration management (CM) for information system security software, hardware, and firmware.
• Manage changes to system and assesses the security impact of those changes.
• Experience and familiarity with securing Windows Environments, MS SQL Servers, Web Servers, Encryption, and Access Control.
• Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, etc.
• Experience and/or familiarity with Certification and Accreditation (C&A).
• Experience and/or familiarity with the following network protection devices: Firewalls, intrusion detection and prevention systems (IDS/IPS), log analysis, malware analysis, network traffic flow and packet analysis
• Experience and/or familiarity with NIST Guidelines, FIPS 140-2, FIPS 190 , FedRAMP, Federal Information Security Management Act (FISMA) and other tools using industry best practices.
Additional Information
To know more on this position or to schedule an interview please contact;
Monil Narayan
************
Cloud Security Engineer
Security engineer job in Philadelphia, PA
OUR COMPANY:
EOS IT Solutions is a Global Technology and Logistics company, providing Collaboration and Business IT Support services to some of the world's largest industry leaders, delivering forward-thinking solutions based on multi-domain architecture. Customer satisfaction and commitment to superior quality of service are our top business priorities, along with investing in and supporting our partners and employees.
We are a true International IT provider and are proud to deliver our services through global simplicity with trusted transparency.
WHAT YOU WILL DO:
The Cloud Security Engineer will play a pivotal role in the cloud security service delivery model. The role combines deep technical expertise, collaboration across internal and external teams to design, implement, and optimize cloud security controls and service lines. The candidate will support both project-based and continuous security initiatives, focusing on securing our client's cloud migration, supporting cloud security tool optimization, cloud security processes for the Information Security team, cloud/hybrid controls, automation, and risk-driven security outcomes.
KEY RESPONSIBILITIES:
A Principal Information Security Specialist has similar responsibilities to Information Security Specialist III personnel. However, a Principal Information Security Specialist is deemed to be the subject matter expert and in-house advisor on complex problems and issues. A Principal Information Security Specialist also:
Works independently to initiate assignments and draws upon extensive professional knowledge and experience to make independent judgments regarding analysis, evaluation, development, and implementation of enterprise long-term solutions and operating initiatives to ensure that enterprise architectural objectives are aligned with organizational needs and strategic goals.
Optimizes information management approaches through an understanding of evolving business needs and technology capabilities and ensures that projects do not duplicate functionality or diverge from each other and business and DTS strategies.
Shapes, designs, and plans specific service lines in product area and manages the risks associated with information and DTS assets through appropriate standards and security policies.
Functions as the Subject Matter Expert (SME) to maintain an understanding of our client's DTS business and clinical applications and the relationship to InfoSec and compliance solutions; assist Hospital stakeholders in understanding information protection needs that support the Hospital's business.
Works with other architects to provide a consensus based enterprise solution that is scalable, adaptable and in synchronization with ever changing business needs and takes ownership of a particular solution offering.
Works with highly matrixed team of DTS personnel to support enterprise architecture and information security operations including, but not limited to, architecture and InfoSec principles around identity & access management models, cloud identify management providers, security information and event monitoring, and data loss prevention, perimeter (e.g. firewalls, IPS, web filtering), cloud and virtualization environments and network security (host-based firewalls, anti-virus, disk encryption).
Support and/or lead activities around InfoSec standards for business continuity and change management activities (e.g., table tops and change review board) and educates DTS Hospital management on security issues (e.g., Identity and Access Management (IAM), Role Based Access Control (RBAC) models.
The department works approximately 80% remotely, 20% on site in our Philadelphia offices on an as-needed basis.
ESSENTIAL CRITERIA:
At least twelve (12) years industry related experience, including experience in one to two IT disciplines (such as technical architecture, network management, application development, middleware, information analysis, database management or operations) in a multitier environment.
At least six (6) years experience with information security, regulatory compliance and risk management concepts.
At least three (3) years experience with Identity and Access Management, user provisioning, Role Based Access Control, or control self-assessment methodologies and security awareness training.
Experience with Cloud and/or Virtualization technologies.
Proven experience in securing a multi-cloud environment.
Proven experience with Identity and access management in the cloud
Proven experience with all security service lines in a cloud environment and the supporting security tools and processes to be successful.
Demonstrate collaboration with internal stakeholders, vendors, and supporting teams to design, implement, and maintain security technologies across network, endpoint, identity, and cloud infrastructure.
Drive continuous improvement and coverage of cloud security controls by validating alerts, triaging escalations, and working with the MSP to fine-tune detection and prevention capabilities.
Lead or support the development of incident response plans, engineering runbooks, tabletop exercises, and system hardening guides.
Ensure alignment of security architectures with our client's policies, standards, and external frameworks such as NIST SP 800-53, HIPAA, PCI-DSS, CISA ZTMM, CIS Benchmarks, and Microsoft CAF Secure Methodology, AWS CAF, AWS Well Architected framework, Google CAF
Participate in design and governance forums to provide security input into infrastructure, DevSecOps, and cloud-native application strategies.
Assist with audits, compliance assessments, risk remediation plans, and evidence collection with internal compliance and external third-party stakeholders.
Mentor and support junior InfoSec engineers through documentation, training, and peer reviews.
Hands-on experience in security engineering, systems integration, and cloud architecture (Azure preferred).
Proficiency in tools and domains such as: EDR (Microsoft Defender), SIEM (Sentinel or Splunk), CSPM (e.g., Wiz), IAM (Entra ID), VPNs/NGFWs, NAC, and encryption protocols.
Demonstrated understanding of secure configuration management, automation pipelines (e.g., Terraform, PowerShell), and vulnerability management platforms.
DESIRABLE CRITERIA:
At least three (3) years in working with matrixed high performance teams.
Preferred relevant certifications: Sec+, Azure Security Engineer (SC-200), CCSP, GSEC, or equivalent.
Experience developing or contributing to cloud governance, tagging standards, or infrastructure-as-code (IaC) security policies.
Experience in healthcare, research, or life sciences environments is highly desirable.
Strong interpersonal and communication skills; ability to convey technical concepts to non-technical stakeholders.
Certified Information Systems Security Professional (CISSP) - Information Systems Audit and Control Association (ISACA)
HealthCare Information Security and Privacy Practitioner (HCISPP) - Information Systems Audit and Control Association (ISACA)
Certified in Cybersecurity - Information Systems Audit and Control Association (ISACA)
Systems Security Certified Practitioner (SSCP) - Information Systems Audit and Control Association (ISACA)
Certified Information Security Manager (CISM) - Information Systems Audit and Control Association (ISACA)
Certified Information Systems Auditor (CISA) - Information Systems Audit and Control Association (ISACA)
Certified in the Governance of Enterprise IT (CGEIT) - Information Systems Audit and Control Association (ISACA)
Certified in Risk and Information Systems Control (CRISC) - Information Systems Audit and Control Association (ISACA)
CompTIA Security+ - CompTIA
GIAC Security Essentials (GSEC) - GIAC Certifications
Certified Ethical Hacker (CEH) - EC-Council
Certificate of Cloud Security Knowledge (CCSK) - Cloud Security Alliance (CSA)
Certificate of Cloud Auditing Knowledge (CCAK) - Cloud Security Alliance (CSA)
The EOS pay range for this job is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, experience, education, knowledge, skills, and abilities, as well as internal equity, market data, or other laws.
EOS is committed to creating a diverse and inclusive work environment and is proud to be an equal opportunity employer. We invite you to consider opportunities at EOS regardless of your gender; gender identity; gender reassignment; age; religious or similar philosophical belief; race; national origin; political opinion; sexual orientation; disability; marital or civil partnership status or other non-merit factor.
#LI-MS2
Pay Range$140,000-$155,000 USD
Auto-ApplyApplication Security Engineer
Security engineer job in Conshohocken, PA
As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions.
Job Description
Are you looking for your next opportunity?
Sompo has a unique opportunity for an Application Security Engineer in our Information Security team.
Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers.
Our business, your impact, our opportunity:
What you'll be doing:
* Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations.
* Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection.
* Maintain a strong familiarity with:
* Sompo's full stack of security technologies and common application architectures
regulatory requirements for security and privacy technologies.
* The various Sompo teams who are non-technical subject matter experts on those regulations.
* Industry-standard approaches for aligning development, operations, and security.
* Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls.
* Application security review (development lifecycle, technology selection)
* Application security testing and instrumentation (production operations)
* Support of security tooling and automation
What you'll bring:
* Minimum of 5 years of experience in information security.
* Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages.
* Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria.
* Strong understanding of:
* HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight.
* Development and direct work experience with:
* Languages for automation, especially Python and Powershell, Query tools.
* Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis.
* Packet captures for low level network troubleshooting
* Application development building blocks, Web application security components
* Native security controls in the Microsoft stack (OS, Office, Edge)
* Ability to write ad hoc queries using one or more of the following:
* Splunk, Powershell, Regular expressions, SQL, XPATH
* Ability to write practical audience-relevant documentation related to troubleshooting.
* B.S. in Computer Science or Software Engineering
Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience.
At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees.
Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance.
We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs:
* Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
* Pharmacy benefits with mail order options
* Dental benefits including orthodontia benefits for adults and children
* Vision benefits
* Health Care & Dependent Care Flexible Spending Accounts
* Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
* Company-paid Disability benefits with very competitive salary continuation payments
* 401(k) Retirement Savings Plan with competitive employer contributions
* Competitive paid-time-off programs, including company-paid holidays
* Competitive Parental Leave Benefits & Adoption Assistance program
* Employee Assistance Program
* Tax-Free Commuter Benefit
* Tuition Reimbursement & Professional Qualification benefits
In today's world, what do we stand for?
Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo.
Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.
Auto-ApplyInformation Security Specialist - Cyber Resilience
Security engineer job in Mount Laurel, NJ
Hours:
40
Pay Details:
$87,000 - $151,000 USD
TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.
Line of Business:
Technology Solutions
Job Description:
The Information Security Specialist defines, develops and/or implements Technology Controls / Information Security related policies, programs, tools and provides specialized expertise and guidance on assessing risks, identifying potential gaps and providing security solutions to mitigate risks and protect the Bank. Participates on projects of moderate to high complexity and provides complex reporting, analysis, and assessments at the functional, business line or enterprise level for own area.
The role involves designing and implementing cyber resilience strategies, leading initiatives to improve organizational preparedness, conducting risk assessments, and collaborating with various teams to align resilience goals with business objectives. Responsibilities also include developing incident response plans, managing continuity strategies, providing expert guidance during incidents, and delivering training programs to foster a culture of resilience.
Depth & Scope:
Participates on complex, comprehensive or large projects and initiatives
Acts as a lead expert resource in technology controls / information security for project teams, the business / organization and/or outside vendors
Has advanced knowledge of organization, technology controls / security/ risk issues
Education & Experience:
Bachelor's degree preferred
Information security certification / accreditation an asset
7+ years of relevant experience
Expert knowledge of IT security and risk disciplines and practices
Preferred Qualification :
Design, develop, and implement comprehensive cyber resilience strategies.
Lead cross-functional initiatives to enhance organizational preparedness against cyber threats and incidents.
Conduct risk assessments and business impact analyses to identify vulnerabilities.
Collaborate with IT, security teams, and business units to align resilience goals with organizational objectives.
Develop and manage incident response plans, continuity strategies, and recovery protocols.
Provide expert guidance during cybersecurity incidents, ensuring rapid response and recovery.
Physical Requirements:
Never: 0%; Occasional: 1-33%; Frequent: 34-66%; Continuous: 67-100%
Domestic Travel - Occasional
International Travel - Never
Performing sedentary work - Continuous
Performing multiple tasks - Continuous
Operating standard office equipment - Continuous
Responding quickly to sounds - Occasional
Sitting - Continuous
Standing - Occasional
Walking - Occasional
Moving safely in confined spaces - Occasional
Lifting/Carrying (under 25 lbs.) - Occasional
Lifting/Carrying (over 25 lbs.) - Never
Squatting - Occasional
Bending - Occasional
Kneeling - Never
Crawling - Never
Climbing - Never
Reaching overhead - Never
Reaching forward - Occasional
Pushing - Never
Pulling - Never
Twisting - Never
Concentrating for long periods of time - Continuous
Applying common sense to deal with problems involving standardized situations - Continuous
Reading, writing and comprehending instructions - Continuous
Adding, subtracting, multiplying and dividing - Continuous
The above statements are intended to describe the general nature and level of work being performed by people assigned to this job. They are not intended to be an exhaustive list of all responsibilities, duties and skills required. The listed or specified responsibilities & duties are considered essential functions for ADA purposes.
Who We Are:
TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we deliver legendary customer experiences to over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to the Bank, those we serve, and the economies we support. We are guided by our vision to Be the Better Bank and our purpose to enrich the lives of our customers, communities and colleagues.
TD is deeply committed to being a leader in customer experience, that is why we believe that all colleagues, no matter where they work, are customer facing. As we build our business and deliver on our strategy, we are innovating to enhance the customer experience and build capabilities to shape the future of banking. Whether you've got years of banking experience or are just starting your career in financial services, we can help you realize your potential. Through regular leadership and development conversations to mentorship and training programs, we're here to support you towards your goals. As an organization, we keep growing - and so will you.
Our Total Rewards Package
Our Total Rewards package reflects the investments we make in our colleagues to help them and their families achieve their financial, physical and mental well-being goals. Total Rewards at TD includes base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards, generally through participation in an incentive plan) and several other key plans such as health and well-being benefits, savings and retirement programs, paid time off (including Vacation PTO, Flex PTO, and Holiday PTO), banking benefits and discounts, career development, and reward and recognition. Learn more
Additional Information:
We're delighted that you're considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we're committed to providing the support our colleagues need to thrive both at work and at home.
Colleague Development
If you're interested in a specific career path or are looking to build certain skills, we want to help you succeed. You'll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities. Whether you have a passion for helping customers and want to expand your experience, or you want to coach and inspire your colleagues, there are many different career paths within our organization at TD - and we're committed to helping you identify opportunities that support your goals.
Training & Onboarding
We will provide training and onboarding sessions to ensure that you've got everything you need to succeed in your new role.
Interview Process
We'll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.
Accommodation
TD Bank is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, status as a protected veteran or any other characteristic protected under applicable federal, state, or local law.
If you are an applicant with a disability and need accommodations to complete the application process, please email TD Bank US Workplace Accommodations Program at ***************. Include your full name, best way to reach you and the accommodation needed to assist you with the applicant process.
Auto-ApplyCloud Security Engineer
Security engineer job in Conshohocken, PA
Hamilton Lane is looking to expand our team to satisfy the needs of our growing client base. Hamilton Lane is built on collaboration, teamwork and integrity. Our employees pursue excellence and always strive to do the right thing. We invest in our employees, clients and partner relationships, as well as, in the technology and resources necessary to remain competitive, working in a competitive environment that inspires innovation.
What we do:
As a recognized leader in providing Private Markets Solutions to clients across the globe, we manage approximately $140.9 billion in discretionary assets and have oversight of an additional $845.3 in non-discretionary assets as of June 30, 2025.
The Opportunity:
As Senior Associate, Cloud Security Engineer, you will contribute to the design, execution, and maturity of security controls across the firm's cloud environments. This role combines technical leadership in cloud architecture and security operations with strategic input to the organization's security program and compliance initiatives.
Your responsibilities will be to:
* Design and implement security controls for cloud services and infrastructure.
* Develop, update, and enforce security standards, policies, and automated processes.
* Lead efforts in threat modeling, vulnerability management, incident investigation, and remediation for cloud and hybrid environments.
* Collaborate with developers, operations, compliance, and technology teams to integrate security into projects and daily activities.
* Monitor cloud environments for security risks, provide recommendations, and respond to incidents.
* Advise and contribute to security program initiatives such as policy updates, training, risk evaluation, and reporting.
Your background will include:
* Bachelor's degree in a relevant technical discipline.
* 3+ years of experience in cloud security engineering and information security, ideally in financial services.
* Demonstrated knowledge of cloud platforms and security technologies.
* Experience with regulatory frameworks for financial services.
* Proven skill in scripting, automation, and modern deployment models.
* Excellent analytical, documentation, and communication abilities.
* Recognized cloud and security certifications a plus.
* Experience in security program development within a regulated environment.
* Prior exposure to financial industry operations.
Benefits:
At Hamilton Lane, our benefits philosophy is simple: to provide our employees with a competitive suite of benefits and services to help navigate through the complexities and challenges of working, living, raising a family, and eventually retiring.
To do this, Hamilton Lane offers the following benefits:
Enhancing Your Physical and Emotional Health
Employees have access to healthcare coverage, mental health resources, health & fitness reimbursement program, and Wellness Rewards Program.
Developing Your Career
Tuition and certification reimbursement programs are available, along with continual education and development trainings for you to grow with Hamilton Lane.
Supporting Your Family & Community
For our communities, Hamilton Lane provides paid time off to volunteer and compensates for referring qualified candidates that join our team.
For growing family, we offer an adoption reimbursement program, paid time off for new parents and newlyweds, and provide travel support for nursing parents.
Safeguarding Your Financial Wellbeing
Hamilton Lane contributes to retirement programs and offers an employee stock purchasing plan.
We offer a competitive salary, annual discretionary bonus and a comprehensive benefits package which includes: Medical, Prescription, Dental, Paid Time Off, 401k plan, Life and Disability Insurances, Tuition Reimbursement, Employee Stock Purchase Program, Health Club Reimbursement and Flexible Spending Accounts.
Hamilton Lane is an affirmative action-equal opportunity employer. All qualified applicants will be considered for employment without regard to their race, color, creed, religion, sex, pregnancy, national origin, ancestry, citizenship status, age, marital or partnership status, sexual orientation, gender identity or expression, disability, genetic predisposition, veteran or military status, status as a victim of domestic violence, a sex offense or stalking, or any other classification prohibited by applicable law.
If you need a reasonable accommodation to complete your application, please contact Human Resources at *******************************.
Hamilton Lane is not accepting unsolicited assistance from search firms for this employment opportunity. Please, no phone calls or emails. All resumes submitted by search firms to any employee at Hamilton Lane via-email, the Internet or in any form and/or method without a valid written search agreement in place for this position will be deemed the sole property of Hamilton Lane. No fee shall be paid in the event the candidate is hired by Hamilton Lane as a result of the referral or through other means.
Auto-ApplyCyber Security Engineer
Security engineer job in Philadelphia, PA
Paragon Cyber Solutions is seeking a highly skilled and mission-driven Cyber Security Engineer to join our team in support of a critical defense program based at the Naval Surface Warfare Center Philadelphia Division (NSWCPD).
As the Cyber Security Engineer, you will play a central role in the development, implementation, and oversight of information security policies, procedures, and systems to ensure the integrity, confidentiality, and availability of mission-critical systems. You will provide strategic leadership for cybersecurity compliance across the program and support certification and accreditation activities in accordance with DoD and NIST frameworks.
Clearance
Active Secret Clearance
Requirements
Essential Functions
Conduct security assessments and audits using tools such as DISA eMASS and ACAS to identify vulnerabilities, evaluate controls, and ensure compliance with DoD standards.
Prepare and maintain security documentation, including System Security Plans (SSPs), risk assessments, and Plans of Action and Milestones (POA&Ms), to support accreditation and authorization processes.
Responsible for Assured Compliance Assessment Solution (ACAS) configuration, implementation, and scans.
Hands on configuration experience with ESXi, VMWare, Linux, Windows AD, SCAP, and remediating STIG findings.
Provide remediation of vulnerabilities identified on infrastructure devices.
Identify what cybersecurity STIG, checklist, or control requirements apply during the development of new components and software that is implemented into the enterprise infrastructure.
Knowledge of Identity, Credential, and Access Management (ICAM) and Zero Trust Architecture (ZTA) a plus.
Perform other duties as assigned.
Required Skills
Experience in implementing and enforcing application cybersecurity and vulnerability management.
Required Experience
Bachelor's degree in Cybersecurity, Information Technology, Computer Science or related field; or equivalent combination of education and experience.
Five (5) years or more of Cybersecurity related experience (hands on security engineering).
Assured Compliance Assessment Solution (ACAS) experience is mandatory.
Experience conducting Information Systems vulnerability assessment, risk mitigation, and application of mitigation strategies.
Understanding of RMF, eMASS, POA&Ms, ACAS, and Vulnerability Management.
Additional Eligibility Qualifications
DoD 8570 IAT II or IAM II Certified (Security+ CE or equivalent) required or higher.
Benefits
Health Care Plan (Medical, Dental & Vision).
Retirement Plan (401K w/ employer matching).
Paid Time Off & 11 Paid Holidays.
Short and Long-Term Disability.
Healthy Work-Life Balance.
Training & Development.
Why Work For Paragon Cyber Solutions?
You want to make a difference. You want to be recognized by name versus being a number. You want to work with a company where you can grow and work in different areas to increase your knowledge/experience. You have an entrepreneurial spirit and need to live it.
As a small business, each team member rolls up their sleeves and helps where needed (including our CEO). Our ideal candidate will be comfortable with multi-tasking and prefers working in a fast-paced, dynamic environment. You must be adaptable to the needs of a growing business.
A Model of Excellence
That's our motto in all we do and what we seek in our team members.
Are you a hardworking professional seeking a new opportunity that fosters growth? Look no further!
We are an award winning minority, woman, veteran-owned, 8(a), EDWOSB, VOSB, certified Tampa, FL-based small business. We pride ourselves on delivering high-quality solutions that help our clients protect the integrity of their business operations.
Auto-ApplySenior Manager, Information Security Office Consultant
Security engineer job in Philadelphia, PA
Company DescriptionJobs for Humanity is partnering with Capital One to build an inclusive and just employment ecosystem. Therefore, we prioritize individuals coming from the following communities: Refugee, Neurodivergent, Single Parent, Blind or Low Vision, Deaf or Hard of Hearing, Black, Hispanic, Asian, Military Veterans, the Elderly, the LGBTQ, and Justice Impacted individuals. This position is open to candidates who reside in and have the legal right to work in the country where the job is located.
Company Name: Capital One
Job Description201 Third Street (61049), United States of America, San Francisco, CaliforniaSenior Manager, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What You'll Do:
Act as a central Information Security point of contact for the Enterprise Platform team
Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
Escalate and manage cyber security risk
Provide ad hoc support on special Information Security hot topics for the business
Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Product security consulting in Authentication/Access Management /Identity application and experienced in Authentication and industry-standard protocol for authorization/authorization
Basic Qualifications:
High School Diploma, GED or equivalent certification
At least 8 years of experience working in cybersecurity or information technology
At least 7 years of experience providing guidance and oversight of Security concepts
At least 7 years of experience performing security risk assessments and security architecture reviews
At least 7 years of experience with architecture, software design, networking, and cloud infrastructure
At least 5 years of experience with cloud security engineering
Preferred Qualifications:
Bachelor's Degree
3+ years of experience in securing a public cloud environment (e.g. AWS, GCP, Azure)
4+ years of experience in IAM or related areas
Experience building software utilizing public cloud (e.g. AWS, GCP, Azure)
Familiarity with Cloud patch management practices such as system rehydration and image management
Experience utilizing Agile methodologies
Experience with Software Security Architecture
Experience with Application Security
Experience with Threat Modeling
Experience with Penetration Testing or Vulnerability Management
Experience with integrating SaaS products into an Enterprise Environment
Experience with securing Container services
Splunk-Fu / Enterprise Monitoring experience
Financial services industry experience
Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Experience in Offensive and Defensive Security techniques
Experience in a regulated environment
Strong conceptual thinking, influence and communication skills
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $230,100 - $262,700 for Sr Manager, Cyber TechnicalSan Francisco, California (Hybrid On-Site): $243,800 - $278,200 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at ************** or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
For technical support or questions about Capital One's recruiting process, please send an email to [email protected]
Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Electronic Physical Security BDM
Security engineer job in Warminster, PA
Job Description
Business Development Manager
If you have built real relationships in this industry and you have a track record that speaks for itself, you know the difference between a job and the right next chapter. This role sits inside an integrator that receives the industries top awards, a team that has built its reputation by doing the work with care and standing behind every project. If you take pride in how you operate, if you know your value, and if you want to align with a group that matches that standard, this is worth a conversation.
What You Get to Do
• Grow a territory where quality, delivery, and execution support your ability to win
• Pursue the accounts you want and create new relationships that last
• Sell solutions you can stand behind with confidence
• Guide enterprise clients through every step of the sales cycle
• Work with a leadership team that respects your time and your craft
• Build a book of business with the backing of strong operations and technical teams
• Grow your network and open doors that support long term compounding
• Set the tone for how the market experiences the brand
• Contribute to a culture that is raising the bar in a competitive industry
What You Have Already Done
• Built at least 2 million in annual sales through your own relationships and follow through
• Sold for a security integrator or a low voltage integrator
• Closed complex projects with enterprise clients who expect a high level of professionalism
• Built trust with clients who come back because you made their life easier
• Learned technical systems well enough to advise with clarity and confidence
• Managed your pipeline, stayed organized, and followed through with consistency
• Built a network that respects how you work and calls you when they need a real partner
• Shown that you operate with class, communication, and an understanding of the industry
Why You Would Do It
Because even when you are winning, the right environment can lift everything higher. You want to grow your name in a place that has earned credibility through the work. You want to align with leadership that backs their team, supports real salespeople, and delivers for their clients. You want to be surrounded by high performers who care about their craft. You want challenge, autonomy, and the space to build something that compounds over time. If you are already doing well and want to explore what doing your best work might look like, this is a conversation worth having.