Post job

Information Systems Security Officer jobs at The Aerospace Corporation - 1432 jobs

  • Information Systems Security Officer (ISSO)

    The Aerospace Corporation 4.9company rating

    Information systems security officer job at The Aerospace Corporation

    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded research and development center (FFRDC), we are broadly engaged across all aspects of space- delivering innovative solutions that span satellite, launch, ground, and cyber systems for defense, civil and commercial customers. When you join our team, you'll be part of a special collection of problem solvers, thought leaders, and innovators. Join us and take your place in space. Job Summary Aerospace's Security Operations, El Segundo Special Security Department, provides quality leadership, services, and solutions to safeguard people and the environment, secure and protect company information and assets as well as enhance operational efficiency for the Corporation. You will serve as the Information Assurance Specialist responsible for interpreting and applying government customer policies while displaying leadership competencies related to velocity as a part of our strategic imperatives. The selected candidate will be required to work full-time, on-site at our facility in El Segundo, CA. What You'll Be Doing As an Information Assurance Specialist, you will be expected to support the following areas: The establishment, monitoring, and maintenance of classified information systems security compliance posture under the Risk Management Framework from conception through decommission Assist the ISSM in meeting the organizations responsibilities related to classified information systems Ensure approved procedures are in place and executed for clearing, sanitizing, and destroying various types of hardware and media Develop policies and procedures regarding data handling, computers, and networks Coordinate any changes or modifications to hardware, software, or system configurations with the ISSM and Authorization Official The creation and maintenance of information system Assessment & Authorization packages utilizing customer specified tools The incident handling process of classified information system related incidents The transfers of data for users between systems of like and differing classification levels Conduct continuous monitoring of classified information system Ensure audit records are collected, reviewed, and documented Provide guidance and knowledge transfer to junior ISSO team members What You Need to be Successful Minimum Requirements for Information Assurance Specialist III: 5-8 years of relevant experience with High School Diploma Advanced understanding of the Risk Management Framework and Assessment & Authorization processes Experience implementing the following policies: NIST 800-53, JSIG, and related IA doctrine Must possess DoD 8570 Certification (Security+, CISSP, CISM) Current TS/SCI Clearance. U.S citizenship is required to obtain security clearance. In addition to the above, the minimum requirements for the Information Assurance Specialist IV include : 9+ years of relevant experience How You Can Stand Out It would be impressive if you have one or more of these: Bachelors or Master's degree from an accredited program in Cyber Security, Information Systems, Information Technology, or related field 9+ years of experience in the Risk Management Framework Project Management Skill Experience managing or achieving accreditation for enterprise wide area networks Special Access Programs (SAP) knowledge We offer a competitive compensation package where you'll be rewarded based on your performance and recognized for the value you bring to our business. The grade-based pay range for this job is listed below. Individual salaries within that range are determined through a wide variety of factors including but not limited to education, experience, knowledge and skills. (Min - Max) $45.68 - $84.00Pay Basis: Hourly Leadership Competencies Our leadership philosophy is simple: every employee, regardless of level and role, can demonstrate leadership. At Aerospace, our commitment is our people. To cultivate our talent and ensure that we have a strong pipeline of future leaders, we want individuals who: Operate Strategically Lead Change Engage with Impact Foster Innovation Deliver Results Ways We Reward Our Employees During your interview process, our team will provide details of our industry-leading benefits. Benefits vary and are applicable based on Job Type. A few highlights include: Comprehensive health care and wellness plans Paid holidays, sick time, and vacation Standard and alternate work schedules, including telework options 401(k) Plan - Employees receive a total company-paid benefit of 8%, 10%, or 12% of eligible compensation based on years of service and matching contributions; employees are immediately eligible and vested in the plan upon hire Flexible spending accounts Variable pay program for exceptional contributions Relocation assistance Professional growth and development programs to help advance your career Education assistance programs An inclusive work environment built on teamwork, flexibility, and respect We are all unique, from various backgrounds and all walks of life, yet one thing bonds all of us to each other-the belief that we can make a difference. This core belief empowers us to do our best work at The Aerospace Corporation. Equal Opportunity Commitment The Aerospace Corporation is an equal opportunity employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, age, sex (including pregnancy, childbirth, and related medical conditions), sexual orientation, gender, gender identity or expression, color, religion, genetic information, marital status, ancestry, national origin, protected veteran status, physical disability, medical condition, mental disability, or disability status and any other characteristic protected by state or federal law. If you're an individual with a disability or a disabled veteran who needs assistance using our online job search and application tools or need reasonable accommodation to complete the job application process, please contact us by phone at ************ or by email at ****************************** . You can also review Know Your Rights: Workplace Discrimination is Illegal.
    $45.7-84 hourly Auto-Apply 35d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Hardware Security Engineer

    The Aerospace Corporation 4.9company rating

    Information systems security officer job at The Aerospace Corporation

    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded research and development center (FFRDC), we are broadly engaged across all aspects of space- delivering innovative solutions that span satellite, launch, ground, and cyber systems for defense, civil and commercial customers. When you join our team, you'll be part of a special collection of problem solvers, thought leaders, and innovators. Join us and take your place in space. Information Systems and Cyber Division (ISCD) staff couple the latest in information system technologies, such as elastic compute clouds, containerization, microservices, real-time operating systems, and visualization frameworks, with expertise in cyber security, software architecture, software engineering, data science, Artificial Intelligence, process improvement, and software development to deliver responsive, resilient, high-performance software intensive systems to our Intelligence Community, DoD, and civilian customers. The Embedded & Specialized Computing Department focuses on critical space systems R&D and rapid prototyping in the areas of Rapid Prototyping (HW & SW), Resilient/Novel/Accelerated Compute Solutions, and Hardware Security. The group supports a variety of customers including the Space Force's Space Systems Command (SSC), the National Reconnaissance Office (NRO), and other civil partners (e.g., NASA) to resolve unique challenges in implementation and research. The Aerospace Corporation is hiring a Hardware Security Engineer. The qualified candidate will become part of the Hardware Security and Specialty Engineering section of the Embedded & Specialized Computing Department. This is a full time position based in El Segundo, CA, which requires 100% onsite work. What You'll Be Doing Provide hardware security support to government and contracted personnel in the areas of security controls, configuration management, configurable logic device management, and microelectronic security assessments. Directly contribute to hardware security research, development, and applications while helping to secure National Security Space Systems. Define threat paths and develop guidance on FPGA/ASIC/embedded systems vulnerability mitigations. Demonstrate the ability to diagnose, troubleshoot, and debug both hardware and firmware issues effectively. Assist in the development and improvement of microelectronics assurance policy, requirements and documentation. Collaborate with other Aerospace departments and external organizations to develop new technical demonstrations and capabilities. Learn and grow through new work opportunities, trainings, and mentorship from experienced staff What You Need to be Successful Minimum Requirements for the Member of Technical Staff - Embedded Software Engineering Bachelor's degree in Computer Engineering, Electrical Engineering, Computer Science, or STEM related program. 1-3 years of relevant experience in a position related to FPGA design and verification, embedded systems, hardware security or similar fields. Proven experience in FPGA design, including familiarity with HDLs (VHDL, Verilog, and SystemVerilog) Proficiency in coding and scripting with languages such as C, C++, Python, Perl, or Shell Hands-on experience with Linux environments Willingness to travel approx. 15% domestically (customer sites, locations, etc) This position requires ability to obtain and maintain a security clearance, which is issued by the US government. U.S citizenship is required to obtain a security clearance. In addition to the above, the minimum Requirements for the Senior Member of Technical Staff - Embedded Software Engineering include: 4 or more years of relevant experience in a position related to FPGA design and verification, embedded systems, hardware security or similar fields. Proven experience in FPGA design, and major vendor tools including AMD Xilinx, Microchip, or Intel Altera Experience with embedded system design (e.g., Xilinx Zynq/Microblaze, ARM, Altera NIOS) Experience using project management tools such as Jira or MS Project. How You Can Stand Out It would be impressive if you have one or more of these: Advanced degree in Computer Engineering, Electrical Engineering, Computer Science, or STEM related program. Exposure to and understanding of hardware security attacks in the following areas: Hardware Trojans, Side Channel Analysis, Fault Injection, and Reverse Engineering Experience with Root of Trust, Secure Boot, or Hardware Cryptographic Accelerators Possession of relevant industry certifications such as CompTIA Security+ Experience with artificial intelligence or quantum computing applications Current and active TS/SCI clearance We offer a competitive compensation package where you'll be rewarded based on your performance and recognized for the value you bring to our business. The grade-based pay range for this job is listed below. Individual salaries within that range are determined through a wide variety of factors including but not limited to education, experience, knowledge and skills. (Min - Max) $95,200 - $165,500Pay Basis: Annual Leadership Competencies Our leadership philosophy is simple: every employee, regardless of level and role, can demonstrate leadership. At Aerospace, our commitment is our people. To cultivate our talent and ensure that we have a strong pipeline of future leaders, we want individuals who: Operate Strategically Lead Change Engage with Impact Foster Innovation Deliver Results Ways We Reward Our Employees During your interview process, our team will provide details of our industry-leading benefits. Benefits vary and are applicable based on Job Type. A few highlights include: Comprehensive health care and wellness plans Paid holidays, sick time, and vacation Standard and alternate work schedules, including telework options 401(k) Plan - Employees receive a total company-paid benefit of 8%, 10%, or 12% of eligible compensation based on years of service and matching contributions; employees are immediately eligible and vested in the plan upon hire Flexible spending accounts Variable pay program for exceptional contributions Relocation assistance Professional growth and development programs to help advance your career Education assistance programs An inclusive work environment built on teamwork, flexibility, and respect We are all unique, from various backgrounds and all walks of life, yet one thing bonds all of us to each other-the belief that we can make a difference. This core belief empowers us to do our best work at The Aerospace Corporation. Equal Opportunity Commitment The Aerospace Corporation is an equal opportunity employer. All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, age, sex (including pregnancy, childbirth, and related medical conditions), sexual orientation, gender, gender identity or expression, color, religion, genetic information, marital status, ancestry, national origin, protected veteran status, physical disability, medical condition, mental disability, or disability status and any other characteristic protected by state or federal law. If you're an individual with a disability or a disabled veteran who needs assistance using our online job search and application tools or need reasonable accommodation to complete the job application process, please contact us by phone at ************ or by email at ****************************** . You can also review Know Your Rights: Workplace Discrimination is Illegal.
    $95.2k-165.5k yearly Auto-Apply 37d ago
  • Senior Privacy & Security Platform Architect

    Databricks Inc. 3.8company rating

    San Francisco, CA jobs

    A leading data and AI company in San Francisco is seeking a Senior Security Engineer to enhance the safety of its platform. The role demands extensive experience in Data Security and distributed systems. The ideal candidate will have strong leadership and communication skills, with a focus on filling critical gaps in infrastructure. Expected salary range is $220,400 to $297,400 annually. Join us to make impactful changes and attract top talent while representing the security engineering discipline across the organization. #J-18808-Ljbffr
    $220.4k-297.4k yearly 4d ago
  • Cyber ML Engineer: Real-Time Threat Detection

    Phase2 Technology 3.9company rating

    McLean, VA jobs

    A leading technology firm is seeking a Cyber Machine Learning Engineer to build and improve machine learning models for detecting cyber threats. The ideal candidate has significant experience in cyber threat hunting and proficiency in Python and MLOps practices. This position offers a competitive compensation range of $99,000 to $225,000 annually, along with comprehensive benefits including health, life, and professional development opportunities. The job supports flexible work arrangements. #J-18808-Ljbffr
    $99k-225k yearly 5d ago
  • GenAI Physical Synthesis Engineer

    Apple Inc. 4.8company rating

    Austin, TX jobs

    Do you love building intelligent solutions that revolutionize chip design? Do you see the transformative potential of GenAI in physical synthesis workflows? As part of our Silicon Technologies group, you'll pioneer the next generation of AI-powered design automation tools that will accelerate our processor and SoC development. You'll harness cutting-edge GenAI and agentic technologies to solve complex physical synthesis challenges, enabling Apple to deliver even more powerful and efficient silicon. Joining this team means you'll be at the forefront of merging artificial intelligence with chip design, creating intelligent agents that will reshape how we build the technology that powers Apple's beloved devices!You will apply your expertise in GenAI, agentic frameworks, and physical synthesis to develop intelligent automation solutions that transform our RTL-to-GDS implementation flows. You will be directly responsible for creating AI-powered agents using technologies like Model Context Protocol (MCP) that can autonomously optimize physical synthesis processes, predict design challenges, and recommend solutions.Understanding of physical synthesis concepts and CAD flows Experience in Python AI/ML libraries (PyTorch, TensorFlow, Transformers) and MCP or similar agentic frameworks Experience developing AI agents or autonomous systems for technical domains Knowledge of prompt engineering, RAG (Retrieval-Augmented Generation), and fine-tuning techniques Experience with agentic AI frameworks beyond MCP (AutoGen, CrewAI, LangChain agents, etc.) Background in CAD flow or frontend methodology development combined with AI/ML expertise Experience with Low Power implementation flows (UPF) and AI-driven power optimization Familiarity with logical equivalence tools (Conformal LEC, Formality) and opportunities for AI enhancement Knowledge of static timing analysis, place and route tools, and potential AI applications in these domains Experience with cloud platforms and distributed AI model deployment Publications or demonstrated expertise in AI applications for EDA or chip design Array
    $116k-148k yearly est. 8d ago
  • GenAI Physical Synthesis Engineer

    Apple 4.8company rating

    Austin, TX jobs

    **Role Number:** 200*********** Do you love building intelligent solutions that revolutionize chip design? Do you see the transformative potential of GenAI in physical synthesis workflows? As part of our Silicon Technologies group, you'll pioneer the next generation of AI-powered design automation tools that will accelerate our processor and SoC development. You'll harness cutting-edge GenAI and agentic technologies to solve complex physical synthesis challenges, enabling Apple to deliver even more powerful and efficient silicon. Joining this team means you'll be at the forefront of merging artificial intelligence with chip design, creating intelligent agents that will reshape how we build the technology that powers Apple's beloved devices! **Description** You will apply your expertise in GenAI, agentic frameworks, and physical synthesis to develop intelligent automation solutions that transform our RTL-to-GDS implementation flows. You will be directly responsible for creating AI-powered agents using technologies like Model Context Protocol (MCP) that can autonomously optimize physical synthesis processes, predict design challenges, and recommend solutions. **Minimum Qualifications** + Experience with GenAI frameworks, large language models, and AI agent development + Experience with industry standard Synthesis tools such as Fusion Compiler or Genus + Scripting skills in TCL, Python, or Perl for EDA tool automation + Minimum requirement of BS + 10 years of relevant industry experience **Preferred Qualifications** + Understanding of physical synthesis concepts and CAD flows + Experience in Python AI/ML libraries (PyTorch, TensorFlow, Transformers) and MCP or similar agentic frameworks + Experience developing AI agents or autonomous systems for technical domains + Knowledge of prompt engineering, RAG (Retrieval-Augmented Generation), and fine-tuning techniques + Experience with agentic AI frameworks beyond MCP (AutoGen, CrewAI, LangChain agents, etc.) + Background in CAD flow or frontend methodology development combined with AI/ML expertise + Experience with Low Power implementation flows (UPF) and AI-driven power optimization + Familiarity with logical equivalence tools (Conformal LEC, Formality) and opportunities for AI enhancement + Knowledge of static timing analysis, place and route tools, and potential AI applications in these domains + Experience with cloud platforms and distributed AI model deployment + Publications or demonstrated expertise in AI applications for EDA or chip design Apple is an equal opportunity employer that is committed to inclusion and diversity. We seek to promote equal opportunity for all applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, Veteran status, or other legally protected characteristics. Learn more about your EEO rights as an applicant (*********************************************************************************************** .
    $116k-148k yearly est. 8d ago
  • Defense ML Engineer - AI for National Security, Remote

    Phase2 Technology 3.9company rating

    McLean, VA jobs

    A leading technology firm in McLean, Virginia is seeking a Machine Learning Engineer to develop mission-critical AI solutions. You'll collaborate with data engineers and scientists to deploy models that enhance national security. The ideal candidate should have over 3 years of experience in artificial intelligence and a strong proficiency in Python and machine learning techniques. This role offers flexible work arrangements and comprehensive benefits. #J-18808-Ljbffr
    $89k-120k yearly est. 6d ago
  • Lead Security Engineer, GovCloud

    Salesforce, Inc. 4.8company rating

    San Francisco, CA jobs

    *To get the best candidate experience, please consider applying for a maximum of 3 roles within 12 months to ensure you are not duplicating efforts.*Job CategorySoftware EngineeringJob Details****About Salesforce****Salesforce is the #1 AI CRM, where humans with agents drive customer success together. Here, ambition meets action. Tech meets trust. And innovation isn't a buzzword - it's a way of life. The world of work as we know it is changing and we're looking for Trailblazers who are passionate about bettering business and the world through AI, driving innovation, and keeping Salesforce's core values at the heart of it all.**About the team** Salesforce is looking to hire a Lead Security Engineer for Government Cloud Services. We prioritize security and data protection to ensure the confidentiality, integrity, and availability of our systems and information. As we continue to expand our operations, we are seeking a skilled and experienced Lead Security Analyst to join our dynamic team and play a pivotal role in safeguarding our organization against evolving cyber threats. As the Lead Security Engineer, you will be responsible for driving the overall security posture of our organization. You will work closely with cross-functional teams to assess risks, implement security measures, monitor security systems, and respond to security incidents. Your expertise in security frameworks, technologies, and best practices will be critical in developing and executing strategies to protect our critical assets and infrastructure. **What you will be doing:*** Apply security policies to meet security objectives of the system.* Assess adequate access controls based on principles of least privilege and need-to-know.* Assess all the configuration management (change configuration/release management) processes.* Assess the effectiveness of security controls.* Ensure cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.* Develop and implement comprehensive security policies, procedures, and guidelines to ensure the protection of company assets and compliance with applicable regulations.* Conduct (or coordinate with third party partners) regular security risk assessments, vulnerability assessments, and penetration tests to identify potential weaknesses in systems, networks, and applications and coordinate remediation of findings. Drive related mitigations.* Collaborate with stakeholders to design and implement security controls, including firewalls, intrusion detection systems, access controls, and encryption technologies.* Conduct analysis of logs and events, identify gaps for deeper analysis as needed, and coordinate with Detection and Response teams on detection and alerting betterment efforts and uplift.* Stay up-to-date with the latest security trends, vulnerabilities, and threat intelligence, and provide recommendations to proactively address emerging risks.* Liaison with Incident Response teams on incidents and response efforts, recommend and/or instigate remediation actions to prevent future occurrences.* Develop and deliver security awareness and training programs to educate employees on security best practices and promote a culture of security across the organization.* Collaborate with external vendors, partners, and auditors to ensure compliance with security standards and regulations. Further, implement system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation* Maintain documentation of security procedures, incident response plans, and security incident reports.**What you should have:*** Experience with using cloud infrastructure as code (IaC), including Terraform, CloudFormation, or Azure Resource Manager to deploy secure cloud infrastructure, and using version control based on Git* Professional certifications such as CISSP, CISM, CEH, or similar are highly desirable.* Proven experience (5+ years) in a security analyst role, with a focus on information security, incident response, and vulnerability management.* Must be US Citizen operating on US Soil and pass both enhanced background check as long as Criminal Justice background check.* Strong understanding of security frameworks such as ISO 27001, NIST, or CIS Controls, and their practical application.* Extensive knowledge of security technologies, including firewalls, IDS/IPS, SIEM, DLP, antivirus, and endpoint protection systems.* Hands-on experience with vulnerability assessment tools, network scanning tools, and penetration testing methodologies.* Experience with using cloud infrastructure as code (IaC), including Terraform, CloudFormation, or Azure Resource Manager to deploy secure cloud infrastructure, and using version control based on Git“* Proficiency in log analysis, incident response, and forensic investigation techniques.* Excellent communication skills, both written and verbal, with the ability to articulate complex security concepts to technical and non-technical stakeholders.* Demonstrated leadership abilities, with the capacity to motivate and inspire a team.* Strong analytical and problem-solving skills, with the ability to think strategically and develop innovative solutions to security challenges.Joining Salesforce Government Cloud as a Lead Security Engineer provides an exciting opportunity to make a significant impact on the organization's security posture and contribute to its overall success. If you are passionate about security, possess strong leadership skills, and thrive in a fast-paced environment, we encourage you to apply for this challenging and rewarding position.Unleash Your PotentialWhen you join Salesforce, you'll be limitless in all areas of your life. Our benefits and resources support you to find balance and *be your best*, and our AI agents accelerate your impact so you can *do your best*. Together, we'll bring the power of Agentforce to organizations of all sizes and deliver amazing experiences that customers love. Apply today to not only shape the future - but to redefine what's possible - for yourself, for AI, and the world.AccommodationsIf you require assistance due to a disability applying for open positions please submit a request via this .Posting StatementAny employee or potential employee will be assessed on the basis of merit, competence and qualifications - without regard to race, religion, color, national origin, sex, sexual orientation, gender expression or identity, transgender status, age, disability, veteran or marital status, political viewpoint, or other classifications protected by law. This policy applies to current and prospective employees, no matter where they are in their Salesforce employment journey. It also applies to recruiting, hiring, job assignment, compensation, promotion, benefits, training, assessment of job performance, discipline, termination, and everything in between. Recruiting, hiring, and promotion decisions at Salesforce are fair and based on merit. The same goes for compensation, benefits, promotions, transfers, reduction in workforce, recall, training, and education.In the United States, compensation offered will be determined by factors such as location, job level, job-related knowledge, skills, and experience. Certain roles may be eligible for incentive compensation, equity, and benefits. Salesforce offers a variety of benefits to help you live well including: time off programs, medical, dental, vision, mental health support, paid parental leave, life and disability insurance, 401(k), and an employee stock purchasing program. More details about company benefits can be found at the following link: ******************************************* to the San Francisco Fair Chance Ordinance and the Los Angeles Fair Chance Initiative for Hiring, Salesforce will consider for employment qualified applicants #J-18808-Ljbffr
    $130k-175k yearly est. 5d ago
  • Cloud Security Delivery Architect

    Amazon 4.7company rating

    San Francisco, CA jobs

    A leading tech company is looking for a Delivery Consultant specialized in Security and Compliance in San Francisco. This role involves collaborating with customers on AWS migrations, designing secure cloud infrastructures, and providing advisory services for security automation. Candidates should have extensive experience with cloud environments, including AWS and DevSecOps practices. The team focuses on delivering high-quality professional services and requires travel to client locations. Join a diverse group and make an impact in the cloud security field. #J-18808-Ljbffr
    $145k-188k yearly est. 5d ago
  • Senior Cloud Security Engineer - AWS Threat Defense

    Amazon 4.7company rating

    San Francisco, CA jobs

    A leading cloud provider is seeking a Senior Security Engineer to help build and manage services that detect and mitigate cybersecurity threats. Candidates should have extensive experience in security investigations, a deep understanding of security threats, and be proficient in code development using various languages. The role involves mentoring junior engineers and improving security programs within AWS. Strong leadership skills and a collaborative approach are essential for success in this position. #J-18808-Ljbffr
    $147k-192k yearly est. 3d ago
  • Senior Security Engineer, AWS Security

    Amazon 4.7company rating

    San Francisco, CA jobs

    Amazon Web Services (AWS) is the leading cloud provider, providing virtualized infrastructure, storage, networking, messaging, and many other services to customers all over the world. AWS runs a globally distributed environment, operating at massive levels of scale. Businesses, from start-ups to enterprises, run their operations and applications on AWS' multi-tenant infrastructure. Key Job Responsibilities As a Senior Security Engineer, you'll help to build and manage services that detect and automate the mitigation of cybersecurity threats across Amazon's infrastructure. You'll work with data scientists, software development engineers, and other security engineers across multiple teams to develop innovative security solutions. Our services protect the AWS cloud for all customers and preserves our customers' trust in us. You'll get to use the full power and breadth of AWS technologies to build services that proactively protect AWS customers, both internally and externally, from security threats. You will be working in a team of industry-leading security experts working with UK customers to operate and continuously improve industry-leading security programs and processes. This team manages the underlying security programs and processes for personnel security, physical and logical accreditations, education, awareness and training, assurance, and cyber security. This position will have visibility at senior levels of government agencies, commercial institutions, and AWS including interaction with CISOs, CTOs, their staffs, and AWS senior leadership. In addition to a strong understanding of security technologies, tool development, offensive and defensive security tactics, and ideally some experience with distributed systems, you'll need a number of other qualities to be successful in this role. The team has a mix of experience levels, and we're building an environment that celebrates knowledge sharing and mentorship. Our senior engineers, data scientists, and managers truly enjoy mentoring junior engineers, data scientists, and engineers from non-traditional backgrounds through one‑on‑one mentoring and thorough, but kind, code reviews. You will need to be a UK national and able to obtain and maintain a UK Government Security Clearance. Further details found here: ******************************************************************************************* About the Team Diverse Experiences: Amazon Security values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. Why Amazon Security? At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences. Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores. Inclusive Team Culture: AWS values curiosity and connection. Our employee‑led and company‑sponsored affinity groups promote inclusion and empower our people to take pride in what makes us unique. Our inclusion events foster stronger, more collaborative teams. Our continual innovation is fueled by the bold ideas, fresh perspectives, and passionate voices our teams bring to everything we do. Training & Career Growth: We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge‑sharing, training, and other career‑advancing resources here to help you develop into a better‑rounded professional. Work/Life Balance: We value work‑life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve. Basic Qualifications Extensive experience performing security investigations, penetration testing, and/or incident response in the context of large organisations In‑depth understanding of security threats, hands‑on experience detecting and defending from cyber attacks, and experience using big data analytics and orchestration to address security challenges. Ability to develop code with at least one modern language such as Java, Go, TypeScript, Python, Rust and security code review Demonstrated technical leadership in security (e.g., tech lead, developed security architecture for a product or system, led technical component of security project, etc.) Experience leading and coaching junior security engineers to improve their skills and effectiveness Preferred Qualifications BS or MS in a STEM related field. Understanding of the Mitre ATT&CK framework and knowledge of host and network telemetry data (e.g., process lists, application logs, NetFlow) Have awareness and understanding of current cyber security threats, actors and their techniques. Experience with data science, big data analytics technology stack, analytic development for endpoint and network security, and streaming technologies (e.g., Kafka, Spark Streaming, and Kinesis) Strong sense of ownership combined with collaborative approach to overcoming challenges and influencing organisational change Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice (**************************************** to know more about how we collect, use and transfer the personal data of our candidates. Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit ********************************************************* for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. Posted: January 24, 2026 (Updated 2 days ago) #J-18808-Ljbffr
    $147k-192k yearly est. 3d ago
  • Senior Security Engineer

    OSI Engineering 4.6company rating

    Mountain View, CA jobs

    A globally leading consumer device company headquartered in Mountain View, CA is looking for a Senior Offensive Security Engineer to proactively identify, exploit, and help eliminate security weaknesses across our web platforms and AI/ML systems. In this role, you will think like an attacker, operate with engineering rigor, and work closely with product, platform, and AI teams to raise the security bar across the organization. You will lead complex penetration tests, design novel attack techniques for web and modern AI-powered applications, and influence secure-by-design architecture at scale. Responsibilities: • Conduct offensive security assessments on large-scale web applications, REST APIs, and cloud-backed services. • Identify and validate vulnerabilities including injection flaws, access control issues, authentication/authorization weaknesses, SSRF, deserialization, and logic bugs. • Evaluate LLM-based systems and AI agents for prompt injection, data exfiltration, model abuse and jailbreaks • Design and execute red team-style engagements simulating real-world adversaries. • Develop custom exploitation tools, PoCs, and fuzzers for web and AI attack surfaces. • Identify systemic security weaknesses and collaborate with engineering teams to drive long-term mitigations. • Review architectures and designs for new products with an attacker mindset. • Produce clear, actionable security reports and present findings to technical and executive stakeholders. Minimum Qualifications: • Master's degree in Computer Science, Computer Engineering, Information Security, or a closely related technical field. • Doctorate (PhD) in a relevant field is a plus but not required. • 5+ years of experience in offensive security, penetration testing, or red teaming. • Deep expertise in web application security. • Strong understanding of API security. • Hands-on experience testing AI/ML or LLM-based systems, or strong motivation with demonstrated research in this area. • Proficiency in at least one scripting or programming language (Python, Go, JavaScript, or similar). • Strong knowledge of common exploitation techniques and attacker tooling. Preferred Qualifications: • Prior work on adversarial ML, red-teaming AI systems, or secure LLM pipeline design. • Experience with cloud security (AWS, GCP, Azure) and containerized environments. • Background in security research, published CVEs, CTF experience, blog posts, or conference talks. • OSCP, OSEP, OSWE, CRTO, or similar. What We Look For: • An attacker-first mindset with strong engineering discipline. • Ability to go beyond scanners and find novel, high-impact vulnerabilities. • Clear communicator who can translate complex exploits into actionable fixes. • Curiosity about emerging threats, especially in AI security. • Ownership mentality and comfort operating in ambiguous problem spaces. Type: Contract Duration: 12 months with extension Work Location: Mountain View, CA (on site) Pay Range: $ 85.00 - $ 100.00 (DOE)
    $85-100 hourly 3d ago
  • Staff Cyber Security Engineer

    Infovision Inc. 4.4company rating

    Dallas, TX jobs

    As a Staff Cyber Security Engineer, you will collaborate closely with the Engineering Organization, IT, Information Security, Software Engineers, and our DevOps departments. Your team will ensure our embedded platforms, back-end and front-end services, cloud infrastructure, DevOps pipelines, data pipelines, and software are secured in the most efficient manner. You will work to develop new systems and procedures to counteract threat vectors that arise within our cloud and embedded environments. The ideal candidate is passionate about understanding complex architectures they work in and is adept at translating non-functional security requirements to red-team actions. The ideal candidate is also a meticulous problem solver who can work under pressure when required and remains current with the latest attack trends and technologies. Preferred Qualifications: Master's degree in Computer Science or relevant field of study. Cyber related certifications such as CompTIA CySA+, CISSP, CHFI, OSCP. Experience in digital forensics. Working experience within a DevSecOps environment. Minimum Qualifications Expertise in secure API integration design and implementation Expertise in the OWASP top 10 for web applications, and LLMs along with mitigation and remediation techniques Bachelor's degree in Computer Science, Information Technology, or a related field. Extensive experience in cybersecurity within software engineering environments. Experience with a programming language (C/C++, Python, Go, JavaScript / TypeScript, Rust) Proficiency in cloud security, threat detection, data analysis, and incident response. Expertise with security tools such as BurpSuite, PyRIT, Garak, MitM, Metasploit, Wireshark, Wiz, Sonarqube Experience standing up Security tooling to automate security hygiene, analysis, reporting or otherwise host tools or enhance intel capabilities Strong technical knowledge of microservice architecture, content distribution networks, data lakes, serverless functions, and databases. Familiarity with various cloud platforms and DevOps tools. Excellent analytical and problem-solving skills. Strong communication skills, both written and verbal. Ability to independently develop and implement security solutions. Experience in developing and implementing automated security testing functions.
    $77k-100k yearly est. 5d ago
  • Security Engineer

    TSR Consulting 4.9company rating

    San Francisco, CA jobs

    6 months +Contract-San Francisco CA Remote role Pay $100 on w-2 Key Management Engineer Role Overview: We are seeking a skilled Key Management Engineer to join our team, with expertise in the architecture and tools for both symmetric and asymmetric key management, including Public Key Infrastructure (PKI). This role requires experience managing cryptographic keys for applications, databases, infrastructure, including storage subsystems, and working with cloud-based tools and solutions. A solid understanding of infrastructure utilizing cryptographic keys, experience with Hardware Security Modules (HSMs), basic development skills in Java and Python, and strong documentation and execution abilities are essential. Key Responsibilities: • Design and implement architectures for symmetric and asymmetric key management solutions with a focus on PKI. • Manage and maintain cryptographic key infrastructure services, including key lifecycle management processes from creation to retirement. • Deploy and secure cryptographic keys for applications, databases, infrastructure, and storage subsystems, ensuring adherence to security standards and best practices. • Utilize and configure tools and products for key management, including those used in cloud environments such as AWS KMS, Azure Key Vault, and Google Cloud Key Management Service. • Integrate key management solutions into existing infrastructure, collaborating with cross-functional teams to ensure comprehensive security measures. • Configure, deploy, and manage Hardware Security Modules (HSMs) for secure key storage and operations, utilizing products like Thales, Gemalto, or SafeNet. • Develop scripts and applications using Java and Python to automate key management tasks and processes. • Document key management procedures, policies, and architecture designs to enhance operational efficiency and facilitate effective knowledge transfer. • Conduct regular assessments and audits of cryptographic systems to ensure compliance with industry best practices and standards. • Provide training and guidance to technical teams on key management best practices and security protocols. Qualifications: • Proven experience in designing and implementing key management solutions, with emphasis on symmetric and asymmetric cryptography, including PKI. • Experience in key lifecycle management processes, involving key creation, distribution, rotation, and revocation. • Ability to deploy and secure cryptographic keys effectively for applications, databases, infrastructure, and storage subsystems. • Strong understanding of key management infrastructure and protocols, including HSM configurations and operations. • Experience with cloud-based key management tools like AWS KMS, Azure Key Vault, and Google Cloud Key Management Service. • Basic development skills in Java and Python with the ability to script and automate routine processes. • Hands-on experience with key management tools and products such as Thales HSM, Gemalto HSM, SafeNet, Microsoft Active Directory Certificate Services, OpenSSL, etc. • Excellent documentation skills, able to produce clear and comprehensive technical documents and user guides. • Strong analytical and problem-solving skills to troubleshoot complex issues. • Demonstrated experience working in environments requiring strict security and compliance standards, familiar with frameworks like NIST, ISO 27001, and CIS. Technical Skills: • Familiarity with network security concepts and secure communication protocols. • Understanding of cloud security concepts and practices. • Knowledge of network security concepts and secure communication protocols. • Experience with security standards and frameworks (e.g., NIST, ISO 27001). Preferred Qualifications: • Bachelor's degree in Computer Science, Information Security, or a related field. • Experience with security operations tools and best practices. • Application Process: Interested candidates should submit their resume along with a cover letter detailing relevant experience and qualifications. This role represents an excellent opportunity to contribute substantially to the security infrastructure
    $126k-171k yearly est. 3d ago
  • Director Information Security

    Celestica 4.5company rating

    Richardson, TX jobs

    We are seeking an experienced and strategic Director of Data Security and Governance to lead our comprehensive data protection program. This critical role involves establishing and enforcing data security policies to meet stringent regulatory requirements, including the International Traffic in Arms Regulations (ITAR), and fulfilling complex data security obligations within commercial contracts. You will be responsible for building our data governance framework from the ground up, including implementing a robust data classification program and deploying modern security solutions like Data Security Posture Management (DSPM) and Data Rights Management (DRM)., in addition to managing the DLP program. Detailed Description Performs tasks such as, but not limited to, the following: Strategy & Policy Development: Design, implement, and oversee the enterprise-wide data security and governance strategy, policies, and standards. Compliance & Regulatory Oversight: Serve as the primary expert on data security requirements for ITAR and other government regulations. Ensure all data handling processes and systems are compliant with contractual and legal obligations. Data Classification Program: Develop and manage a corporate data classification policy and program. Work with business units to identify, classify, and protect sensitive and regulated data throughout its lifecycle. Technology Implementation: Lead the selection, implementation, and operationalization of a Data Security Posture Management (DSPM) solution to provide visibility and control over our data landscape. Data Rights Management (DRM): Implement and manage a DRM solution to control access to and usage of sensitive data, ensuring that only authorized individuals can access and interact with protected information according to defined policies. Risk Management: Conduct regular data security risk assessments, identify vulnerabilities, and oversee remediation efforts to mitigate risks. Incident Response: Develop and lead the data-focused components of the incident response plan, including containment, investigation, and reporting of data breaches. Collaboration & Training: Partner closely with Legal, IT, Engineering, and business stakeholders to embed data security principles into their operations. Develop and deliver training programs to raise awareness about data governance and security best practices. Typical Experience Minimum of 10 years of experience in cybersecurity and data governance, with at least 4 years in a leadership role. Proven track record of successfully implementing a data classification program across an enterprise. Direct experience with the procurement and deployment of DSPM and DRM technologies. Skills & Knowledge: Deep understanding of data protection principles, including encryption, access control, data loss prevention (DLP), and data discovery. Expert knowledge of security frameworks such as NIST Cybersecurity Framework, NIST 800-171, and ISO 27001. Excellent project management skills and the ability to lead cross-functional teams. Strong communication skills, with the ability to articulate complex security concepts to technical and non-technical audiences. Certifications (Preferred): Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Certified Information Privacy Professional (CIPP) Typical Education Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent experience. A Master's degree is a plus. Educational requirements may vary by geography. Physical Demands Duties of this position are performed in a normal office environment. Duties may require extended periods of sitting and sustained visual concentration on a computer monitor or on numbers and other detailed data. Repetitive manual movements (e.g., data entry, using a computer mouse, using a calculator, etc.) are frequently required. Notes This job description is not intended to be an exhaustive list of all duties and responsibilities of the position. Employees are held accountable for all duties of the job. Job duties and the % of time identified for any function are subject to change at any time. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Celestica's policy on equal employment opportunity prohibits discrimination based on race, color, creed, religion, national origin, gender, sexual orientation, gender identity, age, marital status, veteran or disability status, or other characteristics protected by law. This policy applies to hiring, promotion, discharge, pay, fringe benefits, job training, classification, referral and other aspects of employment and also states that retaliation against a person who files a charge of discrimination, participates in a discrimination proceeding, or otherwise opposes an unlawful employment practice will not be tolerated. All information will be kept confidential according to EEO guidelines. COMPANY OVERVIEW: Celestica (NYSE, TSX: CLS) enables the world's best brands. Through our recognized customer-centric approach, we partner with leading companies in Aerospace and Defense, Communications, Enterprise, HealthTech, Industrial, Capital Equipment and Energy to deliver solutions for their most complex challenges. As a leader in design, manufacturing, hardware platform and supply chain solutions, Celestica brings global expertise and insight at every stage of product development - from drawing board to full-scale production and after-market services for products from advanced medical devices, to highly engineered aviation systems, to next-generation hardware platform solutions for the Cloud. Headquartered in Toronto, with talented teams spanning 40+ locations in 13 countries across the Americas, Europe and Asia, we imagine, develop and deliver a better future with our customers. Celestica would like to thank all applicants, however, only qualified applicants will be contacted. Celestica does not accept unsolicited resumes from recruitment agencies or fee based recruitment services. This location is a US ITAR facility and these positions will involve the release of export controlled goods either directly to employees or through the employee's movement within the facility. As such, Celestica will require necessary information from all applicants upon an applicant's acceptance of employment to determine if any export control exemptions or licenses must be filed.
    $100k-124k yearly est. 5d ago
  • Senior Security Engineer

    Loft Orbital, Inc. 4.0company rating

    San Francisco, CA jobs

    Loft Orbital is revolutionizing access to space by building reliable, shareable satellites that drastically reduce the time and complexity traditionally required to get to orbit. We operate satellites, fly customer payloads, and handle entire missions from end‑to‑end. We're a close‑knitted team of space enthusiasts, software experts, and cutting‑edge technologists, all working together to make space simple for our customers. As a Senior Security Engineer on our Security and Compliance Team, your mission will be to ensure that our highly automated, containerized, and globally distributed infrastructure remains secure throughout its lifecycle, from architecture to incident response. You'll be at the heart of our DevSecOps efforts, collaborating directly with infrastructure, software, product, and solution teams to scale Loft's security maturity while embracing our startup agility and culture. This is a hands‑on, deeply collaborative role, offering broad scope, rapid growth opportunities, and yes, a chance to contribute to space missions. About the Role: Champion DevSecOps best practices by designing and implementing security controls directly into our CI/CD pipelines (e.g., GitLab CI). Lead and automate application and infrastructure security assessments, including threat modeling and code review. Partner with developers and SREs to identify, remediate, and prevent vulnerabilities through secure design and practical guidance. Design, build, and maintain secure architecture patterns for containerized, cloud‑native, and distributed workloads. Develop and maintain automated security tooling, such as container image scanning, IaC validation, and policy‑as‑code. Collaborate on automated security tooling for container image scanning, IaC validation, and RBAC compliance. Support incident response workflows, including detection, forensics, root cause analysis, and post‑mortems. Provide technical mentorship and real‑time enablement to help teams adopt a “secure‑by‑default” mindset. Contribute to internal security tools and automation using Python, Go, or other modern languages. Continuously improve how we measure and scale security across our SRE and infrastructure platforms. Must Haves: Deep experience with cloud security in AWS, Azure, or GCP environments. Strong knowledge of container and Kubernetes security in production environments. Proficiency in at least one modern programming language (e.g., Python, Go, C++). Hands‑on experience with zero‑trust architecture, service mesh, and software‑defined networking. Solid understanding of DevSecOps pipelines, IaC tools, and secure build processes. Hands‑on experience with vulnerability scanning, SAST/DAST tools, and automated security testing. Proven success in fast‑paced, highly collaborative environments, ideally at a startup or scale‑up. Comfortable working closely with developers and SREs in an enablement‑first security culture. Clear, concise communication and documentation skills. Ability to thrive in a multicultural, globally distributed engineering team. Nice to Haves: Practical experience with policy‑as‑code (OPA, Sentinel, etc.). Understanding of software‑defined networking and security policy enforcement in mesh environments. Familiarity with modern SRE practices, observability, and resilience engineering. Contributions to open‑source security tools or frameworks. Interest or experience in space operations or aerospace systems. Some of Our Awesome Benefits: 100% company‑paid medical, dental, and vision insurance option for employees and dependents Flexible Spending (FSA) and Health Savings (HSA) Accounts offered with an employer contribution to the HSA 100% employer paid Life, AD&D, Short‑Term, and Long‑Term Disability insurance Flexible Time Off policy for vacation and sick leave, and 12 paid holidays 401(k) plan and equity options Daily catered lunches and snacks in office International exposure to our team in France Fully paid parental leave; 14 weeks for birthing parent and 10 weeks for non‑birthing parent Carrot Fertility provides comprehensive, inclusive fertility healthcare and family‑forming benefits with financial support Off‑sites and many social events and celebrations Relocation assistance when applicable $140,250 - $190,000 a year State law requires us to tell you the base compensation range for this role, which is $140,250- $190,000 per year. This is determined by your education, experience, knowledge, skills, and abilities. The salary range for this role is intentionally wide as we evaluate individuals based on their unique experience and abilities to fit our needs. Most importantly, we are excited to meet you, and see if you are a great fit for our team. What we can't quantify for you are the exciting challenges, supportive team, and amazing culture we enjoy. * Research shows that while men apply to jobs where they meet an average of 60% of the criteria, women and other underrepresented people tend to only apply when they meet 100% of the qualifications. At Loft, we value respectful debate and people who aren't afraid to challenge assumptions. We strongly encourage you to apply, even if you don't check all the boxes. Who We Are Loft: Space Made Simple. Founded in 2017, Loft provides governments, companies, and research institutions with a fast, reliable, and flexible way to deploy missions in orbit. We integrate, launch, and operate spacecraft, offering end‑to‑end missions as a service across Earth observation, IoT connectivity, in‑orbit demonstrations, national security missions, and more. Leveraging our existing space infrastructure and an extensive inventory of satellite buses, Loft is reducing years‑long integration and launch timelines to months. With more than 25 missions flown, Loft's flight heritage and proven technologies enable customers to focus on their mission objectives. At Loft, you'll be given the autonomy and ownership to solve significant challenges, but with a close‑knot and supportive team at your back. We believe that diversity and community are the foundation of an open culture. We are committed to hiring the best people regardless of background and make their time at Loft the most fulfilling period of their career. We value kind, supportive and team‑oriented collaborators. It is also crucial for us that you are a problem solver and a great communicator. As our team is international, you will need strong English skills to better collaborate, easily communicate complex ideas and convey important messages. With 4 satellites on‑orbit and a wave of exciting missions launching soon, we are scaling up quickly across our offices in San Francisco, CA | Golden, CO | and Toulouse, France. As an international company your resume will be reviewed by people across our offices so please attach a copy in English. #J-18808-Ljbffr
    $139k-189k yearly est. 4d ago
  • Offensive Security Engineer, Hardware

    Openai 4.2company rating

    San Francisco, CA jobs

    Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture. About the Role We're seeking an exceptional Principal-level Offensive Security Engineer to challenge and strengthen OpenAI's security posture. This role isn't your typical red team job - it's an opportunity to engage broadly and deeply, craft innovative attack simulations, collaborate closely with defensive teams, and influence strategic security improvements across the organization. You have the chance to not only find vulnerabilities but actively drive their resolution, automate offensive techniques with cutting-edge technologies, and use your unique attacker perspective to shape our security strategy. This role will be primarily focused on continuously testing our hardware products and related services. In this role you will: Collaborate proactively with engineering teams to enhance security and mitigate risks in hardware, firmware, and software. Perform comprehensive penetration testing on our diverse suite of products. Leverage advanced automation and OpenAI technologies to optimize your offensive security work. Present insightful, actionable findings clearly and compellingly to inspire impactful change. Influence security strategy by providing attacker-driven insights into risk and threat modeling. You might thrive in this role if you have: 7+ years of hands‑on experience or exceptional accomplishments demonstrating equivalent expertise. Exceptional skill in code review, identifying novel and subtle vulnerabilities. Demonstrated mastery assessing complex technology stacks, including: Proven ability to reverse engineer bootrom images, firmware, or silicon‑level components. Deep familiarity with low‑level kernel operations, secure boot processes, and hardware‑software interactions. Hands‑on experience building and validating secure boot chains and threat models. Proficiency with hardware debugging tools (UART, JTAG, SWD, oscilloscopes, logic analyzers). Solid programming skills in C/C++, Python, or assembly for embedded systems. Industry experience securing consumer hardware (e.g., mobile devices, IoT, chipsets). Excellent written and verbal communication skills for technical and non‑technical audiences. Strong intuitive understanding of trust boundaries and risk assessment in dynamic contexts. Excellent coding skills, capable of writing robust tools and automation for offensive operations. Ability to communicate complex technical concepts effectively through compelling storytelling. Proven track record of not just finding vulnerabilities but actively contributing to solutions in complex codebases. Prior experience working in tech startups or fast‑paced technology environments. Experience in related disciplines such as Software Engineering (SWE), Detection Engineering, Site Reliability Engineering (SRE), Security Engineering, or IT Infrastructure. About OpenAI OpenAI is an AI research and deployment company dedicated to ensuring that general‑purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non‑public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations. To notify OpenAI that you believe this job posting is non‑compliant, please submit a report through this form . No response will be provided to inquiries unrelated to job posting compliance. We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link. At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology. #J-18808-Ljbffr
    $125k-175k yearly est. 2d ago
  • Principal Offensive Security Engineer, Hardware

    Openai 4.2company rating

    San Francisco, CA jobs

    A leading AI research company in San Francisco is hiring a Principal Offensive Security Engineer. In this role, you will craft attack simulations and collaborate with teams to strengthen security posture across products. The ideal candidate has over 7 years of experience, exceptional programming skills, and a strong background in identifying vulnerabilities. This position offers an opportunity to influence security strategy and contribute to innovative projects in a dynamic environment. #J-18808-Ljbffr
    $125k-175k yearly est. 2d ago
  • Senior Analyst, Information Assurance

    EAB 4.6company rating

    Richmond, VA jobs

    At EAB, our mission is to make education smarter and our communities stronger. We work with more than 2,800 institutions to drive transformative change through data-driven insights and best-in-class capabilities. From kindergarten to college to career, EAB partners with leaders and practitioners to accelerate progress and drive results across enrollment, student success, institutional strategy, data analytics, and advancement. We work with each partner differently, tailoring our portfolio of research, technology, and marketing and enrollment solutions to meet the unique needs of every leadership team, as well as the students and employees they serve. At EAB, we serve not only our partner institutions but each other-that's why we are always working to make sure our employees love their jobs and are invested in their communities. See how we've been recognized for this dedication to our employees by checking out our recent awards. For more information, visit our careers page. The Role in Brief Senior Analyst, Information Assurance The Senior Information Assurance Analyst will be responsible for assessing the risks associated with EAB technology applications and platforms and/or third-party service providers that support those platforms. The Senior Information Assurance Analyst will also support and contribute to business continuity management and planning activities, conduct and support information security audits, assess risks associated with third-party service providers, develop security awareness training content, and support the measuring and reporting of key risk indicators and metrics across the enterprise. This individual will be a valued member of the EAB Information Security team. We work to keep our partners and EAB colleagues safe from cyber-attacks and prevent the theft of data and intellectual property. We think big and strategic but aren't afraid to get into the weeds. Relationship building and stakeholder management across teams is integral to our continued success. We believe that diversity makes for better, more creative solutions to tough problems. We're easy to work with and eager to help. Most importantly, we work every day to contribute to the mission of making education smarter and our communities stronger. If this sounds like you, we'd love to talk to you. This position is located in Washington, DC or Richmond, VA. Primary Responsibilities: * Plan and execute the day-to-day activities of Information Technology (IT) audit engagements, including scope development and developing annual audit plans. * Perform IT risk assessments and audits of internal initiatives and critical third party/vendor relationships against criteria descending from industry standard information security frameworks and industry regulations, such as ISO/IEC 27001, NIST SP 800-53, FAIR, SSAE 18 SOC II Type I and Type II, DoD compliance frameworks (e.g., NIST 800-171, CMMC, FedRAMP), NIST CSF, FERPA, and privacy regulations like GDPR and CCPA * Review vendor security documentation, questionnaires, and attestations; assess risk impact and recommend risk treatment options. * Support RFPs/security questionnaires (HECVATs, CAIQ, custom questionnaires) from clients with clear SLAs and maintain upkeep of Security & Compliance Trust portals. * Support security assessments for DoD or federally funded service offerings, including understanding data classification and safeguarding requirements. * Evaluate the design and effectiveness of technology controls throughout the business cycle * Identify control gaps and risks, recommend mitigation strategies, and track remediation activities through closure. * Communicate IT audit findings and mitigation strategies to senior management, technology leaders, and the CISO * Help identify performance improvement opportunities across EAB business units * Assist in the development of risk treatment plans to address areas of strategic and tactical IT and information risks in both business operations and technology paradigms * Assist with the development and maintenance of information security policies and standards * Support development and maintenance of an information security compliance and metrics program for consistent management reporting of risks to sensitive information and technology resources across the enterprise * Help with prospective hiring and mentoring opportunities as the program scales and grows Basic Qualifications: * Bachelor's degree in Computer Science, Information Systems, or equivalent professional experience * Minimum of 3+ years of experience as an IT auditor, security analyst, or related field * Knowledge of information security and IT risk management concepts and practices including frameworks and regulatory regimes * Ability to work in a fast-paced business environment with global, geographically distributed teams * Strong understanding of cloud infrastructure and cloud-based SaaS environments * Exceptional interpersonal skills with ability to gain the confidence and respect of technology leaders and senior level executives * Excellent organizational direction, time management, problem-solving, prioritization, leadership, and interpersonal skills while proactively seeking input * Strong leadership and communication skills, technical knowledge, and the ability to write at a publication quality level to communicate findings and recommendations to the EAB's senior management team * Comfortable collaborating with IT, Product, Legal, and Commercial teams to drive sales enablement opportunities * A desire to learn new skills, research new technologies, and get better every day Ideal Qualifications: * Professional experience in conducting IT or operational risk assessments or IT auditing through examination and analysis of internal controls and business risks * Experience in supporting security compliance as the internal compliance resource of physical and cloud-based infrastructure * Experience with planning internal audit procedures and preparing final reports for senior management and the CISO * Familiarity with the usage of modern GRC tooling (i.e., Drata, Vanta, ServiceNow, RSA Archer) to facilitate development of information asset inventories, risk and compliance assessments, risk metrics collection, and risk reporting * Experience with enterprise business continuity planning and testing activities * Experience with building out and managing an organization's Security and Compliance Trust Centers * Experience developing information security policy, security awareness and training content, and supporting materials * Experience delivering information security awareness training to technical and non-technical audiences * Willingness to learn new things and take on additional responsibilities across multiple information security and privacy domains * CISSP, CISA, CRISC, CISM, AWS or GCP cloud certifications, other information security or IT auditing certifications * Experience with risk and controls frameworks including (ISO 27001, NIST CSF, NIST RMF, FAIR, COBIT, NIST SP 800-53, SSAE 18 SOC II Type I and Type II audits, DoD compliance frameworks (e.g., NIST 800-171, CMMC, FedRAMP), FERPA, and privacy regulations like GDPR and CCPA) * Familiarity and experience with the FAIR (Factor Analysis of Information Risk) model for quantifying information risk * Commitment to embracing a continual learning environment and contributing to a dynamic and welcoming culture of fairness, authenticity, and belonging in support of EAB's mission, values, and aspiration If you've reached this section of the job description and are unsure of whether to apply, please do! At EAB, we welcome new perspectives and learn from each other's unique experiences. We would encourage you to submit an application if this is a role you would be passionate about doing every day. Compensation: The anticipated starting salary range for this role is $80,000 - $97,000 per year. Actual salary varies due to factors that may include but not be limited to relevant experience, skills, and location. At EAB, it is not typical for an individual to be hired at or near the top of the starting salary range for their role. This hire will additionally be eligible for discretionary bonus or incentive compensation. Variable compensation may depend on various factors, including, without limitation, individual and organizational performance. Benefits: Consistent with our belief that our employees are our most valuable resource, EAB offers a competitive and inclusive benefits package. Our benefits currently include: * Medical, dental, and vision insurance plans; dependents and domestic partners eligible * 20+ days of PTO annually, in addition to paid firm and floating holidays * Daytime leave policy for community service and flextime for fitness activities (up to 10 hours per month each) * 401(k) retirement savings plan with annual discretionary company matching contribution * Health savings account, healthcare and dependent care flexible spending account, and pre-tax commuter plans * Employee assistance program with counseling services and resources available to all employees and immediate family * Wellness programs including gym discounts, incentives to promote healthy living, and family access to the leading app for sleep, meditation, and relaxation * Fertility treatment coverage and adoption or surrogacy assistance * Paid parental leave with phase back to work program for birthing and non-birthing parents * Access to milk shipping service to support nursing employees during business travel * Discounted pet health insurance coverage for dog and cat family members * Company-provided life, AD&D, and disability insurance * Financial wellness resources and membership in a robust employee discount program * Access to employee resource groups, merit-based advancement, and dynamic professional growth opportunities Benefits kick in day one; learn more at eab.com/careers/benefits. This opening is not eligible for visa sponsorship at this time; EAB will thus consider candidates who possess U.S. work authorization that does not require employment-based visa sponsorship now or in the future. At EAB, we believe that to fulfill our mission to "make education smarter and our communities stronger" we need team members who bring a diversity of perspectives to the table and are committed to fostering a workplace where each team member is valued, respected and heard. To that end, EAB is an Equal Opportunity Employer, and we make employment decisions on the basis of qualifications, merit and business need. We don't discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. #LI-DS1
    $80k-97k yearly 7d ago
  • Sr. Information Assurance Analyst

    Dkw Communications Inc. 4.6company rating

    California jobs

    Come Join Our Team! DKW Communications, Inc. (DKW) is a government contractor providing professional and technical services to various government agencies i.e. defense, law enforcement and security. We are currently looking for an Senior Information Assurance Analyst to join our winning team. The individual hired for this position will provide support for our government customers located in the Greater San Diego area. This is an onsite position. Overview The IA Analyst will support our NAVY SWMFTS contract, and be responsible for duties such as (but not limited to): Collect and maintain data needed to meet system cybersecurity reporting Ensure that protection and detection capabilities are acquired or developed using the IS security engineering approach and are consistent with organization-level cybersecurity architecture. Participate in an information security risk assessment during the Security Assessment and Authorization process. Participate in the development or modification of the computer environment cybersecurity program plans and requirements. Recognize a possible security violation and take appropriate action to report the incident, as required Ensure plans of actions and milestones or remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc. Provide technical documents, incident reports, and findings from computer examinations, summaries, and other situational awareness information to higher headquarters Develop and maintain RMF Assess and Authorize documentation required to achieve an Authority to Operate (ATO). Prepare and maintain information systems ATO record on the Navy's Enterprise Mission Assurance Support Service (eMASS) Run vulnerability assessment tools; ACAS vulnerability scanner, Security Content Automation Protocol (SCAP), STIG Viewe Manage system/network vulnerabilities using the Vulnerability Remediation and Assets Manager (VRAM) Qualifications/Requirements MUST have or be able to obtain an active Secret Security Clearance. Minimum of Bachelor's Degree in Computer Science, Information Systems or a relevant technical discipline. An Associate's degree + 3 years of experience may be substituted for degree requirement. 3-5 years of cyber security experience in secure network and system design, analysis, procedure/test generation, test execution and implementation of computer/network security mechanisms. Must have an IAT Level II Certification or higher. **All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status.**
    $96k-126k yearly est. Auto-Apply 60d+ ago

Learn more about The Aerospace Corporation jobs

View all jobs