Post job

Cyber Security Engineer jobs at The Walt Disney Company - 216 jobs

  • Senior Security Engineer - Detection & Cloud Automation (Remote)

    Liveramp 3.6company rating

    San Francisco, CA jobs

    A leading data collaboration platform in San Francisco seeks a Senior Security Engineer to enhance threat detection and automation strategies. The role involves implementing detection logic, automating workflows, and developing scalable cloud solutions. Candidates should have a Bachelor's degree in a relevant field and strong skills in security automation and detection engineering. This position offers competitive compensation with a base range of $131,500 to $203,000. #J-18808-Ljbffr
    $131.5k-203k yearly 5d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Senior Platform Security Engineer - Hybrid (AWS, Kubernetes)

    Gemini 4.9company rating

    San Francisco, CA jobs

    A leading cryptocurrency platform is seeking a Senior Platform Security Engineer in San Francisco. This role involves securing infrastructure through hardening services and enhancing cloud and non-cloud systems. Candidates should have 5+ years in Information Security, strong development skills in Python or Go, and experience with AWS and Kubernetes. The position requires in-person collaboration twice a week, and offers a competitive salary range of $140,000 - $200,000, alongside comprehensive benefits and a hybrid work model. #J-18808-Ljbffr
    $140k-200k yearly 1d ago
  • Senior IAM Security Engineer

    Gemini 4.9company rating

    San Francisco, CA jobs

    About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all - bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact. The Department: Platform Security The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. We provide secure-by-default infrastructure, consumable security services, and expert consultation to engineering teams for secure cloud and non-cloud infrastructure. The Role: Senior IAM Security Engineer The Platform Security team builds zero-trust identity and access management foundations so every Gemini team can authenticate and authorize securely. As a Senior IAM Security Engineer, you will contribute to building IAM services, authentication systems, and identity infrastructure that protect both our workforce and workloads. This is a hands-on engineering role where you'll write production code daily, not just configuration. You'll participate in the development and operation of IAM solutions from design through production. This role requires solid software development skills, strong understanding of authentication protocols, and hands‑on experience with PKI and secrets management. You'll collaborate with engineering teams to implement secure access patterns while maintaining usability. This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office. Responsibilities Develop and maintain IAM services and authentication systems using Python or Go Implement workforce identity solutions with Okta and multi-IdP architectures Build and support PKI infrastructure and certificate lifecycle management for service authentication Contribute to secrets management platforms with automated rotation and zero‑knowledge patterns Implement authorization services, access control systems, and policy engines Collaborate with engineering teams on identity implementation and secure authentication patterns Participate in on‑call rotation for platform security incidents Minimum Qualifications Solid software development skills in Python or Go with experience building production services Strong understanding of identity protocols and standards including OAuth2, SAML, OpenID Connect, and WebAuthn Hands‑on experience with PKI systems, certificate management, and practical knowledge of cryptography Experience with HashiCorp Vault or similar secrets management platforms Working knowledgeof AWS IAM, STS, and cloud identity services Proficiency in Terraform for infrastructure-as-code Experience supporting high‑availability authentication services Preferred Qualifications Experience with Okta, Auth0, or similar enterprise IdP platforms Familiarity with SPIFFE/SPIRE and workload identity systems Understanding of zero‑trust architecture and BeyondCorp principles Experience with hardware security modules (HSM) and key management systems Interest in contributing to identity or cryptography open source projects It Pays to Work Here The compensation & benefits package for this role includes: Competitive starting salary A discretionary annual bonus Long-term incentive in the form of a new hire equity grant Comprehensive health plans 401K with company matching Paid Parental Leave Flexible time off Salary Range The base salary range for this role is between $140,000 - $200,000 in the State of New York, the State of California and the State of Washington. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate's compensation, we consider a number of factors including skillset, experience, job scope, and current market data. In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in-person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know. #J-18808-Ljbffr
    $140k-200k yearly 5d ago
  • Senior Platform Security Engineer

    Gemini 4.9company rating

    San Francisco, CA jobs

    About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all - bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact. The Department: Security (Platform Security) The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. We provide secure‑by‑default infrastructure, consumable security services, and expert consultation to engineering teams for secure cloud and non‑cloud infrastructure. The Role: Senior Platform Security Engineer The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. As a Senior Platform Security Engineer, you will build and maintain security controls across diverse environments-from hardening cloud and container orchestration systems to enhancing our non‑cloud infrastructure. This is a hands‑on engineering role where you'll write production code daily, not just configuration. You'll own security initiatives from design through production operations. This role requires strong software development skills, practical experience with AWS and Kubernetes security, and the ability to partner with engineering teams to enable secure delivery. You will also apply expertise in critical neighboring areas, including PKI, core cryptography, identity management, and network security, to ensure comprehensive protection across the stack. This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office. Responsibilities: Build and maintain security controls for AWS and Kubernetes (EKS) environments, including guardrails, container security scanning, and infrastructure‑as‑code (Terraform) security Support IAM initiatives by helping to design and maintain access controls, role‑based access control (RBAC) models, and identity governance workflows Design, deploy, and maintain internal security services and platforms that other engineering teams rely on Act as a security partner to engineering teams, helping them make secure architecture decisions without blocking innovation Work across functions-partnering with AppSec, Threat Detection, and GRC-to identify and reduce risk across the entire stack Participate in on‑call rotation for platform security incidents Minimum Qualifications: 5+ years of experience in Information Security, SRE, or Systems Engineering Strong software development skills in Python or Go with experience building production services Solid experience with AWS (or similar cloud providers), including familiarity with IAM roles, VPCs, and native security controls Hands‑on experience with Kubernetes/EKS and containerization concepts, including pod security policies and container lifecycle Understanding of IAM principles, RBAC, and least‑privilege access models Proficiency in Terraform for infrastructure‑as‑code Ability to self‑scope and execute technical goals with minimal supervision Preferred Qualifications: Experience with identity providers (IdP) like Okta and standards like SAML/OIDC Experience writing Policy‑as‑Code (e.g., Open Policy Agent/Rego) Background in Linux systems engineering or network security Experience building and operating high‑availability critical systems It Pays to Work Here The compensation & benefits package for this role includes: Competitive starting pay A discretionary annual bonus Long‑term incentive in the form of a new hire equity grant Comprehensive health plans 401K with company matching Paid Parental Leave Flexible time off Salary Range: The base salary range for this role is between $140,000 - $200,000 in the State of New York, the State of California and the State of Washington. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate's compensation, we consider a number of factors including skillset, experience, job scope, and current market data. In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in‑person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know. #LI-DS1 #J-18808-Ljbffr
    $140k-200k yearly 1d ago
  • Senior Platform Security Engineer - Hybrid (AWS, Kubernetes)

    Gemini 4.9company rating

    New York, NY jobs

    A leading cryptocurrency platform is seeking a Senior Platform Security Engineer in San Francisco. This role involves securing infrastructure through hardening services and enhancing cloud and non-cloud systems. Candidates should have 5+ years in Information Security, strong development skills in Python or Go, and experience with AWS and Kubernetes. The position requires in-person collaboration twice a week, and offers a competitive salary range of $140,000 - $200,000, alongside comprehensive benefits and a hybrid work model. #J-18808-Ljbffr
    $140k-200k yearly 1d ago
  • Senior Platform Security Engineer

    Gemini 4.9company rating

    New York, NY jobs

    About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all - bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact. The Department: Security (Platform Security) The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. We provide secure‑by‑default infrastructure, consumable security services, and expert consultation to engineering teams for secure cloud and non‑cloud infrastructure. The Role: Senior Platform Security Engineer The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. As a Senior Platform Security Engineer, you will build and maintain security controls across diverse environments-from hardening cloud and container orchestration systems to enhancing our non‑cloud infrastructure. This is a hands‑on engineering role where you'll write production code daily, not just configuration. You'll own security initiatives from design through production operations. This role requires strong software development skills, practical experience with AWS and Kubernetes security, and the ability to partner with engineering teams to enable secure delivery. You will also apply expertise in critical neighboring areas, including PKI, core cryptography, identity management, and network security, to ensure comprehensive protection across the stack. This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office. Responsibilities: Build and maintain security controls for AWS and Kubernetes (EKS) environments, including guardrails, container security scanning, and infrastructure‑as‑code (Terraform) security Support IAM initiatives by helping to design and maintain access controls, role‑based access control (RBAC) models, and identity governance workflows Design, deploy, and maintain internal security services and platforms that other engineering teams rely on Act as a security partner to engineering teams, helping them make secure architecture decisions without blocking innovation Work across functions-partnering with AppSec, Threat Detection, and GRC-to identify and reduce risk across the entire stack Participate in on‑call rotation for platform security incidents Minimum Qualifications: 5+ years of experience in Information Security, SRE, or Systems Engineering Strong software development skills in Python or Go with experience building production services Solid experience with AWS (or similar cloud providers), including familiarity with IAM roles, VPCs, and native security controls Hands‑on experience with Kubernetes/EKS and containerization concepts, including pod security policies and container lifecycle Understanding of IAM principles, RBAC, and least‑privilege access models Proficiency in Terraform for infrastructure‑as‑code Ability to self‑scope and execute technical goals with minimal supervision Preferred Qualifications: Experience with identity providers (IdP) like Okta and standards like SAML/OIDC Experience writing Policy‑as‑Code (e.g., Open Policy Agent/Rego) Background in Linux systems engineering or network security Experience building and operating high‑availability critical systems It Pays to Work Here The compensation & benefits package for this role includes: Competitive starting pay A discretionary annual bonus Long‑term incentive in the form of a new hire equity grant Comprehensive health plans 401K with company matching Paid Parental Leave Flexible time off Salary Range: The base salary range for this role is between $140,000 - $200,000 in the State of New York, the State of California and the State of Washington. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate's compensation, we consider a number of factors including skillset, experience, job scope, and current market data. In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in‑person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know. #LI-DS1 #J-18808-Ljbffr
    $140k-200k yearly 1d ago
  • Senior Security Engineer, Threat Detection & Response

    Gemini 4.9company rating

    New York, NY jobs

    About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all - bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact. The Department: Security (Threat Detection & Response) In the emerging industry of digital assets, there is nothing more important than trust (which is why Gemini's very first hires were Security experts). The Gemini Security team forms the backbone of all that we do and is as diverse as the number of challenges we tackle in the cryptospace. From security architecture and engineering to maintenance of cold storage systems and data centers to cybersecurity and litigation support, our team ensures that our customers, clients, and employees are safe, secure, and supported. The Role: Senior Security Engineer In this role, you will be part of the team responsible for designing, building, and automating detection, response and intelligence gathering solutions, developing unique and creative detection mechanisms, monitoring security events, and leading responses to any security incidents. This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office. Responsibilities Own individual security solutions throughout their lifecycle, including design, development, and deployment, in order to continuously improve Gemini's ability to detect and respond to advanced, targeted threats Develop and improve processes and tools that supports the team rapidly iterating and responding to threats Gemini faces Engage in incident response and investigation efforts Analyze technical threat data to extract TTPs, malware techniques, and adversary methods Create and enhance countermeasures and detections for malware, attacker techniques, threat actor methodology, and suspicious events associated with intelligence obtained by the Gemini Team Produce well documented, resilient and manageable code that supports the streamlining and automation of the above Provide mentorship and guidance to junior engineers on the team in their growth and implementation of the above Minimum Qualifications Significant DFIR/Threat Detection and Response experience Scripting proficiency in a common programming language (e.g. Python, Go) Hands‑on familiarity with CI/CD, infrastructure as code, and microservices Aptitude in the use of containerization technologies (eg. Docker) Experience in the design and implementation of detection signatures spanning multiple security log sources (Splunk, EDR, etc.) Able to troubleshoot and debug issues, and demonstrate a methodical approach to root‑cause analysis Excellent oral and written communication skills, including the ability to interact effectively with leadership, engineers, vendors and peers Preferred Qualifications Familiarity in the use of container orchestration systems (e.g. Kubernetes) Experience applying CI/CD concepts to the development and deployment of security detection mechanisms and tools Experience in host and memory forensics (including live response) for Windows, OSX, and / or Linux Experience with the analysis of new log and data sources and methodically incorporating them into a detection pipeline Practical experience applying analysis frameworks (e.g Kill Chain, ATT&CK, etc) Experience in automating any of the above using existing APIs and tools It Pays to Work Here The compensation & benefits package for this role includes: Competitive starting pay A discretionary annual bonus Long‑term incentive in the form of a new hire equity grant Comprehensive health plans 401K with company matching Paid Parental Leave Flexible time off Salary Range: The base salary range for this role is between $140,000 - $200,000 in the State of New York, the State of California and the State of Washington. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate's compensation, we consider a number of factors including skillset, experience, job scope, and current market data. In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in‑person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know. #LI-DS1 #J-18808-Ljbffr
    $140k-200k yearly 2d ago
  • Senior IAM Security Engineer

    Gemini 4.9company rating

    New York, NY jobs

    About the Company Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all - bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact. The Department: Platform Security The Platform Security team secures Gemini's infrastructure through service hardening and by developing and supporting a suite of foundational tools. We provide secure-by-default infrastructure, consumable security services, and expert consultation to engineering teams for secure cloud and non-cloud infrastructure. The Role: Senior IAM Security Engineer The Platform Security team builds zero-trust identity and access management foundations so every Gemini team can authenticate and authorize securely. As a Senior IAM Security Engineer, you will contribute to building IAM services, authentication systems, and identity infrastructure that protect both our workforce and workloads. This is a hands-on engineering role where you'll write production code daily, not just configuration. You'll participate in the development and operation of IAM solutions from design through production. This role requires solid software development skills, strong understanding of authentication protocols, and hands‑on experience with PKI and secrets management. You'll collaborate with engineering teams to implement secure access patterns while maintaining usability. This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office. Responsibilities Develop and maintain IAM services and authentication systems using Python or Go Implement workforce identity solutions with Okta and multi-IdP architectures Build and support PKI infrastructure and certificate lifecycle management for service authentication Contribute to secrets management platforms with automated rotation and zero‑knowledge patterns Implement authorization services, access control systems, and policy engines Collaborate with engineering teams on identity implementation and secure authentication patterns Participate in on‑call rotation for platform security incidents Minimum Qualifications Solid software development skills in Python or Go with experience building production services Strong understanding of identity protocols and standards including OAuth2, SAML, OpenID Connect, and WebAuthn Hands‑on experience with PKI systems, certificate management, and practical knowledge of cryptography Experience with HashiCorp Vault or similar secrets management platforms Working knowledgeof AWS IAM, STS, and cloud identity services Proficiency in Terraform for infrastructure-as-code Experience supporting high‑availability authentication services Preferred Qualifications Experience with Okta, Auth0, or similar enterprise IdP platforms Familiarity with SPIFFE/SPIRE and workload identity systems Understanding of zero‑trust architecture and BeyondCorp principles Experience with hardware security modules (HSM) and key management systems Interest in contributing to identity or cryptography open source projects It Pays to Work Here The compensation & benefits package for this role includes: Competitive starting salary A discretionary annual bonus Long-term incentive in the form of a new hire equity grant Comprehensive health plans 401K with company matching Paid Parental Leave Flexible time off Salary Range The base salary range for this role is between $140,000 - $200,000 in the State of New York, the State of California and the State of Washington. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate's compensation, we consider a number of factors including skillset, experience, job scope, and current market data. In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in-person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know. #J-18808-Ljbffr
    $140k-200k yearly 5d ago
  • Senior IAM Security Engineer - Zero-Trust Auth & PKI

    Gemini 4.9company rating

    San Francisco, CA jobs

    A leading crypto platform is seeking a Senior IAM Security Engineer to secure identity and access management systems. The role involves developing IAM services, collaborating with engineering teams, and ensuring secure authentication patterns. Candidates should have solid software development skills in Python or Go, experience with PKI and secrets management, and a strong understanding of identity protocols. This position offers a competitive salary and a hybrid work approach, with office presence required twice a week in San Francisco or New York City. #J-18808-Ljbffr
    $136k-192k yearly est. 5d ago
  • Senior IAM Security Engineer - Zero-Trust Auth & PKI

    Gemini 4.9company rating

    New York, NY jobs

    A leading crypto platform is seeking a Senior IAM Security Engineer to secure identity and access management systems. The role involves developing IAM services, collaborating with engineering teams, and ensuring secure authentication patterns. Candidates should have solid software development skills in Python or Go, experience with PKI and secrets management, and a strong understanding of identity protocols. This position offers a competitive salary and a hybrid work approach, with office presence required twice a week in San Francisco or New York City. #J-18808-Ljbffr
    $112k-159k yearly est. 5d ago
  • Cyber Security Engineer

    Mondo 4.2company rating

    Tampa, FL jobs

    Apply now: Cyber Security Engineer (or Senior Engineer), location is Hybrid. The start date is ASAP for this 3-month contract-to-hire position. Job Title: Cyber Security Engineer Start Date Is: ASAP Duration: 3-month Contract-to-Hire Compensation Range: Regular Engineer: $55-65/hr on W2 ONLY! Senior Engineer: $65-75/hr on W2 ONLY Job Description: Support the engineering and implementation of cybersecurity solutions across the infrastructure to strengthen enterprise-wide security posture. Day-to-Day Responsibilities: Maintain endpoint, network, server, and application security tools and policies Collaborate with cross-functional IT teams to resolve and prevent security issues Review and enhance security architecture and models Administer authentication, proxy filtering, and vulnerability scanning tools Contribute to compliance documentation and audits (SOX, PCI) Engineer security solutions and monitor infrastructure for potential threats Define and implement security standards and disaster recovery plans Mentor junior staff and contribute to security awareness initiatives Requirements: Must-Haves: 3 years of experience for Engineer, 7 for Senior Engineer Strong communication and collaboration skills Endpoint Protection tools experience Proxy filtering/web security gateways SSO/Authentication infrastructure knowledge Teachable and team-oriented personality US Citizen or Green Card Holder Nice-to-Haves: Firewall administration experience Cloud Security fundamentals Background in auditing or compliance Familiarity with encryption technologies and disaster recovery
    $65-75 hourly 13d ago
  • Cyber Security Engineer I/II/III - Top Secret Clearance | Norfolk, VA

    Cambridge International Systems Inc. 4.6company rating

    Norfolk, VA jobs

    Job Description Cyber Security Engineer I/II/III - Top Secret Clearance | Norfolk, VA Cambridge International Systems, Inc. Join a dynamic global team united by shared values: commitment, integrity, and perseverance. At Cambridge, you'll work alongside top talent worldwide, tackling some of today's most complex and critical challenges in defense and security. We are currently seeking a Cyber Security Engineer to support operations in Norfolk, VA. This is a full-time, CONUS position requiring an active DoD Top Secret clearance. This position is contingent upon contract award with an expected award date of March 2026. What You'll Do As a Cyber Security Engineer, you will play a critical role in monitoring, analyzing, and detecting cyber events and incidents within information systems and networks, that serve U.S. government missions at the Cambridge corporate office. You will: Monitor and analyze networks, system logs, and security alerts to identify, investigate, and escalate cybersecurity incidents. Support enterprise cyber defense operations by maintaining security tools and aligning activities with RMF, NIST, and organizational risk frameworks. Assess cybersecurity requirements, conduct vulnerability and risk assessments, and identify security gaps across systems and architectures. Develop, implement, and maintain cybersecurity controls, policies, and A&A documentation to support accreditation and compliance. Lead vulnerability management and incident response efforts, including remediation tracking and regulatory reporting. Test and validate security controls to ensure operational effectiveness and compliance. Design and support secure DoD Information Assurance architectures and system integrations. Provide cybersecurity training, lead post-incident reviews, and promote a strong security awareness culture. What You'll Bring Required Qualifications: Education & Experience: HS Diploma + 5 years of relevant experience Technical Expertise: Experience with the RMF Process Experience with policy and RMF artifact development. Ability to lead a team of cyber security professionals and direct tasking and provide mentorship and leadership. Experience web-based applications designed to support the RMF and A&A such as eMASS and MCCAST. Certifications: CISSP or CASP+ certification Must have a current and active DoD Top Secret security clearance. Proficient with modern IT tools and infrastructure technologies Develops technical solutions to complex problems. Exercises considerable latitude in determining objectives and approaches to assignment. Preferred (Nice to Have): Desire experience with HBSS. Travel & Passport Up to 25% travel, CONUS may be required; some overnight stays possible. Work Environment Compliance with vaccination and medical requirements for TDY/OCONUS roles as per Vaccine Recommendations by AOR | Health.mil. Office setting: Primarily an office-based role in Norfolk, VA. Standard desk/computer work with flexibility for walking and movement on site Must be able to work in an office environment, sitting at a desk, looking at a computer for most of the workday. Work is physically comfortable; the employee has discretion about sitting, walking, standing, etc. May be required to travel short distances to offices/conference rooms and buildings on site. Background & Security Employment is contingent upon successful background investigation Drug screening may be required for federal contract compliance Benefits & Perks We believe in investing in our team-both professionally and personally: Medical, dental, vision, life, accident, and critical illness insurance 401(k) immediate vesting and match Paid time off and company holidays Generous tuition & training support Relocation assistance Sign-on and performance-based bonuses Employee referral program Access to Tickets at Work, EAP, wellness initiatives, and more Join Us If you're driven by mission, technology, and teamwork-we want to hear from you. Cambridge is growing, and this position is just one of many opportunities on our global team. Know someone perfect for the role? Referrals are welcome-both employees and non-employees may qualify for a bonus. Apply today and help shape the future of secure cloud computing for national security. About Cambridge International Systems At Cambridge, innovation grows through diversity. We are proud to be an equal opportunity employer, committed to creating an inclusive and supportive work environment for all. Learn more at ******************* Powered by JazzHR WaITgtMbTB
    $83k-112k yearly est. 17d ago
  • Cyber Security Engineer - TS/SCI Clearance | Quantico, Virginia

    Cambridge International Systems Inc. 4.6company rating

    Quantico, VA jobs

    Job Description Cyber Security Engineer - TS/SCI Clearance | Quantico, Virginia Cambridge International Systems, Inc. Join a dynamic global team united by shared values: commitment, integrity, and perseverance. At Cambridge, you'll work alongside top talent worldwide, tackling some of today's most complex and critical challenges in defense and security. We are currently seeking a Cyber Security Engineer to support operations in Quantico, Virginia. This is a full-time, CONUS position requiring an active DoD TS/SCI clearance. What You'll Do As a Cyber Security Engineer, you will play a critical role in in monitoring, analyzing, and detecting cyber events and incidents within information systems and networks, that serve U.S. government missions at the Cambridge Customer Site. You will: Monitor and analyze network traffic, system logs, and security alerts to detect, investigate, and escalate cybersecurity threats and incidents, ensuring timely response and documentation. Support integrated cyber defense operations aligned with organizational risk management frameworks; maintain security tools to enable continuous monitoring and RMF/NIST authorization activities. Establish and apply methods to quantify and measure cyber risk, supporting risk-based decision-making across the enterprise. Evaluate business and system architectures to determine cybersecurity requirements and ensure alignment with information security standards and best practices. Conduct system security, vulnerability, and risk assessments to identify security gaps, integration challenges, and compliance issues. Develop cost estimates and implementation plans for cybersecurity solutions based on risk and compliance assessments. Prepare, implement, and enforce cybersecurity policies, standards, and Assessment & Authorization (A&A) requirements. Plan, implement, upgrade, and monitor security controls to enhance system resilience and support accreditation processes. Identify cybersecurity vulnerabilities, recommend remediation strategies, and track mitigation efforts to closure. Respond to and investigate cybersecurity incidents, restore protections, and produce required incident reports in accordance with regulatory guidance. Develop and execute security test scripts and validation activities to verify the effectiveness of technical and operational controls. Design, develop, and integrate DoD Information Assurance architectures and secure system components within computing, network, and enclave environments. Ensure system architectures, including programs of record and special-purpose processing nodes, meet functional, performance, and security requirements. Support secure integration of platform IT and special-purpose systems with existing infrastructure. Develop and deliver cybersecurity training, lead post-incident reviews, and promote a strong security awareness culture. What You'll Bring Required Qualifications: Education & Experience: HS Diploma + 5 years of relevant experience Technical Expertise: Experience with the RMF Process Experience with policy and RMF artifact development. Ability to lead a team of cyber security professionals and direct tasking and provide mentorship and leadership. Experience web-based applications designed to support the RMF and A&A such as eMASS and MCCAST. Certifications: CompTIA CISSP or CASP+ certification CompTIA CySA+ certification Must have a current and active DoD TS/SCI security clearance. Proficient with modern IT tools and infrastructure technologies Preferred (Nice to Have): Desire experience with HBSS. Travel & Passport Up to 25% travel, CONUS and OCONUS may be required. Work Environment Compliance with vaccination and medical requirements for TDY/OCONUS roles as per Vaccine Recommendations by AOR | Health.mil. Office setting: Primarily an office-based role in Quantico, VA Standard desk/computer work with flexibility for walking and movement on site Must be able to work in an office environment, sitting at a desk, looking at a computer for most of the workday. Work is physically comfortable; the employee has discretion about sitting, walking, standing, etc. May be required to travel short distances to offices/conference rooms and buildings on site. Background & Security Employment is contingent upon successful background investigation Drug screening may be required for federal contract compliance Benefits & Perks We believe in investing in our team-both professionally and personally: Medical, dental, vision, life, accident, and critical illness insurance 401(k) immediate vesting and match Paid time off and company holidays Generous tuition & training support Relocation assistance Sign-on and performance-based bonuses Employee referral program Access to Tickets at Work, EAP, wellness initiatives, and more Join Us If you're driven by mission, technology, and teamwork-we want to hear from you. Cambridge is growing, and this position is just one of many opportunities on our global team. Know someone perfect for the role? Referrals are welcome-both employees and non-employees may qualify for a bonus. Apply today and help shape the future of secure cloud computing for national security. About Cambridge International Systems At Cambridge, innovation grows through diversity. We are proud to be an equal opportunity employer, committed to creating an inclusive and supportive work environment for all. Learn more at ******************* Powered by JazzHR pWtaUTW2fo
    $82k-110k yearly est. 9d ago
  • Cyber Security Engineer

    Ampersand Solutions Group 4.8company rating

    Huntsville, AL jobs

    Job DescriptionSalary: Contingent on award, Ampersand Solutions Group ( AMPERSAND ) has a requirement for one or more Cyber Security Engineers who will support a critical DoD mission providing cybersecurity authorization support for systems, networks, and applications in a hybrid multicloud environment. Scope: Oversees the implementation of DoDD 8530.01, DoDD 8500.2, DoDI 8510.1, DoDI 8510.01, Risk Management Framework (RMF), and other applicable NIST and CNSS Information Assurance (IA) directives, instructions, and guidelines. Interfaces with DoD Information Assurance Management (ISSM) and case management. Capability to design, develop, and implement solutions that meet network and system security requirements. Will perform vulnerability/risk analysis on computer systems, networks, and applications. Leads and manages the implementation of required network security to properly safeguard all computer systems, networks, and software applications. Documents all in accordance with formal security and risk assessments and supporting artifacts associated with the DoD Designated Accrediting Authority and Certification Authority process. Drives cyber strategy and provides insight into all policy and technical decisions. Experience in providing Communications Security (COMSEC) Custodial Experience in testing to validate established security requirements, recommending security requirements and safeguards, supporting the formal testing required by government accrediting authorities, and preparing System Security Plans. Required Qualifications Minimum 0-10 years of relevant, related experience plus: Bachelors degree from an accredited institution in engineering, science, or other relevant field or: Associates Degree in a relevant field from an accredited institution plus 2 years relevant, related experience High School Diploma / GED from an accredited institution plus 4 years relevant, related experience Ability to obtain and maintain a DoD Security Clearance at the appropriate level DoD Instruction 8570.01M IA certification Willing to periodically travel in support of test events Desired Qualifications ACTIVE DoD SECRET or TOP SECRET Clearance Experience supporting the US Ballistic Missile Defense System Certified in relevant cybersecurity tools and processes Experience in obtaining ATOs in hybrid multicloud classified systems AWS, Azure, VMWare experience Necessary Qualifications Honesty, superior ethics Interpersonal savvy, excellent communication skills Ability to work as a team Initiative Positive attitude Professionalism
    $80k-104k yearly est. 11d ago
  • Cyber Security Engineer

    Ampersand Solutions Group 4.8company rating

    Redstone Arsenal, AL jobs

    Contingent on award, Ampersand Solutions Group ( AMPERSAND ) has a requirement for one or more Cyber Security Engineers who will support a critical DoD mission providing cybersecurity authorization support for systems, networks, and applications in a hybrid multicloud environment. Scope: Oversees the implementation of DoDD 8530.01, DoDD 8500.2, DoDI 8510.1, DoDI 8510.01, Risk Management Framework (RMF), and other applicable NIST and CNSS Information Assurance (IA) directives, instructions, and guidelines. Interfaces with DoD Information Assurance Management (ISSM) and case management. Capability to design, develop, and implement solutions that meet network and system security requirements. Will perform vulnerability/risk analysis on computer systems, networks, and applications. Leads and manages the implementation of required network security to properly safeguard all computer systems, networks, and software applications. Documents all in accordance with formal security and risk assessments and supporting artifacts associated with the DoD Designated Accrediting Authority and Certification Authority process. Drives cyber strategy and provides insight into all policy and technical decisions. Experience in providing Communications Security (COMSEC) Custodial Experience in testing to validate established security requirements, recommending security requirements and safeguards, supporting the formal testing required by government accrediting authorities, and preparing System Security Plans. Required Qualifications Minimum 0-10 years of relevant, related experience plus: Bachelors degree from an accredited institution in engineering, science, or other relevant field or: Associates Degree in a relevant field from an accredited institution plus 2 years relevant, related experience High School Diploma / GED from an accredited institution plus 4 years relevant, related experience Ability to obtain and maintain a DoD Security Clearance at the appropriate level DoD Instruction 8570.01M IA certification Willing to periodically travel in support of test events Desired Qualifications ACTIVE DoD SECRET or TOP SECRET Clearance Experience supporting the US Ballistic Missile Defense System Certified in relevant cybersecurity tools and processes Experience in obtaining ATOs in hybrid multicloud classified systems AWS, Azure, VMWare experience Necessary Qualifications Honesty, superior ethics Interpersonal savvy, excellent communication skills Ability to work as a team Initiative Positive attitude Professionalism
    $80k-104k yearly est. 60d+ ago
  • Cyber Security Analyst III- Secret Clearance | Philadelphia, PA

    Cambridge International Systems 4.6company rating

    Philadelphia, PA jobs

    Cambridge International Systems, Inc. Join a dynamic global team united by shared values: commitment, integrity, and perseverance. At Cambridge, you'll work alongside top talent worldwide, tackling some of today's most complex and critical challenges in defense and security. We are currently seeking a Cyber Security Analyst to support operations in Philadelphia, PA. This is a full-time, CONUS position requiring an active DoD Secret clearance. What You'll Do As a Cyber Security Analyst, you will play a critical role in planning and implementing comprehensive security measures to safeguard computer systems, networks, and sensitive data from unauthorized access, data loss, and service interruptions, that serve U.S. government missions. You will: Plans and implements security measures to protect computer systems, networks, and data from loss and service interruptions. Analyzes and documents security risks, breaches, and other cyber security incidents and the damage they cause. Develops and implements a network disaster recovery plan and oversees the monitoring of the computer networks for security issues. Installs and operates security software and measures to protect systems and information infrastructure, including firewalls and data encryption programs. Collaborate with the security team to perform tests and find network weaknesses. Assesses data collections/ tools via ACAS Experience utilizing HBSS, web content filters, SIEM, and firewall systems Works with management to develop best practices. Researches and keeps current on the latest IT intelligence technologies, trends, and security standards. What You'll Bring Required Qualifications: Education & Experience: This position requires a Bachelor's degree in Computer Science, Information Technology or an equivalent Science, Technology, and Engineering & Math (STEM) degree and 6+ years of experience; years of experience may be substituted in lieu of degree. DoD 8570.1-M Security+ required; CISSP, CASP+ or similar IAT lvl. III highly preferred. IAM level II required Assist End Customer in attaining and maintain DOD, DON, and NAVSEA continuous inspection readiness posture 6+ years of performing analysis of logs and events. 6+ years of automating processes through scripting and assessing impacts 6+ years of Windows Administration or Engineering experience. Experience with the following publications NIST 800-53/A, NIST 800-37, CNSS 1253, NIST 800-60 Rev I&II, ECSM series Development of SCTMs, POA&M's, Vulnerability Reports and CSSP tool implementation highly preferred. Categorization experience and familiarity with assisting stakeholders evaluate risk and develop Concept of Operations artifact(s) to develop various ATO packages. MCP, MCITP, MCSA, MCSA on Windows 2000 or higher strongly preferred. Some demonstrated experience either operating, administering, or testing Linux preferred. Experience with EMass & MCCAST (and other software tools) highly preferred. 6+ years of RMF experience. Experience for implementing and mapping RMF lifecycle to project lifecycles. Must have a current and active DoD Secret security clearance. Proficient with modern IT tools and infrastructure technologies Travel & Passport Up to 25% travel, both CONUS and OCONUS may be required; some overnight stays possible. Must have an active passport to support OCONUS travel Work Environment Compliance with vaccination and medical requirements for TDY/OCONUS roles as per Vaccine Recommendations by AOR | Health.mil. Office setting: Primarily an office-based role in Philadelphia, PA Standard desk/computer work with flexibility for walking and movement on site Must be able to work in an office environment, sitting at a desk, looking at a computer for most of the workday. Work is physically comfortable; the employee has discretion about sitting, walking, standing, etc. May be required to travel short distances to offices/conference rooms and buildings on site. This position requires long hours and/or nights/weekend work. This position requires long periods of sitting or standing. This position requires communicating with others verbally and/or written. This position requires working in a stressful environment. This position requires dealing with conflict. This position works under pressure and with strict deadlines. This position requires focus and attention to detail. Background & Security Employment is contingent upon successful background investigation Drug screening may be required for federal contract compliance Benefits & Perks We believe in investing in our team-both professionally and personally: Medical, dental, vision, life, accident, and critical illness insurance 401(k) immediate vesting and match Paid time off and company holidays Generous tuition & training support Relocation assistance Sign-on and performance-based bonuses Employee referral program Access to Tickets at Work, EAP, wellness initiatives, and more Join Us If you're driven by mission, technology, and teamwork-we want to hear from you. Cambridge is growing, and this position is just one of many opportunities on our global team. Know someone perfect for the role? Referrals are welcome-both employees and non-employees may qualify for a bonus. Apply today and help shape the future of secure cloud computing for national security. About Cambridge International Systems At Cambridge, innovation grows through diversity. We are proud to be an equal opportunity employer, committed to creating an inclusive and supportive work environment for all. Learn more at *******************
    $79k-107k yearly est. Auto-Apply 60d+ ago
  • Cyber Security Engineer

    Sky 4.7company rating

    Milan, TN jobs

    The Cyber Security Engineer will be responsible for handling consultancy requests on cyber security topics and leading specific projects as a Project Manager. The role requires strong project management skills and a deep understanding of cyber security technologies, regulations, and best practices. Responsibilities: * Handle consultancy requests on cyber security topics, providing solutions and recommendations. * Participate as a Project Manager in cyber security projects, ensuring adherence to timelines and costs. * Collaborate with all teams to integrate security best practices into business processes. * Support the management of security incidents. * Define and update policies in line with industry regulations and standards. * Support internal training and awareness initiatives on cyber security topics. * Stay constantly updated on emerging threats and cyber security best practices. Key Requirements: * Degree in Computer Science, Computer Engineering, or equivalent experience. * Previous experience in roles such as Cyber Security Engineer or Cyber Security Architect. * Knowledge of network protocols, operating systems, cryptography, and security frameworks (e.g., NIST and ISO 27001). * Understanding of cloud security principles. * Strong analytical and problem-solving skills. * Languages: Italian, English. Preferred Qualifications: * Certifications in cyber security (e.g., CISSP, CISM, CEH, OSCP). * Architectural certifications (e.g., TOGAF, AWS Certified Solution Architect, Microsoft Certified Azure Solution Architect). * Familiarity with industry regulations and standards such as GDPR, NIS2, or PCI-DSS. Soft Skills: * Excellent communication skills for interacting with both technical and non-technical stakeholders. * Strong learning ability and curiosity about new and evolving topics. * Proactivity and a strong problem-solving mindset. * Ability to manage projects and priorities effectively, with an organised approach * Teamwork skills, with the ability to communicate clearly and constructively within multidisciplinary teams. This opportunity is for you if: * You are passionate about cyber security and enjoy staying up to date on emerging threats and technologies. * You thrive in complex environments where you can make a difference in protecting critical systems. * You have a strategic approach and can balance security needs with business objectives. * You are motivated to work in a collaborative team, sharing your knowledge to enhance the company ecosystem. * You are looking for a position that challenges your technical skills while allowing you to contribute to long-term security strategies. Do you see yourself in this description? Then send us your application!
    $70k-97k yearly est. Auto-Apply 16d ago
  • Cyber Analyst

    Native American Technology 4.1company rating

    Quantico, VA jobs

    Full-time Description In support of Marine Corps Intelligence Activity (MCIA), NATECH is recruiting for a Cyber Analyst. Duties and Responsibilities: Assess the cybersecurity posture of a USMC defense program, ensuring the program is evolving with the best cybersecurity practices, prioritizing cyber threats based on factual cyber analysis. Analyze foreign capabilities to detect, disrupt, and deny USMC emissions and signals throughout the cyber kill chain, to include, but not limited to emissions from targeting, communications, and intelligence, surveillance, and reconnaissance (ISR) assets, reversible and non-reversible attacks. Identify, monitor, and assess advancements in emerging and commercial technologies that could be employed by state and non-state actors to detect, disrupt, and deny USMC acquisition programs' network infrastructure. Identify significant risk characteristics of the environment such as classification of network, baseline activity, architecture, operating system, services, connectivity and bandwidth. Identify the limits of the network to be collected against. Establish limits of the supporting or connected networks that may need to be collected against. Evaluate existing databases and identify intelligence gaps. Use open source to gather Publicly Available Information (PAI). Explore the physical battlespace; how could the environment affect tactical operations. Define the battlespace effects. Analyze the battlespace environment for information, services and networks, such as confidentiality, integrity, availability; and protect, detect, respond, restore and conduct reviews. Analyze other characteristics of the battlespace such as security, auditing procedures, and backup systems. Evaluate the adversary on physical location of all assets, architecture and automation skills, security and policies, baseline activity, peculiarities and vulnerabilities, capabilities, and conclusions that address: Rules of Engagement (ROE) for Information Assurance (IA), Computer Network Defense (CND) and Computer Network Attack (CNA) Determine adversary's Courses of Action (COA). Identify the adversary's likely objectives and desired end state. Identify the full set of COA's available to the adversary, at a minimum the most likely and most dangerous should be developed. Develop COA's based on enemy perception of friendly information architecture (reverse cyber IPB). Evaluate and prioritize each adversary COA. Continue to refine COA's as time and new information allow. Evaluate foreign Computer Network Defense (CND) and Computer Network Attack (CNA) capabilities, limitations, and vulnerabilities. Assess potential vulnerabilities of USMC tactical systems to CNA to include systems related to targeting, ISR, and navigation assets. Requirements Must possess an active TS SCI clearance Must have relevant and demonstrated experience. Knowledgeable of and demonstrates ability to apply Intelligence Community (IC) and DoD classification guidelines and procedures. Demonstrates ability to work semi-independently with oversight and direction. Demonstrates ability to use logic when evaluating and synthesizing multiple sources of information. Demonstrates understanding of interpreting analysis to include, but not limited to, its meaning, importance, and implications. Demonstrates ability to defend analytic judgements with sound, logical conclusions and adapt analytic judgments when presented with new information, evolving conditions, or unexpected developments. Demonstrates ability to produce timely, logical, and concise analytic reports, documents, assessments, studies, and briefing materials in formats including Microsoft Office tools (e.g. Excel, Word, PowerPoint, etc.), electronic/ soft copy matrices and / or web-enabled formats. Demonstrates ability to communicate complex issues clearly in a concise and organized manner both verbally and non-verbally; with strong grammar skills. Demonstrates proficiency using Microsoft Office tools. Demonstrates ability to develop structured research including, but not limited to, obtaining, evaluating, organizing, and maintaining information within security and data protocols. Demonstrates ability to recognize nuances and resolve contradictions and inconsistencies in information. Demonstrates working knowledge using complex analytic methodologies, such as structured analytic techniques or alternative approaches. to examine biases, assumptions, and theories to eliminate uncertainty, strengthen analytic arguments, and mitigate surprise. Structured analytic techniques include, but not limited to, Analysis of Competing Hypotheses, Devil's Advocacy, High-Impact/ Low-Impact Analysis, Red Team Analysis and Alternative Futures Analysis. Demonstrates understanding of intelligence collection capabilities and limitations, to include but not limited to, technical sensors / platforms and human intelligence sources. Demonstrates understanding of evaluating collected intelligence reporting, engaging with collection managers, and developing collection requirements.
    $71k-97k yearly est. 60d+ ago
  • Systems Security Engineer

    Orchard 4.7company rating

    Dahlgren, VA jobs

    Systems Security Engineer Dahlgren, VA Active Secret Clearance @Orchard is supporting a growing Federal contract with proven capabilities in cybersecurity. We are seeking a skilled Systems Security Engineer to be proposed for a new project supporting the Navy. This role will be based out of Dahlgren, VA and will be responsible for supporting the creation of hybrid software, web, and hardware products from initial specifications to final roll-out and maintenance, including sophisticated systems that run on the web. If awarded, this could be a fantastic opportunity to grow your career with a company that has built strong relationships within Defense and Intelligence. If selected, you will be asked to sign a letter of intent to join the team upon program award. As the Systems Security Engineer you will: Supporting A&A Cybersecurity policy and control evaluations. Preparing supporting RMF activities or current Government-approved processes for packages and artifacts. Obtaining approvals to operate. Implementation of security postures. Providing SME support in Information Assurance and Cybersecurity Life-Cycle management, coordination, and implementation as required by the applicable Authorizing Official. Provide RMF A&A ISSE support for all ashore and afloat packages. Responsible to integrate various network operating systems, application programs, and hardware devices. Manage development cycle associated with producing resilient software, hardware, and web application, including specification, design, coding, testing, and maintenance. Perform classified and unclassified tasks and actions to support A&A activities, A&A package reviews, scanning, reporting and remediation, and overall system security; consult with relevant A&A Validation teams in normal course of activities. Assist in development and execution of A&A plans for complex networks and IT systems; may include providing ISSO, Information Systems Security Engineer, and DIO support, and A&A analysis supporting documentation and artifacts in support of A&A, and compliant system administration across variety of environments supporting department offices, conference facilities, and land-based tactical equipment suites and laboratories. Provide IT Project and System Administrative support for accreditation including full authority to operate, interim authority to operate, authority to connect, Interim authority to test, Local authority to proceed and other required authorizations to support normal operations, special user events and requirements, and test events. Implement and maintain system security requirements, including STIGs, anti-virus software installations and updates, ESS installation and monitoring, responding to Cyber Directives, and other direction to ensure IT and Information Assurance controls are maintained. Perform and review vulnerability scans on all ISs using latest approved vulnerability scanning tools and signatures and ensure results properly mitigated, reviewed, documented, and reported. Support, test, monitor, and report any changes in ISs that may affect security posture and/or performance of IS. Monitor all system and audit logs and report potential security issues to ISSM; assist ISSM, Cybersecurity Branch Head, DIO, incident handling team, and law enforcement personnel in any investigations involving suspected security violations. Maintain accurate and up-to-date information in all required A&A applications. Provide subject matter expertise to perform cybersecurity operations for Corporate Operations IT and Technical Department IT. Collaborate with Government and other Contractor personnel to coordinate test and operation activities for Department IT. Develop, collect, maintain and submit A&A artifacts. Provide support for installing, managing, and troubleshooting any issues with vulnerability scanning software; perform scans on monthly and ad hoc basis for all Department IT and generate/consolidate scanning reports in centralized location; provide vulnerability scanning support for IT; responsible for opening trouble tickets with respective scanning software support for scanning and IA support. Responsible for creation, development, support, and lifecycle sustainment of all RMF A&A processes, including, but not limited to: Supporting A&A Cybersecurity policy and control evaluations. Preparing supporting RMF activities or current Government-approved processes for packages and artifacts. Obtaining approvals to operate. Implementation of security postures. Qualifications: Four (4) years professional experience IT security with DoD or Navy. Experience with vulnerability analysis, risk analysis, scanning for viruses and other detrimental software. Qualified experience in accreditation of systems and audits. Designated as IAT II level with T3. Bachelor's Degree in Engineering discipline desired but not required. Professional experience in systems engineering a plus.
    $97k-139k yearly est. 60d+ ago
  • Analyst 2, Cyber Insider Threat

    BD Systems 4.5company rating

    Franklin Lakes, NJ jobs

    SummaryThe Insider Threat Analyst will be responsible for identifying the exfiltration of sensitive information from DLP, End User Behavior Analytics (EUBA), and Data Classification platforms and leveraging them through extensive analysis in a comprehensive Insider Threat Program. The individual will work closely with key stakeholders including Cyber Fusion, Legal, Privacy, HR and Data Stewards across the business. Working with stakeholders will facilitate identifying sensitive information that needs to be protected, developing DLP protection policies, and identifying activity for these policies that need further review. This analyst will perform Tier 1 triage of security events and escalate those events to peers within the Cyber Insider Threat team to drive resolution in collaboration with correct stakeholders. DLP and Data classification tools will be the daily focus of the analyst, with data consolidated from those fed into case management tools and EUBA platforms to create a consolidated single pane of glass reference for Insider Threat data. The analyst will support the development and input of data within the reporting platform and leveraged by key stakeholders and leadership to view operational and strategic metrics, regional events, and support strategic decision-making.Job Description We are the makers of possible BD is one of the largest global medical technology companies in the world. Advancing the world of healthâ„¢ is our Purpose, and it's no small feat. It takes the imagination and passion of all of us-from design and engineering to the manufacturing and marketing of our billions of MedTech products per year-to look at the impossible and find transformative solutions that turn dreams into possibilities. We believe that the human element, across our global teams, is what allows us to continually evolve. Join us and discover an environment in which you'll be supported to learn, grow and become your best self. Become a maker of possible with us. Responsibilities: Perform analysis and processing of events in DLP, EUBA, and Data Classification platforms Support development and implementation data-protection protection policies Collaborate and engage with key stakeholders Participate in weekly collaborative meetings with Threat Management peers Support vendor and service provider management activities where necessary to ensure consistent availability and operation of platforms Identify and define new technologies and/or processes to advance operational efficiency and contribute to holistic risk reduction Perform and contribute to relevant project work associated with mergers, acquisitions and divestitures Minimum Requirement: High School Diploma or GED At BD, we prioritize on-site collaboration because we believe it fosters creativity, innovation, and effective problem-solving, which are essential in the fast-paced healthcare industry. For most roles, we require a minimum of 4 days of in-office presence per week to maintain our culture of excellence and ensure smooth operations, while also recognizing the importance of flexibility and work-life balance. Remote or field-based positions will have different workplace arrangements which will be indicated in the job posting. For certain roles at BD, employment is contingent upon the Company's receipt of sufficient proof that you are fully vaccinated against COVID-19. In some locations, testing for COVID-19 may be available and/or required. Consistent with BD's Workplace Accommodations Policy, requests for accommodation will be considered pursuant to applicable law. Why Join Us? A career at BD means being part of a team that values your opinions and contributions and that encourages you to bring your authentic self to work. It's also a place where we help each other be great, we do what's right, we hold each other accountable, and learn and improve every day. To find purpose in the possibilities, we need people who can see the bigger picture, who understand the human story that underpins everything we do. We welcome people with the imagination and drive to help us reinvent the future of health. At BD, you'll discover a culture in which you can learn, grow, and thrive. And find satisfaction in doing your part to make the world a better place. To learn more about BD visit ********************** Becton, Dickinson, and Company is an Equal Opportunity Employer. We evaluate applicants without regard to race, color, religion, age, sex, creed, national origin, ancestry, citizenship status, marital or domestic or civil union status, familial status, affectional or sexual orientation, gender identity or expression, genetics, disability, military eligibility or veteran status, and other legally-protected characteristics. #earlycareer Required Skills Optional Skills . Primary Work LocationUSA NJ - Franklin LakesAdditional LocationsWork Shift At BD, we are strongly committed to investing in our associates-their well-being and development, and in providing rewards and recognition opportunities that promote a performance-based culture. We demonstrate this commitment by offering a valuable, competitive package of compensation and benefits programs which you can learn more about on our Careers Site under Our Commitment to You. Salary or hourly rate ranges have been implemented to reward associates fairly and competitively, as well as to support recognition of associates' progress, ranging from entry level to experts in their field, and talent mobility. There are many factors, such as location, that contribute to the range displayed. The salary or hourly rate offered to a successful candidate is based on experience, education, skills, and any step rate pay system of the actual work location, as applicable to the role or position. Salary or hourly pay ranges may vary for Field-based and Remote roles. Salary Range Information $23.96 - $33.54 USD Hourly
    $24-33.5 hourly Auto-Apply 3d ago

Learn more about The Walt Disney Company jobs

View all jobs