Post job

Security Engineer jobs at Spectrum - 42 jobs

  • Lead, Database Security Architect

    Under Armour, Inc. 4.5company rating

    Washington, DC jobs

    **Lead, Database Security Architect** **Values & Innovation** At Under Armour, we are committed to empowering those who strive for more, and the company's values - Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality - serve as both a roadmap for our teams and the qualities expected of every teammate. Our Values define and unite us, the beliefs that are the red thread that connects everyone at Under Armour. Our values are rallying cries, reminding us why we're here, and fueling everything we do. Our pursuit of better begins with innovation and with our team's mission of being the best. With us, you get the freedom to go further - no matter your role. That means developing, delivering, and selling the state-of-the-art products and digital tools that make top performers even better. If you are a current Under Armour teammate, apply to this position on the Internal Career Site Here. (*************************************************************************************************************************************************** **Purpose of Role** The Lead Data Security Architect is challenged to design and implement cutting-edge security solutions that safeguard our most sensitive information. In this role, you'll be the go-to expert for embedding security into every data-driven initiative-from personalization and analytics to customer loyalty programs. **Your Impact** + Build security into everything: Integrate privacy and security best practices across all data projects + Collaborate across teams: Work with Data Architecture, Analytics, Visualization, Privacy and Application Owners to create secure, seamless experiences + Protect data everywhere: Design and implement safeguards for data at rest, in transit, and across interfaces-from origin points to data lakes and middleware + Secure modern environments: Ensure robust configurations for containerized platforms like Kubernetes and Docker + Drive continuous improvement: Conduct risk assessments, close gaps, and evolve security standards + Lead with influence: Communicate complex security issues clearly to developers and engineering leaders, ensuring timely resolution + Innovate with new tools: Evaluate, develop and onboard data protection platforms through proof-of-concepts **Qualifications** + Bachelor's degree with typically 8 years of relevant experience or Master's degree with typically 6 years of relevant experience or typically 12 years of relevant work experience without degree. + 5-8 years of cybersecurity experience, particularly in cloud-based data environments + Experience with data platforms and tools such as Snowflake, Databricks, Amazon Redshift and Sagemaker + Deep expertise in securing on-prem and SaaS-based data storage. + Hands-on experience with container technologies (Kubernetes, Docker). + Strong knowledge of identity management, Zero Trust principles, and cloud/data security fundamentals. + Ability to thrive in agile, fast-paced environments **Workplace Location** + **Location:** Remote (East Coast strongly preferred to optimize collaboration with HQ and cross-functional teams) + **Work Schedule:** Fully Remote + **Travel:** Possible travel to regional offices, conferences, and trainings + **Licenses/Certifications:** CISSP, MCSE/OCP, AWS, or similar is favorable; Deep knowledge of data protection regulations such as GDPR and CCPA + **Sponsorship Eligibility:** UA does not offer sponsorship of job applicants for employment-based work authorization for this position at this time. **Relocation** + No relocation provided + \#LI-CP1 + \#LI-REMOTE **Base Compensation** $129,908.40 - $178,624.05 USD Most new hires fall within this range and have the opportunity to earn more over time. Initial placement within the salary range, however, is based on an individual's relevant knowledge, skills and experience for the position. UA is committed to helping our teammates succeed and advance in their careers. Base salary is only one component of our competitive Total Rewards package. **Benefits & Perks** + Paid "UA Give Back" Volunteer Days: Work alongside your team to support initiatives in your local community + Under Armour Merchandise Discounts + Competitive 401(k) plan matching + Maternity and Parental Leave for eligible and FMLA-eligible teammates + Health & fitness benefits, discounts and resources- We offer teammates across the country programs to promote physical activity and overall well-being **Our Commitment to Equal Opportunity** At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion or belief, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, family or paternal status and any other characteristic protected by applicable law. Under Armour seeks to recruit, develop and retain the most talented people representing a wide variety of backgrounds and perspectives. If a reasonable accommodation is needed to participate in the job application or interview process, please contact our Human Resources team via candidateaccommodations@underarmour.com. Requisition ID: 163628 Location: Remote, US Business Unit: Corporate Region: North America Employee Class: Full Time Employment Type: Salaried Learn more about our Benefits here
    $129.9k-178.6k yearly 9d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Lead, Database Security Architect

    Under Armour, Inc. 4.5company rating

    Baton Rouge, LA jobs

    **Lead, Database Security Architect** **Values & Innovation** At Under Armour, we are committed to empowering those who strive for more, and the company's values - Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality - serve as both a roadmap for our teams and the qualities expected of every teammate. Our Values define and unite us, the beliefs that are the red thread that connects everyone at Under Armour. Our values are rallying cries, reminding us why we're here, and fueling everything we do. Our pursuit of better begins with innovation and with our team's mission of being the best. With us, you get the freedom to go further - no matter your role. That means developing, delivering, and selling the state-of-the-art products and digital tools that make top performers even better. If you are a current Under Armour teammate, apply to this position on the Internal Career Site Here. (*************************************************************************************************************************************************** **Purpose of Role** The Lead Data Security Architect is challenged to design and implement cutting-edge security solutions that safeguard our most sensitive information. In this role, you'll be the go-to expert for embedding security into every data-driven initiative-from personalization and analytics to customer loyalty programs. **Your Impact** + Build security into everything: Integrate privacy and security best practices across all data projects + Collaborate across teams: Work with Data Architecture, Analytics, Visualization, Privacy and Application Owners to create secure, seamless experiences + Protect data everywhere: Design and implement safeguards for data at rest, in transit, and across interfaces-from origin points to data lakes and middleware + Secure modern environments: Ensure robust configurations for containerized platforms like Kubernetes and Docker + Drive continuous improvement: Conduct risk assessments, close gaps, and evolve security standards + Lead with influence: Communicate complex security issues clearly to developers and engineering leaders, ensuring timely resolution + Innovate with new tools: Evaluate, develop and onboard data protection platforms through proof-of-concepts **Qualifications** + Bachelor's degree with typically 8 years of relevant experience or Master's degree with typically 6 years of relevant experience or typically 12 years of relevant work experience without degree. + 5-8 years of cybersecurity experience, particularly in cloud-based data environments + Experience with data platforms and tools such as Snowflake, Databricks, Amazon Redshift and Sagemaker + Deep expertise in securing on-prem and SaaS-based data storage. + Hands-on experience with container technologies (Kubernetes, Docker). + Strong knowledge of identity management, Zero Trust principles, and cloud/data security fundamentals. + Ability to thrive in agile, fast-paced environments **Workplace Location** + **Location:** Remote (East Coast strongly preferred to optimize collaboration with HQ and cross-functional teams) + **Work Schedule:** Fully Remote + **Travel:** Possible travel to regional offices, conferences, and trainings + **Licenses/Certifications:** CISSP, MCSE/OCP, AWS, or similar is favorable; Deep knowledge of data protection regulations such as GDPR and CCPA + **Sponsorship Eligibility:** UA does not offer sponsorship of job applicants for employment-based work authorization for this position at this time. **Relocation** + No relocation provided + \#LI-CP1 + \#LI-REMOTE **Base Compensation** $129,908.40 - $178,624.05 USD Most new hires fall within this range and have the opportunity to earn more over time. Initial placement within the salary range, however, is based on an individual's relevant knowledge, skills and experience for the position. UA is committed to helping our teammates succeed and advance in their careers. Base salary is only one component of our competitive Total Rewards package. **Benefits & Perks** + Paid "UA Give Back" Volunteer Days: Work alongside your team to support initiatives in your local community + Under Armour Merchandise Discounts + Competitive 401(k) plan matching + Maternity and Parental Leave for eligible and FMLA-eligible teammates + Health & fitness benefits, discounts and resources- We offer teammates across the country programs to promote physical activity and overall well-being **Our Commitment to Equal Opportunity** At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion or belief, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, family or paternal status and any other characteristic protected by applicable law. Under Armour seeks to recruit, develop and retain the most talented people representing a wide variety of backgrounds and perspectives. If a reasonable accommodation is needed to participate in the job application or interview process, please contact our Human Resources team via candidateaccommodations@underarmour.com. Requisition ID: 163628 Location: Remote, US Business Unit: Corporate Region: North America Employee Class: Full Time Employment Type: Salaried Learn more about our Benefits here
    $129.9k-178.6k yearly 9d ago
  • Cloud Security Engineer

    UL, LLC 4.2company rating

    Melville, NY jobs

    This role is Hybrid, 3 days a week to any local, US based UL Solutions Office. We are seeking a highly skilled Cloud Security Engineer with strong Application Security expertise to join our security architecture team. This role will be responsible for designing, implementing, and maintaining secure cloud environments and applications across multi-cloud platforms, with a focus on Azure. The ideal candidate will have hands-on experience with cloud-native security tools, DevSecOps practices, and compliance frameworks such as NIST 800-53, SOC 2, and CIS Controls. Cloud Security Engineering + Design and implement security controls for cloud infrastructure (Azure, AWS, GCP). + Develop and maintain security architecture patterns (e.g., hub-and-spoke, Zero Trust). + Integrate security tools such as Wiz, Microsoft Defender for Cloud, Silverfort, and Terraform. + Conduct threat modeling and risk assessments for cloud-native services. + Collaborate with IAM, SOC, and GRC teams to align cloud security with enterprise policies. Application Security + Perform secure code reviews, static/dynamic analysis, and vulnerability assessments. + Integrate security into CI/CD pipelines using tools like Snyk, Checkmarx, or Veracode. + Guide development teams on secure coding practices and OWASP Top 10. + Design and implement API security strategies including OAuth2, OpenID Connect, and mTLS. + Support remediation of application vulnerabilities and provide technical guidance. Compliance & Governance + Map cloud and application security controls to compliance frameworks (NIST 800-53, SOC 2, CIS). + Assist in audits and evidence collection for regulatory compliance. + Maintain documentation of security architecture, policies, and procedures. + Bachelor's degree in Computer Science, Cybersecurity, or related field. + 3-4 years of experience in cloud security engineering and application security. + Strong understanding of Azure security services and architecture. + Experience with infrastructure-as-code (Terraform, Bicep). + Familiarity with Snowflake security features and data protection strategies. + Knowledge of identity and access management (Azure AD, Conditional Access, MFA). + Hands-on experience with DevSecOps tools and practices. Preferred Qualifications + Certifications: Azure Security Engineer Associate, CISSP, CCSP, OSCP, or GIAC. + Experience with multi-subscription Azure environments. + Familiarity with Zero Trust architecture and implementation. + Experience with security automation and orchestration. Soft Skills + Strong analytical and problem-solving skills. + Excellent communication and collaboration abilities. + Ability to work independently and in cross-functional teams. + Passion for continuous learning and staying current with security trends. What you'll experience working for ULS UL Solutions has been pioneering change since 1894 and we're still leading the way. From day one, we've blazed a trail protecting the planet and everyone on it. Our teams have influenced billions of products, plus services, software offerings and more. We break things, burn things and blow things up. All in the name of safety science. That's where you come in - because none of it could happen without you. It takes passion to protect people, problem-solving to safeguard personal data and conviction to make the world a more sustainable place. It takes bold ideas and brilliant minds to build a better world for future generations across the globe. This is more than a job. It's a calling. A passion to use our expertise and play our part in creating a more secure, sustainable world today - and tomorrow. As a member of our safety science community, you'll use your ideas, your energy and your ambition to innovate, challenge and ultimately, help create a safer world. Everyone here is unique. But we're also a global community, working together to help create a safer world. Join UL Solutions and you can connect with the brightest minds in the business, all bringing their distinct perspectives and diverse backgrounds together to deliver real change. Empowering our customers to keep the world safe means thinking ahead. It means investing in training and empowering our people to learn and innovate. At UL Solutions, we help build a better future - one where everyone benefits. Join UL Solutions to be at the center of safety. To learn more about us and the work we do, visit UL.com Total Rewards: We understand compensation is an important factor as you consider the next step in your career. The estimated salary range for this position is $95,000 to $120,000 and is based on multiple factors, including job-related knowledge/skills, experience, geographical location, as well as other factors. This position is eligible for annual bonus compensation with a target payout of 10% of the base salary. This position also provides health benefits such as medical, dental and vision; wellness benefits such as mental and financial health; and retirement savings (401K) commensurate with the standard rewards offered in each individual location or country. We also provide full-time employees with paid time off including vacation (15 days), holiday including floating holidays (12 days) and sick time off (72 hours). #LI-SG2 #LI-Hybrid UL LLC has been and will continue to be an equal opportunity employer. To assure full implementation of this equal employment policy, we will take steps to assure that: Persons are recruited, hired, assigned and promoted without regard to race, color, age, sex or gender, sexual orientation, gender identity, gender expression, transgender status, religion, creed, national origin, ethnicity, citizenship, ancestry, disability, genetic information, military or veteran status, pregnancy, marital or familial status, or any other protected category under applicable law.
    $95k-120k yearly 60d+ ago
  • Security Engineer

    The Rockridge Group 3.8company rating

    New York, NY jobs

    Job DescriptionJob Title: Security EngineerLocation: 100% RemoteDuration: 6 months Contract To Hire About the Position Company X is seeking an exceptional Security Engineer to join its IT Security Team in our New York office. This person will join a distributed, highly collaborative team that is responsible for the setup and maintenance of security equipment for a global network. The successful candidate will demonstrate strong technical skills and will have the technical credibility to be a participant in the architecture, design, and implementation of complex security solutions including interconnectivity with third party partners and market data providers and DMZ configuration and hardening. In addition to exceptional technical skills, the ideal candidate will demonstrate an ability to provide the highest level of support for troubleshooting incidents. Experience with updating problem records in an incident tracking system is needed and he or she must be comfortable interacting with various individuals or in an ever-changing environment. This person will help to work on projects where close coordination and communication is required with other areas such as the networks, database management, system services, and application development organizations. The ideal candidate will have at least five years of hands on technical experience with firewall design and implementation with physical and\or virtual Next Generation firewalls and will have at least three years of experience in working with cloud implementations. Experience with automation technologies such as Ansible Tower would also be helpful. Specific Responsibilities: Operational management of security platforms including, but not limited to, firewalls, load balancers, web proxies, certificates, endpoint security technologies. Documentation and implementation of firewall policy and rule changes. Manage physical equipment such as the rack, stack and installation of security equipment in any company location including enterprise data centers Assist in supporting the security platforms protecting our enterprise systems and environment Assist and train team members in the use of cloud security tools and the resolution of security issues Provide technical support for complex, medium to high risk systems problems Instill cooperation and/or resolve problems on security related activities that span other areas such as network, database management, applications development, and other systems related areas Implement automated approach to delivering key security management processes Communicate security risks and solutions to business partners, platform & product teams Serve as a project lead, or a project member, on projects of varying size and complexity and risk. Develop procedures for automating security tasks during build and deployment Assist in design documentation, project plan development and implementation of new security platforms and technologies. Skills & Experience Required Bachelor's degree with a degree in Computer Science, Computer Engineering, EE or comparable discipline preferred Five plus years of hands on firewall design, implementation, and change management experience with physical and\or virtual Next Generation firewalls. Three plus years of hands on experience working with cloud implementations Extensive knowledge with relevant experience in at least five of the following categories: Third party and VPN connectivity architecture and design DMZ network segmentation design best practices Intrusion Detection/Prevention System tuning Security hardening and configuration techniques Application firewall design Antivirus / Endpoint protection design and implementation Patching and vulnerability remediation management Web Proxy architecture / design Cloud (IaaS, PaaS, and SaaS) hosted security solutions PKI and certificate management concepts Preferred security certifications: PCNSA Microsoft Azure security Engineer Associate CISSP GSEC GCIH GMON Sufficient level of knowledge in other technical areas such as database management and networking so incumbent can represent his/her area on major cross functional problems that span other areas Broad knowledge of monitoring tools Diagramming using Visio or equivalent tools
    $103k-145k yearly est. 16d ago
  • Security Engineer

    DMI Mobile Enterprise Solutions 4.0company rating

    Washington, DC jobs

    About DMI DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at ************* About the Opportunity DMI, LLC is seeking a Security Engineer to join us. Duties and Responsibilities: * Develops and implements supply chain strategies and networks in support of program * Uses analytical and quantitative methods to understand, predict, and enhance supply chain processes * Responsible for assembling data, analyzing performance, identifying problems, and developing recommendations which support program planning and operations * Monitors key performance indicators, coordinates cross-functional work teams to increase effectiveness of supply chain initiatives * Analyzes production planning, material procurement, inventory control, expediting, analyzing, and distribution * Monitors contract compliance and other logistics service providers * Develops analytical reports and analysis to support negotiations with suppliers which provide goods and services * Reports on operational performance measurements and purchase price variance analysis * Works with other departments as well as with distributors, transporters, storage facilities, and suppliers Qualifications Education and Years of Experience: * Leads other subject matter experts of the IT technology team for specific customers, evaluates design and architecture issues, as well as increases integration of services delivered, and researches current market technologies to design cost-effective solutions that meet current and foreseeable customer requirements Min Citizenship Status Required: Must be a U.S. Citizen Physical Requirements: Not required for this position. Location: Washington, DC Working at DMI DMI is a diverse, prosperous, and rewarding place to work. Being part of the DMI family means we care about your well-being. As such, we offer a variety of perks and benefits that help meet various interests and needs, while still having the opportunity to work directly with a number of our award-winning, Fortune 1000 clients. The following categories make up your DMI well-being: * Convenience/Concierge - Virtual visits through health insurance, pet insurance, commuter benefits, discount tickets for movies, travel, and many other items to provide convenience. * Development - Annual performance management, continuing education, tuition assistance, internal job opportunities along with career enrichment and advancement to help each employee with their professional and personal development. * Financial - Generous 401k matches both pre-tax and post-tax (ROTH) contributions along with financial wellness education, EAP, Life Insurance, and Disability to help provide financial stability for each DMI employee. * Recognition - Great achievements do not go unnoticed by DMI through the Annual Awards ceremony, service anniversaries, peer-to-peer acknowledgment, and employee referral bonuses. * Wellness - Healthcare benefits, Wellness programs, Flu Shots, Biometric screenings, and several other wellness options. Employees are valued for their talents and contributions. We all take pride in helping our customers achieve their goals, which in turn contributes to the overall success of the company. * No Agencies Please * Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.
    $96k-132k yearly est. Auto-Apply 60d+ ago
  • Senior Security Engineer

    The Rockridge Group 3.8company rating

    New York, NY jobs

    Job DescriptionJob Title: Sr. Security EngineerDuration: 6 months Contract To HireLocation: Looking for someone near our physical NY office (NYC) and datacenter (Weehawken, NJ) who could support on-site physical equipment (powering off a firewall, checking cable connectivity, shipping equipment, configuring equipment that is not remotely accessible). About the PositionClient X is seeking an exceptional Senior Security Engineer to join its IT Security Team in our New York office. This person will join a distributed, highly collaborative team that is responsible for the setup and maintenance of security equipment for a global network. The successful candidate will demonstrate strong technical skills and will have the technical credibility to be a lead participant in the architecture, design, and implementation of complex security solutions including interconnectivity with third party partners and market data providers and DMZ configuration and hardening. In addition to exceptional technical skills, the ideal candidate will demonstrate an ability to provide the highest level of support for troubleshooting incidents. Experience with updating problem records in an incident tracking system is needed and he or she must be comfortable interacting with various individuals or in an ever-changing environment. This person will help to lead projects where close coordination and communication is required with other areas such as the networks, database management, system services, and application development organizations. The ideal candidate will have at least eight years of hands on technical experience with firewall design and implementation with physical and\or virtual Next Generation firewalls and will have at least three years of experience in working with cloud implementations. Experience with automation technologies such as Ansible Tower would also be helpful. Specific Responsibilities Include Operational management of security platforms including, but not limited to, firewalls, load balancers, web proxies, endpoint security technologies. Documentation and implementation of firewall policy and rule changes. Manage physical equipment such as the rack, stack and installation of security equipment in any company location including enterprise data centers Assist in supporting the security platforms protecting our enterprise systems and environment Assist and train team members in the use of cloud security tools and the resolution of security issues Provide technical support for complex, medium to high risk systems problems Instill cooperation and/or resolve problems on security related activities that span other areas such as network, database management, applications development, and other systems related areas Implement automated approach to delivering key security management processes Communicate security risks and solutions to business partners, platform & product teams Partner with Security Architecture to evaluate cloud security technologies, provide feedback on designs, and implement processes and integrations of highly complex solutions. Develop procedures for automating security tasks during build and deployment Skills & Experience Required: Bachelor's degree with a degree in Computer Science, Computer Engineering, EE or comparable discipline preferred Eight plus years of hands on firewall design, implementation, and change management experience with physical and\or virtual Next Generation firewalls. Three plus years of hands on experience working with cloud implementations Extensive knowledge with relevant experience in at least five of the following categories: Serve as a project lead or a project member on projects of varying size and complexity and risk. Third party and VPN connectivity architecture and design DMZ network segmentation design best practices Intrusion Detection/Prevention System tuning Security hardening and configuration techniques Application firewall design Antivirus / Endpoint protection design and implementation Patching and vulnerability remediation management Web Proxy architecture / design Cloud (IaaS, PaaS, and SaaS) hosted security solutions PKI and certificate management concepts Preferred security certifications: PCNSA Microsoft Azure security Engineer Associate CISSP GSEC GCIH GMON Sufficient level of knowledge in other technical areas such as database management and networking so incumbent can represent his/her area on major cross functional problems that span other areas Broad knowledge of monitoring tools Diagramming using Visio or equivalent tools Excellent organizational skills and superior troubleshooting / problem solving ability
    $112k-156k yearly est. 29d ago
  • Senior Security Engineer - Offensive Security

    Plaid 4.9company rating

    New York, NY jobs

    We believe that the way people interact with their finances will drastically improve in the next few years. We're dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid's network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. The Platform Security (PlatSec) team protects Plaid's corporate and production environments, spanning endpoint and infrastructure security as well as detection and response. We work to minimize the risk of compromise by hardening laptops and production services, identifying attacks early, and responding decisively when issues arise. As the founding member of Plaid's red team, you will establish and define our offensive security program. You'll determine which types of operations we should run in both the short and long term, and then carry them out, shifting between strategic planning and hands-on technical work throughout the year. You'll partner with stakeholders to understand the issues you uncover, both high level and granular, and to incorporate the red team's work into day-to-day operations and long-term planning. You'll communicate findings to stakeholders at all levels, including the C-team. Over the next few years, you'll help grow the team by interviewing candidates for new roles and potentially stepping into a management or TL position.Responsibilities Establish a charter and framework for Plaid's offensive security program. Conduct red team operations against corp and prod infrastructure to identify previously unknown problems and assess the state of Plaid's security. These may include goal-oriented and adversary emulation exercises. Communicate findings to stakeholders and follow up to ensure appropriate resolution, with the aid of existing planning and risk mitigation processes. Serve as the primary owner for red teaming at Plaid. Qualifications 5+ years of experience in offensive security roles Experience leading individual offensive security/red team operations Comfortable operating independently and defining your own direction Comfortable communicating with a wide range of technical and non-technical stakeholders [Nice to Have] Experience leading an offensive security/red team program [Nice to Have] Experience developing a new offensive security/red team program [Nice to Have] OSCP and/or OSCE certification $207,600 - $310,800 a year The target base salary for this position ranges from $207,600/year to $310,800/year [in Zone 1, in Zone 4 or encompassing all Zones]. The target base salary will vary based on the job's location. Our geographic zones are as follows:Zone 1 - New York City and San Francisco Bay Area Zone 2 - Los Angeles, Seattle, Washington D.C.Zone 3 - Austin, Boston, Denver, Houston, Portland, Sacramento, San DiegoZone 4 - Raleigh-Durham and all other US cities The base salary range listed for this full-time position excludes commission (if applicable), equity and benefits. The pay range shown on each job posting is the minimum and maximum target for new-hire salaries. Actual pay may be higher or lower depending on factors like skills, experience, and relevant education or training. Our mission at Plaid is to unlock financial freedom for everyone. To support that mission, we seek to build a diverse team of driven individuals who care deeply about making the financial ecosystem more equitable. We recognize that strong qualifications can come from both prior work experiences and lived experiences. We encourage you to apply to a role even if your experience doesn't fully match the job description. We are always looking for team members that will bring something unique to Plaid! Plaid is proud to be an equal opportunity employer and values diversity at our company. We do not discriminate based on race, color, national origin, ethnicity, religion or religious belief, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, military or veteran status, disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local laws. Plaid is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance with your application or interviews due to a disability, please let us know at [email protected]. Please review our Candidate Privacy Notice here.
    $109k-135k yearly est. Auto-Apply 60d+ ago
  • Automated Systems Engineer

    Patterns LLC 4.1company rating

    Hauppauge, NY jobs

    An Automated Systems Engineer is responsible for providing hands-on controls and electrical engineering support to correct, repair, and improve machinery, equipment and systems company-wide. This position is full-time, Monday through Friday, from 8:00AM - 4:00PM. Responsibilities: Troubleshoot and repair PLC electrical and control related issues. Design and implement machine changes and improvements, including creating new control systems. Draft new electrical drawings and modify existing electrical drawings. Organize and maintain latest machine PLC programs, HMI programs, electrical drawings, and user manuals. Communicate and work with maintenance and engineering personnel to resolve issues in a timely manner. Procure parts and materials required for machine maintenance. Assist in initiation of change control if new parts deviate from original specifications. Assist in qualification of equipment. Supervise, mentor, and advise mechanics to ensure machine repairs and operations are conducted in a safe, responsible manner. Execute engineering support and maintenance to meet all requirements and yield a greater than 90% first time right. Keep current and implement technology to enhance operation performance. Act as role model exemplifying superb ethical conduct and decision making, teamwork, integrity, agility, respect and accountability. Requirements: Education and Experience: Bachelor's Degree in Electrical Engineering or equivalent hands-on experience Minimum of three years of work experience in related field Skills, Knowledge, and Abilities: Knowledge of controls software (PLC, HMI, and Servo) from Allen-Bradley, Siemens, and Mitsubishi. Knowledge of drafting software (AutoCAD) preferred. Knowledge of OSHA and NEC code requirements. Ability to follow company policies and procedures, including all SOPs. Computer skills must include Microsoft Office, Word and Outlook. Knowledge of cGMPs related to US FDA manufacturing environments.
    $80k-115k yearly est. 2d ago
  • Cyber Security Specialist II

    Gleason 4.4company rating

    Rochester, NY jobs

    We are seeking an experienced Cybersecurity Analyst to protect our global manufacturing operations, intellectual property, and critical infrastructure. This role is essential in maintaining our security posture across multiple international locations while ensuring compliance with various standards such as NIST, TISAX and CMMC. The ideal candidate will have hands-on experience with enterprise security tools, a strong understanding of manufacturing environments, and the ability to translate complex security requirements into practical controls. Key Responsibilities Security Infrastructure & Operations Endpoint Detection & Response (EDR): Manage and optimize CrowdStrike Falcon platform across 3,000+ endpoints globally, including configuration, policy management, threat hunting, incident response, and integration with SIEM Next-Generation SIEM Management: Administer and tune next-gen Crowdstrike SIEM platform, develop correlation rules, create custom dashboards, investigate security events, and coordinate incident response workflows Firewall Administration: Configure, manage, and optimize enterprise firewalls (Palo Alto, SonicWall, Sophos), including rule development, change management, VPN connections, segmentation strategies, and regular policy reviews Identity & Access Management: Administer Azure Active Directory (Entra ID) including user provisioning, conditional access policies, group policies, privileged identity management (PIM), role-based access control (RBAC), and hybrid identity synchronization Multi-Factor Authentication (MFA): Deploy, manage, and enforce MFA solutions across all user accounts and privileged access scenarios, ensuring compliance with CMMC Level 2 requirements for authentication controls VPN Infrastructure: Manage site-to-site and remote access VPN solutions, ensuring secure connectivity for remote manufacturing sites and mobile workforce Microsoft 365 Security: Configure and manage M365 security features including Defender for Office 365, Intune and Purview, Data Loss Prevention (DLP), sensitivity labels, information protection policies, secure score optimization, and compliance center management Compliance & Framework Implementation NIST Framework Compliance: Implement controls based on NIST SP 800-171 (Protecting CUI in Nonfederal Systems), NIST SP 800-53 (Security and Privacy Controls), and NIST Cybersecurity Framework What this means for the role: You will map existing security controls to NIST control families (Access Control, Incident Response, System and Communications Protection, etc.), conduct annual assessments of control effectiveness, implement compensating controls where needed, and maintain System Security Plans (SSPs) documenting how each NIST control is satisfied in our manufacturing environment. This includes technical implementations like encryption for data at rest and in transit (SC-13, SC-28), audit logging (AU family), and system hardening (CM family) Ensure industrial control systems (ICS) and operational technology (OT) environments align with NIST guidelines while maintaining production uptime Lead quarterly self-assessments and coordinate with third-party assessors for independent validation Establish and maintain Plan of Actions & Milestones (POA&M) for any identified deficiencies Security Monitoring & Incident Response Monitor security alerts from CrowdStrike, NG SIEM, firewalls, Azure AD, and M365 security tools Lead or support security incident investigations, root cause analysis, and remediation efforts Develop and maintain incident response playbooks specific to manufacturing environments Conduct threat hunting activities to proactively identify indicators of compromise Coordinate with plant IT teams during security events to minimize production impact Provide guidance and training for plant IT teams on security monitoring and incident response best practices Vulnerability & Risk Management Perform regular vulnerability assessments and coordinate patch management activities Conduct security configuration reviews of critical systems and network devices Assess cybersecurity risks specific to manufacturing operations, including OT/ICS environments Support penetration testing activities and remediation of identified vulnerabilities Maintain asset inventory and classification in accordance with CMMC and NIST requirements Security Awareness & Training Develop and deliver cybersecurity awareness training for employees world wide Create role-based training for privileged users handling CUI and sensitive manufacturing data Conduct phishing simulation campaigns and analyze results for improvement opportunities Serve as security liaison for all operations and sites Documentation & Reporting Maintain comprehensive security documentation including policies, procedures, network diagrams, and system configurations Generate metrics and reports on security posture for executive leadership Document security incidents, lessons learned, and continuous improvement initiatives Create and maintain security runbooks and standard operating procedures Required Qualifications Education & Certifications Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field Required Certifications (one or more): Security+, CISSP, CISM, or GIAC Security Essentials (GSEC) CrowdStrike Certified Falcon Administrator (CCFA) preferred Highly Desired: Certified Information Systems Auditor (CISA) CMMC Certified Professional (CCP) or CMMC Certified Assessor (CCA) Microsoft Certified: Security Operations Analyst Associate or Azure Security Engineer Associate GIAC Certified Incident Handler (GCIH) or GIAC Continuous Monitoring Certification (GMON) Technical Experience 5+ years of hands-on cybersecurity experience in enterprise environments 2+ years implementing or managing CMMC and/or NIST 800-171 compliance programs Proven experience with: CrowdStrike EDR platform (administration, threat hunting, incident response) Next-generation SIEM platforms (Splunk, Azure Sentinel, LogRhythm, QRadar, or similar) Enterprise firewall platforms (Palo Alto, SonicWall, Fortinet, Cisco ASA/Firepower) Azure Active Directory administration including conditional access and MFA VPN technologies (site-to-site, remote access, IPsec, SSL VPN) Microsoft 365 security and compliance features Experience implementing and administering M365 security and compliance tools including Microsoft Purview for data loss prevention and information protection, and Intune for endpoint and mobile device management Experience with manufacturing or critical infrastructure environments preferred Understanding of OT/ICS security concepts and industrial network segmentation Technical Skills Strong knowledge of network protocols, architecture, and security controls Experience with scripting/automation (PowerShell, Python) for security tasks Proficiency with security frameworks and standards (CMMC, NIST, ISO 27001, CIS Controls) Understanding of encryption technologies, PKI, and certificate management Familiarity with cloud security principles (Azure, AWS) and hybrid environments Knowledge of secure software development practices and vulnerability management Professional Skills Excellent analytical and problem-solving abilities Strong written and verbal communication skills for both technical and non-technical audiences Ability to work independently and manage multiple priorities in a fast-paced environment Experience working across time zones with global teams Strong documentation skills and attention to detail Ability to balance security requirements with business operational needs Preferred Qualifications Knowledge of ICS/SCADA security standards (IEC 62443, NIST 800-82) Experience with zero trust architecture implementation Familiarity with Purdue Model for industrial network segmentation Previous experience in manufacturing, aerospace, or defense industries Understanding of data classification and information protection programs Experience with security orchestration, automation, and response (SOAR) platforms Physical Requirements & Work Environment Ability to sit for extended periods while monitoring security systems May require availability outside standard business hours for security incidents or maintenance windows Ability to travel domestically and internationally (up to 15%) for site assessments Security Clearance U.S. Citizenship may be required for access to certain systems containing CUI
    $66k-81k yearly est. 12d ago
  • Network Security Architect

    The Rockridge Group 3.8company rating

    New York, NY jobs

    Job DescriptionNetwork Security ArchitectPrincipal Responsibilities: Architect and implement network communication and telephony solutions Secure and harden the network, server, data and end user infrastructure Architect and implement end user device solutions and applications (mobile, workstation, etc.) Architect and implement the monitoring and capacity planning platforms of the systems, network, data and end user infrastructure Create/manage technical reference documentation (policy, procedures, knowledgebase, etc.) Provide senior level technical guidance and serve as an escalation point for engineering and development teams Assist with evaluations and proof of concepts Coordinate task deliverables with other project initiatives and teams Provide regular (and ad-hoc) reports to leadership team and the business as needed Qualifications: Typically a BA/BS, MBA or equivalent, with 10+ years of related experience Heavy Microsoft architecture history required (AD, Exchange, Sharepoint, SQL) Thorough virtualization and cloud experience (VMware, OpenStack, Hyper-V, KVM, etc.) Experience with Silver Peak WAN appliances Experience with Azure for Web Hosting Experience with SIM tools Scripting experience with VB script, shell, PowerShell, JavaScript, etc. Thorough and proven knowledge of disaster recovery, backup and data protection concepts Proven history of IT remediation of audit/legal/compliance recommendations Solid understanding of routing and switching concepts Experience with firewall and security appliances Expert level knowledge of infrastructure services (DNS, FTP, IIS, etc.) Advanced knowledge of security patching methodologies Independent, energetic and a yearn to learn Excellent analytical and troubleshooting skills Some project management experience preferred Corporate level communication skills required
    $122k-166k yearly est. 2d ago
  • Network Security Engineer

    Under Armour, Inc. 4.5company rating

    Baton Rouge, LA jobs

    **Network Security Engineer** **Values & Innovation** At Under Armour, we are committed to empowering those who strive for more, and the company's values - Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality - serve as both a roadmap for our teams and the qualities expected of every teammate. Our Values define and unite us, the beliefs that are the red thread that connects everyone at Under Armour. Our values are rallying cries, reminding us why we're here, and fueling everything we do. Our pursuit of better begins with innovation and with our team's mission of being the best. With us, you get the freedom to go further - no matter your role. That means developing, delivering, and selling the state-of-the-art products and digital tools that make top performers even better. If you are a current Under Armour teammate, apply to this position on the Internal Career Site Here. (*************************************************************************************************************************************************** **Purpose of Role** The Global Network Security Engineer is responsible for proactively identifying security risks and incidents within Under Armour's Corporate, Retail, Distribution House, and Regional Data Center Networks. The Network Security Engineer will support a risk centric Global Network Security program that will help reduce our external exposure, while increasing visibility and control across the global environment. The Network Security Engineer will overlay Security capabilities across existing technologies on our Enterprise and Cloud networks to reduce attack surface and minimize downtime . The Network Security Engineer will be responsible for maintaining and updating our signature-based and behavior-based detection and mitigation capabilities. The Network Security Engineer will support strategic business needs by engaging in Architecture Reviews and new technology implementations. The Network Security Engineer will consume Threat Intelligence and integrate indicators of compromise (IOCs) relevant to corporate and cloud network defense. **Your Impact** + Support network security design and architecture actions and initiatives + Work closely with our Network Engineering team in developing and deploying Infrastructure hardening, Firewall Solutions, Global NAC solutions, Wi-Fi Security and SASE solutions + Assist with the development, management, and maintenance of UA's Global Network + Assist with development and enforcement of network security policies + Maintain visibility and control of UA's global networking environment + Review network traffic for suspicious activity using network monitoring tools + Test and validate new network deployed hardware technologies + Work closely with our IR Team in mitigating network security alerts and anomalies + Work with our Threat Intel team in analyzing and integrating relevant IOCs + Support the vulnerability management and network teams with mitigations related to security vulnerabilities and patches + Leverage experience and computer science background to review and remediate suspected malicious activity + Ability to work with very large amounts of network, file and host-based log data + Engage and support security engineering and architecture needs for new enterprise projects **Qualifications** + Bachelor's degree with typically 5 years of relevant cybersecurity experience OR Master's degree with typically 3 years of relevant cybersecurity experience OR typically 9 years of relevant cybersecurity work experience without degree + Global Enterprise Network Security, Cybersecurity or Network Engineering experience + Working knowledge of popular Firewalls, NAC solutions, Network Intrusion Detection platforms and tools + Hands-on experience with network configuration and troubleshooting + Hands-on experience with implementing and managing firewalls and security appliances + Hands-on experience with scripting languages such as Python, Bash, and PowerShell + Working knowledge of common network security tools + Understands SD-WAN technology and has worked in an SD-WAN environment + Understands Networking and Network Security capabilities in popular cloud platforms **Workplace Location** + **Location:** Remote (East Coast strongly preferred to optimize collaboration with HQ and cross-functional teams) + **Work Schedule:** This role follows a hybrid work schedule, requiring 4 days in-office per week. + **Travel:** Minimal + **Licenses/Certifications:** N/A + **Sponsorship Eligibility:** UA does not offer sponsorship of job applicants for employment-based work authorization for this position at this time. **Relocation** + No relocation provided **Base Compensation** $97,151.60-$121,439.50 USD Most new hires fall within this range and have the opportunity to earn more over time. Initial placement within the salary range, however, is based on an individual's relevant knowledge, skills and experience for the position. UA is committed to helping our teammates succeed and advance in their careers. Base salary is only one component of our competitive Total Rewards package. **Benefits & Perks** + Paid "UA Give Back" Volunteer Days: Work alongside your team to support initiatives in your local community + Under Armour Merchandise Discounts + Competitive 401(k) plan matching + Maternity and Parental Leave for eligible and FMLA-eligible teammates + Health & fitness benefits, discounts and resources- We offer teammates across the country programs to promote physical activity and overall well-being **Our Commitment to Equal Opportunity** At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion or belief, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, family or paternal status and any other characteristic protected by applicable law. Under Armour seeks to recruit, develop and retain the most talented people representing a wide variety of backgrounds and perspectives. If a reasonable accommodation is needed to participate in the job application or interview process, please contact our Human Resources team via candidateaccommodations@underarmour.com. Requisition ID: 163925 Location: Remote, USBaltimore, MD, US, 21230 Business Unit: Corporate Region: North America Employee Class: Full Time Employment Type: Salaried Learn more about our Benefits here
    $97.2k-121.4k yearly 7d ago
  • Security Engineer

    Arch 4.5company rating

    New York, NY jobs

    Job DescriptionOur Company Arch is a Series B financial technology company that automates the management of private investments, improving access, understanding, and the human experience of investing across asset classes. Private investments such as venture capital, hedge funds, and private equity, make up roughly 25% of the investment universe. Traditionally, investors, advisors, banks, families, and managers track hundreds of investments in complicated spreadsheets, file folders, and busy inboxes. Not only is this tedious and time-consuming, but it is rife with opportunity for manual data entry errors, inconsistent reporting, and lost information. Enter, Arch. Arch delivers standardized data, documents, and insights in a single platform, avoiding the need to chase information across dozens or hundreds of ‘portals'. Our purpose is to save investors' time while empowering them to make more informed investment decisions, leading to better financial outcomes. We are a fast-growing, dynamic team of 200+, serving over 400 clients, including several of America's largest banks, families, and financial institutions. We've over doubled the size of the company every year since inception and we are looking to hire in all departments as we scale. The role: As a Security Engineer on the Security team, they will focus on safeguarding Arch's enterprise infrastructure, managing identity security, implementing zero trust models, hardening critical services and endpoint systems, and ensuring the secure integration and operation of our extended workforce and third-party SaaS applications. Key responsibilities: Design, implement, and maintain enterprise-wide identity and authentication solutions, ensuring security and compliance. Develop and deploy Zero Trust frameworks to strengthen access control and reduce risk. Evaluate and manage third-party SaaS applications for compliance with Arch's security standards. Collaborate with IT, engineering, and compliance to secure endpoints and manage access for extended workforce and contractors. Identify, assess, and mitigate security risks across enterprise applications and third-party integrations. Promote security awareness by educating employees on best practices and data protection. Support Security and IT Operations in diagnosing and resolving enterprise security issues. Foster secure productivity in a dynamic, fast-paced environment. Talk to us about your experience with: Infrastructure - IAM (Okta), AWS, Google Workspace. Security Fundamentals - OWASP, NIST, CIS Benchmarks, ISO 27001, SOC 2 Authentication & Access - SSO, MFA, SCIM, LDAP, Zero Trust, least privilege Automation & Scripting - Python, PowerShell, Bash, automation of identity/security workflows A Note about us: All of our full-time roles are based onsite at our New York City office, where our team thrives on in-person collaboration and dynamic teamwork. Being onsite daily enables us to build strong connections, collaborate effectively to solve challenges, and foster an engaging environment focused on shipping product and delivering exceptional service to our clients. We encourage applicants currently located in or willing to relocate to the NYC area to join us in this exciting, hands-on workspace. Some perks of working for Arch include: Strong Team - You'll be backed by a strong team that consistently exceeds client expectations and ships new products quickly. Your work is high impact - Being part of a small team means you have real responsibility and impact from day one. You'll be involved in discussions that drive the growth and direction of our platform from the very beginning. Product Market Fit - We have strong product market fit, exceptionally low churn, and have grown mostly organically through word of mouth. Team community and camaraderie - We have enormous trust in each other and always do what we can do to support one another. We're always ready to step in to help. Great office - we've invested in a great space for the Arch team to come together, at 18th and Park in Manhattan (the old Buzzfeed / NYT headquarters). Lunch is on Us - Grab lunch on us while you're in the office and take a break to laugh, brainstorm, or just hang out with your teammates over a meal. Compensation Range: $125K - $200K
    $125k-200k yearly 7d ago
  • Information Systems Security Officer

    CAE 4.5company rating

    Binghamton, NY jobs

    About This Role To learn more about CAE Binghamton, our open positions and the Binghamton community, please visit our website at CAE Binghamton. Put your passion to work and propel yourself towards success. Welcome to CAE! We are excited to become a part of your professional journey and to help you discover a career that aligns with your values, experience, expertise, and aspirations! As a leader in the defense and security industry, CAE's team is passionate about simulation and training and developing the most sophisticated solutions to help our defense and security customers prepare for mission success. With our people at the very heart of our organization, driving innovation and new technologies, we are committed to providing a work environment for employees in which they can thrive and one that values professional growth, teamwork, and engagement. Who We Are: CAE Vision: Our vision is to be the worldwide partner of choice in defense and security, and civil aviation by revolutionizing our customers' training and critical operations with digitally immersive solutions to elevate safety, efficiency and readiness. CAE Defense & Security Mission: CAE's Defense and Security business unit focuses on helping prepare military customers to develop and maintain the highest levels of mission readiness. CAE Values: Empowerment, Innovation, Excellence, Integrity and OneCAE make us who we are and we strive to make a difference in the world while helping each other succeed. What We Have to Offer: Comprehensive and competitive benefits package and flexibility that promotes work-life balance A work environment where all employees are valued, respected and safe Freedom to succeed by enabling team members to deliver, take initiatives and make decisions Recognition, professional development, advancement and having fun! Summary As an Information Systems Security Officer (ISSO) you will join the CAE USA, Inc. Classified Cyber Security Team supporting Department of Defense (DoD) programs to ensure classified information systems meet cyber security requirements and government directives. Essential Duties and Responsibilities Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. In this role, you will leverage your technical and leadership skills to: Interpret the Defense Counterintelligence and Security Agency Assessment and Authorization Process Manual (DAAPM) in determining technical Information Assurance (IA) requirements, conduct cyber risk assessment activities including vulnerability analysis, analysis of mitigation solutions and ensure proper security implementation of the Risk Management Framework (RMF). Assist program personnel at offsite locations to ensure they meet USG certification requirements and are properly trained to execute the cybersecurity program effectively and maintain security compliance Develop system documentation for information system authorization, security management, and continuous monitoring of both networked and standalone information systems. Ensure that selected security controls are implemented and operating as intended during all phases of the information system/A&A lifecycle. Coordinate and participate in continuous monitoring activities in accordance with DoD requirements by monitoring security infrastructure and security alarm devices for Indicators of Compromise (IOC) utilizing SIEM and cybersecurity toolsets. Perform hardware/software configuration management Assist with technical investigative activities, data integrity containments and assist with reports of investigation for IA related security events. Coordinate with cyber systems security engineers, system architects, and developers to provide oversight in the development of secure technical solutions. Participate in implementation of current and future security domains and architectures including those which may introduce new service areas. Conduct system audits and compliance/vulnerability scans and interpret results Travel to offsite locations to establish RMF requirements and provide ATO artifacts to the customer Qualifications and Education Requirements Graduate Degree and a minimum of 2 years of prior related experience. Or, Bachelor's Degree in discipline (STEM) and minimum 2 years of prior relevant experience. Or, 2 years post-Secondary/Associates Degree and a minimum of 3 years of prior related experience Currently possess an active DoD 8570.01-M IAT level II certified credentials (e.g., SEC+) Working knowledge of security standards and frameworks, rules and regulations, and system trust principals, such as, FIPS, NIST SP 800 Series, JSIG, DAAPM, and/or ICD. Experience managing cybersecurity requirements operating in collateral, Special Access Programs (SAP) and /or Specialized Compartmentalized Information (SCI) environments for an enterprise/major business portfolio of programs. Experience successfully interfacing with internal/external customers (DCSA, AO/DAO, GCAs, IT, Program Managers, Program Engineering, Cyber Architects/Engineers, etc.) Experience with the authorization and approval (A&A) of classified information systems Excellent communications skills, oral and written Demonstrated strong critical thinking and problem-solving skills Self-motivated and possesses good written, verbal, listening and presentation skills, particularly in documenting evaluation results Confident personality with the ability to effectively prioritize multiple projects Ability to work with people in a team environment and deal effectively with changing project priorities Due to U.S. Government contract requirements, only U.S. citizens are eligible for this role. Ability to travel up to 50% Due to U.S. Government contract requirements, only U.S. citizens are eligible for this role. Preferred Skills Working knowledge of Windows and Linux environments Experience with SIEM and Compliance scanning tools (e.g., Splunk, Nessus, ACAS, SCC SCAP, Solar Winds, STIG Viewer, Vulnerator, etc.) Self-driven and results-oriented capable of effectively working multiple tasks concurrently and across an ambiguous and uncertain landscape Security Responsibilities Must comply with all company security and data protection / usage policies and procedures. Personally responsible for proper marking and handling of all information and materials, in any form. Shall not divulge any information, or afford access, to other employees not having a need-to-know. Shall not divulge information outside company without management approval. All government and proprietary information will be accessed and stored electronically on company provided resources. Incumbent must be eligible for DoD Personal Security Clearance. Due to U.S. Government contract requirements, only U.S. citizens are eligible for this role. Work Environment This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines. Some travel may be required. Physical Demands The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Ability to operate a personal computer and sit at workstation for extended periods of time Ability to lift 50 pounds Salary Range: $91,500 to $107,700 The actual compensation rate is subject to the evaluation of the following factors (but not limited to): the candidate's work experience, qualifications, skills, internal equity, and market. OTHER DUTIES Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for their job. Duties, responsibilities, and activities may change at any time with or without notice. CAE USA Inc. is an equal opportunity employer, and all qualified applicants will be considered for employment without regard to any protected characteristic, including disability and protected veteran status, as defined under federal, state, or local laws. Applicants needing reasonable accommodations should contact their recruiter at any point in the recruitment process. If you need assistance to submit your application because of incompatible assistive technology or a disability, please contact us at ******************* Position Type Regular CAE thanks all applicants for their interest. However, only those whose background and experience match the requirements of the role will be contacted. Equal Opportunity Employer CAE is an equal opportunity employer committed to providing equal employment opportunities to all applicants and employees without regard to race, color, national origin, age, religion, sex, disability status, protected veteran status, or any other characteristic protected by federal, state or local laws. At CAE, everyone is welcome to contribute to our success. Applicants needing reasonable accommodations should contact their recruiter at any point in the recruitment process. If you need assistance to submit your application because of incompatible assistive technology or a disability, please contact us a t **************************** .
    $91.5k-107.7k yearly Auto-Apply 4d ago
  • Network Security Engineer

    Under Armour, Inc. 4.5company rating

    Washington, DC jobs

    **Network Security Engineer** **Values & Innovation** At Under Armour, we are committed to empowering those who strive for more, and the company's values - Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality - serve as both a roadmap for our teams and the qualities expected of every teammate. Our Values define and unite us, the beliefs that are the red thread that connects everyone at Under Armour. Our values are rallying cries, reminding us why we're here, and fueling everything we do. Our pursuit of better begins with innovation and with our team's mission of being the best. With us, you get the freedom to go further - no matter your role. That means developing, delivering, and selling the state-of-the-art products and digital tools that make top performers even better. If you are a current Under Armour teammate, apply to this position on the Internal Career Site Here. (*************************************************************************************************************************************************** **Purpose of Role** The Global Network Security Engineer is responsible for proactively identifying security risks and incidents within Under Armour's Corporate, Retail, Distribution House, and Regional Data Center Networks. The Network Security Engineer will support a risk centric Global Network Security program that will help reduce our external exposure, while increasing visibility and control across the global environment. The Network Security Engineer will overlay Security capabilities across existing technologies on our Enterprise and Cloud networks to reduce attack surface and minimize downtime . The Network Security Engineer will be responsible for maintaining and updating our signature-based and behavior-based detection and mitigation capabilities. The Network Security Engineer will support strategic business needs by engaging in Architecture Reviews and new technology implementations. The Network Security Engineer will consume Threat Intelligence and integrate indicators of compromise (IOCs) relevant to corporate and cloud network defense. **Your Impact** + Support network security design and architecture actions and initiatives + Work closely with our Network Engineering team in developing and deploying Infrastructure hardening, Firewall Solutions, Global NAC solutions, Wi-Fi Security and SASE solutions + Assist with the development, management, and maintenance of UA's Global Network + Assist with development and enforcement of network security policies + Maintain visibility and control of UA's global networking environment + Review network traffic for suspicious activity using network monitoring tools + Test and validate new network deployed hardware technologies + Work closely with our IR Team in mitigating network security alerts and anomalies + Work with our Threat Intel team in analyzing and integrating relevant IOCs + Support the vulnerability management and network teams with mitigations related to security vulnerabilities and patches + Leverage experience and computer science background to review and remediate suspected malicious activity + Ability to work with very large amounts of network, file and host-based log data + Engage and support security engineering and architecture needs for new enterprise projects **Qualifications** + Bachelor's degree with typically 5 years of relevant cybersecurity experience OR Master's degree with typically 3 years of relevant cybersecurity experience OR typically 9 years of relevant cybersecurity work experience without degree + Global Enterprise Network Security, Cybersecurity or Network Engineering experience + Working knowledge of popular Firewalls, NAC solutions, Network Intrusion Detection platforms and tools + Hands-on experience with network configuration and troubleshooting + Hands-on experience with implementing and managing firewalls and security appliances + Hands-on experience with scripting languages such as Python, Bash, and PowerShell + Working knowledge of common network security tools + Understands SD-WAN technology and has worked in an SD-WAN environment + Understands Networking and Network Security capabilities in popular cloud platforms **Workplace Location** + **Location:** Remote (East Coast strongly preferred to optimize collaboration with HQ and cross-functional teams) + **Work Schedule:** This role follows a hybrid work schedule, requiring 4 days in-office per week. + **Travel:** Minimal + **Licenses/Certifications:** N/A + **Sponsorship Eligibility:** UA does not offer sponsorship of job applicants for employment-based work authorization for this position at this time. **Relocation** + No relocation provided **Base Compensation** $97,151.60-$121,439.50 USD Most new hires fall within this range and have the opportunity to earn more over time. Initial placement within the salary range, however, is based on an individual's relevant knowledge, skills and experience for the position. UA is committed to helping our teammates succeed and advance in their careers. Base salary is only one component of our competitive Total Rewards package. **Benefits & Perks** + Paid "UA Give Back" Volunteer Days: Work alongside your team to support initiatives in your local community + Under Armour Merchandise Discounts + Competitive 401(k) plan matching + Maternity and Parental Leave for eligible and FMLA-eligible teammates + Health & fitness benefits, discounts and resources- We offer teammates across the country programs to promote physical activity and overall well-being **Our Commitment to Equal Opportunity** At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion or belief, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, family or paternal status and any other characteristic protected by applicable law. Under Armour seeks to recruit, develop and retain the most talented people representing a wide variety of backgrounds and perspectives. If a reasonable accommodation is needed to participate in the job application or interview process, please contact our Human Resources team via candidateaccommodations@underarmour.com. Requisition ID: 163925 Location: Remote, USBaltimore, MD, US, 21230 Business Unit: Corporate Region: North America Employee Class: Full Time Employment Type: Salaried Learn more about our Benefits here
    $97.2k-121.4k yearly 7d ago
  • Network Security Engineer

    Under Armour, Inc. 4.5company rating

    Albany, NY jobs

    **Network Security Engineer** **Values & Innovation** At Under Armour, we are committed to empowering those who strive for more, and the company's values - Act Sustainably, Celebrate the Wins, Fight on Together, Love Athletes and Stand for Equality - serve as both a roadmap for our teams and the qualities expected of every teammate. Our Values define and unite us, the beliefs that are the red thread that connects everyone at Under Armour. Our values are rallying cries, reminding us why we're here, and fueling everything we do. Our pursuit of better begins with innovation and with our team's mission of being the best. With us, you get the freedom to go further - no matter your role. That means developing, delivering, and selling the state-of-the-art products and digital tools that make top performers even better. If you are a current Under Armour teammate, apply to this position on the Internal Career Site Here. (*************************************************************************************************************************************************** **Purpose of Role** The Global Network Security Engineer is responsible for proactively identifying security risks and incidents within Under Armour's Corporate, Retail, Distribution House, and Regional Data Center Networks. The Network Security Engineer will support a risk centric Global Network Security program that will help reduce our external exposure, while increasing visibility and control across the global environment. The Network Security Engineer will overlay Security capabilities across existing technologies on our Enterprise and Cloud networks to reduce attack surface and minimize downtime . The Network Security Engineer will be responsible for maintaining and updating our signature-based and behavior-based detection and mitigation capabilities. The Network Security Engineer will support strategic business needs by engaging in Architecture Reviews and new technology implementations. The Network Security Engineer will consume Threat Intelligence and integrate indicators of compromise (IOCs) relevant to corporate and cloud network defense. **Your Impact** + Support network security design and architecture actions and initiatives + Work closely with our Network Engineering team in developing and deploying Infrastructure hardening, Firewall Solutions, Global NAC solutions, Wi-Fi Security and SASE solutions + Assist with the development, management, and maintenance of UA's Global Network + Assist with development and enforcement of network security policies + Maintain visibility and control of UA's global networking environment + Review network traffic for suspicious activity using network monitoring tools + Test and validate new network deployed hardware technologies + Work closely with our IR Team in mitigating network security alerts and anomalies + Work with our Threat Intel team in analyzing and integrating relevant IOCs + Support the vulnerability management and network teams with mitigations related to security vulnerabilities and patches + Leverage experience and computer science background to review and remediate suspected malicious activity + Ability to work with very large amounts of network, file and host-based log data + Engage and support security engineering and architecture needs for new enterprise projects **Qualifications** + Bachelor's degree with typically 5 years of relevant cybersecurity experience OR Master's degree with typically 3 years of relevant cybersecurity experience OR typically 9 years of relevant cybersecurity work experience without degree + Global Enterprise Network Security, Cybersecurity or Network Engineering experience + Working knowledge of popular Firewalls, NAC solutions, Network Intrusion Detection platforms and tools + Hands-on experience with network configuration and troubleshooting + Hands-on experience with implementing and managing firewalls and security appliances + Hands-on experience with scripting languages such as Python, Bash, and PowerShell + Working knowledge of common network security tools + Understands SD-WAN technology and has worked in an SD-WAN environment + Understands Networking and Network Security capabilities in popular cloud platforms **Workplace Location** + **Location:** Remote (East Coast strongly preferred to optimize collaboration with HQ and cross-functional teams) + **Work Schedule:** This role follows a hybrid work schedule, requiring 4 days in-office per week. + **Travel:** Minimal + **Licenses/Certifications:** N/A + **Sponsorship Eligibility:** UA does not offer sponsorship of job applicants for employment-based work authorization for this position at this time. **Relocation** + No relocation provided **Base Compensation** $97,151.60-$121,439.50 USD Most new hires fall within this range and have the opportunity to earn more over time. Initial placement within the salary range, however, is based on an individual's relevant knowledge, skills and experience for the position. UA is committed to helping our teammates succeed and advance in their careers. Base salary is only one component of our competitive Total Rewards package. **Benefits & Perks** + Paid "UA Give Back" Volunteer Days: Work alongside your team to support initiatives in your local community + Under Armour Merchandise Discounts + Competitive 401(k) plan matching + Maternity and Parental Leave for eligible and FMLA-eligible teammates + Health & fitness benefits, discounts and resources- We offer teammates across the country programs to promote physical activity and overall well-being **Our Commitment to Equal Opportunity** At Under Armour, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion or belief, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, family or paternal status and any other characteristic protected by applicable law. Under Armour seeks to recruit, develop and retain the most talented people representing a wide variety of backgrounds and perspectives. If a reasonable accommodation is needed to participate in the job application or interview process, please contact our Human Resources team via candidateaccommodations@underarmour.com. Requisition ID: 163925 Location: Remote, USBaltimore, MD, US, 21230 Business Unit: Corporate Region: North America Employee Class: Full Time Employment Type: Salaried Learn more about our Benefits here
    $97.2k-121.4k yearly 60d+ ago
  • Security Engineer

    Arch 4.5company rating

    New York, NY jobs

    Our Company Arch is a Series B financial technology company that automates the management of private investments, improving access, understanding, and the human experience of investing across asset classes. Private investments such as venture capital, hedge funds, and private equity, make up roughly 25% of the investment universe. Traditionally, investors, advisors, banks, families, and managers track hundreds of investments in complicated spreadsheets, file folders, and busy inboxes. Not only is this tedious and time-consuming, but it is rife with opportunity for manual data entry errors, inconsistent reporting, and lost information. Enter, Arch. Arch delivers standardized data, documents, and insights in a single platform, avoiding the need to chase information across dozens or hundreds of 'portals'. Our purpose is to save investors' time while empowering them to make more informed investment decisions, leading to better financial outcomes. We are a fast-growing, dynamic team of 200+, serving over 400 clients, including several of America's largest banks, families, and financial institutions. We've over doubled the size of the company every year since inception and we are looking to hire in all departments as we scale. The role: As a Security Engineer on the Security team, they will focus on safeguarding Arch's enterprise infrastructure, managing identity security, implementing zero trust models, hardening critical services and endpoint systems, and ensuring the secure integration and operation of our extended workforce and third-party SaaS applications. Key responsibilities: * Design, implement, and maintain enterprise-wide identity and authentication solutions, ensuring security and compliance. * Develop and deploy Zero Trust frameworks to strengthen access control and reduce risk. * Evaluate and manage third-party SaaS applications for compliance with Arch's security standards. * Collaborate with IT, engineering, and compliance to secure endpoints and manage access for extended workforce and contractors. * Identify, assess, and mitigate security risks across enterprise applications and third-party integrations. * Promote security awareness by educating employees on best practices and data protection. * Support Security and IT Operations in diagnosing and resolving enterprise security issues. * Foster secure productivity in a dynamic, fast-paced environment. Talk to us about your experience with: * Infrastructure - IAM (Okta), AWS, Google Workspace. * Security Fundamentals - OWASP, NIST, CIS Benchmarks, ISO 27001, SOC 2 * Authentication & Access - SSO, MFA, SCIM, LDAP, Zero Trust, least privilege * Automation & Scripting - Python, PowerShell, Bash, automation of identity/security workflows A Note about us: All of our full-time roles are based onsite at our New York City office, where our team thrives on in-person collaboration and dynamic teamwork. Being onsite daily enables us to build strong connections, collaborate effectively to solve challenges, and foster an engaging environment focused on shipping product and delivering exceptional service to our clients. We encourage applicants currently located in or willing to relocate to the NYC area to join us in this exciting, hands-on workspace. Some perks of working for Arch include: * Strong Team - You'll be backed by a strong team that consistently exceeds client expectations and ships new products quickly. * Your work is high impact - Being part of a small team means you have real responsibility and impact from day one. You'll be involved in discussions that drive the growth and direction of our platform from the very beginning. * Product Market Fit - We have strong product market fit, exceptionally low churn, and have grown mostly organically through word of mouth. * Team community and camaraderie - We have enormous trust in each other and always do what we can do to support one another. We're always ready to step in to help. * Great office - we've invested in a great space for the Arch team to come together, at 18th and Park in Manhattan (the old Buzzfeed / NYT headquarters). * Lunch is on Us - Grab lunch on us while you're in the office and take a break to laugh, brainstorm, or just hang out with your teammates over a meal.
    $104k-147k yearly est. 60d+ ago
  • Security Engineer

    Arch 4.5company rating

    New York, NY jobs

    Our Company Arch is a Series B financial technology company that automates the management of private investments, improving access, understanding, and the human experience of investing across asset classes. Private investments such as venture capital, hedge funds, and private equity, make up roughly 25% of the investment universe. Traditionally, investors, advisors, banks, families, and managers track hundreds of investments in complicated spreadsheets, file folders, and busy inboxes. Not only is this tedious and time-consuming, but it is rife with opportunity for manual data entry errors, inconsistent reporting, and lost information. Enter, Arch. Arch delivers standardized data, documents, and insights in a single platform, avoiding the need to chase information across dozens or hundreds of ‘portals'. Our purpose is to save investors' time while empowering them to make more informed investment decisions, leading to better financial outcomes. We are a fast-growing, dynamic team of 200+, serving over 400 clients, including several of America's largest banks, families, and financial institutions. We've over doubled the size of the company every year since inception and we are looking to hire in all departments as we scale. The role: As a Security Engineer on the Security team, they will focus on safeguarding Arch's enterprise infrastructure, managing identity security, implementing zero trust models, hardening critical services and endpoint systems, and ensuring the secure integration and operation of our extended workforce and third-party SaaS applications. Key responsibilities: Design, implement, and maintain enterprise-wide identity and authentication solutions, ensuring security and compliance. Develop and deploy Zero Trust frameworks to strengthen access control and reduce risk. Evaluate and manage third-party SaaS applications for compliance with Arch's security standards. Collaborate with IT, engineering, and compliance to secure endpoints and manage access for extended workforce and contractors. Identify, assess, and mitigate security risks across enterprise applications and third-party integrations. Promote security awareness by educating employees on best practices and data protection. Support Security and IT Operations in diagnosing and resolving enterprise security issues. Foster secure productivity in a dynamic, fast-paced environment. Talk to us about your experience with: Infrastructure - IAM (Okta), AWS, Google Workspace. Security Fundamentals - OWASP, NIST, CIS Benchmarks, ISO 27001, SOC 2 Authentication & Access - SSO, MFA, SCIM, LDAP, Zero Trust, least privilege Automation & Scripting - Python, PowerShell, Bash, automation of identity/security workflows A Note about us: All of our full-time roles are based onsite at our New York City office, where our team thrives on in-person collaboration and dynamic teamwork. Being onsite daily enables us to build strong connections, collaborate effectively to solve challenges, and foster an engaging environment focused on shipping product and delivering exceptional service to our clients. We encourage applicants currently located in or willing to relocate to the NYC area to join us in this exciting, hands-on workspace. Some perks of working for Arch include: Strong Team - You'll be backed by a strong team that consistently exceeds client expectations and ships new products quickly. Your work is high impact - Being part of a small team means you have real responsibility and impact from day one. You'll be involved in discussions that drive the growth and direction of our platform from the very beginning. Product Market Fit - We have strong product market fit, exceptionally low churn, and have grown mostly organically through word of mouth. Team community and camaraderie - We have enormous trust in each other and always do what we can do to support one another. We're always ready to step in to help. Great office - we've invested in a great space for the Arch team to come together, at 18th and Park in Manhattan (the old Buzzfeed / NYT headquarters). Lunch is on Us - Grab lunch on us while you're in the office and take a break to laugh, brainstorm, or just hang out with your teammates over a meal.
    $104k-147k yearly est. Auto-Apply 60d+ ago
  • (545) Information System Security Officer (ISSO)

    Arlo Solutions 3.5company rating

    Washington, DC jobs

    Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future. Position Overview The Mid Information System Security Officer (ISSO) (IAM 2) will support the Defense Security Cooperation Agency (DSCA) Cybersecurity (CYBR) team by providing expertise in Risk Management Framework (RMF) activities, security control assessments, controls validation, and continuous monitoring. The role involves ensuring compliance with RMF, IT, and Federal Information System Controls Audit Manual (FISCAM) guidelines, and supporting the cybersecurity responsibilities detailed in the DSCA CYBR Service Catalog. Work Location: Hybrid (Strongly preferred to live near Washington, DC / Mechanicsburg, PA is also an option) 3 days a week in the office, 2 days a week remote. Clearance: Active Secret Clearance Job Responsibilities and/or Success Factors * Produce all required DOD compliance documentation for RMF, Audit Response and Remediation, Cyber Task Orders, Required Scorecards, Privacy documentation, and other compliance requirements as detailed in the DSCA CYBR Service Catalog. * Draft and coordinate cybersecurity-related documentation to meet required standards, controls, and metrics. * Support all steps of the RMF process (Steps 0-6) required to gain and maintain DOD Information Network (DODIN) and agency commercial network authority to operate. * Assist in categorization, control selection, implementation, and tailoring support, as well as support of assessments from the ISSO role. * Prepare and validate controls in eMASS packages for assessment and review. * Ensure that control requirements are well-defined and that necessary documentation and evidence are gathered for validation and assessment. * Work in the DOD GRC tool Enterprise Mission Assurance Support Service (eMASS) to support control validation. * Conduct continuous monitoring of information systems to detect vulnerabilities, threats, and security incidents. * Utilize security tools and technologies to perform regular scans, assessments, and analysis of system vulnerabilities. * Maintain and update continuous monitoring processes and procedures to ensure they are effective and aligned with organizational requirements. * Assist in the configuration and maintenance of security tools and technologies provided by the CSSP. * Assist in the detection, analysis, and response to cybersecurity incidents. * Participate in incident response activities, including triage, containment, eradication, and recovery. * Document and report on incident response activities, providing detailed analysis and recommendations for improvement. * Provide support to the Watch Officer in monitoring and managing cybersecurity events and incidents. * Maintain situational awareness of the organization's security posture and emerging threats. * Assist with the performance of daily and ad hoc/on-demand vulnerability scans, monthly audit scans, and monthly discovery scans. * Provide weekly vulnerability compliance reporting to ISSMs. * Review and adjust assets, subnets, credentials, and policies to properly manage C5ISR provided Assured Compliance Assessment Solution (ACAS) solutions. * Track and ensure configuration compliance of Enterprise Security Services (ESS) Suite with RMF, ATO, and Inspection requirements. * Assist with the maintenance of completed security waiver forms in coordination with EADSD and ISSM (PMO). * Work with TSD to implement effective scanning, COAMS System Registration, and Continuous Monitoring Scoring (CMRS) Tagging. * Maintain and update Ports, Protocols, and Services Management (PPSM) records, including emergency and exception requests. * Support the maintenance and accuracy of DoD Allow List entries. * Maintain accurate and up-to-date documentation of all RMF, IT, and FISCAM controls validation activities. * Prepare and submit regular reports on the status of security controls, RMF activities, and DevSecOps pipeline security. * Provide detailed documentation and evidence to support security assessments and audits. * Support the maintenance and configuration needed to maintain accurate ingestion of logs from all assets. * Provide summaries of events/incidents, including time of event/incident, anomalous activity identified, asset names and IPs, affected users, and POC for outreach/additional actions. * Complete Cybersecurity Incident Reporting Forms and assist with the detection and analysis of cybersecurity events and incidents. * Support accurate IR POC list, accurate hardware/software and IP inventory, and accurate summary of event/incident. * Document efforts involved in mitigating cybersecurity-related events/incidents that occur within the enterprise. * Support the generation of performance monitoring reports to monitor asset availability. * Support the generation of system health and security posture reports for system owners and ISSMs. * Support accurate hardware and software inventory, accurate ingestion of logs from all assets, and accurate system performance and security posture baselines. * Conduct specified areas of focus/detail for trend analysis. * Support migration information provided by affected system ISSM and report vulnerabilities to appropriate system ISSMs/POCs. * Assist with the reporting to outside agencies, including JFHQ, battle stations, external leadership, and other DOD Agencies. * Support the correlated agency-level POA&Ms with the coordination of POA&Ms from DSCA to outside entities. * Help complete the Cybersecurity Incident Reporting Form, including additional inputs such as personnel logs, system logs, event logs, and accurate software and hardware inventory list. Education and Minimum Qualifications * Must be a US Citizen * Active Secret Clearance * Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field is required OR additional four (4) years of experience * Strong understanding of Risk Management Framework (RMF) processes and security control assessments, including experience with categorization, control selection, implementation, and assessment. * Minimum of two (2) years of relevant experience in cybersecurity, information assurance, or a related field. * Experience in IT controls validation and familiarity with Federal Information System Controls Audit Manual (FISCAM) guidelines. * Experience in incident response, continuous monitoring, and vulnerability management. * Proficiency in using security assessment tools and platforms such as eMASS (Enterprise Mission Assurance Support Service). * Familiarity with continuous monitoring processes and tools. * Experience with incident response processes and tools. * Knowledge of cybersecurity frameworks and standards, such as NIST, ISO 27001, and CIS Controls. Desired Qualifications: * Certifications such as CSSP, CISM, CISA, CAP, Security+, or equivalent is highly desirable. * Experience with OKTA * Experience as an ISSO or otherwise prior experience with IT Risk Management Framework Support. AAP Statement We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.
    $70k-93k yearly est. Auto-Apply 39d ago
  • Information System Security Engineer

    Galaxy Technology Hires 4.2company rating

    Washington, DC jobs

    Information Systems Security Officer Washington, D.C. The Job Our client's team members are subject matter experts in both cybersecurity and US Government policy. Our client is excited about generating creative solutions to ambiguous security requirements. Their mission is deploying software in support of their customers' most critical needs as quickly as possible while upholding the government's trust. They achieve this through close consultation with stakeholders and direct ownership of the Authorization to Operate (ATO) process. They're seeking dedicated and motivated individuals with Systems Administration, Software Development, or Systems Engineering backgrounds to join our team as an Information System Security Officer (ISSO). You will collaborate with other engineers to ensure security policies and settings are in place, build standardized security documentation, and generate evidence of compliance once settings have been applied. Functions Achieve ATOs for our client's software across multiple government customers with minimal oversight. Partner with engineers to analyze software, interpret security requirements, and plan effective control implementations. Provide outstanding customer service, policy expertise, and high-quality documentation. Serve as the primary in-person point of contact for one or more U.S. Government customers on cybersecurity and compliance requirements and questions. Independently interpret the findings of vulnerability scanning utilities such as ACAS (Tenable Nessus) and SCAP (STIG benchmark) and manage a Plan of Actions and Milestones (POA&M) for remediation of findings. Requirements Active U.S. DoD Top Secret clearance with SCI eligibility. Active DOD 8140 or 8570 Certification (e.g. CISSP or Security+). Active IAT II certification. Specific experience working in on-premises environments using security tools such as ACAS, SIEMs, and STIG related software. Minimum 2 years experience directly supporting a customer's ATO/RMF process. Be at customer site 5 days per week. Preferred Skills Proficiency in interpreting and communicating government policy to a diverse audience. Ability to multitask under pressure, using time management and organizational skills. Specific experience working in both traditional on premises environments and cloud environments such as Amazon Web Services (AWS). Experience accrediting IT systems against U.S. Government standards including NIST SP 800-53, CNSSI 1253, and the DISA STIGs, using frameworks like DOD RMF, ICD 503, or DIACAP. Initiative in proactively identifying problems before they arise and creativity in proposing solutions.
    $78k-103k yearly est. 16d ago
  • Network Security Specialist - New Orleans

    Hoist & Crane Service Group 4.1company rating

    New Orleans, LA jobs

    reports on-site to our Corporate Office in New Orleans, LA Responsibilities Include: Collect network performance data, monitor network security, and optimize server capacity to manage the flow of information. Perform network upgrades and fix network errors at client locations. Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team. Maintaining and administering computer networks and related computing environments including systems software, applications software, hardware, and configurations. Ability to implement, administer, and troubleshoot network infrastructure devices, including wireless access points, firewall, routers, switches, controllers. Enhancing network security, as well as documenting network processes and cabling layouts. Determining company needs and coordinating the development and maintenance of network infrastructures with the IT team. Troubleshooting, diagnosing, and resolving hardware, software, and other network and system problems. Protecting data, software, and hardware by coordinating, planning, and implementing network security measures. Extensive knowledge of network connectivity, technologies, protocols, and security. Monitoring network performance to determine if adjustments need to be made. Conferring with network users about solving existing system problems. Running diagnostic tests and performing repairs, as well as developing backup, archiving, and data retrieval procedures. Performing disaster recovery operations and data backups when required. Training junior IT staff, preparing user manuals, and providing remote or onsite technical support. Maintaining, configuring, and monitoring virus protection software and email applications. Ensuring secure and stable server connectivity and testing network protocols. Creating internet domains and optimizing intranet performance. Testing data exchange and communication between computers, routers, modems, and servers. Installing, updating, and configuring end-user networking accessories. Monitoring server capacity and performance to keep up with demand in online traffic. Keeping informed of developments in network technologies and infrastructure. Qualifications: Bachelor's degree in computer science, information science, or similar. Certified CompTIA, Microsoft, or Cisco network professional preferred. A minimum of four years of related experience. Extensive knowledge of network connectivity, technologies, protocols, and security. Exceptional analytical and problem-solving skills. Excellent interpersonal, communication, and collaboration skills. Great organizational and time management skills. Willingness to visit all company locations. Availability to perform network repairs outside of business hours. Windows server 2016/2019, Linux, VM, PowerShell The qualified candidate will be able to pass drug, alcohol, background, and motor vehicle check.
    $58k-88k yearly est. 2d ago

Learn more about Spectrum jobs

View all jobs