landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Security Jobs

Auto-apply to these security jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Staff Security Engineer-logo
Staff Security Engineer
Interactive BrokersGreenwich, CT
Company Overview Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment. IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments. Barron's has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology. This is a hybrid role (3 days in the office / 2 days remote). About your team: Interactive Brokers (IBKR) is seeking a Senior Security Engineer to join our cybersecurity team. In this role, you will be responsible for strengthening our security infrastructure, implementing advanced security controls, and protecting our critical financial systems and customer data. You will work collaboratively with cross-functional teams to drive security improvements and ensure compliance with financial industry regulations. What will be your responsibilities within IBKR:  * Design, implement, and maintain security solutions across our cloud and on-premises environments * Lead incident response efforts for security breaches and events, including forensic investigations and root cause analysis * Develop and enhance our SOAR (Security Orchestration, Automation and Response) capabilities to streamline security operations * Monitor and analyze security logs, alerts, and events using SIEM tools to identify and respond to potential threats * Implement and manage cloud security controls in AWS and other cloud environments * Conduct security risk assessments and vulnerability management activities * Ensure compliance with financial industry regulations and frameworks including PCI DSS, SOC 2, and other relevant standards * Develop and maintain security documentation, including policies, procedures, and technical guidelines * Lead security awareness initiatives and provide guidance to technical teams on security best practices * Evaluate and recommend security tools and technologies to enhance our security posture   Which skills are required:  Bachelor's degree in Computer Science, Cybersecurity, or related field * 6+ years of experience in information security roles with progressive responsibility * Strong experience with SIEM platforms, EDR solutions, and security automation tools * Demonstrated expertise in cloud security, particularly with AWS security controls and architecture * Experience with identity and access management solutions such as Okta, SailPoint, or similar IAM platforms * Proficiency in security monitoring, log analysis, and threat hunting * Experience with implementation and management of DLP solutions * Knowledge of scripting and programming languages (Python, JavaScript, PowerShell) for security automation * Understanding of financial industry security requirements and regulatory compliance frameworks   ## Preferred Qualifications * Master's degree in Cybersecurity or related field * Experience in the financial services industry * Knowledge of AI/ML security considerations and controls * Experience building custom security tools and integrations * AWS Certified Security Specialty or other relevant security certifications * Experience with phishing simulation platforms and security awareness programs * Familiarity with MITRE ATT&CK framework for threat modeling     To be successful in this position, you will have the following: Self-motivated and able to handle tasks with minimal supervision. Superb analytical and problem-solving skills. Excellent collaboration and communication (Verbal and written) skills. Outstanding organizational and time management skills. Company Benefits & Perks Competitive salary, annual performance-based bonus and stock grant Retirement plan 401(k) with a competitive company match Excellent health and wellness benefits, including medical, dental, and vision benefits, and a company-paid medical healthcare premium. Wellness screenings and assessments, health coaches and counseling services through an Employee Assistance Program (EAP) Paid time off and a generous parental leave policy Daily company lunch allowance provided, and a fully stocked kitchen with healthy options for breakfast and snack Corporate events, including team outings, dinners, volunteer activities and company sports teams Education reimbursement and learning opportunities Modern offices with multi-monitor setups

Posted 1 week ago

Senior Cyber Solutions Engineer (Web Application Security)-logo
Senior Cyber Solutions Engineer (Web Application Security)
phia, LLCMorrisville, NC
At phia we hire talented and passionate people who are focused on collaborative, meaningful work, providing technical and operational subject matter expertise and support services to our partners and clients. We are seeking a skilled and experienced Senior Cyber Solutions Engineer to join our team in support of a large enterprise. The ideal candidate will have a comprehensive understanding of Web Application Security frameworks, technologies, and operations. This position is based out of Morrisville, NC but currently supports Remote work. What You'll Do Work as part of a small cross-functional team to develop, enhance, and support efforts to maintain a secure web presence. Manage web security applications to monitor and mitigate attacks on web facing applications. Ensure internal and external data security, adhering to best practices and compliance standards. Implement observability across platforms for application monitoring and alerting. Deploy threat detection and mitigation techniques to ensure data/application security. Work with auditors to ensure security compliance. Guide the design and implementation of secure solutions and services. Provide security architecture and engineering expertise across a variety of applications and domains. Support successful configuration and implementation of security solutions to reduce risk. Lead special projects or investigations into specific technology or solution issues and support research and piloting of new technologies. Serve as a point of contact for engineering efforts to assure accuracy and integrity while maintaining compliance with enterprise-wide architecture policies and guidelines. Required: Education + Experience Bachelor’s Degree + 13 years of relevant experience *or* 17+ total years of relevant work experience. Detailed understanding and expertise around web application and security architecture. Expertise in the capabilities and implementation of web application firewalls (WAF) and web application security technologies. Thorough understanding of PCI Security requirements. Excellent communication and collaboration skills. Ability to work independently and as part of a team. Preferred Experience + Certifications Technologies: Akamai CDN/WAF, Human Security products, F5 Application Security and Delivery solutions Technical Certifications: CompTIA Security+, ISC2 Certified Information Systems Security Professional (CISSP), ideally with ISSAP or ISSEP concentrations, or any Web Application Security related functional or vendor professional certifications. Security Clearance U.S. Citizenship required Ability to obtain Public Trust clearance required Who You Are A proactive problem solver that appreciates the challenges of working in a fast-paced, dynamic environment. Intellectually curious with a genuine desire to learn and advance your career. An effective communicator, both verbally and in writing. Customer service-oriented and mission-focused. Critical thinker with excellent problem-solving skills If your experience and qualifications aren’t a match for this position, you will remain in our database for consideration for future opportunities that may be a better fit. Who We Are phia, LLC is a Northern Virginia-based, small business established in 2011 with a focus on Cyber Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident Response, Cyber Architecture & Capability Analysis, Cyber Policy & Strategy, and Information Assurance/Security. we proudly support various agencies and offices within the Department of Defense (DoD), Federal government, and private/commercial entities. phia values work-life balance and offers the following benefits to full-time employees: Comprehensive medical insurance to include dental and vision Short Term & Long-Term Disability 401k Retirement Savings Plan with Company Match Tuition and Professional Development Assistance Flex Spending Accounts (FSA) phia does not discriminate on the basis of race, sex, color, religion, age, national origin, marital status, disability, veteran status, genetic information, sexual orientation, gender identity, or any other reason prohibited by law in the provision of employment opportunities and benefits. Please be aware job applicants have rights under federal employment laws. You can find more information about The Family Medical Leave Act (FMLA), Know Your Rights (EEO), and Employee Polygraph Protection Act (EPPA) on The U.S. Department of Labor (DOL)’s website HERE . Frequently Asked Questions - United States Department of Labor

Posted 2 days ago

Software Engineer, Security Observability-logo
Software Engineer, Security Observability
OpenAINew York City, NY
About the Team Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI's technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture. About the Role We are seeking a Software Engineer, Security Observability to join our Security team. In this role, you will be responsible for building secure, scalable systems that enhance our security observability infrastructure. Leveraging your strong engineering skills, you will collaborate with cross-functional teams to develop, deploy, and maintain robust software solutions that support our security and detection capabilities. This role is open to remote employees, or relocation assistance is available to one of our OpenAI offices in San Francisco, Seattle, or New York City. In this role, you will: Design and develop scalable software systems that facilitate security observability across our infrastructure. Build and maintain data pipelines that centralize and store security-relevant data from diverse sources. Proactively improve the resilience and reliability of data systems to ensure high platform availability Collaborate closely with Detection & Response (D&R) and other security teams to reduce the company's security risk. Contribute to data engineering in support of forensic investigations and compliance efforts. You might thrive in this role if you have: Strong software engineering experience, with proficiency in programming languages such as Python, Golang, or similar. A background in infrastructure as code, with experience using tools like Terraform and working with cloud platforms such as Azure. Experience with building and maintaining data pipelines, particularly for security-related use cases. A generalist engineering mindset, with the flexibility to pivot between various technical domains such as databases, site reliability engineering (SRE), or security. The ability to collaborate effectively with security and engineering teams to understand evolving data needs and implement scalable solutions. A proactive and detail-oriented approach to problem-solving, with a focus on improving security data visibility and forensic capabilities. About OpenAI OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. For additional information, please see OpenAI's Affirmative Action and Equal Employment Opportunity Policy Statement. Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations. We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link. OpenAI Global Applicant Privacy Policy At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Posted 3 days ago

Security Officer (Unarmed)-logo
Security Officer (Unarmed)
Walden SecurityNashville, TN
Job Summary: We are seeking dedicated and vigilant Unarmed Security Officers to join our security team. The ideal candidate will be responsible for ensuring the safety and security of our facilities, personnel, and visitors while maintaining a welcoming environment. This position requires strong observation skills, excellent communication abilities, and a commitment to providing exceptional customer service. We happily train entry level Security Officers. We will help you obtain and maintain a security license in the state of TN with an excellent training. Please note. Applications submitted without a resume will not be considered for this position. Key Responsibilities: Monitor and patrol assigned areas to ensure a safe and secure environment. Observe and report any suspicious activities, incidents, or safety hazards. Enforce company policies and procedures, including access control and visitor management. Provide assistance and directions to staff and visitors as needed. Respond promptly to emergencies, including medical situations, fire alarms, and security breaches. Maintain clear and accurate records of daily activities, incidents, and any interactions with law enforcement or emergency services. Conduct regular inspections of premises to identify and address potential security risks. Qualifications: High school diploma or equivalent; additional security training or certification is a plus. Strong observational and problem-solving skills. Excellent verbal and written communication abilities. Ability to remain calm and professional in high-pressure situations. Basic computer skills for reporting and documentation purposes. Must be able to stand or walk for extended periods. What You Will Do Our Security Officers protect the Industrial or Commercial property of our clients against fire, vandalism and illegal entry. Our clients range from Class-A Office Buildings, Luxury Residential Properties, Distilleries, Fortune 500 Companies, Financial Institutions, Telecommunications, Manufacturing/Industrial Factories, Hospitals and many others. Requirements: High School diploma or General Education Degree (GED) Minimum of 18 years of age Ability to pass criminal background check and drug test Same Day Offers: interview with the hiring team and receive an offer to join us the same day! Extensive Training: Our initial training paves the way for you to earn your Security Officer Certification. Walden Security has been recognized by Training Magazine as a Top 100 Award Winner which is awarded to companies with the most successful learning and development programs in the world! Unbelievable PERKS!: Save on phone, vacation, auto, retailers and more! Tuition Reimbursement: we believe in the professional development of our team members and provide annual reimbursement opportunities. Employee Family Scholarship: To date, Walden Security has awarded more than $300,000 in Employee Family Scholarships! Paid Time Off: offered to employees that average at least 32 hours per week Medical, Dental and Vision Insurance: multiple plan options for you and your dependents Health Savings Account: pay for health care more easily Voluntary Life Insurance: affordable plans available 401K: prepare for your retirement Employee Assistance Program: we offer free, confidential assistance for many of your life's needs Employee Recognition Programs: we believe in celebrating the "wins" with our Walden Security team. We reward the hard work and dedication of our employees through Tenure Recognition, On-The-Spot Bonuses, Officer of the Month and Officer of the Year recognitions which include awards and bonuses Culture of Caring: Walden Security supports many charitable organizations Award Winning Company: Walden Security has earned significant recognition for our better working environment for our officers, better service to our customers and a dedication to quality performance standards. Promote From Within Philosophy: Walden Security offers growth opportunities for our team members who are Setting the Standard by Setting the Example Flexible Schedules: We offer flexible scheduling with multiple shifts available including First, Second, Third and Weekend Shifts Competitive Pay! Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws. #SecurityOfficer

Posted today

5/15 Hiring Event - Security Officer (Armed)-logo
5/15 Hiring Event - Security Officer (Armed)
Sentara HealthcareNorfolk, VA
City/State Norfolk, VA Work Shift Multiple shifts available Overview: Sentara Health is hosting a Security Officer Hiring Event on May 15th from 3pm - 6pm at Norfolk General Hospital. The address is 600 Gresham Drive, Norfolk, VA 23507 Officers can be hired to support one of the following hospitals: Sentara Leigh, Sentara Obici, Sentara Princess Anne, Sentara Norfolk General or Sentara Virginia Beach General. Full Time and Part Time available Job Requirements Required: High School Degree or Equivalent Required: 1 year related experience. Previous security experience preferred Required: Active Listening; Communication; Critical Thinking; Judgment and Decision Making; Microsoft Office; Service Orientation; Speaking; Writing Required: Driver's License Position Overview The Security Officer provides a physically safe and secure environment for patients, visitors and employees at Sentara Hospitals and Free-standing Emergency Departments. The Security Officer actively patrols campus and monitors activity in and around buildings and grounds and responds appropriately to routine and emergency situations. This individual performs camera surveillance, maintains department logs and records, uses computer skills for documentation of daily activities, conducts security investigations, evaluates situations, and takes appropriate steps for professional and timely resolution. You will find that teamwork is exceptional, with everyone working together to ensure the safety of everyone on site. Click https://youtu.be/cZ8K76rhOic to hear Christian tell us about a day in the life of a Security Officer with Sentara Healthcare. . Benefits: Caring For Your Family and Your Career Medical, Dental, Vision plans Adoption, Fertility and Surrogacy Reimbursement up to $10,000 Paid Time Off and Sick Leave Paid Parental & Family Caregiver Leave Emergency Backup Care Long-Term, Short-Term Disability, and Critical Illness plans Life Insurance 401k/403B with Employer Match Tuition Assistance - $5,250/year and discounted educational opportunities through Guild Education Student Debt Pay Down - $10,000 Reimbursement for certifications and free access to complete CEUs and professional development Pet Insurance Legal Resources Plan Colleagues may have the opportunity to earn an annual discretionary bonus if established system and employee eligibility criteria is met Here at Sentara, we are committed to consistently enhancing our training, advancement tracks, work-life benefits, and more. Our goal is to make you feel more excited to be here every day! Sentara Norfolk General Hospital, located in Norfolk, VA, is a 525-bed tertiary care facility that is home to the only Level I Adult Trauma Center and burn trauma unit in Hampton Roads, and also serves as the primary teaching hospital for Eastern Virginia Medical School. In addition to the high-quality heart program at Sentara Heart Hospital, our facility is home to Nightingale Regional Air Ambulance and several other dedicated facilities and specialized services. As a recognized accredited Comprehensive Stroke Center, and Magnet hospital for nursing excellence, our hospital specializes in heart and vascular, neurosciences, neurosurgery, urology, oncology, spine care, advanced imaging, behavioral health, maternity, and women's health, including a state-of-the-art neonatal intensive care unit. Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves. In support of our mission "to improve health every day," this is a tobacco-free environment. For positions that are available as remote work, Sentara Health employs associates in the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.

Posted 3 days ago

Security Officer 1-2-logo
Security Officer 1-2
Children's Healthcare of AtlantaAtlanta, GA
Note: If you are CURRENTLY employed at Children's and/or have an active badge or network access, STOP here. Submit your application via Workday using the Career App (Find Jobs). Work Shift Variable Work Day(s) Variable Shift Start Time Variable Shift End Time Variable Worker Sub-Type Regular Children's is one of the nation's leading children's hospitals. No matter the role, every member of our team is an essential part of our mission to make kids better today and healthier tomorrow. We're committed to putting you first, and that commitment is at the heart of our company culture: People first. Children always. Find your next career opportunity and make a difference doing what you love at Children's. Job Description Works as empowered employee within established guidelines, procedures, and protocols to provide administrative and dispatching support for the care, welfare, safety, services, and security of hospital personnel, visitors, patients, and property. Proactively supports efforts that ensure delivery of safe patient care and services and promote a safe environment at Children's Healthcare of Atlanta. Experience 2 years of experience in security, law enforcement, fire, military, safety, EMS, or similar occupation Preferred Qualifications Some college Education High school diploma or equivalent Certification Summary Valid Georgia driver's license with clean driving record. at applicable location Heartsaver CPR or BLS CPR at orientation or within 3 months of employment Successfully pass crisis prevention and handcuffing training within 12 months of employment International Association for Healthcare Security and Safety basic certification within 6 months of employment Knowledge, Skills, and Abilities Excellent oral and written communication skills Ability to write complete, accurate, and concise incident reports Ability to function independently of constant supervision Ability to provide sound judgment and confidentiality in handling of sensitive information Attention to detail and organization Calm under stress Problem-solving Empathic listening Alertness and Observation Knowledge of Microsoft Word and the use of a personal computer Job Responsibilities Patrols assigned location on foot or in vehicle, checking and reporting irregularities of security and safety issues, policy compliance, parking concerns, and other important matters. Preserves order and may act to enforce regulations and directives for the hospital pertaining to personnel, visitors, patients, and premises. Protects evidence or scene of incident in the event of accidents, emergencies, or security investigations. Responds and acts as first responder to incidents of fire, medical emergencies, bomb threat, flooding, hazardous materials, inclement weather, and other incidents. Responds and intervenes in high stress crisis situations such as officer/medical staff needing assistance, patient elopement, physical assaults, behavioral health de-escalations and abductions. Assists Division of Family and Children Services, Risk Management, Safety, Nursing, Administration, law enforcement, and social workers in the protection and safety of personnel, patients, visitors, and property. Investigates incidents reported by employees, visitors, physicians, and patients and reports all incidents verbally or through incident reports by end of shift. Writes accurate, clear, concise, and grammatically correct incident reports and documents investigatory steps and results. Children's Healthcare of Atlanta is an equal opportunity employer committed to providing equal employment opportunities to all qualified applicants and employees without regard to race, color, sex, religion, national origin, citizenship, age, veteran status, disability or any other characteristic covered by applicable law. Primary Location Address 1575 Northeast Expy NE Job Family Security

Posted today

Product Security Engineer-logo
Product Security Engineer
FanDuelAtlanta, GA
ABOUT FANDUEL FanDuel Group is the premier mobile gaming company in the United States and Canada. FanDuel Group consists of a portfolio of leading brands across mobile wagering including: America’s #1 Sportsbook, FanDuel Sportsbook; its leading iGaming platform, FanDuel Casino; the industry’s unquestioned leader in horse racing and advance-deposit wagering, FanDuel Racing; and its daily fantasy sports product.   In addition, FanDuel Group operates FanDuel TV, its broadly distributed linear cable television network and FanDuel TV+, its leading direct-to-consumer OTT platform. FanDuel Group has a presence across all 50 states, Canada, and Puerto Rico. The company is based in New York with US offices in Los Angeles, Atlanta, and Jersey City, as well as global offices in Canada and Scotland. The company’s affiliates have offices worldwide, including in Ireland, Portugal, Romania, and Australia. FanDuel Group is a subsidiary of Flutter Entertainment, the world's largest sports betting and gaming operator with a portfolio of globally recognized brands and traded on the New York Stock Exchange (NYSE: FLUT). THE POSITION Our roster has an opening with your name on it As a Product Security Engineer, you will play a critical role in ensuring the security and integrity of our products throughout their lifecycle. You will collaborate with cross-functional teams to identify and address potential security vulnerabilities, design, and implement robust security measures, and advocate security best practices across the organization. This is an excellent opportunity to make a significant impact by safeguarding our products against emerging cyber threats for our customers that create opportunities to win. In addition to the specific responsibilities outlined above, employees may be required to perform other such duties as assigned by the Company. This ensures operational flexibility and allows the Company to meet evolving business needs. THE GAME PLAN Everyone on our team has a part to play Be a part of a bleeding edge security engineering organization which enables the agile development of secure and reliable applications and products. Embed security with product development teams to define and implement security requirements and best practices into product designs and architectures. Conduct thorough security assessments, including penetration testing, code reviews, and threat modeling, to identify and remediate potential security vulnerabilities. Partner with technology leaders to establish metrics that demonstrate security proficiency across product teams. Ensure processes associated with key systems are documented, maintained, and archived. Collaborate with development and operations teams to develop the standards for product security. Other duties as required.   THE STATS What we're looking for in our next teammate Experience in product security engineering, with a focus on web and mobile applications. Familiarity with security tools such as Nessus, Burp, and web application firewalls. Experience in secure coding practices, security architecture, and secure development methodologies. Experience in conducting security assessments, including penetration testing, vulnerability scanning, code reviews, and threat modeling. Knowledge of industry-standard security frameworks and regulations, such as ISO 27001, NIST, and OWASP. Ability to communicate and influence in an a highly distributed environment. Strong verbal and written communication skills.   PLAYER BENEFITS We treat our team right We offer amazing benefits above and beyond the basics. We have an array of health plans to choose from (some as low as $0 per paycheck) that include programs for fertility and family planning, mental health support, and fitness benefits. We offer generous paid time off (PTO & sick leave), annual bonus and long-term incentive opportunities (based on performance), 401k with up to a 5% match, commuter benefits , pet insurance, and more - check out all our benefits here:  FanDuel Total Rewards . *Benefits differ across location, role, and level. FanDuel is an equal opportunities employer and we believe, as one of our principles states, “We are One Team!”. As such, we are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, creed, sex, national origin, sexual orientation, age, citizenship status, marital status, disability, gender identity, gender expression, veteran status, or any other characteristic protected by state, local or federal law. We believe FanDuel is strongest and best able to compete if all employees feel valued, respected, and included. The applicable salary range for this position is $134,000 - $176,400 USD, which is dependent on a variety of factors including relevant experience, location, business needs and market demand. This role may offer the following benefits: medical, vision, and dental insurance; life insurance; disability insurance; a 401(k) matching program; among other employee benefits. This role may also be eligible for short-term or long-term incentive compensation, including, but not limited to, cash bonuses and stock program participation. This role includes paid personal time off and 14 paid company holidays. FanDuel offers paid sick time in accordance with all applicable state and federal laws. It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.   #LI-Hybrid

Posted 2 weeks ago

Director of Security Operations-logo
Director of Security Operations
Ripple LabsNew York, NY
At Ripple, we’re building a world where value moves like information does today. It’s big, it’s bold, and we’re already doing it. Through our crypto solutions for financial institutions, businesses, governments and developers, we are improving the global financial system and creating greater economic fairness and opportunity for more people, in more places around the world. And we get to do the best work of our career and grow our skills surrounded by colleagues who have our backs.  If you’re ready to see your impact and unlock incredible career growth opportunities, join us, and build real world value. In this role, you will build and lead a team of security professionals to deliver exceptional security solutions and operational processes designed to protect Ripple from internal and external threats. You will collaborate across the business with other leaders in Engineering, Product, IT, and Compliance to ensure Ripple maintains a world class detection and response capabilities. This senior role reports directly to the Head of Information Security and is located in our New York City office. WHAT YOU'LL DO: In this leadership role, you'll drive the SOC's evolution by streamlining incident response, minimizing false alarms, and strengthening threat detection. Maintain a continuous loop of monitoring and evaluation for security operations, investigations, automation, threat hunting, eDiscovery, legal holds, and forensic technologies. Lead the collaboration with Security and Software Engineering teams to implement robust monitoring and detection for Ripple's product and service portfolio. Forge a collaborative effort with other Ripple leaders to address online cryptocurrency scams plaguing the broader crypto industry. Develop an impactful distributed team of security professionals with skills. WHAT YOU'LL BRING: 7+ years of experience in Information Security and a willingness to commit to 10-12 days a month working in one of our amazing office spaces. Deep understanding of cybersecurity concepts, frameworks, and standard methodologies. Ability to analyze threat landscapes, identify vulnerabilities, and develop mitigation strategies. Knowledge of security tools and technologies like SIEM, SOAR, EDR, API Security and SSE. Proven track record to empower, guide, and develop a security operations team. Excellent written and verbal communication to collaborate with various collaborators at all levels. Strong analytical skills to make critical decisions under pressure. Experience in managing security projects, setting goals, and tracking progress. Ability to anticipate evolving security threats and proactively adapt security posture. For positions that will be based in NY, the annual salary range for this position is below. Actual salaries may vary based on numerous factors including, among other things, an individual applicant’s experience and qualifications for the position. This range does not include equity or additional compensation, such as bonuses or commissions.  NY Annual Base Salary Range $236,000 — $265,499 USD WHO WE ARE: Do Your Best Work The opportunity to build in a fast-paced start-up environment with experienced industry leaders A learning environment where you can dive deep into the latest technologies and make an impact.  A professional development budget to support other modes of learning. Thrive in an environment where no matter what race, ethnicity, gender, origin, or culture they identify with, every employee is a respected, valued, and empowered part of the team. In-office collaboration for moments that matter is important to our culture, and we give managers and teams the flexibility to decide which 10+ days a month they come in.  Weekly all-company meeting - business updates and ask me anything style discussion with our Leadership Team We come together for moments that matter which include team offsites, team bonding activities, happy hours and more! Take Control of Your Finances Competitive salary, bonuses, and equity Competitive benefits that cover physical and mental healthcare, retirement, family forming, and family support Employee giving match Mobile phone stipend Take Care of Yourself R&R days so you can rest and recharge Generous wellness reimbursement and weekly onsite & virtual programming Generous vacation policy - work with your manager to take time off when you need it Industry-leading parental leave policies. Family planning benefits. Catered lunches, fully-stocked kitchens with premium snacks/beverages, and plenty of fun events Benefits listed above are for full-time employees.  Ripple is an Equal Opportunity Employer. We’re committed to building a diverse and inclusive team. We do not discriminate against qualified employees or applicants because of race, color, religion, gender identity, sex, sexual identity, pregnancy, national origin, ancestry, citizenship, age, marital status, physical disability, mental disability, medical condition, military status, or any other characteristic protected by local law or ordinance.   Please find our UK/EU Applicant Privacy Notice and our California Applicant Privacy Notice for reference.

Posted 30+ days ago

Data Security Engineer-logo
Data Security Engineer
WhatnotSan Francisco, CA
🚀 Join the Future of Commerce with Whatnot!  Whatnot is the largest livestream shopping platform in North America and Europe to buy, sell, and discover the things you love. We’re re-defining e-commerce by blending community, shopping, and entertainment into a community just for you. As a remote co-located team, we’re inspired by innovation and anchored in our  values . With hubs in the US, UK, Ireland, Poland, and Germany, we’re building the future of online marketplaces—together. From fashion, beauty, and electronics to rare collectibles like trading cards, comic books, and even live plants, our live auctions have something for everyone. And we’re just getting started! As one of the  fastest growing marketplaces , we’re looking for bold, forward-thinking problem solvers across all functional areas. Check out the latest Whatnot updates on our  news  and  engineering  blogs and join us as we enable anyone to turn their passion into a business, and bring people together through commerce. 💻 Role  The Data Security Engineer is responsible for developing and overseeing technology security systems to help protect those systems and associated ones from the effects of various kinds of cybercrime. Advance our customers' access to our applications and services by offering seamless access control mechanisms, advanced authentication methods, progressive profiling, and a consolidated identity. Developing plans for increased security across the systems. Putting various protections into place. Testing and re-testing systems for known vulnerabilities. Monitoring systems for security breaches. Investigating those breaches and any other anomalies. Design and implement scalable data protection solutions (e.g., encryption, tokenization, DLP, data masking) for structured and unstructured data. Support and enforce data classification, labeling, and handling policies aligned with regulatory and business needs (e.g., PCI-DSS, GDPR, CCPA). Manage data loss prevention (DLP) systems and drive incident response for data exfiltration or unauthorized access events. Integrate data security controls into CI/CD pipelines and DevSecOps frameworks. Perform risk assessments and threat modeling for data-related systems and flows. Collaborate with Infrastructure, Cloud, and AppSec teams to secure data at rest, in transit, and in use across diverse environments. Monitor emerging data security threats and recommend technical and procedural controls to mitigate risk. Partner with Compliance and Legal teams to ensure audit readiness and support data privacy initiatives. Maintain detailed documentation of data security architecture, standards, and controls. US Based: Team members in this role are required to be within commuting distance of our San Francisco hub. 👋 You  Curious about who thrives at Whatnot? We’ve found that low ego, a growth mindset, and leaning into action and high impact goes a long way here. As our Data Security Engineer you should have a minimum of 7+ years of relevant experience in security preferably in a large enterprise environment, plus: Bachelor’s degree in Computer Science, computer engineering, cybersecurity, a related field, or equivalent work experience. 7+ years of experience in cybersecurity, with at least 2 years focused specifically on data security. Hands-on experience with one or more of the following: DLP platforms, encryption and key management, CASB, and data tokenization/masking tools. Strong understanding of data privacy regulations and standards (e.g., GDPR, CCPA, SOX, NIST). Familiarity with cloud platforms (AWS, GCP) and securing cloud-based data stores (e.g., S3, RDS, Snowflake). Ability to write and review secure infrastructure-as-code (e.g., Terraform, CloudFormation) and scripting (e.g., Python, Bash). Excellent communication skills with the ability to translate technical risks into business language. Self-motivated and creative problem-solver able to work independently with minimal guidance. Strong ability to work collaboratively across teams during high-stress situations. Ability to manage multiple competing priorities and use good judgment to establish an order of priorities on the fly. 💰Compensation $215,000/year to $260,000/year + benefits + equity. The salary range may be inclusive of several levels that would be applicable to the position. Final salary will be based on a number of factors including, level, relevant prior experience, skills, and expertise. This range is only inclusive of base salary, not benefits (more details below) or equity. 🎁 Benefits  Flexible Time off Policy and Company-wide Holidays (including a spring and winter break) Health Insurance options including Medical, Dental, Vision Work From Home Support Home office setup allowance Monthly allowance for cell phone and internet Care benefits Monthly allowance for wellness Annual allowance towards Childcare Lifetime benefit for family planning, such as adoption or fertility expenses Retirement; 401k offering for Traditional and Roth accounts in the US (employer match up to 4% of base salary) and Pension plans internationally Monthly allowance to dogfood the app All Whatnauts are expected to develop a deep understanding of our product. We're passionate about building the best user experience, and all employees are expected to use Whatnot as both a buyer and a seller as part of their job (our dogfooding budget makes this fun and easy!). Parental Leave 16 weeks of paid parental leave + one month gradual return to work *company leave allowances run concurrently with country leave requirements which take precedence. 💛 EOE  Whatnot is proud to be an Equal Opportunity Employer. We value diversity, and we do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, parental status, disability status, or any other status protected by local law. We believe that our work is better and our company culture is improved when we encourage, support, and respect the different skills and experiences represented within our workforce.

Posted 1 day ago

Corporate Security Engineer-logo
Corporate Security Engineer
WorkOSSan Francisco, CA
About WorkOS 🚀 WorkOS builds tools and services for developers to help them implement authentication, identity, authorization, and overall enterprise readiness. We’re a fully distributed team with employees across North American time zones. We’re well-funded, having raised an $80M Series B . Our fast-growing customer base includes hundreds of rapidly growing SaaS companies like OpenAI, Vercel, Perplexity and Cursor. About the Security Team The Security team at WorkOS is responsible for keeping our company and customer data safe. As a CorpSec Engineer, you’ll focus on the internal side of security—ensuring our people, devices, and systems are secure by default. We support a remote-first, fast-moving engineering organization and need strong, pragmatic security systems that scale with us. You’ll work to improve access controls, endpoint security, and tooling across the company. This role is a mix of hands-on execution and strategic thinking—perfect for someone who wants to shape how security works inside a modern startup. Who we’re looking for Have experience with corporate security and endpoint management in a cloud-native, remote-friendly environment Enjoy taking ownership of systems like Okta, MDM, and EDR and making them more reliable, secure, and easy to use Can balance security best practices with the realities of usability and speed Like designing scalable controls for access, identity, and device management Are comfortable working independently and cross-functionally with IT, Infra, and GRC Are curious, proactive, and enjoy simplifying complexity What you'll be doing Own and improve our identity and access management systems (Okta, Google Workspace, etc.) Administer and secure our MDM and endpoint protection tools (e.g. Kandji, EDRs) Partner with Infra to implement controls for least privilege, audit logging, and change management Develop automations and tooling for onboarding/offboarding, access reviews, and audit prep Proactively identify security risks and lead the rollout of mitigations Help shape security policies and practices that work well for engineers, not against them Work with vendors and evaluate new tools as needed Document systems and decisions clearly to support scale and clarity Requirements Experience with identity, access, and endpoint security tools (e.g. Okta, MDM, EDR) Familiarity with cloud-native IT/security operations and SaaS environments Comfort working in a fast-paced, high-autonomy environment A practical mindset and a bias for simplicity and security-by-default Nice to have Experience working at a startup or on a small security team Familiarity with SOC 2, ISO 27001, or other compliance frameworks Scripting or automation experience (e.g. Python, Bash, Terraform) The annual US base salary falls within the range of $175,000 to $250,000. This range does not encompass the full spectrum of benefits such as equity, health insurance, vacation time, and paid parental leave. This salary range covers multiple levels of engineering roles and final compensation will be determined considering various factors, including experience, skills, and qualifications. Benefits ( US Only) 💖 At WorkOS, we offer resources that emphasize personal and familial well-being. We offer healthcare coverage for you and your family, including medical, dental, and vision. We offer parental leave, paid-time off and fully remote working arrangements. Benefits include: - Competitive pay - Substantial equity grants - Healthcare insurance (Medical, Dental and Vision) for you and your family - 401k matching - Wellness and fitness monthly allowances - PTO + paid holidays + unlimited sick leave - Autonomy and flexibility with remote work Please inquire directly with our recruiting team for benefits available to those working outside the US. Equal Opportunity Employer WorkOS is an equal opportunity employer, committed to diversity and inclusiveness. We will consider all qualified applicants without regard to race, color, nationality, gender, gender identity or expression, sexual orientation, religion, disability or age.

Posted 1 day ago

Systems Security Engineer (Infrastructure)-logo
Systems Security Engineer (Infrastructure)
AnaVationHuntsville, AL
Be Challenged and Make a Difference In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture. Description of Task to be Performed: Come join our growing team and make a difference every day! AnaVation is seeking an experienced Systems Security Engineer with a strong understanding of systems infrastructures to support a high priority cyber-focused work program. The successful candidate will have experience maintaining systems, networks, and infrastructure within federal government environments. Key responsibilities include: · Serve as a subject matter expert for information technology environments. · Ensure team completes assigned duties such as system administration, identity and authentication, information system security accreditation, data storage and backup, physical infrastructure maintenance, automation development, and Authority to Operate (ATO) for applications and systems. · Enhance system operations through the design, development, and sustainment of new and existing system functionality to support configuration management, automated building, automated testing, automated deployment, and automated monitoring and notification. · Create and maintain bare-metal and virtual machines with the appropriate distribution of Operating Systems and network configuration, using configuration management tools and automation wherever appropriate. · Provision/configure the required software onto servers, such as web servers and databases. · Evaluate, improve, and maintain information security throughout the IT infrastructure. · Monitor and correct server issues and process for failures and performance bottlenecks. · Manage and monitor all installed systems and infrastructure. · Write and maintain custom scripts to increase system efficiency and lower the human intervention time on any tasks. Mentor junior staff and ensure quality of technical support and contractual deliverables. · Build new baselines with the appropriate security and access controls to include DISA STIGS and required security controls. · Create and maintain network infrastructure for both bare-metal and virtual machines with the appropriate LAN, WAN, vLAN, SDN, firewall and load balancer configurations, using both OEM and third-party tools that include virtual network tools (NSX) and services. · Provision/configure the required networking for servers and applications. · Evaluate, improve, and maintain information security throughout the data center network infrastructure. · Monitor and correct network issues and create recovery processes for failures and performance bottlenecks. · Provide real time alerts for network problem issues and implement proactive solutions for future problems to include re-design or tech refresh. · Write and maintain custom scripts to increase system efficiency and lower the human intervention time on any tasks, such as automated provisioning of addresses and VLANS with Infrastructure as a Service (IaaS). · Develop, modify, implement security policies, procedures, and guidelines to safeguard systems and maintain compliance with applicable federal guidelines for system and information security. · Support the management of systems security infrastructure, including firewalls, intrusion detection systems, and security software. · Conduct monthly vulnerability scans, monthly Plan of Action, and Milestones (POAM) creation, implement patches, ensure controls are reviewed, adhered to, and modified as needed. · Meet regularly with stakeholder teams to coordinate responses to the vulnerabilities and risks identified in the scans and POAMs. · Support Government personnel obtain and/or maintain system Authority to Operate (ATO) status requiring compliance with the requirements set by the customer. All activities and documentation will be managed in Risk Vision, Xacta, and/or a similar system. · Act as a subject matter expert for all information and system security related matters, advising Government personnel of best practices/solutions and documenting all aspects of the security program. This position is on-site with our customer in Huntsville, Alabama. This position requires an active Top Secret clearance and the ability to successfully pass a polygraph and obtain SCI accesses. Required Qualifications: Education: PhD or Masters Degree in related field or equivalent combination of relevant experience and education (Masters degree strongly preferred) Experience: 9 years (minimum) Required: Must have experience with Microsoft Windows / Active Directory Must have understanding of NIST 800 series publications and Federal Information Security Management Act (FISMA) Compliance. Knowledge base in DNS, DHCP, LDAP, SMTP, NTP, and integration with infrastructure services to solve technical and functional issues. Possess proficient understanding of networks, storage, and LAN/WAN systems and applications as well as their dependencies. Preferred Qualifications: Experience with VMWare vSphere 7 Experience with CISO Networking Experience with Dell Server, and SAN Storage Hardware Experience Familiarity with System Accreditation and Authorization and federal government ATO Processes Experience Evaluating, Documenting, and Managing NIST 80053 Control Implementations Experience with Governance, Risk, and Compliance (GRC) Tools (such as RiskVision, Xacta and JCAM) Preferred Certifications: Microsoft Windows Server Hybrid Administrator Associate VMware Data Center Virtualization (VCPDCV) Cisco Certified Network Professional (CCNP) Certified Information Systems Security Professional (CISSP) Benefits · Generous cost sharing for medical insurance for the employee and dependents · 100% company paid dental insurance for employees and dependents · 100% company paid long-term and short term disability insurance · 100% company paid vision insurance for employees and dependents · 401k plan with generous match and 100% immediate vesting · Competitive Pay · Generous paid leave and holiday package · Tuition and training reimbursement · Life and AD&D Insurance About AnaVation AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team. If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!

Posted 30+ days ago

Security Engineer-logo
Security Engineer
Alarm.comTysons, VA
As a Cloud Security Engineer, the primary role is to support the security of our cloud environments across AWS, GCP, and Azure. This involves assisting in identifying and mitigating security risks, using cloud-native security tools, and helping manage security solutions. The engineer will work with various teams to incorporate security into the software development lifecycle and assist in maintaining threat models. They will also help ensure compliance with security and regulatory requirements, assist in suggesting risk mitigation strategies, and respond to security queries from clients and partners. Familiarity with cloud security platforms like CNAPP, CSPM, CWPP, CASB, CIEM, and the Wiz tool is beneficial. Responsibilities: The Cloud Security Engineer primary job responsibilities include: Experience or familiarity with cloud security or engineering in public cloud providers AWS, GCP, and Azure. Assist in evaluating, reviewing, and deploying cloud native security tools in AWS and Azure. Support in monitoring, configuring rules, and enforcement using cloud security platforms such as CNAPP, CSPM, CWPP, CASB and CIEM. Assist in utilizing the Wiz tool for cloud security posture management, including configuration analysis, vulnerability detection, and compliance monitoring. Support in selecting and acquiring additional security solutions or enhancements to existing security solutions to improve overall enterprise security. Assist in determining, monitoring, and maintaining our security posture, in collaboration with the Engineering team. Support in overseeing and managing the deployment, integration, and configuration of security solutions and any enhancements to existing security solutions and the enterprise’s security documents. Collaborate with development, operations, and security teams to integrate security into all phases of the software development lifecycle. Assist in developing and maintaining threat models for cloud environments and help train engineering teams to develop attacker/risk-driven design skills. Actively partner with infrastructure, application, and other stakeholders to ensure deployed solutions minimize security and privacy risks. Assist in recommending actions/practices to management to ensure compliance with security and regulatory requirements in decision-making processes. Suggest actions to mitigate risk in any activity that potentially impacts the security of existing IT and information management. Assist in crafting responses to client and partner security questionnaires. Other duties as assigned REQUIREMENTS B.A. or B.S. in Computer Science or a similar engineering program, or equivalent experience. 5+ years of Cloud Information Security experience, with a focus on public cloud providers such as AWS, GCP, and Azure. AWS Security, CISSP, CISA, OSCP or other information security certification is a plus. Experience in performing security reviews of cloud application designs, source code and deployments is beneficial. Must stay up to date on the latest cloud security advisories, alerts, and vulnerabilities. Strong verbal and written communication skills for a highly collaborative environment. Attention to detail and focus on quality of deliverables. Familiarity with AWS services like EC2 & ECS, WAF & VPC configuration & IAM rules, and cloud security platforms such as CNAPP, CSPM, CWPP, CASB, CIEM is beneficial. Familiarity with Infrastructure as Code (IaC) tools like Terraform/CloudFormation is a plus. Comfortable with Python and able to read Java when necessary, with an emphasis on cloud security scripting and automation. Proven team experience and comfort in a team-oriented environment. Passion for working with cloud technology and excitement for creating high quality, secure consumer technology products. WHY WORK FOR ALARM.COM? Collaborate with outstanding people : We hire only the best. Our standards are high and our employees enjoy working alongside other high achievers. Make an immediate impact : New employees can expect to be given real responsibility for bringing new technologies to the marketplace. You are empowered to perform as soon as you join the Alarm.com team! Gain well-rounded experience : Alarm.com offers a diverse and dynamic environment where you will get the chance to work directly with executives and develop expertise across multiple areas of the business. Work with the latest technologies : You’ll gain exposure to a broad spectrum of IoT, SaaS, and M2M technologies including wireless communication, video monitoring, smart home automation, web development, and backend application development and hosting. Focus on fun : Alarm.com places high value on our team culture. We even have a committee dedicated to hosting a stand-out holiday party, happy hours, and other fun corporate events. Alarm.com values working together and collaborating in person. Our employees work from the office 4 days a week. COMPANY INFO Alarm.com  is the leading cloud-based platform for smart security and the Internet of Things. More than 7.6 million home and business owners depend on our solutions every day to make their properties safer, smarter, and more efficient. And every day, we’re innovating new technologies in rapidly evolving spaces including AI, video analytics, facial recognition, machine learning, energy analytics, and more.  We’re seeking those who are passionate about creating change through technology and who want to make a lasting impact on the world around them. For more information, please visit  www.alarm.com . COMPANY BENEFITS Alarm.com offers competitive pay and benefits inclusive of subsidized medical plan options, an HSA with generous company contribution, a 401(k) with employer match, and paid holidays, wellness time, and vacation increasing with tenure. Paid maternity and bonding leave, company-paid disability and life insurance, FSAs, well-being resources and activities, and a casual dress work environment are also part of our outstanding total rewards package! Alarm.com is an Equal Opportunity Employer In connection with your application, we collect information that identifies, reasonably relates to or describes you (“Personal Information”). The categories of Personal Information that we may collect include your name, government-issued identification number(s), email address, mailing address, other contact information, emergency contact information, employment history, educational history, criminal record, and demographic information.  We collect and use those categories of Personal Information about you for human resources and other business management purposes, including identifying and evaluating you as a candidate for potential or future employment or future positions, recordkeeping in relation to recruiting and hiring, conducting criminal background checks as permitted by law, conducting analytics, and ensuring compliance with applicable legal requirements and Company policies.  By submitting your application, you acknowledge that we may retain some of the personal data that you provide in your application for our internal operations such as managing our recruitment system and ensuring that we comply with labor laws and regulations even after we have made our employment decision Notice To Third Party Agencies Alarm.com  understands the value of professional recruiting services.  However, we are not accepting resumes from recruiters or employment agencies for this position. In the event we receive a resume or candidate referral for this position from a third-party recruiter or agency without a previously signed agreement, we reserve the right to pursue and hire those candidate(s) without any financial obligation to you.  If you are interested in working with  Alarm.com , please email your company information and standard agreement to   RecruitingPartnerships@Alarm.com .  

Posted 30+ days ago

Linux Security Engineer-logo
Linux Security Engineer
Point72 New York, NY
JOB TITLE Linux Security Engineer A CAREER WITH POINT72’S TECHNOLOGY TEAM As Point72 reimagines the future of investing, our Technology group is constantly improving our company’s IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts experimenting, discovering new ways to harness the power of open-source solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity. Our Global Information Security team’s mission is to ensure the development, implementation, and management of a comprehensive program that effectively protects the confidentiality, integrity, and availability of Point72 information assets. Our team is comprised of security professionals with expertise in a diverse portfolio of security disciplines. WHAT YOU’LL DO • Design and implement security controls and hardening measures for our enterprise Linux environments • Lead security architecture decisions for Linux infrastructure across on-premise datacenters and cloud platforms • Develop and maintain automation scripts using Ansible for security compliance and configuration management • Implement security-hardened Linux OS images and guardrails to enforce their use across the organization • Manage and optimize container security strategies using Docker, Podman, and associated orchestration tools (K8’s, OpenShift, Swarm, etc) • Architect, configure and maintain Linux system authentication and authorization mechanisms • Improve privileged access management solutions for Linux • Monitor and respond to security incidents involving Linux systems • Create and maintain security documentation and standard operating procedures • Perform security assessments and audits of Linux infrastructure • Collaborate with cross-functional teams to ensure security requirements are met • Provide technical guidance and mentorship on Linux security best practices WHAT’S REQUIRED • 5+ years of hands-on experience with enterprise Linux environments, particularly RHEL and RPM-based distributions • Strong expertise in Linux security principles, hardening techniques, and best practices • Familiarity with multiple common Linux distributions (eg: Ubuntu, Debian, Rocky, CoreOS, etc) • Proficient in Ansible automation and shell scripting • Experience with Linux authentication systems and integration with Active Directory/LDAP (eg: Centrify) • Demonstrated experience with security for container technologies (Docker, Podman) and associated orchestration tools (Kubernetes, OpenShift, Swarm, etc.) • Deep familiarity with Linux privileged access management (su, sudo, sudosh) and related 3rd-party tools (eg: CyberArk, Delinea) • Strong familiarity with best practices for securing and hardening common Linux services (SSH, HTTPD, SMTP, etc.) • Intimate knowledge of Linux firewall configuration (iptables, firewalld, etc) • Experience across both on-premise (bare metal, VMWare) and cloud (AWS, Azure, or GCP) • Experience with Foreman and/or equivalent server lifecycle management tools • General familiarity with common Linux DevOps and CI/CD processes and tools • Commitment to the highest ethical standards WE TAKE CARE OF OUR PEOPLE We invest in our people, their careers, their health, and their well-being. When you work here, we provide: • Fully-paid health care benefits • Generous parental and family leave policies • Volunteer opportunities • Support for employee-led affinity groups representing women, people of color and the LGBQT+ community • Mental and physical wellness programs • Tuition assistance • A 401(k) savings program with an employer match and more ABOUT POINT72 Point72 is a leading global alternative investment firm led by Steven A. Cohen. Building on more than 30 years of investing experience, Point72 seeks to deliver superior returns for its investors through fundamental and systematic investing strategies across asset classes and geographies. We aim to attract and retain the industry’s brightest talent by cultivating an investor-led culture and committing to our people’s long-term growth. For more information, visit  www.Point72.com/about . The annual base salary range for this role is $200,000-$250,000 (USD) , which does not include discretionary bonus compensation or our comprehensive benefits package. Actual compensation offered to the successful candidate may vary from posted hiring range based upon geographic location, work experience, education, and/or skill level, among other things.

Posted 30+ days ago

(280) Information Security Support SME-logo
(280) Information Security Support SME
Arlo SolutionsArlington, VA
Company Summary Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.  Job Responsibilities and/or Success Factors: Conducts security reviews of documents, transcripts, and manuscripts to determine whether classified information is contained in the document and if an unauthorized disclosure has occurred and develop metrics to track the disclosures. Coordinates with component original classification authorities to identify disposition of each case. Collaborates with the original classification authority (OCA) and the DoD Office of the General Counsel to ensure initial inquiries and damage assessments are conducted, as well as determine if further investigation and/or referral to the Department of Justice is warranted.  Assists in preparing notification correspondence for the Congress and/or the Information Security Oversight Office. Assists with policy development reference information security and unauthorized disclosures.  Education and Minimum Qualifications: Must have an active TS/SCI Security Clearance Bachelor’s degree from an accredited college or university, preferably in information security or related.  Experience with OUSD(I&S) is preferred. Demonstrated knowledge of the Department’s supporting security functions to include insider threat, operations security, technology protection, habeas, declassification, SCI and SAP security policies is desired. Required Qualifications: 5 years of security policy experience in the following areas: Demonstrated knowledge of policies and procedures used in the information security discipline—for DoD, the Defense Intelligence Enterprise, and at the national level Demonstrated experience recommending security policy positions and once approved, representing those positions to a broad constituency at various forums as well as facilitate or chair forums to draft policy and/or achieve policy issue resolution Demonstrated experience drafting, coordinating, and staffing actions • Demonstrated experience using written communications skills and ability to independently draft, coordinate, and staff actions within OSD, the Services, DIA and the Joint Staff Strongly Desired: Experience demonstrating understanding of the CFIUS process.  Experience briefing leaders on CFIUS cases. Experience researching companies that are repeating in the CFIUS process to look for trends of purchasing.   AAP Statement We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.  

Posted 30+ days ago

(178) Senior Security Control Assessor -logo
(178) Senior Security Control Assessor
Arlo SolutionsArlington, VA
Company Summary Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.  Position Overview   The Department of Defense’s (DoD) Chief Digital and Artificial Intelligence Office (CDAO) is at the forefront of supporting the DoD with the adoption of innovative technologies such as data, analytics, and artificial intelligence to help accelerate predictions, forecasts, and interpretations for both strategic and tactical decisions across the enterprise. These ground-breaking endeavors bring new challenges to the assessment of DoD IT systems that previously did not exist.   The Security Control Assessor (SCA) plays a pivotal role in comprehensively understanding the cybersecurity posture of a given capability within CDAO. SCAs must go beyond a mere compliance focus on controls to articulate the inherent risks of systems. Success in this position requires expertise in statutory guidance such as the NIST 800 series, DoDI 8500.01, DoD 8140.03, ISO 27001, COBIT, DoD RMF, and Operation Vulcan Logic (OVL), along with current cybersecurity best practices. The Senior SCA provides authoritative risk determinations and recommendations critical for the Authorizing Official (AO) to grant an Authority to Operate (ATO). Their assessments integrate technical rigor with regulatory compliance, ensuring a robust security posture and informing strategic decision-making. Work Location Full time remote. Candidates in the Washington DC Metropolitan preferred. Travel requirements will vary with location, however, expect approximately 10% to 25%.    Job Responsibilities Provide the AO with an independent risk assessment of assigned systems and an authorization. Advise Program Managers on AO determination utilizing OVL documentation. Provide senior advisory support to CDAO AO regarding authorizations of CDAO capabilities. Utilize expert knowledge and experience regarding risk management strategies in support of a major DoD program. Providing support regarding the agile authorization and OVL processes. Provide independent risk analysis and recommendation. Collaborate between the AO and the program as well as Program leadership. Identify the security baseline based on the mission and security impacts to the system. Determine assessment criteria, develop, review, and create a plan to assess the security requirements. Assess the security requirements in accordance with the assessment procedures defined in the Security. Assessment Plan (SAP). Prepare the Security Assessment Report (SAR). Monitor POAM actions based on findings and reassess remediated risk(s) as appropriate. Develop the Risk Recommendation and AO Determination Brief. Develop a system-level continuous monitoring strategy. Author and present briefs regarding status of authorizations to AO and other senior Government officials. Provides security architecture and DoD compliance advisory support. Perform other duties as assigned or required. Success Factors Have a strong background in information security systems management (ISSM), risk management, and governance, risk and compliance (GRC). Strong clients focus and commitment to continuous improvement, ability to proactively network and establish relationships. Manage multiple priorities in a high-paced and fast-changing environment. Experience supporting and assessing risks within a CI/CD DevSecOps environment. Key areas of experience would include data mesh, data orchestration, control gates review, and vulnerability management within a pipeline. Expansive knowledge with integrating IaaS, PaaS, and SaaS offerings into government cloud environments (ie. AWS, AZURE & GCP). Experience would include cloud compute, cloud storage, cloud native solutions, cloud data transfer, Cross Domain Solutions,  and cloud networking. Experience assessing STIGs, Cloud Compliance Guides, Shares responsibility models, and System Mission Owner responsibilities within Government Cloud Environments. Experience working with OSD leadership or Military component or branch. Expert understanding of NIST 800 series guidelines, DoDI 8500.01, DoD 8140.03, rISO 27001, COBIT, DoD RMF, OVL, and current cybersecurity best practices. Excellent communication/presentation skills briefing senior military and government civilian leadership. Experienced with writing policies, guides, procedures. Experience in hands on with eMASS, Xacta and/or other GRC tools. Experience with Federal and FedRamp A&A Processes. Experienced and comfortable advising at the Senior Executive Service (SES) level of customers. Education and Minimum Qualification Must have an active TS Clearance SCI eligible. Bachelor’s degree in computer science/information technology, or other related degree fields (master’s degree is preferred or at least 10 years of related experience) At least 10+ years of cybersecurity experience including a senior technical or management role, Project or Program Management experience a plus. At least one IAT/IAM or equivalent security certifications ex. CISSP, CCSP, CISM, CISA, or CASP   AAP Statement We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.  

Posted 30+ days ago

Senior Staff Security Engineer-logo
Senior Staff Security Engineer
Findhelp, A Public Benefit CorporationDenver, CO
We’re changing the way people connect to social care. At Findhelp, we’ve built a comprehensive platform of products and services that make it easy for you to connect people to resources, follow them on their journey, and track your impact in a fast and reliable way. Our industry-leading social care network includes more than half a million local, state, and national programs that serve every ZIP Code in the country, from rural areas to major metropolitan centers. Findhelp is headquartered in Austin, Texas and has been enabling healthcare, government, education, and other organizations to connect people with the social care resources that serve them, with privacy and security, since 2010. As a mission driven organization, we are focused on creating a positive impact by connecting people in need to the programs that serve them with dignity and ease. Powered by our proprietary technology that enables people to find the resources available in their area, we have helped millions of Seekers find food, health, housing and employment programs. As a Senior Staff Security Engineer, you will be a key leader in shaping and executing our security strategy. You will leverage your deep technical expertise to drive significant security initiatives across the organization, ensuring the protection of our SaaS platform and sensitive personal health information. You will be a subject matter expert, mentoring other engineers and members of the Compliance team, and influencing security decisions at a high level. Responsibilities and Duties: Developing and maintaining the organization's security architecture, including hands-on work implementing new log sources into our SIEM. Leading strategic security initiatives and projects from inception to completion. Fostering a culture of security excellence. Researching and evaluating emerging security technologies and threats to inform our security roadmap. Defining and advocating for security standards and best practices across engineering and product teams. Representing the security team in critical cross-functional projects, providing security guidance and expertise. Performing forensics and other security incident response activities. Ensuring permissions and configuration within various components of our system are properly monitored and adhere to the principle of least-privilege. Qualifications: 5+ years of experience designing, implementing, and integrating security controls into SaaS cloud platforms. Experience with system and network exploitation methods, attack pathologies, and intrusion techniques. Knowledge of computer forensic tools, technologies and methods. Direct experience with anti-virus software, intrusion detection, and firewalls (particularly related to protection against bot traffic). Knowledge of risk assessment tools, technologies and methods. Excellent communication skills (verbal, written, presentation). Ability to handle multiple competing priorities in a fast-paced, high-stress environment. GCP and Splunk experience are a huge plus. We value being together We believe being together enables stronger relationships, collaboration, and culture. This position is in office and candidates must be located in Austin, Texas, Madison, Wisconsin, or Denver, Colorado Perks at Findhelp •401k & stock options •Free food and onsite gym at our Austin HQ •Paid parental leave •Competitive PTO & 10 paid holidays •Health, dental, and vision insurance •Dog-friendly office in Austin HQ •24/7 access to telemedicine and counseling •Book Purchasing Program We’re building a diverse, inclusive team You’re welcome here. We want everyone to be able to easily connect to the help they need, and we want our teams to reflect and represent our communities. It is our policy to recruit, hire, train, and promote individuals, as well as administer any and all Company policies, without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin or ancestry, physical and mental ability, political affiliation, race, religion, creed, sexual orientation, socio-economic status, veteran status, or any other protected class, in accordance with applicable laws . Accommodations are available for applicants with disabilities. Here are some of the ways we support our staff: •Culture Committee •Leadership Development Training •Paid Volunteering Time

Posted 30+ days ago

(224) Security Control Accessor-logo
(224) Security Control Accessor
Arlo SolutionsArlington, VA
Company Summary Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.  Position Overview   The Department of Defense’s (DoD) Chief Digital and Artificial Intelligence Office (CDAO) is at the forefront of supporting the DoD with the adoption of innovative technologies such as data, analytics, and artificial intelligence to help accelerate predictions, forecasts, and interpretations for both strategic and tactical decisions across the enterprise. These ground-breaking endeavors bring new challenges to the assessment of DoD IT systems that previously did not exist.   The Security Control Assessor (SCA) plays a pivotal role in comprehensively understanding the cybersecurity posture of a given capability within CDAO. SCAs must go beyond a mere compliance focus on controls to articulate the inherent risks of systems. Success in this position requires expertise in statutory guidance such as the NIST 800 series, DoDI 8500.01, DoD 8140.03, ISO 27001, COBIT, DoD RMF, and Operation Vulcan Logic (OVL), along with current cybersecurity best practices The SCA provides authoritative risk determinations and recommendations critical for the Authorizing Official (AO) to grant an Authority to Operate (ATO). Their assessments integrate technical rigor with regulatory compliance, ensuring a robust security posture and informing strategic decision-making. Work Location Full time remote. Candidates in the Washington DC Metropolitan preferred. Travel requirements will vary with location, however, expect approximately 10% to 25%.    Job Responsibilities Provide the AO with an independent risk assessment of assigned systems and an authorization. Advise Program Managers on AO determination utilizing OVL documentation. Provide senior advisory support to CDAO AO regarding authorizations of CDAO capabilities. Utilize expert knowledge and experience regarding risk management strategies in support of a major DoD program. Providing support regarding the agile authorization and OVL processes. Provide independent risk analysis and recommendation. Collaborate between the AO and the program as well as Program leadership. Identify the security baseline based on the mission and security impacts to the system. Determine assessment criteria, develop, review, and create a plan to assess the security requirements. Assess the security requirements in accordance with the assessment procedures defined in the Security Assessment Plan (SAP). Prepare the Security Assessment Report (SAR). Monitor POAM actions based on findings and reassess remediated risk(s) as appropriate. Develop the Risk Recommendation and AO Determination Brief. Develop a system-level continuous monitoring strategy. Author and present briefs regarding status of authorizations to AO and other senior Government officials. Provides security architecture and DoD compliance advisory support. Success Factors Have a strong background in risk management, and governance, risk and compliance (GRC). Strong clients focus and commitment to continuous improvement, ability to proactively network and establish relationships. Manage multiple priorities in a high-paced and fast-changing environment. Perform other duties as assigned or required. Education and Minimum Qualifications Must have at least a Public Trust – Secret level clearance preferred. Bachelor’s degree in computer science/information technology, or other related degree fields (master’s degree is preferred or at least 5 years of related experience) At least 5+ years of cybersecurity experience including a senior technical or management role, Project or Program Management experience a plus. At least one IAT/IAM or equivalent security certifications ex. Sec+, CISSP, CCSP, CISM, CISA, or CASP Experience working with OSD leadership or Military component or branch. Understanding of NIST 800 series guidelines, DoDI 8500.01, DoD 8140.03, rISO 27001, COBIT, DoD RMF, OVL, and current cybersecurity best practices. Excellent communication/presentation skills briefing senior military and government civilian leadership. Experienced with writing standard operating procedures. Experience in hands on with eMASS, Xacta and/or other GRC tools. Experience with Federal and FedRamp A&A Processes. AAP Statement We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.  

Posted 30+ days ago

Associate Manager, Corporate Safety & Security-logo
Associate Manager, Corporate Safety & Security
DoorDash New York, NY
About the Team The Global Safety and Security team is responsible for advancing DoorDash through the protection of people, property, operations, brand and reputation. We manage safety and security risk and deliver value across the business through agility, technology, and a people-first approach. Our team strives to always be in front, and there for our people anytime, anywhere. About the Role  DoorDash is looking for an experienced Associate Manager, Corporate Safety and Security to join our Global Safety and Security team. You will work with Global Safety and Security leadership to directly support the safety and security of our New York, Toronto, and Washington DC corporate offices. We are looking for a high-output, strategic contributor to help develop, implement, and execute key Safety and Security programs that align with DoorDash’s operational goals and commitment to a safe workplace. This role will be instrumental in enhancing our safety culture, managing events with precision, and ensuring our people are well-informed and supported during emergencies.  You will partner cross-functionally with Global Safety and Security team members, Human Resources, Real Estate, Communications, and other key business units to develop scalable, resilient, and engaging safety and security programs.  This role is largely in-office, based in our New York City corporate office location, and will report to the Senior Manager, Corporate Safety and Security.  You’re excited about this opportunity because you will…  Directly influence business development and guide safe and secure operations in a fast-paced, people-first environment.  Develop and lead workplace safety, security, and emergency management programs, ensuring alignment with local/state/federal regulations and company values.  Oversee emergency preparedness and response operations, including leading the global Emergency Response Team (ERT), coordinating drills, and ensuring readiness across departments.  Plan and execute on safety and security logistics for corporate and off-site events, including risk assessments, security coverage, and emergency response protocols.  Design and implement safety engagement initiatives, such as awareness campaigns, safety weeks, tabletop exercises, and leadership briefings to foster a proactive safety culture.  Develop and execute internal safety and security communications, ensuring timely and clear messaging for incidents, procedures, and training through collaboration with internal comms teams.  Lead and supervise assigned Security Specialists and contractors, ensuring high standards of performance, engagement, and accountability.  Create and maintain program documentation and SOPs, and train stakeholders on safety and security protocols.  Conduct site assessments, threat and risk analyses, and physical security audits, identifying vulnerabilities and driving mitigation strategies.  Oversee physical access control, guest management, and credentialing processes, ensuring a secure and welcoming environment.  Partner with internal stakeholders to analyze incidents and trends, drive data-informed decisions, and continuously improve our safety posture.  Establish cross-functional working groups to align business goals with security strategies, and recommend risk mitigation plans. Serve as a safety and security liaison during high-impact events, emergencies, and business continuity activations.  We’re excited about you because you…  Have 4-6+ years of experience in corporate safety, security, or emergency management.  Hold a bachelor’s degree or equivalent experience; safety/security/emergency management certifications are a plus (e.g., CPP, PSP, CEM, OSHA).  Understand the intersection of physical security, emergency preparedness, and technology in the workplace. ● Have demonstrated success in planning and executing security coverage for events and managing ERT programs.  Excel at engaging teams through communications and programming, creating a sense of shared ownership safety outcomes.  Have strong leadership and coaching abilities with a proven track record of developing high-performing teams. ● Possess excellent written and verbal communication skills, including the ability to influence stakeholders and deliver clear, effective messages during crises.  Are highly organized and self-motivated, capable of handling confidential information and navigating ambiguous situations with professionalism.  Use data and insights to drive decisions and demonstrate program success.  Thrive in fast-paced environments, and are energized by building programs from the ground up.    Notice to Applicants for Jobs Located in NYC or Remote Jobs Associated With Office in NYC Only We use Covey as part of our hiring and/or promotional process for jobs in NYC and certain features may qualify it as an AEDT in NYC. As part of the hiring and/or promotion process, we provide Covey with job requirements and candidate submitted applications. We began using Covey Scout for Inbound from August 21, 2023, through December 21, 2023, and resumed using Covey Scout for Inbound again on June 29, 2024. The Covey tool has been reviewed by an independent auditor. Results of the audit may be viewed here: Covey Compensation The successful candidate's starting pay will fall within the pay range listed below and is determined based on job-related factors including, but not limited to, skills, experience, qualifications, work location, and market conditions.  Base salary is localized according to an employee’s work location. Ranges are market-dependent and may be modified in the future. In addition to base salary, the compensation for this role includes opportunities for equity grants. Talk to your recruiter for more information. DoorDash cares about you and your overall well-being. That's why we offer a comprehensive benefits package to all regular employees, which includes a 401(k) plan with employer matching, paid time off and paid sick leave in compliance with applicable laws (e.g. Colorado Healthy Families and Workplaces Act) (for salaried roles: flexible vacation, plus 80 hours of paid sick time per year; for hourly roles: vacation accrued at about 1 hour for every 25.97 hours worked (e.g. about 6.7 hours/month if working 40 hours/week; about 3.4 hours/month if working 20 hours/week), and paid sick time accrued at 1 hour for every 30 hours worked (e.g. about 5.8 hours/month if working 40 hours/week; about 2.9 hours/month if working 20 hours/week), 16 weeks of paid parental leave, a wellness benefit, and a commuter benefit match. Additionally, for full-time employees, DoorDash offers medical, dental, and vision benefits, 11 paid holidays, disability and basic life insurance, family-forming assistance, and a mental health program, among others.  To learn more about our benefits, visit our careers page  here . The base pay for this position ranges from our lowest geographical market up to our highest geographical market within the United States. $91,800 — $135,000 USD About DoorDash At DoorDash, our mission to empower local economies shapes how our team members move quickly, learn, and reiterate in order to make impactful decisions that display empathy for our range of users—from Dashers to merchant partners to consumers. We are a technology and logistics company that started with door-to-door delivery, and we are looking for team members who can help us go from a company that is known for delivering food to a company that people turn to for any and all goods. DoorDash is growing rapidly and changing constantly, which gives our team members the opportunity to share their unique perspectives, solve new challenges, and own their careers. We're committed to supporting employees’ happiness, healthiness, and overall well-being by providing comprehensive benefits and perks including premium healthcare, wellness expense reimbursement, paid parental leave and more. Our Commitment to Diversity and Inclusion We’re committed to growing and empowering a more inclusive community within our company, industry, and cities. That’s why we hire and cultivate diverse teams of people from all backgrounds, experiences, and perspectives. We believe that true innovation happens when everyone has room at the table and the tools, resources, and opportunity to excel. Statement of Non-Discrimination : In keeping with our beliefs and goals, no employee or applicant will face discrimination or harassment based on: race, color, ancestry, national origin, religion, age, gender, marital/domestic partner status, sexual orientation, gender identity or expression, disability status, or veteran status. Above and beyond discrimination and harassment based on “protected categories,” we also strive to prevent other subtler forms of inappropriate behavior (i.e., stereotyping) from ever gaining a foothold in our office. Whether blatant or hidden, barriers to success have no place at DoorDash. We value a diverse workforce – people who identify as women, non-binary or gender non-conforming, LGBTQIA+, American Indian or Native Alaskan, Black or African American, Hispanic or Latinx, Native Hawaiian or Other Pacific Islander, differently-abled, caretakers and parents, and veterans are strongly encouraged to apply. Thank you to the Level Playing Field Institute for this statement of non-discrimination. Pursuant to the San Francisco Fair Chance Ordinance, Los Angeles Fair Chance Initiative for Hiring Ordinance, and any other state or local hiring regulations, we will consider for employment any qualified applicant, including those with arrest and conviction records, in a manner consistent with the applicable regulation. If you need any accommodations, please inform your recruiting contact upon initial connection.

Posted 30+ days ago

Cyber Security Engineer (Remote)-logo
Cyber Security Engineer (Remote)
Token Metrics,
Token Metric's looking to hire a cyber security engineer with an analytical mind and a detailed understanding of cybersecurity methodologies. Cyber security engineers are expected to have meticulous attention to detail, outstanding problem-solving skills, work comfortably under pressure, and deliver on tight deadlines. To ensure success, a cyber security engineer must display an excellent understanding of technology infrastructures using Firewalls, VPN, Data Loss Prevention, IDS/IPS, Web-Proxy, and Security Audits. Top candidates will be comfortable working with a variety of technologies, security problems, and troubleshooting of the network. Responsibilities Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization's data, systems, and networks. Troubleshooting security and network problems. Responding to all system and/or network security breaches. Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls. Participating in the change management process. Testing and identifying network and system vulnerabilities. Daily administrative tasks, reporting, and communication with the relevant departments in the organization. Requirements A degree in computer science, IT, systems engineering, or related qualification. 2 years of work experience with incident detection, incident response, and forensics. Experience with Firewalls (functionality and maintenance), Office 365 Security, VSX, and Endpoint Security. Proficiency in Python, C++, Java, Ruby, Node, Go, and/or Power Shell. Ability to work under pressure in a fast-paced environment. Strong attention to detail with an analytical mind and outstanding problem-solving skills. Great awareness of cybersecurity trends and hacking techniques.

Posted 30+ days ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesSan Francisco, CA
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Interactive Brokers logo
Staff Security Engineer
Interactive BrokersGreenwich, CT
Apply

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

Company Overview

Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment.

IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments.

Barron's has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology.

This is a hybrid role (3 days in the office / 2 days remote).

About your team:

Interactive Brokers (IBKR) is seeking a Senior Security Engineer to join our cybersecurity team. In this role, you will be responsible for strengthening our security infrastructure, implementing advanced security controls, and protecting our critical financial systems and customer data. You will work collaboratively with cross-functional teams to drive security improvements and ensure compliance with financial industry regulations.

What will be your responsibilities within IBKR: 

* Design, implement, and maintain security solutions across our cloud and on-premises environments
* Lead incident response efforts for security breaches and events, including forensic investigations and root cause analysis
* Develop and enhance our SOAR (Security Orchestration, Automation and Response) capabilities to streamline security operations
* Monitor and analyze security logs, alerts, and events using SIEM tools to identify and respond to potential threats
* Implement and manage cloud security controls in AWS and other cloud environments
* Conduct security risk assessments and vulnerability management activities
* Ensure compliance with financial industry regulations and frameworks including PCI DSS, SOC 2, and other relevant standards
* Develop and maintain security documentation, including policies, procedures, and technical guidelines
* Lead security awareness initiatives and provide guidance to technical teams on security best practices
* Evaluate and recommend security tools and technologies to enhance our security posture

 

Which skills are required:

 Bachelor's degree in Computer Science, Cybersecurity, or related field
* 6+ years of experience in information security roles with progressive responsibility
* Strong experience with SIEM platforms, EDR solutions, and security automation tools
* Demonstrated expertise in cloud security, particularly with AWS security controls and architecture
* Experience with identity and access management solutions such as Okta, SailPoint, or similar IAM platforms
* Proficiency in security monitoring, log analysis, and threat hunting
* Experience with implementation and management of DLP solutions
* Knowledge of scripting and programming languages (Python, JavaScript, PowerShell) for security automation
* Understanding of financial industry security requirements and regulatory compliance frameworks

 

## Preferred Qualifications
* Master's degree in Cybersecurity or related field
* Experience in the financial services industry
* Knowledge of AI/ML security considerations and controls
* Experience building custom security tools and integrations
* AWS Certified Security Specialty or other relevant security certifications
* Experience with phishing simulation platforms and security awareness programs
* Familiarity with MITRE ATT&CK framework for threat modeling

 

 To be successful in this position, you will have the following:

  • Self-motivated and able to handle tasks with minimal supervision.
  • Superb analytical and problem-solving skills.
  • Excellent collaboration and communication (Verbal and written) skills.
  • Outstanding organizational and time management skills.

Company Benefits & Perks

  • Competitive salary, annual performance-based bonus and stock grant
  • Retirement plan 401(k) with a competitive company match
  • Excellent health and wellness benefits, including medical, dental, and vision benefits, and a company-paid medical healthcare premium.
  • Wellness screenings and assessments, health coaches and counseling services through an Employee Assistance Program (EAP)
  • Paid time off and a generous parental leave policy
  • Daily company lunch allowance provided, and a fully stocked kitchen with healthy options for breakfast and snack
  • Corporate events, including team outings, dinners, volunteer activities and company sports teams
  • Education reimbursement and learning opportunities
  • Modern offices with multi-monitor setups