Post job

Senior Security Analyst jobs at UPS - 167 jobs

  • Chief Underwriting Officer

    Champlain Group 4.7company rating

    Boston, MA jobs

    The Champlain Insurance Group (“CIG” or “the Company”) is a fast-growing, specialty, surplus and excess lines insurance enterprise, which through our affiliates, Champlain Specialty Insurance Company, WestCongress Insurance Services LLC, and WestCongress Risk Services LLC, offers primary and excess general liability insurance solutions and claims administration throughout the United States. We are seeking a Data Engineer and Developer to join our team in Boston, MA. Summary The Chief Underwriting Officer (CUO) serves as the organization's strategic leader for underwriting strategy, risk management, pricing integrity, and portfolio performance. This role is accountable for setting underwriting philosophy, ensuring profitable growth, and maintaining disciplined risk selection in alignment with corporate objectives. The CUO partners closely with executive leadership to balance growth, profitability, and compliance while fostering a culture of sound risk assessment and continuous improvement. Responsibilities Strategic Leadership Develop and execute the organization's underwriting strategy in alignment with business growth and profitability goals. Establish underwriting policies, guidelines, and authorities that ensure consistent risk selection and portfolio performance. Provide thought leadership in market analysis, competitive positioning, and emerging risk trends. Partner with Product, Actuarial, and Finance to design pricing frameworks that reflect accurate risk assessment. Operational Excellence Lead and oversee all underwriting operations, ensuring high-quality and timely decision-making across all lines of business. Implement underwriting governance, audit processes, and performance metrics to ensure portfolio health. Continuously evaluate underwriting processes and technology to drive automation, efficiency, and scalability. Oversee reinsurance strategies and relationships to optimize risk transfer and capital utilization. Risk Management & Compliance Ensure adherence to regulatory requirements, internal policies, and risk appetite frameworks. Collaborate with Risk, Legal, and Compliance teams to monitor emerging risks and ensure proactive mitigation strategies. Lead portfolio reviews to assess risk exposure, concentration, and underwriting profitability. Leadership & Talent Development Build, mentor, and lead a high-performing underwriting team with strong analytical and decision-making capabilities. Promote collaboration across departments to align underwriting with distribution, claims, and product development. Foster a culture of accountability, professional growth, and continuous learning. Qualifications Bachelor's degree in Finance, Business, Economics, Risk Management, or related field (Master's preferred). Minimum 15 years of progressive underwriting experience with at least 7 years in a senior leadership capacity. Proven track record in underwriting strategy, portfolio management, and risk governance. Deep understanding of market trends, risk modeling, and financial performance levers. Excellent leadership, communication, and analytical skills. Professional certifications such as CPCU, ARM, or equivalent strongly preferred. Competencies Strategic Thinking & Decision-Making Financial & Risk Acumen Data-Driven Leadership Change & Innovation Management Stakeholder Collaboration Talent Development Compensation We offer a competitive compensation package, including bonus opportunity, health, dental, vision, life, disability insurance, matching 401k, paid time off and holidays. #J-18808-Ljbffr
    $130k-165k yearly est. 1d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • Defense MRB Approval Analysis

    Boeing 4.6company rating

    Wichita, KS jobs

    At Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us. This role is at Spirit AeroSystems, Inc., a wholly owned subsidiary of The Boeing Company, at Spirit's Defense Business Unit ("Spirit Defense"). Spirit Defense is an independent supplier to the defense and space marketplace. Through innovative engineering and rapid prototyping excellence, Spirit Defense provides the capabilities, technologies and support customers need to succeed in their missions. Key Accountabilities: Performs analysis to identify and evaluate the quality of non conformance notifications and to verify or validate compliance with Quality Management System requirements, applicable company procedures, contract requirements, or government regulations. Verify and take actions required to confirm customer contractual requirements are met for dispositioning and reviewing non conformances as a delegated member of the Material Review Board (MRB) such as requirements for corrective action, structurally and functionally Use as is dispositions, acceptable rework/repair, and suspected delivered discrepancies. Monitor/Audit MRB crib inventory records and ensure actions are taken by crib owners to ensure compliance. Monitor and maintain quality notification records to prevent aging. Required Qualifications: Candidates must be able to obtain and maintain a DoD security clearance 5 years experience in Quality Read/Write Airplane Coordinates Understand RCCA Production and assembly knowledge Can do Attitude Industry Experience HS Diploma or GED Preferred Qualifications: Successful candidates must be able to secure Program access approval Bachelor's Degree Auditing Skills Union: This is a union-represented position. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary Pay Range: $59,400 - $91,100 Kansas Tax Credit: Join Spirit AeroSystems' Kansas team and you may be eligible for a $5,000 state of Kansas Aviation tax credit for up to five years. Click here for more information on the tax credit. Security Clearance This position requires the ability to obtain a U.S. Security Clearance for which the U.S. Government requires U.S. Citizenship. An interim and/or final U.S. Secret Clearance Post-Start is required. Visa Sponsorship Employer will not sponsor applicants for employment visa status. Export Control Requirements: Export Control Requirements: This position must meet export control compliance requirements. To meet export control compliance requirements, a "U.S. Person" as defined by 22 C.F.R. §120.15 is required. "U.S. Person" includes U.S. Citizen, lawful permanent resident, refugee, or asylee. Equal Opportunity Employer Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law. Read more Shows the full job description for sighted users Apply Now Save JobRemove Job
    $59.4k-91.1k yearly 7d ago
  • Information Security Analyst

    Belcan 4.6company rating

    Mason, OH jobs

    Job Title: Information Security Analyst Zip Code: 45040 Duration: 6 months Pay Rate: $33.33/hr. Keyword's: #Masonjobs; #InformationSecurityAnalystjobs; The IS Application Security Analyst will support the execution, planning, and administration of the Vulnerability Management function within Information Security (IS). The Vulnerability Management Analyst executes core processes in the vulnerability management program focused on vulnerability assessments, penetration testing and social engineering. Additionally, they will support the remediation of vulnerabilities resident within systems to minimize the organizations" potential attack surface for exploitation. The Analyst will provide oversight, drive, facilitate and coordinate the management of vulnerabilities across the enterprise. The Analyst must understand underlying application code approaches in order to effectively review and respond to application security scans. While technical involvement is required, this role is not intended to perform direct remediation. The Analyst will support automated scans and may provide post-development testing assistance to validate that vulnerability remediation efforts are appropriately tested. MAJOR DUTIES AND RESPONSIBILITIES * Monitor and analyze vulnerability assessment data to identify and communicate technical risks to the organization * Support the identification and impact classification for new vulnerabilities identified in the environment * Execute and support vulnerability assessments, penetration testing and social engineering activities * Provide the Information Security and IT Security team information on the emerging cyber threat landscape, including threat actor tactics, techniques, and procedures * Review and interpret application security scan results with an understanding of underlying code structures to provide effective feedback * Provide post-development testing support to ensure vulnerability remediation items are validated and tested appropriately * Facilitate vulnerability management processes by tracking and coordinating remediation efforts across multiple teams * Ensure timely closure of security gaps by working with application, infrastructure, and operations teams * Support IS in achieving the vision and strategic objectives of the vulnerability program * Conduct analysis, aggregate and report on vulnerability data from various scanning tools and platforms * Manage and utilize IS tools such as DLP, Code scanner, external security profile, etc. to analyze gaps in security controls * Participate in the IT SDLC program to ensure that security is included in project by default and by design * Develop strong working relationships with other departments and potentially clients across the organization to ensure a high degree of security compliance client satisfaction * Assist with regulatory and compliance requirements, contributing to security audits, assessments, attestations, certifications and client vulnerability inquires * Brief IS leadership on vulnerability assessment results and potential risks * Support leadership to identify capability gaps in vulnerability management services * Collaborate with cross-functional teams to improve security posture and embed security into existing IT and operational workflows * Continue self-development of knowledge, skills and abilities to better support execution of the Information Security (IS) function BASIC QUALIFICATIONS * Bachelor"s degree computer science, IT or equivalent * 3+ years of experience in IT or IS or Compliance * Experience with major standards such as: SOC 1-2, ISO 27001/2, PCI DSS, HITRUST, SANS, NIST * Demonstrated experience in implementing compliance frameworks for financial services organization or organizations with similar information security needs and requirements * Familiarity and understanding of broad range of IT hardware and software products * Strong project management skills * Excellent presentation, verbal communication, and written skills * Excellent analytical and problem-solving skills * Experience managing typical enterprise security and intrusion detection systems * Ability to work in a collaborative environment across business and technology teams * Ability to interpret application structures and code approaches at a high level in order to review and respond to scan results PREFERRED QUALIFICATIONS * Certified Information Systems Security Profession (CISSP), PCI DSS, Certified HIPAA Privacy Security Expert (CHPSE), Certified Information Security manager (CISM), Global Information Assurance Certification (GIAC), or related. * Experience or knowledge with healthcare or health insurance * Knowledge of CMS and HIPAA related vendor requirements * Working knowledge of Security SDLC tools Belcan is an equal opportunity employer. Your application and candidacy will not be considered based on race, colour, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
    $33.3 hourly 2d ago
  • Manager, Information Security

    Saab 3.0company rating

    East Syracuse, NY jobs

    Saab, Inc. is seeking an experienced and results-driven Information Security Manager to lead our cybersecurity initiatives. In this pivotal role, you will be responsible for developing, implementing, and managing a comprehensive information security program designed to protect our computer systems, networks, and data from unauthorized access, use, disclosure, alteration, or destruction. You will lead a team of security professionals, oversee security operations, ensure regulatory compliance, and respond swiftly to potential security incidents. This position is located in Syracuse, NY. Relocation will be provided. Key Responsibilities Strategy and Policy: Develop, implement, and maintain the organization's information security policies, standards, and procedures, aligning security strategy with business objectives. Risk Management: Conduct regular risk assessments and vulnerability analyses to identify potential security threats and determine appropriate mitigation strategies. Incident Response: Manage and lead the response to security incidents and breaches, including investigation, containment, recovery, and reporting. Security Operations: Oversee the deployment, configuration, and monitoring of security tools and technologies (e.g., firewalls, SIEM, data encryption, antivirus). Compliance & Auditing: Ensure compliance with relevant laws, regulations, and industry standards such as GDPR, HIPAA, PCI DSS, NIST, or ISO 27001. Team Leadership: Manage, mentor, and train the information security team members, fostering an environment of continuous learning and growth. Disaster Recovery & Business Continuity: Create, maintain, and test business continuity and disaster recovery plans to ensure data availability and system functionality in the event of an outage or breach. Security Awareness: Train and educate employees on information security best practices and compliance, promoting a security-conscious culture across the organization. Budget Management: Develop and manage the information security budget, ensuring cost-effective implementation of security measures and technologies. Compensation Range: $150,500 - $195,600 The compensation range provided is a general guideline. When extending an offer, Saab, Inc. considers factors including (but not limited to) the role and associated responsibilities, location, and market and business considerations, as well as the candidate's work experience, key skills, and education/training. Skills and Experience: Required Qualifications and Skills: Education: A Bachelor's degree in Computer Science, Information Security, or a related field. A Master's degree is a plus. Technical Knowledge: Knowledge of operating systems, network security architecture, cloud platforms, and security software solutions. Certifications: Relevant professional certifications such as CISSP (Certified Information Systems Security Professional) or CISM (Certified Information Security Manager) are highly desirable. Strong leadership, interpersonal, and team management skills. Excellent written and verbal communication skills, with the ability to explain complex technical issues to non-technical stakeholders. Strong analytical, problem-solving, and critical-thinking abilities, especially when working under pressure. Citizenship Requirements: Must be a U.S. citizen. Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. Drug-Free Workplaces: Saab is a federal government contractor and adheres to policies and programs necessary for sustaining drug-free workplaces. As a condition of employment, candidates will be required to pass a pre-employment drug screen. Benefits: Saab provides an excellent working environment offering professional growth opportunities, competitive wages, work-life balance, a business casual atmosphere and comprehensive benefits. Highlights include: Medical, vision, and dental insurance for employees and dependents Generous paid time off, including 8 designated holidays 401(k) with employer contributions Tuition assistance and student loan assistance Wellness and employee assistance resources Employee stock purchase opportunities Short-term and long-term disability coverage About Us: Saab is a leading defense and security company with an enduring mission, to help nations keep their people and society safe. Empowered by its 19,000 talented people, Saab constantly pushes the boundaries of technology to create a safer, more sustainable and more equitable world. In the U.S., Saab delivers advanced technology and systems, supporting the U.S. Armed Forces and the Federal Aviation Administration, as well as international and commercial partners. Headquartered in Syracuse, New York, the company has business units and local employees in eight U.S. locations. Saab is a company where we see diversity as an asset and offer unlimited opportunities for advancing in your career. We are also a company that respects each person's needs and encourage employees to lead a balanced, rewarding life beyond work. Saab values diversity and is an Affirmative Action employer for protected veterans and individuals with disabilities. Saab is an Equal Employment Opportunity employer, all qualified individuals are encouraged to apply and will be considered for employment without regard to race, color, religion, national origin, sex (including pregnancy), sexual orientation, gender identity, age, veteran, disability status, or any other federal, state, or locally protected category.
    $150.5k-195.6k yearly Auto-Apply 60d+ ago
  • Information Security Analyst

    Mobis North America 4.2company rating

    Highland Park, MI jobs

    Full-time Description We are seeking a proactive and detail-oriented Information Security Analyst to join our team and help safeguard our organization's digital assets. This role is critical in identifying vulnerabilities, responding to threats, and ensuring compliance with security policies and regulations. The ideal candidate will have a strong technical background, analytical mindset, and a passion for cybersecurity. Key Responsibilities: Monitor and analyze security alerts from various systems (SIEM, IDS/IPS, firewalls, etc.) Conduct vulnerability assessments and penetration testing; recommend remediation strategies Investigate security incidents and breaches, perform root cause analysis, and document findings Develop and maintain security policies, standards, and procedures Support compliance efforts (e.g., SOC, ISO 9001) and internal audits Collaborate with IT and business units to implement secure solutions and mitigate risks Manage identity and access controls, including privileged access management Stay current with emerging threats, vulnerabilities, and regulatory changes Requirements Qualifications: Bachelor's degree in computer science, Information Security, or related field (or equivalent experience) 2+ years of experience in cybersecurity or IT security operations Familiarity with security frameworks (e.g., SOC, NIST, CIS, ISO 9001) Hands-on experience with security tools (e.g., Splunk, Sentinel, CrowdStrike, Palo Alto) Strong understanding of network protocols, operating systems, and cloud security Relevant certifications preferred: CISSP, CISM, CEH, Security+ Preferred Skills: Experience with incident response and digital forensics Knowledge of scripting languages (Python, PowerShell) for automation Ability to work independently and in cross-functional teams Excellent communication and documentation skills.
    $78k-113k yearly est. 18d ago
  • Analyst, Information Security

    Standard Aero 4.1company rating

    San Antonio, TX jobs

    Build an Aviation Career You're Proud Of At StandardAero, we use our ingenuity and know-how to find solutions for the simple to the most complex challenges in aviation. Together, we get the job done and done well. Our stability, resources, and respectful culture supports you in building a solid career with a great team you can count on day in and day out for the long term. Summary: As an IT Security Analyst position is a critical role in protecting StandardAero's business and technology operations. In this role you will be accountable in securing the enterprise technology and operations against an ever evolving and growing threat landscape. The role is an integral position in supporting StandardAero's global cyber-security defenses, providing tactical cyber security objectives and implementing the security strategy across the organization. What you'll do: * Conduct risk and security assessments through vulnerability analysis and reporting * Perform mitigation support for both internal and external security audits * Investigate, analyze and document security incidents to identify and document the root cause * Provides incident response support including mitigating actions to contain activity and facilitating forensics analysis when necessary * Partner with IT Operation teams to remediate system vulnerabilities * Participates in the production of documentation and management reporting * Research security enhancements and make recommendations for improved policy and process * Analyze IT requirements and provide objective advice on the use of new IT security offerings * Stay up-to-date on information technology and cybersecurity trends and standards * Other IT Security-related duties as required * Capable of identifying, evaluating and mitigating significant risks within an enterprise. * Strong working experience with Microsoft Office Suite. * Strong oral and written communication skills and the ability to work well with people from many different disciplines with varying degrees of technical experience. * Possess strong analytical skills attention to detail. * Ability to prioritize assignments while working on multiple projects * Ability to work independently and proactively to meet assigned objectives * Flexible with the ability to multi-task, effectively prioritize and work under pressure * Basic project management * Design, implement, administer, support and maintain cybersecurity technology systems (Endpoint Protection, IDS/IPS, Web and Email Security, SIEM, Multi-Factor Authentication, Network Access Controls, DLP, etc.) * Analyze, report and respond to security alerts within the various IT technologies and global locations * Proactively remediate information technology security threats as a member of the security team * Assist in the designing, documenting, architecting and implementing IT security measures and controls * Provide support through 'Threat Hunting' against anomalous behavior within the enterprise. Correlates activity across assets (endpoint, network, apps) and environments to identify patterns of anomalous activity * Conducts log-based and endpoint-based threat detection to detect and protect against threats coming from multiple sources * Threat mitigation; malicious code detection, response and prevention; operating system security oversight Minimum Qualifications: * Bachelor's degree in Information Security, Computer Science, or a related field; equivalent experience may be considered. * 5+ years of progressive experience in cybersecurity and IT, including hands-on security operations, threat detection, or engineering. * 5+ years of experience in SIEM Administration, endpoint protection, vulnerability management tools, and security automation. * 5+ years of experience of network and application security, threat actor tactics (MITRE ATT&CK), and incident response frameworks. * 5+ years of experience working in regulated environments or with industry frameworks (e.g., NIST, ISO 27001, CIS, or CMMC). Preferred Qualifications: * IT Security Certification, specifically GSEC, CEH, CISSO, CISA or CISSP, GCIA, OSCP and ITIL * SDLC, and understand application security. * Containerization and Development Security Operations Benefits that make life better: * Comprehensive Healthcare * 401(k) with 100% company match; up to 5% vested * Paid Time Off starting on day one * Bonus opportunities * Health- & Dependent Care Flexible Spending Accounts * Short- & Long-Term Disability * Life & AD&D Insurance * Learning & Training opportunities Raising the Standard of Excellence since 1911 With over a century of proven excellence, StandardAero has become an industry leader in MRO services and customized solutions in the aerospace field. Our shared values and learning-based culture inspire our team to exceed their potential and power our customers' missions worldwide. With on-the-job training, advancement opportunities, and excellent benefits, StandardAero invites you to experience a fulfilling and meaningful career with us. Inclusivity Is Our Standard It is StandardAero's policy to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information. Our supportive environment celebrates diversity with no room for harassment or discrimination of any kind. We invite you to bring your authentic self to our team and experience our welcoming culture.
    $80k-116k yearly est. Auto-Apply 60d+ ago
  • Computer Systems Security Analyst - Splunk

    Cybercore Technologies 4.2company rating

    Baltimore, MD jobs

    Write complex SPL to develop Advanced Splunk Dashboards and Queries. Perform on-boarding of data via Splunk Tools and Automation method. Work with customers to develop custom content, maintaining consistently high quality communications with the Client. Create Splunk Dashboards and Queries Familiar with automating in Splunk Develop scripts and code with security tools. Develop processes and schedule to review existing methodologies and queries for all divisional metrics. Become knowledgeable on the CDM technical requirements for the CDM program. Involved in a wide range of security issues including architectures, firewalls, electronic data traffic, and network access. Design, manage, and maintain agency SIEM infrastructure to improve data ingestion processes, including architectural work on data pipelines to ensure optimal flow of data. Maintenance, configuration, and implementing products, appliances and devices on the network. Required Candidate Qualifications: US Citizenship Required and ability to obtain and maintain a Public Trust Bachelors Degree and 7 experience; or Masters Degree and 5 years of relevant Cyber Security experience; or 11 years experience in lieu of Degree. Active Splunk Core Certifications of User, Power User and Admin Minimum 3 years of experience developing and tailoring reporting from network security tools. At least 6 years experience using Splunk (specifically Splunk Scripting and on-boarding of large collection of meta data from different sources into Splunk. At least 4 years of experience with: In depth knowledge of designing, upgrading, maintaining, and implementing network devices on a large scale enterprise. Coordination and communication with other remotely deployed team members Developing documentation with processes and procedures. Proposing, implementing automation features in a large enterprise environment. At least 2 years experience with: Splunk Enterprise Security product. Risk-based Alerting. Analytics Driven Security CyberCore has, on many occasions, expressed support and commitment to the principles of diversity and equal employment opportunity. It is CyberCore's policy to recruit, hire, train, and promote individuals, as well as administer all personnel actions, without regard to race, color, national or ethnic origin, age, religion, disability, sex, sexual orientation, gender identity and expression, veteran status or any other characteristic protected under applicable federal or state law. CyberCore will not tolerate unlawful discrimination and any such conduct is prohibited. CyberCore is committed to ensuring that CyberCore's workforce and volunteers reflect America's diverse population. CyberCore knows that such diversity will enrich the company with the talent, energy, perspective and inspiration we need to achieve our mission.
    $82k-117k yearly est. Auto-Apply 60d+ ago
  • Computer Systems Security Analyst (Splunk)

    Cybercore Technologies 4.2company rating

    Baltimore, MD jobs

    JOIN THE CYBERCORE TECHNOLOGIES TEAM . We are Growing! Bring your Technical Capabilities, Enthusiasm, and Team Focus. Seeking Candidates for a New Computer Systems Security Analyst (Splunk) US Citizenship or Permanent Residency (Green Card holder) required. Job Description: •Write complex SPL to develop advanced Splunk dashboards and queries. •Work with customers to develop custom content, maintaining consistently high-quality communications. •Develop processes and schedule to review existing methodologies and queries for all divisional metrics. •Become knowledgeable on the CDM technical requirements for the CDM Program. •Understand role in CDM activities. •Involved in a wide range of security issues including architectures, firewalls, electronic data traffic, and network access. •Design, manage and maintain SIEM infrastructure to improve data ingestion processes, including architectural work on data pipelines to ensure optimal flow of data. Maintenance, configuration and implementing products, appliances and devices on the network. Required Candidate Qualifications: United States Citizenship or Permanent Residency Required due to Clearance /Security /Government Needs. Bachelor's degree and 7 years of related experience, Master's degree and 5 years of related experience, or 11 years of experience in lieu of degree. At least 6 years' experience using Splunk, specifically Splunk scripting and on-boarding of large collection of meta data from different sources into Splunk A minimum of 4 years of experience with: In-depth knowledge of designing, upgrading, maintaining and implementing network devices on a large-scale enterprise. Coordination and communication with other remotely deployed team members. Developing documentation with processes and procedures. Proposing, implementing automation features in a large enterprise environment. Hold Active Splunk Core Certifications of User, Power User and Admin Minimum of 3 year of experience in developing and tailoring reporting from network security tools. Must be able to obtain and maintain US Public Trust Clearance. . At CyberCore, Our Goal is to Maintain a Healthy Work-Life Balance and Provide Interesting Work Supporting Our Nation's Security. For more information on CyberCore Technologies, go to ********************* CyberCore Technologies is proud to be an Equal Opportunity Employer. CyberCore has, on many occasions, expressed support and commitment to the principles of diversity and equal employment opportunity. It is CyberCore's policy to recruit, hire, train, and promote individuals, as well as administer all personnel actions, without regard to race, color, national or ethnic origin, age, religion, disability, sex, sexual orientation, gender identity and expression, veteran status or any other characteristic protected under applicable federal or state law. CyberCore will not tolerate unlawful discrimination and any such conduct is prohibited. CyberCore is committed to ensuring that CyberCore's workforce and volunteers reflect America's diverse population. CyberCore knows that such diversity will enrich the company with the talent, energy, perspective and inspiration we need to achieve our mission.
    $82k-117k yearly est. Auto-Apply 60d+ ago
  • Analyst, Information Security

    Standard Aero 4.1company rating

    Maryville, TN jobs

    Build an Aviation Career You're Proud Of At StandardAero, we use our ingenuity and know-how to find solutions for the simple to the most complex challenges in aviation. Together, we get the job done and done well. Our stability, resources, and respectful culture supports you in building a solid career with a great team you can count on day in and day out for the long term. Summary: As an IT Security Analyst position is a critical role in protecting StandardAero's business and technology operations. In this role you will be accountable in securing the enterprise technology and operations against an ever evolving and growing threat landscape. The role is an integral position in supporting StandardAero's global cyber-security defenses, providing tactical cyber security objectives and implementing the security strategy across the organization. What you'll do: Conduct risk and security assessments through vulnerability analysis and reporting Perform mitigation support for both internal and external security audits Investigate, analyze and document security incidents to identify and document the root cause Provides incident response support including mitigating actions to contain activity and facilitating forensics analysis when necessary Partner with IT Operation teams to remediate system vulnerabilities Participates in the production of documentation and management reporting Research security enhancements and make recommendations for improved policy and process Analyze IT requirements and provide objective advice on the use of new IT security offerings Stay up-to-date on information technology and cybersecurity trends and standards Other IT Security-related duties as required Capable of identifying, evaluating and mitigating significant risks within an enterprise. Strong working experience with Microsoft Office Suite. Strong oral and written communication skills and the ability to work well with people from many different disciplines with varying degrees of technical experience. Possess strong analytical skills attention to detail. Ability to prioritize assignments while working on multiple projects Ability to work independently and proactively to meet assigned objectives Flexible with the ability to multi-task, effectively prioritize and work under pressure Basic project management Design, implement, administer, support and maintain cybersecurity technology systems (Endpoint Protection, IDS/IPS, Web and Email Security, SIEM, Multi-Factor Authentication, Network Access Controls, DLP, etc.) Analyze, report and respond to security alerts within the various IT technologies and global locations Proactively remediate information technology security threats as a member of the security team Assist in the designing, documenting, architecting and implementing IT security measures and controls Provide support through ‘Threat Hunting' against anomalous behavior within the enterprise. Correlates activity across assets (endpoint, network, apps) and environments to identify patterns of anomalous activity Conducts log-based and endpoint-based threat detection to detect and protect against threats coming from multiple sources Threat mitigation; malicious code detection, response and prevention; operating system security oversight Minimum Qualifications: Bachelor's degree in Information Security, Computer Science, or a related field; equivalent experience may be considered. 5+ years of progressive experience in cybersecurity and IT, including hands-on security operations, threat detection, or engineering. 5+ years of experience in SIEM Administration, endpoint protection, vulnerability management tools, and security automation. 5+ years of experience of network and application security, threat actor tactics (MITRE ATT&CK), and incident response frameworks. 5+ years of experience working in regulated environments or with industry frameworks (e.g., NIST, ISO 27001, CIS, or CMMC). Preferred Qualifications: IT Security Certification, specifically GSEC, CEH, CISSO, CISA or CISSP, GCIA, OSCP and ITIL SDLC, and understand application security. Containerization and Development Security Operations Benefits that make life better: Comprehensive Healthcare 401(k) with 100% company match; up to 5% vested Paid Time Off starting on day one Bonus opportunities Health- & Dependent Care Flexible Spending Accounts Short- & Long-Term Disability Life & AD&D Insurance Learning & Training opportunities Raising the Standard of Excellence since 1911 With over a century of proven excellence, StandardAero has become an industry leader in MRO services and customized solutions in the aerospace field. Our shared values and learning-based culture inspire our team to exceed their potential and power our customers' missions worldwide. With on-the-job training, advancement opportunities, and excellent benefits, StandardAero invites you to experience a fulfilling and meaningful career with us. Inclusivity Is Our Standard It is StandardAero's policy to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information. Our supportive environment celebrates diversity with no room for harassment or discrimination of any kind. We invite you to bring your authentic self to our team and experience our welcoming culture.
    $73k-103k yearly est. Auto-Apply 60d+ ago
  • Cybersecurity and Information Security Manager

    Dupont Registry 3.9company rating

    Miami, FL jobs

    Cybersecurity and Information Security Manager Reports To: Director of Technology Position Type: Permanent - Full-Time ABOUT US du Pont REGISTRY Group proudly marks four decades as a cornerstone of the luxury automotive market in 2025. Renowned for connecting millions of buyers and sellers worldwide, du Pont REGISTRY Group has facilitated billions in automotive transactions while setting the standard for excellence in the industry. POSITION OVERVIEW This role serves as the company's primary cybersecurity resource, responsible for securing du Pont Registry's systems, data, websites, and third-party platforms. The Cybersecurity & Information Security Manager balances business enablement with security oversight, managing everything from endpoint protection and incident response to vendor assessments and user awareness training. The ideal candidate is self-sufficient, technically curious, and comfortable wearing multiple hats. They will perform both operational security tasks and higher-level program design in a fast-paced, entrepreneurial environment. They are also comfortable communicating and managing at the technical, configuration levels while providing key insight to executive boards through targeted high-level reporting. KEY RESPONSIBILITIES Security Operations & Infrastructure Perform daily monitoring of security logs, alerts, and reports from firewalls, EDR, SIEM, and cloud environments. Manage endpoint, network, and email security solutions; ensure systems are patched, updated, and compliant. Oversee security of cloud and hosted services (AWS, Azure, Google Workspace, Microsoft 365, etc.). Respond to and manage security incidents, data breaches, and vulnerabilities in coordination with IT vendors. Perform internal security assessments, penetration testing coordination, and vulnerability scans. Governance, Risk & Compliance Develop, maintain, and implement cybersecurity policies and procedures aligned with modern frameworks (NIST CSF, CIS Controls). Assist with risk assessments and vendor evaluations, especially for technology partners and marketing platforms. Support compliance efforts related to privacy and payment requirements (CCPA, GDPR, PCI-DSS). Maintain documentation for audits and leadership reporting. Awareness & Training Conduct regular employee security awareness and phishing simulation campaigns. Promote a culture of cybersecurity across departments with practical, business-friendly approaches. Strategic Support & Reporting Provide regular reports to the CFO and leadership on cybersecurity posture, incidents, and key risks. Participate in budgeting and planning for cybersecurity tools and services. Stay current on emerging threats and technologies to continuously enhance the company's defenses. QUALIFICATIONS Bachelor's degree in Information Security, Information Technology, Computer Science, or related field (or equivalent experience). At least seven years of experience in IT security, cybersecurity operations, or systems administration. Hands-on experience with key technologies: firewalls, endpoint protection, cloud security, Google cloud, Microsoft 365, and SIEM. Working knowledge of network security principles, web application security, and vulnerability management. Solid understanding of risk-based decision-making and practical security implementation in small/medium business environments. Preferred: Security-related certifications such as Security+, CEH, GSEC, CISSP, or CISM. Exposure to ecommerce, media, or marketing technology environments. Experience implementing or managing security standards such as NIST, CIS Controls, or ISO 27001.
    $90k-120k yearly est. 54d ago
  • Cybersecurity and Information Security Manager

    Dupont Registry 3.9company rating

    Miami, FL jobs

    Job DescriptionSalary: Cybersecurity and Information Security Manager Reports To: Director of Technology Position Type: Permanent Full-Time ABOUT US du Pont REGISTRY Group proudly marks four decades as a cornerstone of the luxury automotive market in 2025. Renowned for connecting millions of buyers and sellers worldwide, du Pont REGISTRY Group has facilitated billions in automotive transactions while setting the standard for excellence in the industry. POSITION OVERVIEW This role serves as the companys primary cybersecurity resource, responsible for securing du Pont Registrys systems, data, websites, and third-party platforms. The Cybersecurity & Information Security Manager balances business enablement with security oversight, managing everything from endpoint protection and incident response to vendor assessments and user awareness training. The ideal candidate is self-sufficient, technically curious, and comfortable wearing multiple hats. They will perform both operational security tasks and higher-level program design in a fast-paced, entrepreneurial environment. They are also comfortable communicating and managing at the technical, configuration levels while providing key insight to executive boards through targeted high-level reporting. KEY RESPONSIBILITIES Security Operations & Infrastructure Perform daily monitoring of security logs, alerts, and reports from firewalls, EDR, SIEM, and cloud environments. Manage endpoint, network, and email security solutions; ensure systems are patched, updated, and compliant. Oversee security of cloud and hosted services (AWS, Azure, Google Workspace, Microsoft 365, etc.). Respond to and manage security incidents, data breaches, and vulnerabilities in coordination with IT vendors. Perform internal security assessments, penetration testing coordination, and vulnerability scans. Governance, Risk & Compliance Develop, maintain, and implement cybersecurity policies and procedures aligned with modern frameworks (NIST CSF, CIS Controls). Assist with risk assessments and vendor evaluations, especially for technology partners and marketing platforms. Support compliance efforts related to privacy and payment requirements (CCPA, GDPR, PCI-DSS). Maintain documentation for audits and leadership reporting. Awareness & Training Conduct regular employee security awareness and phishing simulation campaigns. Promote a culture of cybersecurity across departments with practical, business-friendly approaches. Strategic Support & Reporting Provide regular reports to the CFO and leadership on cybersecurity posture, incidents, and key risks. Participate in budgeting and planning for cybersecurity tools and services. Stay current on emerging threats and technologies to continuously enhance the companys defenses. QUALIFICATIONS Bachelors degree in Information Security, Information Technology, Computer Science, or related field (or equivalent experience). At least seven years of experience in IT security, cybersecurity operations, or systems administration. Hands-on experience with key technologies: firewalls, endpoint protection, cloud security, Google cloud, Microsoft 365, and SIEM. Working knowledge of network security principles, web application security, and vulnerability management. Solid understanding of risk-based decision-making and practical security implementation in small/medium business environments. Preferred: Security-related certifications such as Security+, CEH, GSEC, CISSP, or CISM. Exposure to ecommerce, media, or marketing technology environments. Experience implementing or managing security standards such as NIST, CIS Controls, or ISO 27001.
    $90k-120k yearly est. 25d ago
  • Computer Network Defense Analyst 3 - Fort Meade

    Verite Group, Inc. 4.1company rating

    Fort Meade, MD jobs

    What Impact You'll Have: GRVTY is seeking experienced Computer Network Defense Analysts (CNDAs) to support core Intelligence Community (IC) missions. As a cyber professional in the intelligence community, you will work as part of a team on the frontlines against our cyber adversaries. What You'll be Owning: * Conduct computer network defense. * Conduct target development for use or decision by Government personnel. * Analyze and produce intelligence information. * Conduct computer/network security to provide advice to the Government. * Create and maintain documentation of their analysis. * Ensure to routinely follow oversight and compliance. * Acquire/share job knowledge/skill. * Partner with team members on the contract, including government personnel and other partner companies. What You Must Have : * Active TS/SCI with polygraph clearance. * STEM degree in Network Engineering, Systems Engineering, Information Technology, or related field. Extended military cyber training courses may be counted toward degree requirement. * Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering. * Demonstrative experience w/SIGINT and AMOD * Must also have experience in network or system administration. * Documented foreign language proficiency may count toward experience requirements. * 10 years of experience with an associate's degree or 8 years of experience with a bachelor's degree or 6 years of experience with a master's degree or 4 years of experience with a doctorate degree. What Would Be Nice to Have: * Strong communication skills * Works well in a team and alone * Working knowledge of Microsoft Office Suite
    $68k-94k yearly est. 20d ago
  • Computer Network Defense Analyst 2

    Verite Group, Inc. 4.1company rating

    Fort Meade, MD jobs

    What Impact You'll Have: GRVTY is seeking experienced Computer Network Defense Analysts (CNDAs) to support core Intelligence Community (IC) missions. As a cyber professional in the intelligence community, you will work as part of a team on the frontlines against our cyber adversaries. What You'll be Owning: * Conduct computer network defense. * Conduct target development for use or decision by Government personnel. * Analyze and produce intelligence information. * Conduct computer/network security to provide advice to the Government. * Create and maintain documentation of their analysis. * Ensure to routinely follow oversight and compliance. * Acquire/share job knowledge/skill. * Partner with team members on the contract, including government personnel and other partner companies. What You Must Have : * Active TS/SCI with polygraph clearance. * STEM degree in Network Engineering, Systems Engineering, Information Technology, or related field. Extended military cyber training courses may be counted toward degree requirement. * Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering. * Demonstrative experience w/SIGINT and AMOD * Must also have experience in network or system administration. * Documented foreign language proficiency may count toward experience requirements. * 7 years of experience with an associate's degree or 5 years of experience with a bachelor's degree or 3 years of experience with a master's degree or 2 years of experience with a doctorate degree. What Would Be Nice to Have: * Strong communication skills * Works well in a team and alone * Working knowledge of Microsoft Office Suite
    $68k-94k yearly est. 20d ago
  • Computer Network Defense Analyst 4

    Verite Group, Inc. 4.1company rating

    Fort Meade, MD jobs

    What Impact You'll Have: GRVTY is seeking experienced Computer Network Defense Analysts (CNDAs) to support core Intelligence Community (IC) missions. As a cyber professional in the intelligence community, you will work as part of a team on the frontlines against our cyber adversaries. What You'll be Owning: * Conduct computer network defense. * Conduct target development for use or decision by Government personnel. * Analyze and produce intelligence information. * Conduct computer/network security to provide advice to the Government. * Create and maintain documentation of their analysis. * Ensure to routinely follow oversight and compliance. * Acquire/share job knowledge/skill. * Partner with team members on the contract, including government personnel and other partner companies. What You Must Have : * Active TS/SCI with polygraph clearance. * STEM degree in Network Engineering, Systems Engineering, Information Technology, or related field. Extended military cyber training courses may be counted toward degree requirement. * Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering. * Demonstrative experience w/SIGINT and AMOD * Must also have experience in network or system administration. * Documented foreign language proficiency may count toward experience requirements. * 13 years of experience with an associate's degree or 11 years of experience with a bachelor's degree or 9 years of experience with a master's degree or 7 years of experience with a doctorate degree. What Would Be Nice to Have: * Strong communication skills * Works well in a team and alone * Working knowledge of Microsoft Office Suite
    $68k-94k yearly est. 20d ago
  • Security Systems Analyst

    The Scoular Company 4.8company rating

    Omaha, NE jobs

    The Security Systems Analyst is a key member of Scoular's Security Risk Management team and is responsible for hands-on execution of core cybersecurity operations. This role focuses on SIEM management, endpoint protection, vulnerability management, incident response, email monitoring, and Tier 1 security support across Scoular's enterprise environment. The analyst assists with onboarding log sources, tuning alerts, monitoring security events, performing initial investigations, supporting remediation activities, and other project work. The Security Systems Analyst partners closely with Infrastructure and IT Operations teams to ensure secure operation of systems across on-premise and cloud environments. The role reports to the Lead Security Engineer and requires strong technical skills, attention to detail, excellent documentation habits, and the ability to collaborate effectively while continuously learning. This position can be located in Scoular's Omaha, NE or Overland Park, KS offices. Job Functions Security Operations & Monitoring * Monitor SIEM dashboards and alerts to detect suspicious activity and respond to incidents following established playbooks. * Perform Tier 1-level incident triage and escalate to senior team members as needed. * Assist with onboarding log sources, validating data quality, and tuning SIEM alerts and dashboards. * Support endpoint protection technologies (EDR/XDR) including Defender and CrowdStrike. * Monitor and manage Microsoft email quarantine. Vulnerability Management * Perform routine vulnerability scans, validate results, track remediation progress, and coordinate with system owners. * Document findings, maintain dashboards, and assist in prioritizing remediation efforts based on risk. Security Tooling & Automation * Support operational management of SIEM platforms (Sentinel, CrowdStrike ) including basic configuration and alert refinement. * Use PowerShell and/or Python to automate routine tasks, improve efficiency, and support data analysis. Identity & Access Security * Assist in maintaining secure access controls using Entra ID / Azure AD and related IAM tools. * Support enforcement of least‑privilege standards and monitor identity‑related security events. Network Security & Troubleshooting * Assist Infrastructure team with basic troubleshooting related to firewalls, IDS/IPS, VPN, and secure network design. * Monitor network traffic and alerts for indicators of compromise. Cloud Security (Azure) * Help review configuration of cloud resources for security compliance. * Assist in monitoring cloud logs and security insights via Azure and SIEM tools. Policy, Compliance & Documentation * Contribute to security policies, standards, procedures, and knowledgebase documentation. * Participate in internal reviews aligned with frameworks such as NIST CSF, CIS, ISO Controls, or ITIL. * Maintain precise documentation for incidents, investigations, and system changes. Architecture & Project Participation * Participate in security reviews of new systems or architecture changes with guidance from senior team members. * Support security projects including tool deployments, enhancements, and operational improvements. * Coordinate with vendors, support POCs, and assist with testing new security technologies. Cross‑Team Collaboration * Work daily with Infrastructure, Service Desk, and other IT teams to investigate issues and implement security recommendations. * Provide clear communication to business units and end users when security remediation or follow-up is needed. * Actively contribute to a collaborative, learning-focused team culture. * 2-5 years experience in cybersecurity, IT operations, or technical security support. * Hands-on experience with SIEM platforms (Sentinel, CrowdStrike, Splunk, QRadar, LogRhythm, or similar). * Experience with endpoint security tools (Defender, CrowdStrike, or equivalent). * Familiarity with Entra ID/Azure AD and identity security concepts. * Basic understanding of: * Vulnerability scanning tools * Firewalls, IDS/IPS, and network protocols (TCP/IP, OSI model) * Cloud environments, particularly Azure * Ability to write or read basic PowerShell or Python scripts. * Strong documentation, communication, and teamwork skills. * Ability to take direction, learn new technologies, and adapt to changing security needs. Preferred Experience * Bachelor's degree in cybersecurity, computer science, information systems, or related experience. * Security+, CySA+, AZ-500, GSEC, or similar certification. * Exposure to security standards such as NIST CSF, CIS Controls, ISO27001 or ITIL. * Experience supporting security reviews or participating in architecture discussions. * Experience with enterprise EDR/XDR platforms. * Basic understanding of secure cloud architecture principles.
    $67k-96k yearly est. 34d ago
  • Computer Network Defense Analyst 3 - Hawaii

    Verite Group, Inc. 4.1company rating

    Hawaii jobs

    What Impact You'll Have: GRVTY is seeking experienced Computer Network Defense Analysts (CNDAs) to support core Intelligence Community (IC) missions. As a cyber professional in the intelligence community, you will work as part of a team on the frontlines against our cyber adversaries. What You'll be Owning: * Use information collected from a variety sources (e.g., intrusion detection systems, firewalls, network traffic logs, and host system logs) to identify potential vulnerabilities, respond to cyber events that occur, and defend against events that might occur. * Help develop mitigations to strengthen network defenses and protect against attacks on network infrastructure devices or systems. * Support a wide range of data transport possibilities, such as traditional wired networks, wireless transport (including Wi-Fi and cellular), collaborative platforms such as video teleconferencing, and the hardware and software that enable it all. * Advance your career as you develop increasing expertise in networking protocols and architectures, cloud security, Internet of Things protocols, and advanced network security. * Be part of a team, working together with government, military, and contractor personnel to develop shared understandings of intelligence needs, mission relevance, and areas of expertise. * Apply your innate curiosity and analytical talent to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights. * Distill, document, contextualize and share your findings--including any new tradecraft that you develop--with teammates, stakeholders, and intelligence consumers. What You Must Have : * Active TS/SCI with polygraph clearance. * STEM degree in Network Engineering, Systems Engineering, Information Technology, or related field. Extended military cyber training courses may be counted toward degree requirement. * Relevant experience must be in computer or information systems design/development, programming, information/cyber/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, and/or systems engineering. * Demonstrative experience w/SIGINT and AMOD * Must also have experience in network or system administration. * Documented foreign language proficiency may count toward experience requirements. * 10 years of experience with an associate's degree or 8 years of experience with a bachelor's degree or 6 years of experience with a master's degree or 4 years of experience with a doctorate degree. What Would Be Nice to Have: * Strong communication skills * Works well in a team and alone * Working knowledge of Microsoft Office Suite
    $67k-83k yearly est. 20d ago
  • Information Security Analyst

    Flexjet 4.5company rating

    Cleveland, OH jobs

    Join a global leader in private aviation, offering access to an ultramodern fleet of private aircraft through fractional ownership, leasing and jet cards. Together, our employees in North America and Europe work to provide Flexjet aircraft Owners with the finest experience in premium private jet travel. Position Summary Flexjet is currently seeking a qualified candidate to join our IT department as an Information Security Analyst at our state-of-the-art facility in Cleveland, Ohio or Dallas, Texas. As an Information Security Analyst, you will work as part of a team to help ensure the Confidentiality, Integrity, and Availability of our organization's systems, networks, and data. You will have a primary focus on Incident Response, Threat hunting, and Threat Intelligence; investigating security events, and utilize forensics to identify root causes. You will ensure proper implementation and maintenance of threat intelligence processes, procedures, and integrations/automations to help defend against new and emerging threats. Duties and Responsibilities * Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis * Recommend improvement and tuning opportunities with alerting * Implement components of a multi-layered defense to protect information system resources and data, both on-premise and in the cloud * Assist with gathering evidence of technical and administrative controls implementation for audits and reviews. * Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high quality alerts * Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities * Investigate, respond, report, and document security events * Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls * Perform risk assessments on prospective IT vendors, hardware, software, services, and components. * Participate in the on-call rotation. * Must be able to work outside of normal, scheduled business hours as needed * Perform other tasks and duties as assigned Education & Experience * Bachelor's Degree in Computer Science preferred * Cyber Security certification (GCIH, GCFA, CySA+, CASP+) * 1-3 years of experience in Information Security * 1+ years of experience with either programming, networking, system administration, or DevOps * Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pf Sense. * Experience with SIEM's such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7 * Strong experience using Microsoft suite of e5 products such as Endpoint Manager (InTune), Security, Purview (Compliance), Entra, etc. * In depth experience securing a hybrid infrastructure * Strong Cloud Experience with either AWS, Azure, or GCP. Required Skills * Knowledge MITRE ATT&CK, and Kill Chain * Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods * Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus. * Ability to identify and validate vulnerabilities * Ability to communicate security issues to peers and management * Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering * Strong verbal and written communication * Work well independently or with a team * Manages time well working simultaneous challenges without undue stress. * Flexibility and willingness to work in a changing, entrepreneurial environment. Flexjet is an equal-opportunity employer. We aim to choose individuals who have the highest integrity; those who personify genuine concern for customers and fellow employees alike. More than anything, we look for individuals who grasp the importance of trust in an employer/employee relationship.
    $77k-101k yearly est. 8d ago
  • Information Security Analyst

    Flexjet 4.5company rating

    Cleveland, OH jobs

    Flexjet is currently seeking a qualified candidate to join our IT department as an Information Security Analyst at our state-of-the-art facility in Cleveland, Ohio or Dallas, Texas. As an Information Security Analyst, you will work as part of a team to help ensure the Confidentiality, Integrity, and Availability of our organization's systems, networks, and data. You will have a primary focus on Incident Response, Threat hunting, and Threat Intelligence; investigating security events, and utilize forensics to identify root causes. You will ensure proper implementation and maintenance of threat intelligence processes, procedures, and integrations/automations to help defend against new and emerging threats. Duties and Responsibilities Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis Recommend improvement and tuning opportunities with alerting Implement components of a multi-layered defense to protect information system resources and data, both on-premise and in the cloud Assist with gathering evidence of technical and administrative controls implementation for audits and reviews. Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high quality alerts Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities Investigate, respond, report, and document security events Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls Perform risk assessments on prospective IT vendors, hardware, software, services, and components. Participate in the on-call rotation. Must be able to work outside of normal, scheduled business hours as needed Perform other tasks and duties as assigned Education & Experience Bachelor s Degree in Computer Science preferred Cyber Security certification (GCIH, GCFA, CySA+, CASP+) 1-3 years of experience in Information Security 1+ years of experience with either programming, networking, system administration, or DevOps Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pf Sense. Experience with SIEM s such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7 Strong experience using Microsoft suite of e5 products such as Endpoint Manager (InTune), Security, Purview (Compliance), Entra, etc. In depth experience securing a hybrid infrastructure Strong Cloud Experience with either AWS, Azure, or GCP. Required Skills Knowledge MITRE ATT&CK, and Kill Chain Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus. Ability to identify and validate vulnerabilities Ability to communicate security issues to peers and management Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering Strong verbal and written communication Work well independently or with a team Manages time well working simultaneous challenges without undue stress. Flexibility and willingness to work in a changing, entrepreneurial environment.
    $77k-101k yearly est. 8d ago
  • Information Security Analyst

    Flexjet 4.5company rating

    Cleveland, OH jobs

    Job Description Flexjet is currently seeking a qualified candidate to join our IT department as an Information Security Analyst at our state-of-the-art facility in Cleveland, Ohio or Dallas, Texas. As an Information Security Analyst, you will work as part of a team to help ensure the Confidentiality, Integrity, and Availability of our organization's systems, networks, and data. You will have a primary focus on Incident Response, Threat hunting, and Threat Intelligence; investigating security events, and utilize forensics to identify root causes. You will ensure proper implementation and maintenance of threat intelligence processes, procedures, and integrations/automations to help defend against new and emerging threats. Duties and Responsibilities Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis Recommend improvement and tuning opportunities with alerting Implement components of a multi-layered defense to protect information system resources and data, both on-premise and in the cloud Assist with gathering evidence of technical and administrative controls implementation for audits and reviews. Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high quality alerts Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities Investigate, respond, report, and document security events Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls Perform risk assessments on prospective IT vendors, hardware, software, services, and components. Participate in the on-call rotation. Must be able to work outside of normal, scheduled business hours as needed Perform other tasks and duties as assigned Education & Experience Bachelor's Degree in Computer Science preferred Cyber Security certification (GCIH, GCFA, CySA+, CASP+) 1-3 years of experience in Information Security 1+ years of experience with either programming, networking, system administration, or DevOps Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pf Sense. Experience with SIEM's such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7 Strong experience using Microsoft suite of e5 products such as Endpoint Manager (InTune), Security, Purview (Compliance), Entra, etc. In depth experience securing a hybrid infrastructure Strong Cloud Experience with either AWS, Azure, or GCP. Required Skills Knowledge MITRE ATT&CK, and Kill Chain Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus. Ability to identify and validate vulnerabilities Ability to communicate security issues to peers and management Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering Strong verbal and written communication Work well independently or with a team Manages time well working simultaneous challenges without undue stress. Flexibility and willingness to work in a changing, entrepreneurial environment.
    $77k-101k yearly est. 8d ago
  • Information Security Analyst

    Flexjet 4.5company rating

    Dallas, TX jobs

    Job Description Flexjet is currently seeking a qualified candidate to join our IT department as an Information Security Analyst at our state-of-the-art facility in Cleveland, Ohio or Dallas, Texas. As an Information Security Analyst, you will work as part of a team to help ensure the Confidentiality, Integrity, and Availability of our organization's systems, networks, and data. You will have a primary focus on Incident Response, Threat hunting, and Threat Intelligence; investigating security events, and utilize forensics to identify root causes. You will ensure proper implementation and maintenance of threat intelligence processes, procedures, and integrations/automations to help defend against new and emerging threats. Duties and Responsibilities Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis Recommend improvement and tuning opportunities with alerting Implement components of a multi-layered defense to protect information system resources and data, both on-premise and in the cloud Assist with gathering evidence of technical and administrative controls implementation for audits and reviews. Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high quality alerts Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities Investigate, respond, report, and document security events Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls Perform risk assessments on prospective IT vendors, hardware, software, services, and components. Participate in the on-call rotation. Must be able to work outside of normal, scheduled business hours as needed Perform other tasks and duties as assigned Education & Experience Bachelor's Degree in Computer Science preferred Cyber Security certification (GCIH, GCFA, CySA+, CASP+) 1-3 years of experience in Information Security 1+ years of experience with either programming, networking, system administration, or DevOps Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pf Sense. Experience with SIEM's such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7 Strong experience using Microsoft suite of e5 products such as Endpoint Manager (InTune), Security, Purview (Compliance), Entra, etc. In depth experience securing a hybrid infrastructure Strong Cloud Experience with either AWS, Azure, or GCP. Required Skills Knowledge MITRE ATT&CK, and Kill Chain Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus. Ability to identify and validate vulnerabilities Ability to communicate security issues to peers and management Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering Strong verbal and written communication Work well independently or with a team Manages time well working simultaneous challenges without undue stress. Flexibility and willingness to work in a changing, entrepreneurial environment.
    $70k-96k yearly est. 8d ago

Learn more about UPS jobs

View all jobs