landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Security Jobs

Auto-apply to these security jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Network Security Administrator-logo
Network Security Administrator
SpaceXHawthorne, CA
SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. NETWORK SECURITY ADMINISTRATOR SpaceX is looking for a Network Security Administrator with expertise in network security technologies (firewalls, VPNs, IDS/IPS, etc.) This employee will be a member of the Network Security Engineering team and will focus on firewalls. The ideal candidate will be flexible, excel at multi-tasking, and flourish in a fast-paced and challenging environment. This person should be a self-starter, self-motivator and possess the ingenuity to excel in this position.  RESPONSIBILITIES: Develop and implement network security tools Provide subject matter expertise on network security, firewalls and industry best practices Manage firewall configurations within the SpaceX enterprise network based on operational requirements  Analyze and proactively come up with creative network solutions for operational needs that present security challenges Manage and maintain network security systems by applying system patches and other periodic maintenance tasks Work with other SpaceX teams to determine functional needs and communicate security policies Build out threat models and assess risk for proposed architectures BASIC QUALIFICATIONS: High school diploma or equivalency certificate 2+ years of network security experience; OR 4+ years of professional IT networking experience Professional experience with network firewalls PREFERRED SKILLS AND EXPERIENCE: Proficient understanding of network security technologies, their operation and limitations, including:  Firewalls (Palo Alto and Juniper)  Network IDS/IPS Solutions  Switch/Router ACLs  Network Access Control solutions  IPSec and TLS -based VPNs Familiarity with networking protocols and the OSI Model  Experience testing and implementing changes in a production environment  Adept at learning new technologies and systems  Strong self-starting and time-management skills  Good communication skills, both written and verbal  ADDITIONAL REQUIREMENTS: Must be willing to work extended hours and weekends as needed This role is located in Hawthorne, CA and requires you to be onsite. Remote or hybrid work will not be considered COMPENSATION AND BENEFITS:          Pay range:     Network Security Administrator/Level I: $85,000.00 - $115,000.00/per year     Network Security Administrator/Level II: $105,000.00 - $140,000.00/per year          Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Employees accrue paid sick leave pursuant to Company policy which satisfies or exceeds the accrual, carryover, and use requirements of the law. ITAR REQUIREMENTS: To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here .   SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status. Applicants wishing to view a copy of SpaceX’s Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out to  EEOCompliance@spacex.com . 

Posted 30+ days ago

Security Specialist II-logo
Security Specialist II
ProsyncWhite Sands Missile Range, NM
ProSync is seeking passionate Security Specialist II to help ensure security and intelligence compliance with policies and regulations, drawing on some of the nation's leading personnel and cybersecurity thought leaders for enhancing, accelerating, and assuring the United States Navy's ability to counter existing and emerging security threats.  This position offers a salary in the range of $89k-102k based on numerous factors, including location, degree and overall experience.  ProSync Technology Group, LLC (ProSync) is an award-winning, SDVOSB Defense Contracting company with a strong military heritage and a record of excellence in supporting the Department of Defense and the Intelligence Community.  If you have prior military service or government contracting experience, are proud to serve and support our nation, and want to help support ProSync's mission to "Define and Redefine the State of Possible,” please apply today! RESPONSIBILITIES This position handles the support of the Sensitive Compartment Information Facility. This role includes: Demonstrated experience in Physical Security (PHYSEC) and Information Security (INFOSEC) within the Department of Defense (DoD) or the Intelligence Community (IC), showcasing a strong understanding of the intricate interplay between safeguarding personnel, facilities, and sensitive information in a highly regulated environment. Proficiency in managing and implementing alarm and access control systems, ensuring that robust security measures are in place to prevent unauthorized access and respond effectively to potential security breaches. Experience in overseeing and mentoring junior security personnel, providing guidance and support in their professional development, fostering a collaborative team atmosphere, and ensuring that all security protocols and procedures are adhered to with the utmost diligence. Requirements Four (4) years of experience in Physical Security (PHYSEC) and Information Security (INFOSEC) in the DoD or IC.  Experience with alarm and access control systems. If a proposed individual does not meet both the desired education and experience qualifications, eigh (8) years of professional technical activities related to security would be considered equivalent. Four (4) of these eight (8) years should demonstrate experience in Physical Security (PHYSEC) and Information Security (INFOSEC) in the DoD or IC. A minimum Top Secret security clearance with SCI eligibility or higher is required to be considered for this position. EDUCATIONAL REQUIREMENTS A Bachelor’s degree or higher from an accredited college or university. Benefits Join PROSYNC and enjoy our great benefits! Compensation We offer sign on bonuses! We also offer bonuses that are awarded quarterly to our employees and our compensation rates are highly competitive. Health & Retirement We offer a comprehensive Health Benefits package and 401K retirement plan so you can take care of yourself and your family, now and in the future. Other health-related benefits include an employee assistance program for those difficult times or when you need to take care of your mental health. Education Individual growth is a priority at ProSync. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification they need to propel them to the next level. Work/Life Balance A healthy work/life balance is essential for building and executing your work effectively at ProSync, but it’s also necessary to allow you the room to pursue everything else you want to develop in your personal life. We offer generous Paid Time Off and 11 paid holidays a year. ProSync also provides flexible work options that work with your schedule and lifestyle.

Posted 1 week ago

1194 - Information Systems Security Officer-logo
1194 - Information Systems Security Officer
Sigma DefensePatuxent River, MD
Sigma Defense is seeking an Information Systems Security Officer to serve as the principal advisor to the Information System Owner (SO), Business Process Owner, and the Chief Information Security Officer (CISO) / Information System Security Manager (ISSM) on all matters, technical and otherwise, involving the security of an information system. Responsible for ensuring the implementation and maintenance of security controls in accordance with the Security Plan (SP) and Department of Navy policies. Provide guidance, oversight, and expertise on security control implementation, which may include implementation guidance development and actual control implementation in certain cases under ISSM direction. Equal Opportunity Employer/Veterans/Disabled: Sigma Defense Systems is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability. Requirements 7+ years of experience as a cybersecurity professional working with products and tools related to network systems engineering, vulnerability assessments or information systems risk management. (DoD experience is highly desired). Experienced in managing information systems under the DoD Risk Management Framework. Experienced in applying cybersecurity industry standards and best practices to manage information systems. (NIST Special Publication 800 series, ISO/IEC 27000 family of standards). Experienced in the DoD vulnerability management process; and compliance standards such as DISA Security Technical Implementation Guides (STIG) and Security Requirements Guides (SRG), and Common Criteria/National Information Assurance Partnership (NIAP) Protection Profiles. Experience in ACAS scans spanning technologies such as RHEL servers, Windows Servers, Cisco IOS and Trellix ENS Host based software. DoDM 8570 - IAT Level II (Security + or equivalent). Experienced in cybersecurity compliance assessment tools and security information and event management data platforms: Assured Compliance Assessment Solution (ACAS); Security Content Automation Protocol (SCAP) Compliance Checker (SCC); eMASS; STIG Viewer. Experience performing as an ISSO and eMASS knowledge. Experience with locating fixing and testing issues that result from STIGs. Preferred Experience: Work with high priority classified Risk Management Framework (RMF) Authority to Operate (ATO) Packages for the Marine Patrol and Reconnaissance Aircraft (MPRA) Navy Program Office (PO). Personnel Clearance Level: Candidate must possess an active, DoD issued Secret security clearance. Active TS/SCI Clearance is preferred. Education Requirements: Bachelor’s degree from an accredited college or university in Computer Science, Cybersecurity/Information Management, or related field of study is preferred. Essential Job Duties (not all inclusive): This is a hybrid position with on-site requirements two days per week as directed by the TPOC. Perform all A&A Configuration Management-related tasks in a thorough, reliable and timely manner for all capabilities under their purview. Monitor system compliance utilizing ACAS and other remote monitoring/auditing tools and report to the ISSM. Oversee and assist ISSEs in vulnerability management activities. Produce comprehensive and accurate quarterly release baselines for systems under their purview. Support test and evaluation activities in accordance with USN processes. Maintain site security SOPs up to date and perform site inspections and audits as part of Continuous Monitoring. Maintain site and system artifacts, to include diagrams. Salary Range: $110,000- $150,000 annually. Benefits Dental and Vision Insurance Medical Insurance to Include HSA, FSA, and DFSA Plans Life and AD&D coverage Employee Assistance Program (EAP) 401(k) Plan with Company Matching Contributions 160 Hours of Paid Time Off (PTO) 12 (Floating) Holidays Educational Assistance Highly Competitive Salary

Posted 1 week ago

Director of Information Security and Compliance-logo
Director of Information Security and Compliance
Datamark, Inc.El Paso, TX
THIS ROLE IS LOCATED ONSITE in EL PASO, TX The Director of Information Security and Compliance is a key leadership position at Datamark, Inc., located onsite in El Paso, TX. This role of Director of Information Security and Compliance is critical in establishing and maintaining a comprehensive information security and compliance program that aligns with industry regulations and best practices. The Director of Information Security and Compliance will develop and implement security policies, procedures, and strategies to protect the organization’s information assets and ensure compliance with relevant legislation, including but not limited to GDPR, HIPAA, and PCI-DSS. The Director of Information Security and Compliance will lead a global team of security and compliance professionals, drive risk management efforts, and collaborate with cross-functional teams to identify and address compliance gaps and vulnerabilities. The Director of Information Security and Compliance will also interface with auditors, regulators, and other external entities to represent Datamark’s commitment to security and compliance initiatives. Requirements Minimum Qualifications: Education Requirements: Master’s degree in Computer Science, Information Technology, or a related field. Field Experience: Minimum of 10 years of experience in Information Security, with at least 5 years in a leadership or director-level role. Position Experience: Extensive experience in implementing and managing information security and compliance programs within a complex organization. Demonstrated knowledge of compliance frameworks and regulatory requirements (GDPR, HIPAA, PCI-DSS, etc.). Proven ability to effectively lead and develop a high-performing team. Travel to DATAMARK global sites as needed to conduct audits and provide support to the team. Strong analytical and problem-solving skills to identify risks and develop mitigation strategies. Excellent verbal and written communication skills, with the ability to convey complex security concepts to diverse audiences. Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or equivalent are required. Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off Short Term & Long-Term Disability Training & Development Wellness Resources $150,000/annually

Posted 30+ days ago

Information Security Consultant (Cybersecurity Project Technical Lead)-logo
Information Security Consultant (Cybersecurity Project Technical Lead)
Toyota Tsusho SystemsPlano, TX
Summary: This role will report to the cybersecurity department head and will be responsible for developing various TTS security solutions by analyzing the current security posture, trends, and third-party solutions. The individual will conduct deep technical analysis of threats and needs, create reports and approach documents, and define technical criteria/KPIs for service delivery.   Essential Functions: Create approach documents, playbooks, and configuration documents for planning cybersecurity solutions, with a primarily focus on Microsoft security solutions (Defender, Sentinel, Entra) and penetration testing solutions. Validate the approach hands-on and ensure the plan meets expectations. Oversee project progress, identify and address challenges to ensure timely and on-target project completion, while effectively managing deliverables and client expectations. Lead and mentor a team of cybersecurity professionals, providing technical guidance and support to help them excel in their roles. Apply cybersecurity knowledges, analyze security operational processes, and create relevant documentation. Generate and present regular security reports to management, ensuring transparency and informed decision-making. Stay up to date with new security technologies and emerging threats, demonstrating the ability to adapt to the changing cybersecurity environment. Requirements Required consulting background with experience in project management and customer documentation. Expertise in Microsoft security products and services. Extensive experience in security service delivery management. A good team player who is humble, positive, passionate about growth, and willing to learn. Strong documentation skills, ensuring clarity and understanding for readers. CISSP, CISM, or equivalent certification required.

Posted 30+ days ago

Security Officer-logo
Security Officer
Weiser SecurityNashville, TN
Weiser Security is seeking a dedicated and vigilant Security Officer to join our dynamic team. As a Security Officer, you will play a crucial role in maintaining a safe and secure environment for our clients, visitors, and employees. Your primary focus will be to deter and detect any unlawful activities while ensuring compliance with established security protocols. You will be responsible for patrolling assigned areas, monitoring security systems, and responding to incidents in a timely and professional manner. The ideal candidate will possess a strong sense of responsibility and demonstrate excellent observational skills. You must be committed to upholding the highest standards of safety and professionalism at all times, as the well-being of those in your care is paramount. Additionally, you will be expected to collaborate closely with law enforcement agencies and emergency services as necessary. We offer competitive compensation and opportunities for career advancement within our growing organization. If you are passionate about security and want to make a positive impact in your community, we encourage you to apply for this rewarding position and become a valued member of the Weiser Security team. Responsibilities Patrol assigned areas to deter and detect unauthorized activities. Monitor security cameras and alarm systems for unusual activities. Respond promptly to alarms and emergency calls, ensuring timely action is taken. Conduct thorough investigations of incidents and prepare detailed reports. Assist in the enforcement of rules and regulations to maintain a safe environment. Establish and maintain effective communication with clients, employees, and law enforcement. Provide exceptional customer service and support to visitors and clients. Requirements High school diploma or equivalent; additional security training or certification is a plus. Proven experience as a security officer or relevant position. Ability to remain calm and make sound decisions in emergency situations. Strong observation skills and attention to detail. Excellent communication and interpersonal skills. Physical fitness to perform patrol duties and maintain a secure environment. Availability to work various shifts, including nights, weekends, and holidays. Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Short Term & Long Term Disability Training & Development

Posted 3 weeks ago

Security Officer - Part Time-logo
Security Officer - Part Time
CuraleafNewburgh, NY
At Curaleaf, we’re redefining the cannabis industry with a strong commitment to quality, expertise, and innovation. As a leading global cannabis provider, our brands—including Curaleaf, Select, and Grassroots—offer premium products and services in both medical and adult-use markets. Join us at Curaleaf to be part of a high-growth, purpose-driven company that champions corporate social responsibility through our Rooted in Good initiative, supporting community outreach and positive change. Here, you’ll have the opportunity to make a meaningful impact, drive innovation, and help shape the future of cannabis. Security Officer & Transport Job Type: Part Time | Non-Exempt   Shift: Mornings, days, nights, weekends and holidays Starting Hourly Pay: $21.00/hr Location: 8 N Plank Rd, Newburgh, NY 12550   Who You Are:   As a Security Officer at Curaleaf, you will ensure the safety of our facilities, employees, patients, and products. Responsibilities include conducting security checks, monitoring systems, reporting incidents, overseeing deliveries, and assisting with special security needs. This role requires strong attention to detail, excellent communication skills, and the ability to work independently and as part of a team.   What You’ll Do:   Secure the premises by patrolling the facility, inspecting buildings, equipment, and access points, ensuring the security of doors and gates, and monitoring surveillance equipment   Conduct routine checks and maintenance of security systems, adjust equipment as needed, detect tampering, troubleshoot malfunctions, and evaluate new equipment and techniques   Monitor and authorize the entrance and departure of individuals, as well as investigate and report irregular activity to the Security Manager or local police, and respond to all alarms   Ensure that all reports, records, and documentation are precise, comprehensive, and submitted promptly, adhering to established policies and procedures   Safely and securely transport deliveries to authorized dispensary organizations and patients, ensuring receipt is registered   Operates vehicles in compliance with state and local guidelines   What You’ll Bring:   A valid driver's license You must be at least 25 years old   Possess a high school diploma, GED, or equivalent experience required   Available to work a flexible schedule   Even Better If:   You have at least 2 years of experience in safety or security, law enforcement, or military background, along with training and certification in First Aid and CPR   You’ve been trained in non-violent communication, conflict de-escalation, and assertiveness, equipping you to handle both typical and crisis situations efficiently and effectively   New York Hiring Range $21 — $24.50 USD What We Offer: Career Growth Opportunities Competitive Pay and Benefits (Health, Dental Vision) Generous PTO and Parental Leave 401(K) Retirement Plan Life/AD&D Insurance, Short & Long-Term Disability Community Involvement Initiatives Employee Referral Bonuses and Product Discounts Not all benefits listed above are available to all employees at all locations.   Curaleaf Awards and Achievements: 2023 Ragan’s Top Places to Work 2022 TIME100 Most Influential Companies 2020 Cannabis Doing Good’s Good Neighbor Award 2020 Minorities for Medical Marijuana’s Diversity & Inclusion Award Follow us on Social Media:  Instagram: @curaleaf.usa Twitter:  @Curaleaf_Inc LinkedIn: Curaleaf LinkedIn Curaleaf Holdings, Inc. (TSX: CURA) (OTCQX: CURLF) ("Curaleaf") is a leading international provider of consumer products in cannabis with a mission to enhance lives by cultivating, sharing, and celebrating the power of the plant. As a high-growth cannabis company known for quality, expertise and reliability, the Company, and its brands, including Curaleaf, Select, Grassroots, JAMS, Find and Zero Proof provide industry-leading service, product selection and accessibility across the medical and adult-use markets. Curaleaf International is the largest vertically integrated cannabis company in Europe with a unique supply and distribution network throughout the European market, bringing together pioneering science and research with cutting-edge cultivation, extraction, and production. Home | Curaleaf | Cannabis with Confidence Our corporate Social Responsibility  is  Rooted in Good.  We believe in taking corporate and social responsibility very seriously, from our educational outreach to national partnerships, state-wide initiatives, and local causes. Giving back to the communities where we operate is important to us and helps to change old attitudes by showing the positive impact of cannabis in creating jobs, changing lives, and helping local communities.  Our Vision:  To be the world's leading cannabis company by consistently delivering superior products and services and driving the global acceptance of cannabis.  Our Values: Lead and Inspire.   Commit to Win.   ONE Curaleaf.   Driven to Deliver Excellence.   Curaleaf is an equal opportunity employer. Curaleaf recruits, employs, trains, compensates, and promotes regardless of race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status, and other protected status as required by applicable law. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. Individuals adversely impacted by the war on drugs are encouraged to apply. Current Curaleaf employees should use our internal job board to apply for current openings: https://app2.greenhouse.io/internal_job_board  

Posted 1 week ago

Senior Security Engineer-logo
Senior Security Engineer
Amplitude San Francisco, CA
Amplitude is the leading digital analytics platform that helps companies unlock the power of their products. Over 3,800 customers, including Atlassian, NBCUniversal, Under Armour, Shopify, and Jersey Mike’s, rely on Amplitude to gain self-service visibility into the entire customer journey. Amplitude guides companies every step of the way as they capture data they can trust, uncover clear insights about customer behavior, and take faster action. When teams understand how people are using their products, they can deliver better product experiences that drive growth. Amplitude is the best-in-class analytics solution for product, data, and marketing teams, ranked #1 in multiple categories in G2’s Winter 2024 Report. Learn how to optimize your digital products and business at  amplitude.com . As an organization, we approach challenges with humility, take ownership of our contributions, and embrace a growth mindset that pushes us to constantly improve ourselves, each other, and the value we bring to customers and partners. Amplitude’s Commitment to Diversity Equity & Inclusion (DEI):  Amplitude believes that diversity enables the creation of better products, improves the ability to solve complex problems, and drives more powerful solutions. We strive to create an environment of inclusion—one focused on psychological safety, empathy, and human connection—that will allow employees of all backgrounds to thrive. Senior Security Engineer (Cloud Infrastructure Security and Detection & Response) About the Role: As a Senior Security Engineer, you’ll lead security initiatives across infrastructure and product engineering, bringing a DevSecOps mindset to building automation and secure, scalable systems. You’ll collaborate closely with engineering teams and work across a wide range of domains including cloud security, container security, application security, and developer tooling. This is a role for someone who enjoys context-switching across a range of initiatives and isn't afraid to get into the weeds to unblock teams or ship secure solutions quickly. You’ll also participate in a shared on-call rotation to respond to high-risk security issues and incidents in order to help the business minimize exposure. Success in this role means driving meaningful improvements in our security posture without slowing down development. You’ll reduce time-to-remediate, build automated guardrails, and proactively identify risks before they become incidents. You'll be a trusted partner to engineering, delivering high-velocity solutions that balance security and developer experience. Key Responsibilities: Harden AWS and Kubernetes environments through automation, policy-as-code, and guardrails. Own and evolve our DevSecOps strategy across infrastructure and application pipelines. Drive end-to-end secure development practices: integrate security into CI/CD, build pre-commit hooks, and improve developer productivity without sacrificing security. Create and implement lightweight, scalable security controls that support fast-moving teams. Partner with engineering to identify and mitigate risks in architecture, design, and implementation stages. Participate in an on-call rotation to resolve critical/high-risk security issues as well as respond to security incidents with urgency and clarity. Identify opportunities to fix systemic gaps, reduce recurring pain points, and avoid reactive “whack-a-mole” cycles. What We’re Looking For: 4+ years of experience in security engineering with a strong focus on DevSecOps and secure cloud infrastructure on AWS. Hands-on expertise with infrastructure-as-code tools (Terraform, CloudFormation) for AWS, as well as the Kubernetes ecosystem of tools. Strong coding/scripting skills in Python, Bash, or equivalent languages for automating security tasks. Experience with CI/CD platforms and integrating security controls early in the pipeline. Comfortable navigating ambiguity, driving clarity, and leading through execution in fast-paced environments. Willingness to go above and beyond, including submitting fixes and supporting teams directly when needed. Experience using AI to automate security tasks is a significant plus (e.g. log analysis, code review, alert triage). Familiarity with application security concepts is preferred, but not required. Who We Are The Company: Amplitude is filled with humble, life-long learners who are eager to help one another and the company succeed. Our values of growth mindset, ownership, and humility are core to the way we work: we’re tenacious in the face of challenges, we take the initiative to solve problems that drive our shared success, and we operate from a place of empathy and openness, seeking to understand many points of view.  The Product: Amplitude is a digital analytics platform—we help companies capture data they can trust, uncover clear insights about customer behavior, and take faster action. This empowers teams to build better product experiences that drive business growth. We’re super proud of what we’ve built and continue to expand: a platform that empowers companies to thrive in the digital era. We care about the well-being of our team: We offer competitive pay and benefits packages that reflect our commitment to the health and well-being of our Ampliteers. Some of our benefit programs include: Excellent ​medical, ​dental and ​​vision insurance coverages, with 100% employer-paid premiums for employee ​medical, ​​dental,​ ​​​​​​​​vision on select plans Flexible time off, ​p​aid holidays, and more Generous stipends to spend on what matters most to you, whether that’s wellness (monthly), commuter transit/parking (monthly), learning and development (quarterly), home office equipment (annual), and much more Excellent Parental benefits including​:​ 12-20 weeks of Paid Parental Leave, Carrot Fertility Benefits/Adoption/Surrogacy support, Back-up Child Care support  Mental health and wellness benefits including no cost employee access to Modern Health coaching & therapy Sessions and high quality physician office experience via One Medical membership (select U.S. locations only) Employee Stock Purchase Program​ (ESPP)​ Other fun facts about Amplitude:  We were recognized in the Newsweek Excellence Index 2024 . Our customers love us! They've said we're the #1 product analytics solution for 15 quarters in a row on G2. We're focused on growth. Check us out in Deloitte’s 2023 Technology Fast 500™ We care A LOT about product innovation. Fast Company called us the #3 most innovative enterprise company in the world. We invest in our people. We offer mentorship programs, management training, and wellness initiatives.  We give back to our communities. We give every Ampliteer a charitable giving grant and paid volunteer time off.  We were founded in 2012, went public via a direct listing in September 2021, and are now trading under the ticker $AMPL.  We’re a global and fast-growing team! We have employees around the world and offices in San Francisco (HQ), New York, Vancouver, Amsterdam, London, Paris, Singapore, and Tokyo. Our mascot is the datamonster, who loves to chow down on numbers, charts, and graphs. Nom nom. Amplitude provides equal employment opportunities (EEO). All applicants are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, or sexual orientation. This role is eligible for equity, benefits and other forms of compensation. Based on legislation in California, the following details are for individuals who will work for Amplitude in San Francisco Bay Area of California. Salary range: $161,000 - $266,000 total target cash (inclusive of bonus or commission) plus equity. #LI-SA1 #LI-Hybrid By applying for this job, you acknowledge that Amplitude processes your personal data in accordance with the Amplitude Applicant Privacy Notice . Staying Safe - Protect Yourself From Recruitment Fraud We are aware of individuals and entities fraudulently representing themselves as Amplitude recruiters and/or hiring managers. Amplitude will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Amplitude recruiting team will come from an @ amplitude.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article . Please exercise caution and cease communications if something feels suspicious about your interactions. Amplitude is a leading digital analytics platform that helps companies unlock the power of their products. More than 3,500 customers, including Atlassian, Jersey Mike’s, NBCUniversal, Shopify, and Under Armour, rely on Amplitude to gain self-service visibility into the entire customer journey. Amplitude guides companies every step of the way as they capture data they can trust, uncover clear insights about customer behavior, and take faster action. When teams understand how people are using their products, they can deliver better product experiences that drive growth.  As an organization, we approach challenges with humility, take ownership of our contributions, and embrace a growth mindset that pushes us to constantly improve ourselves, each other, and the value we bring to customers and partners. Amplitude’s Commitment to Diversity Equity & Inclusion (DEI): Amplitude believes that diversity enables the creation of better products, improves the ability to solve complex problems, and drives more powerful solutions. We strive to create an environment of inclusion—one focused on psychological safety, empathy, and human connection—that will allow employees of all backgrounds to thrive. By applying for this job, you acknowledge that Amplitude processes your personal data in accordance with the Amplitude Applicant Privacy Notice . Staying Safe - Protect Yourself From Recruitment Fraud We are aware of individuals and entities fraudulently representing themselves as Amplitude recruiters and/or hiring managers. Amplitude will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Amplitude recruiting team will come from an @ amplitude.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article . Please exercise caution and cease communications if something feels suspicious about your interactions. By applying for this job, you acknowledge that Amplitude processes your personal data in accordance with the Amplitude Applicant Privacy Notice . Staying Safe - Protect Yourself From Recruitment Fraud We are aware of individuals and entities fraudulently representing themselves as Amplitude recruiters and/or hiring managers. Amplitude will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Amplitude recruiting team will come from an @ amplitude.com email address. You can learn more about how to protect yourself from these types of fraud by referring to this article . Please exercise caution and cease communications if something feels suspicious about your interactions. By applying for this job, you acknowledge that Amplitude processes your personal data in accordance with the Amplitude Applicant Privacy Notice . Staying Safe - Protect Yourself From Recruitment Fraud We are aware of individuals and entities fraudulently representing themselves as Amplitude recruiters and/or hiring managers. Amplitude will never ask for financial information or payment, or for personal information such as bank account number or social security number during the job application or interview process. Any emails from the Amplitude recruiting team will come from an @ amplitude.com  email address. You can learn more about how to protect yourself from these types of fraud by referring to  this article . Please exercise caution and cease communications if something feels suspicious about your interactions.

Posted 30+ days ago

Software Engineer, Application Security-logo
Software Engineer, Application Security
GleanPalo Alto, CA
About Glean At Glean, we’re on a mission to bring people the knowledge they need to make a difference in the world. Our journey began with a team of seasoned engineers from Google and Meta who recognized a fundamental gap—why do we have powerful search tools in our personal lives but struggle to find what we need at work? That’s what inspired the creation of Glean. Glean unifies search across all of a company’s apps, helping users find exactly what they need and discover what they should know. Our diverse team of curious and creative individuals is passionate about building technology that empowers organizations to get big things done. We’re backed by top-tier venture capital firms—including Sequoia, Kleiner Perkins, Lightspeed, and General Catalyst—and have assembled a world-class team with senior leadership experience from Google, Slack, Facebook, Dropbox, Rubrik, Uber, Intercom, Pinterest, Palantir, and more. Role Glean is looking for an experienced Application Security Engineer with a primary focus on ensuring that our entire technology stack is free of software vulnerabilities (CVEs). This role is responsible for securing our base OS images, ensuring all open-source software (OSS) dependencies are scanned and patched, and integrating cutting-edge security tools into our CI/CD pipeline. The ideal candidate will drive the adoption of solutions like Google’s Assured Open Source Software (OSS) and explore alternative approaches to enhance software security. This role will lead the vulnerability management charter at Glean, identifying, evaluating, and implementing new security technologies and processes to proactively protect our infrastructure. What You Will Do and Achieve Own and lead the vulnerability management lifecycle , ensuring our entire tech stack is free from known CVEs. Implement and manage secure base OS images , ensuring all underlying systems remain hardened against security threats. Continuously scan, monitor, and patch OSS dependencies to mitigate supply chain risks and enforce best practices for dependency management. Research and evaluate trusted open-source security solutions like Google’s Assured Open Source Software and recommend their adoption where applicable. Work closely with engineering teams to integrate state-of-the-art SAST, DAST, and dependency scanning tools into the CI/CD pipeline to detect and remediate vulnerabilities early. Define and maintain best practices for secure coding to ensure all code developed by Glean engineers is free from vulnerabilities. Develop automated security validation tests to enforce vulnerability-free deployments across the stack. Lead the adoption and, if necessary, develop custom security solutions to manage and mitigate security risks at scale. Provide security guidance, training, and mentorship to engineering teams to foster a security-first culture at Glean. Who You Are BA/BS in Computer Science, Cybersecurity, or a related field (or equivalent industry experience). 5+ years of experience in application security and vulnerability management. Deep understanding of software security vulnerabilities , including CVEs, OWASP Top 10, and supply chain risks. Experience with SAST, DAST, dependency scanning, and vulnerability management tools (e.g., Snyk, GitHub Dependabot, Trivy, Clair, Burp Suite, OWASP ZAP). Strong familiarity with package managers (npm, pip, Maven, Go modules) and securing open-source dependencies. Coding experience in languages such as Go, Python, Java, or C++ to develop security test cases and tooling. Hands-on experience with cloud-native security best practices across AWS, GCP, or Azure. Knowledge of container security, Kubernetes security, and securing microservices architectures. Ability to lead cross-functional initiatives and drive security adoption within engineering teams. Key Knowledge & Skills A strong proactive approach to security, identifying risks before they become problems. Excellent problem-solving skills and the ability to balance security with performance and usability. Experience working in fast-paced, highly collaborative environments where security is a shared responsibility. Passion for open-source security and keeping up with the latest trends in software vulnerability management. Why Join Us? At Glean, we believe in empowering individuals to do their best work in an inclusive and diverse environment. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race. We’re building a culture that values curiosity, collaboration, and impact. If you’re excited about leading the charge in securing a cutting-edge AI-powered search platform, we’d love to hear from you! 🚀 Benefits Competitive compensation Medical, Vision and Dental coverage Flexible work environment and time-off policy 401k Company events A home office improvement stipend when you first join Annual education stipend Wellness stipend Healthy lunches and dinners provided daily For California based applicants:  The standard base salary range for this position is $185,000 - $280,000 annually. Compensation offered will be determined by factors such as location, level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits. We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. We're committed to an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.

Posted 30+ days ago

Security Operations Specialist-logo
Security Operations Specialist
Clear StreetNew York, NY
About Clear Street: Clear Street is building modern infrastructure for capital markets. Founded in 2018 by top Wall Street and Silicon Valley veterans, Clear Street is an independent, non-bank prime broker designed to solve the industry’s most neglected problem: legacy technology. We have built a proprietary, cloud-native clearing and custody system from the ground floor to replace the outdated infrastructure used across capital markets. Our platform is fully integrated with central clearing houses and exchanges to support billions in trading volume per day. We’ve agonized about our data model abstractions, created horizontal scalability, and crafted thoughtful APIs. All so we can provide a best-in-class experience for our clients. By combining highly-skilled product and engineering talent with seasoned finance professionals, we’re building the essentials to compete in today’s fast-paced markets.   The Team: As a Security Operations Specialist in the security team you’ll have the opportunity to strengthen our SOC capabilities, mature detection and response processes, and drive proactive threat hunting initiatives. The ideal candidate has hands-on experience in hybrid cloud environments, strong analytical skills, and a passion for staying ahead of evolving threats. If you’re interested in joining a high-growth, fast-paced company that is revolutionizing Wall Street, come join Clear Street.   You Will: Conduct proactive threat hunting in cloud (AWS/Azure) and on-prem infrastructure to identify potential risks before they materialize. Develop and execute targeted hunts using advanced data analytics to uncover anomalies and hidden threats. Monitor, analyze, and respond to security alerts and incidents in a 24/7 SOC environment.  Comfortable working in staggered shifts, including weekend coverage, to support 24/7 SOC operations  Perform forensic analysis on cloud workloads, endpoints, network traffic, and logs to support incident investigations and root cause analysis. Drive SOC maturity by suggesting and implementing improvements to detection workflows, playbooks, and operational processes. Stay ahead of the evolving threat landscape, identifying opportunities to enhance detections Assist in optimizing the use of SIEM, EDR, and security tooling to improve visibility and detection capabilities. Maintain detailed documentation of incidents, investigations, and threat-hunting activities to enhance team knowledge. Collaborate with peers, fostering growth and knowledge-sharing  Demonstrate strong data analytics skills, leveraging tools and techniques to correlate data and identify patterns across large datasets.   Requirements: 3+ years of proven hands-on experience in SOC operations, threat hunting, and incident response Strong understanding of AWS/Azure security architectures, services, and associated threats. Expertise in security frameworks (e.g., MITRE ATT&CK) and common SIEM, SOAR, and EDR platforms. Advanced data analytics skills with the ability to analyze logs and telemetry data from diverse sources. Familiarity with forensic tools and processes for investigating incidents  Strong documentation and communication skills to clearly convey findings  Relevant certifications such as AWS Security Specialty, Azure Security Engineer, GCIA, GCFA, GCIH, or CISSP are preferred.   We Offer: The Base Salary Range is $110,000 - $135,000. These ranges are representative of the starting base salaries for this role at Clear Street. Which range a candidate fits into and where a candidate falls in the range will be based on job related factors such as relevant experience, skills, and location. These ranges represent Base Salary only, which is just one element of Clear Street's total compensation. The ranges stated do not include other factors of total compensation such as bonuses or equity. At Clear Street, we offer competitive compensation packages, company equity, 401k matching, gender neutral parental leave, and full medical, dental and vision insurance. Our belief has always been that we are better as a business when we are all together in person. As such, beginning on January 2, 2023, we are requiring employees to be in the office 4 days per week. In-office benefits include lunch stipends, fully stocked kitchens, happy hours, a great location, and amazing views. Our top priority is our people. We’re continuously investing in a culture that promotes collaboration. We help each other through challenges and celebrate each other's successes. We believe that modern workplaces succeed by virtue of having high-performance workforces that are diverse — in ideas, in cultures, and in experiences. We put in the effort to make such a workplace a daily reality and are proud to be an equal opportunity employer. #LI-Hybrid

Posted 30+ days ago

Security Operations Center (SOC) Analyst - Mid-logo
Security Operations Center (SOC) Analyst - Mid
MaverisWashington, DC
Maveris is an IT and cybersecurity services company committed to helping organizations create secure digital solutions to accelerate their mission. Originally founded as a Veteran-owned company, we remain deeply committed to supporting veterans and proudly serving customers across the Federal Government and private sector. We have an opening for a full-time, Security Operations Center (SOC) Analyst - Mid to join our talented, dynamic team.     As a Security Operations Center (SOC) Analyst - Mid , you will be on the front line in safeguarding Treasury Department digital assets and responding to potential cyber threats. You will play a critical role in monitoring, detecting, and triaging security events to ensure the protection of organizational assets. This mid-level role builds on Tier 1 capabilities, focusing on advanced investigation, containment, and coordination with internal and external stakeholders to maintain a robust cybersecurity posture.  Veterans are encouraged to apply.  Duties As a Security Operations Center (SOC) Analyst - Mid , you will work on a SOC team responsible for monitoring security tools (e.g., SIEM, IDS/IPS) and dashboards 24x7x365 to identify potential threats and anomalies. You will be responsible for Analyzing escalated alerts from Tier 1, performing detailed investigations to identify root causes and validate threats. You will be responsible to lead containment, eradication, and recovery efforts for confirmed incidents, following established playbooks. In this role, a typical day will include: Assist in validating alerts to differentiate false positives from genuine threats, using basic investigative techniques. Monitor and tune security tools (e.g., SIEM, EDR) to reduce false positives and improve detection accuracy. Collaborate with Tier 1 analysts, incident response teams, and external agencies (e.g., CISA) to enhance detection and response workflows. Document and update incident reports, playbooks, and knowledge bases in the ticketing system (e.g., ServiceNow). Participate in threat hunting activities to proactively identify potential threats. Provide mentorship and guidance to Tier 1 analysts during incident handling. Requirements Bachelor’s Degree in Cybersecurity related field with 3 years of experience OR (7 years of experience in lieu of degree). Active Secret Clearance. Relevant certifications (e.g., CompTIA, CySA+, CEH, GCIH) preferred. Proficiency with security tools (e.g., Splunk, CrowdStrike, Wireshark) and network protocols. Ability to work in a shift-based, high-pressure environment. Excellent communication skills for documenting incidents and collaborating with teams. Willingness to learn and adapt to evolving cybersecurity landscapes. Benefits Maveris attracts and retains talent of the highest caliber by offering opportunities to work in exciting and challenging environments surrounded by bright minds. Our employees are our most prized asset and are rewarded with highly competitive compensation and a top-tier benefits package, including: 401(k) with company match Dental Insurance Health Insurance Vision Insurance Life Insurance Paid Time Off About Maveris Maveris offers exceptional, mission-focused, solutions to organizations facing highly complex IT, digital, and cybersecurity challenges. Our success is achieved by maintaining an environment of trust where people are encouraged to reach their fullest potential. Every candidate that applies to Maveris brings something unique to the table, and because our team is diverse, we consistently meet our goals and exceed client expectations. If you are a highly-motivated person with a willingness to learn, we invite you to apply today to join our team! To learn more about employee benefits visit www.maveris.com . For company updates and the latest job postings check us out on LinkedIn . If you'd like to read about some of our research and projects head over to Maveris Labs . Want a more behind the scenes view? Check out our blog Maveris Insights to learn more about the team behind the solutions. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, pregnancy, age, national origin, disability status, genetic information, protected veteran status, or any other characteristic protected by law.

Posted today

Senior Security Engineer-logo
Senior Security Engineer
Clearwaters.ITWashington, DC
Clearwaters.IT  is seeking an experienced  Senior Security Engineer  to support the program with the Department of Commerce. This role involves identifying vulnerabilities, assessing risks, and ensuring the security and compliance of all technical assets across the department. The Senior Security Engineer will work closely with various stakeholders, both internal and external, to implement best practices for cybersecurity, IT risk management, and ensure the department's alignment with federal cybersecurity regulations and frameworks.  This position is on-site in Washington D.C.  Candidates with a Current Top Secret Security Clearance should apply. The position is contingent on the award. Responsibilities:   Support the client in the development and oversight of cybersecurity governance across all applicable programs.  Provide cybersecurity engineering subject matter expertise to client staff.  Participate in technical review boards and program planning sessions, contributing to enterprise architecture decisions and security control implementation.  Develop and deliver technical guidance via PowerPoint presentations, formal documentation, and written communications on cybersecurity capabilities, vulnerabilities, risks, and mitigation strategies.  Engineer, configure, and sustain the Continuous Diagnostics and Mitigation (CDM) and Zero Trust Architecture (ZTA) toolsets, to include Tenable Nessus, HCL BigFix, SailPoint, Okta, Axonius, Cloudflare and other related technologies.  Lead and facilitate technical integration sessions with internal Bureaus to incorporate new and existing capabilities that enhance the Enterprise CDM and ZTA programs.  Author cybersecurity policy, standards, and guidance documents to support and align with CDM and ZTA implementation efforts.  Requirements Bachelor's degree in computer science, Information Security, Engineering, or a related field is required.  A minimum of 7 years of experience in cybersecurity, IT risk management or a related field is required.  Active or Current Top Secret Security Clearance. Must be a U.S. citizen. Relevant network engineer certification and/or industry standard certifications (e.g CompTIA Security+, CISSP, CISM, CISA or equivalent) are required  Proven experience with security frameworks and standards such as NIST SP 800-53, NIST SP 800-37, NIST Cybersecurity Framework (CSF), FISMA, etc.  Proven expertise in cybersecurity architecture, CDM and ZTA  Hands-on experience with technology-related administration (Installation, Configuration, Monitoring, Integration, Managing Access Controls, Automation, and Troubleshooting) of the Continuous Diagnostics and Mitigation (CDM) and Zero Trust Architecture (ZTA) tool stack, to include Tenable Nessus, HCL BigFix, SailPoint, Okta, Axonius, Cloudflare, etc.  Strong written and verbal communication skills, with the ability to deliver clear, concise reports and messages to all levels of management.  Excellent interpersonal abilities, with a strong capacity to work independently with minimal supervision or guidance.  Strong analytical abilities and problem-solving skills, with the ability to design effective solutions for complex challenges.  Awareness of secure software development practices and principles.  Ability to fulfill responsibilities in a timely manner and with precision.  Exceptional attention to detail, with the ability to work independently on important initiatives while ensuring optimal outcomes.   Benefits Competitive salary and benefits package, including: Health, dental and vision insurance 401(k) with company match Paid time off (PTO) for vacation, sick leave, and personal days Professional development reimbursement Other benefits, including life insurance, disability insurance, and employee assistance programs

Posted today

Senior Cloud/Infrastructure Security Engineer-logo
Senior Cloud/Infrastructure Security Engineer
IvaluaFremont, CA
Senior Security Engineer  (Fremont - USA) Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions. COMPANY OVERVIEW At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration.  We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities.    Learn more at www.ivalua.com . Follow us on LinkedIn and Twitter . THE OPPORTUNITY CONTEXT:  Our team is dedicated to serve our clients post going-live the best way we can to secure an exceptional client experience. With over 10 global team members, Infosec team needs to work with IT and R&D teams to keep our enterprise-class SaaS service secure from a variety of threats.  ROLE:  This is an exciting opportunity for a Senior Security Engineer role at Ivalua. You will engineer, implement, review and monitor technical security controls to protect and enhance the security of our hosting and corporate infrastructure, networks and applications. You will also help with operational security aspects which will include performing security reviews on infrastructure changes, reviewing firewalls rules, analyzing results from vulnerability or penetration testing reports, investigating security events by analyzing logs and identifying actionable plans to address in the infrastructure.   WHAT YOU WILL DO WITH US   Perform technical security design, architecture, change and/or configuration audits/reviews on our hosting and corporate infrastructure systems including Azure cloud environments, servers, network devices, endpoints, and security technologies deployed (CNAPP, MDM, WAF, DDoS, etc.) Act as the main SPOC for the network and cloud vulnerability management activities to perform scanning, internal and third-party penetration testing and red teaming as well as analysis and retesting of the reported security findings Collaborate with the SOC team to enhance our detection and response processes and capabilities Support the security initiatives for securing our Azure environments (EntraID Conditional Access, CSPM, Infrastructure as Code, NSG rules review etc.) Provide support to the GRC team on the technical security controls related to compliance initiatives (such as FedRAMP, PCI, NIST 800-53 r5, IRAP, SANS CIS 20) and the technical security questions from customers and prospects Act as the SME on infrastructure and cloud security topics, expand and develop sharing of technical knowledge and collaborate with multiple internal teams to review and improve the technical architecture and efficiency of IT and security operational processes YOUR PROFILE If you have the below experience and strengths this role could be for you: Skills and Experience: 5+ years of hands-on experience on infrastructure and network security engineering / architecture, protocols and technologies like CNAPP, CSPM, MDM, IAM, DDoS 5+ years of hands-on experience in performing network and/or cloud penetration testing Experience with scripting (such as Python, PowerShell etc.) Knowledge of Active Directory (key concepts, protocols, services, tiering, main attacks, best practices for hardening etc.) Knowledge of Cryptography concepts, encryption algorithms, protocols, keys and certificates management Hands-on experience with security concepts on Azure cloud environments and services (Azure EntraID, Azure Key Vault, Azure encryption, Azure Sentinel, NSG, Azure firewall etc.) Experience with security incident response and investigation Ability to foster collaborative, open and working relationships with technology and other stakeholders Experience with security standards and compliance programs such as OWASP, NIST, FedRAMP, PCI, SANS CIS 20 An Information Security qualification or evidence of starting to work towards e.g. OSCP, eJPT AZ-500, GIAC GPEN or similar certification Ability to handle multiple tasks, prioritize and meet deadlines Soft Skills : Ability to handle multiple tasks, prioritize and meet deadlines Ability to foster collaborative, open and working relationships with technology and other stakeholders   WHAT HAPPENS NEXT If your application fits this specific position’s needs, our skilled Talent team will reach out to schedule an initial screening call. Get one step closer to achieving your goals – apply today!  Our Talent team will guide you through every step of the interview process - from preparation to completion. They're here to support you!  Our recruitment process is designed to assess your competencies through a series of personalized interviews with internal stakeholders relevant to the role.  Interviews will be conducted virtually via video or on-site with face-to-face meetings.   LIFE AT IVALUA Hybrid working model (3 days in the office per week) We're a team dedicated to pushing the boundaries of product innovation and technology Sustainable Growth, Privately Held A stable and cash-flow positive Company since 10 years Snacks and weekly lunches in the office Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity Unlock and unleash your full professional potential with our exceptional training and career development program Join a dynamic and international team of top-notch professionals who are experts in their respective fields. Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work. Experience a truly diverse and inclusive work environment where your unique contributions are highly valued Regular social events, competitive outings, team running events, and musical activities, Comparably recognized Ivalua for the following ( https://www.comparably.com/companies/ivalua ) :      Powered by People - Powered by You! United by our values we embrace diversity and equity in the broadest possible sense to create an inclusive workplace. To help our customers make supply chains more efficient, sustainable and resilient, we rely on a global team with a variety of backgrounds, skills and views. We believe in equal opportunity and in diversity as a driver of innovation that cultivates a spirit of inclusiveness, creates a productive and fun place to work, and provides fulfilling career opportunities for all Ivaluans. https://www.linkedin.com/company/ivalua/about/ Experience life at Ivalua - check out our captivating video ! Gain insight into our unique company culture and get a glimpse of what it's like to work with us.         Ivalua’s core values include a priority on Care & Grow People. We take matters like pay equity very seriously and strive to reward our employees appropriately and fairly for their talents. The compensation range for this position reflects the cost of labor across our US locations and is based upon careful and continual market research. In addition to location, compensation may also vary based upon job-related knowledge, skills, and experience. Title: Senior Security Engineer Range minimum: USD 112000 Range maximum: USD 208000 Additional compensation / rewards: Ivalua also offers exceptional benefits including medical, dental, vision and transportation.   #LI-PDE #LI-HYBRID  

Posted 30+ days ago

Security Compliance Analyst-logo
Security Compliance Analyst
BenchlingSan Francisco, CA
Biotechnology is rewriting life as we know it, from the medicines we take, to the crops we grow, the materials we wear, and the household goods that we rely on every day. But moving at the new speed of science requires better technology. Benchling’s mission is to unlock the power of biotechnology. The world’s most innovative biotech companies use Benchling’s R&D Cloud to power the development of breakthrough products and accelerate time to milestone and market.  Come help us bring modern software to modern science. ROLE OVERVIEW As a Security Compliance Analyst at Benchling, you will be joining a team responsible for supporting the security program and safeguarding highly sensitive scientific research and development data. You will collaborate with engineers and auditors to ensure that we can effectively meet our security compliance controls as well as enhance our overall program. We're looking for candidates who are excited to apply their skills to building and maintaining security compliance programs that will scale with Benchling to meet our internal and external objectives. RESPONSIBILITIES Maintain comprehensive compliance programs for SOC 2 Type 2, ISO 27001/17/18 (or relevant ISO standards), and other applicable security frameworks. Conduct regular risk assessments and internal audits to identify compliance gaps and recommend remediation measures. Manage the end-to-end process for external audits, including coordinating with auditors, providing necessary documentation, and tracking remediation efforts. Develop and maintain comprehensive documentation, including ISMS policies, procedures and controls descriptions Act as a liaison between internal teams and external auditors or customers. Monitor changes in regulatory requirements and industry standards, and ensure the organization’s compliance programs are updated accordingly. Serve as the subject matter expert for security and security compliance-related inquiries in customer RFPs and security questionnaires. Work closely with cross-functional teams, including engineering, business technology, legal and human resources, to ensure compliance requirements are integrated into key business processes. Monitor and report on key compliance metrics and relevant compliance remediation efforts Maintain a third-party risk management program, including vendor risk assessments, due diligence, and ongoing monitoring. ​​Contribute to the development and implementation of security awareness programs. QUALIFICATIONS 2+ years of experience in Security Compliance or a related role, with exposure to various security tools and technologies. 1+ years leading industry standard (ISO 27001, SOC 2) security audits from either side Strong knowledge of applicable privacy laws (CCPA/GDPR) Strong knowledge of security frameworks and standards including NIST, ISO 27001, and SOC 2. Experience with GRC tools such as Drata, Hyperproof, or Anecdotes. Experience working in a cloud-based environment (i.e AWS, Azure, GCP) A collaborative mindset with the ability to work cross-functionally with other teams, including software and infrastructure engineering. Strong communication skills, with the ability to articulate security compliance issues and solutions to both technical and non-technical audiences.   HOW WE WORK Flexible Hybrid Work: We offer a flexible hybrid work arrangement that prioritizes in-office collaboration. Employees are expected to be on-site 3 days per week. SALARY RANGE Benchling takes a market-based approach to pay.  The candidate's starting pay will be determined based on job-related skills, experience, qualifications, interview performance, and work location. For this role the base salary range is  $114,750 to $124,850.  To help you determine which zone applies to your location, please see this  resource . If you have questions regarding a specific location's zone designation, please contact a recruiter for additional information. Total Compensation includes the following: Competitive total rewards package Broad range of medical, dental, and vision plans for employees and their dependents Fertility healthcare and family-forming benefits Four months of fully paid parental leave 401(k) + Employer Match Commuter benefits for in-office employees and a generous home office set up stipend for remote employees Mental health benefits, including therapy and coaching, for employees and their dependents Monthly Wellness stipend Learning and development stipend Generous and flexible vacation Company-wide Winter holiday shutdown Sabbaticals for 5-year and 10-year anniversaries #LI-Hybrid  #BI-Hybrid #LI-EN1 Benchling welcomes everyone.  We believe diversity enriches our team so we hire people with a wide range of identities, backgrounds, and experiences.  We are an equal opportunity employer. That means we don’t discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We also consider for employment qualified applicants with arrest and conviction records, consistent with applicable federal, state and local law, including but not limited to the San Francisco Fair Chance Ordinance.   Please be aware that Benchling will never request personal information, payment, or sensitive details outside of Greenhouse or via email. All official communications will come from an @benchling.com email address or from an approved vendor alias. If you are contacted by someone claiming to represent Benchling and are unsure of their legitimacy, please reach out to us at recruiting-fraud-alert@benchling.com to verify the communication.  

Posted 1 week ago

Information Security Compliance Program Manager-logo
Information Security Compliance Program Manager
Galileo Financial TechnologiesSandy, UT
Employee Applicant Privacy Notice Who we are: Welcoming, collaborative and having the opportunity to make an impact - is how our employees describe working here.  Galileo is a financial technology company that provides innovative and revolutionary software products and services that power some of the world's largest Fintechs. We are the only payments innovator that applies tech and engineering capabilities to empower Fintechs and financial institutions to unleash their full creativity to achieve their most inspired goals. Galileo leads its industry with superior fraud detection, security, decision-making analytics and regulatory compliance functionality combined with customized, responsive and flexible programs to accelerate the success of all payments companies and solve tomorrow's payments challenges today. We hire energetic and creative employees while providing them the opportunity to excel in their careers and make a difference for our clients. Learn more about us and why we work here at https://www.galileo-ft.com/working-at-galileo . About The Role The Governance, Risk, and Compliance (GRC) team handles a wide range of cross-functional activities, from security compliance certifications and audits, to risk management, inbound and outbound due diligence, third party risk management, security awareness, policy and procedures, and more. Each of these ongoing parallel activities entails interpreting and setting requirements, assessing the effectiveness of security controls, risk-based decision making, cross-functional collaboration and communication, and staying up-to-date on security best practices and how changes in the evolving threat landscape need to inform our strategy. We are seeking an experienced Security Compliance Program Manager responsible for monitoring and governing security controls in the cloud based on regulatory/compliance requirements and industry standards. Candidates must be able to assimilate knowledge quickly, understand stakeholder’s business challenges/risks, and act as a trusted advisor to lead change, policy adoption and monitor compliance against policies and standards.   Key job responsibilities: Own and manage ongoing cybersecurity audits and assessments including SOC 2, GLBA, NYDFS, SOX, and other regulatory or client-driven reviews Serve as the primary liaison between internal stakeholders (i.e. Cybersecurity, Technology, Internal Audit, HR, Legal, etc.) and external auditors, regulators, and third-party assessors Monitor compliance with cybersecurity policies and standards and assess security compliance risks for bank scoped products, processes and technologies Partner with stakeholders to conduct walkthroughs and create process maps for critical cybersecurity processes, facilitating in risk and control identification and ensure the environment is operating safely and in control Translate technical controls and requirements into audit-ready evidence, and work with technical teams to align implementations with compliance expectations Support regulatory, third party attestation, and Internal Audit, audit readiness activities, ensuring control design and execution meet internal policy and external regulatory standards Communicate clearly and effectively with both technical and non-technical audiences, including executives, control owners, and external assessors.   Minimum qualifications BS degree in Computer Information Systems or related field 7+ years of experience with security GRC initiatives Experience with regulatory cybersecurity compliance examinations Substantive and current knowledge of transaction banking compliance, consumer and commercial lending, deposit, wires, cards and privacy regulations applicable to banks Experience with onboarding and monitoring cybersecurity controls in AWS Experience managing SOC2, PCI DSS, SOX ITGC, GLBA or other compliance standards and framework programs Strong knowledge of security risk management and running audits/certification programs Self-starter with strong interpersonal and communication skills Demonstrate ability to assimilate new knowledge quickly Comfortable working in a fast-paced, dynamic environment, and managing multiple projects concurrently Experience with managing programs in GRC tools   Preferred qualifications Banking/Fintech, Big 4, or management/IT consulting experience Direct experience with regulatory cybersecurity compliance examinations Relevant certification (e.g. CISA, CISSP, PCI QSA, AWS certifications) or equivalent expertise Have knowledge of Fedline solution security and resiliency assurance program, NIST 800-53/800-37, NIST CSF, SOC 2, PCI, NYDFS NYCRR PART 500 and/or ISO 27001 standards, integrated controls framework, and evaluating design and effectiveness of IT controls working directly with auditors, regulators, investors Experience in building successful compliance programs for banks or fintech Experience defining compliance roadmaps based on customer requirements, compliance documentation, and ensuring that committed assessments are delivered on schedule Technical fluency; comfortable understanding and discussing technology concepts, experience evaluating tradeoffs and new opportunities with technical team members Compensation and Benefits The base pay range for this role is listed below. Final base pay offer will be determined based on individual factors such as the candidate’s experience, skills, and location.    This role may also be eligible for a bonus and/or long term incentives. Your recruiter will provide more information to you. All roles are eligible for competitive benefits. More information about our employee benefits can be found in the link below.   Benefits To view all of our comprehensive and competitive benefits, visit our  Benefits at SoFi & Galileo   page!   US-Based Base Compensation $134,400 — $231,000 USD Galileo Financial Technologies provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion (including religious dress and grooming practices), sex (including pregnancy, childbirth and related medical conditions, breastfeeding, and conditions related to breastfeeding), gender, gender identity, gender expression, national origin, ancestry, age (40 or over), physical or medical disability, medical condition, marital status, registered domestic partner status, sexual orientation, genetic information, military and/or veteran status, or any other basis prohibited by applicable state or federal law. The Company hires the best qualified candidate for the job, without regard to protected characteristics. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. New York applicants: Notice of Employee Rights Galileo is committed to embracing diversity. As part of this commitment, Galileo offers reasonable accommodations to candidates with physical or mental disabilities. If you need accommodations to participate in the job application or interview process, please let your recruiter know or email accommodations@sofi.com . Due to insurance coverage issues, we are unable to accommodate remote work from Hawaii or Alaska at this time. Internal Employees If you are a current employee, do not apply here - please navigate to our Internal Job Board in Greenhouse to apply to our open roles.

Posted 1 day ago

Member of Technical Staff, Security Software Engineer-logo
Member of Technical Staff, Security Software Engineer
Inflection AIPalo Alto, CA
Inflection AI is a public benefit corporation leveraging our world class large language model to build the first AI platform focused on the needs of the enterprise.  Who we are: Inflection AI was re-founded in  March of 2024 and our leadership team has assembled a team of kind, innovative, and collaborative individuals focused on building enterprise AI solutions. We are an organization passionate about what we are building, enjoy working together and strive to hire people with diverse backgrounds and experience.  Our first product, Pi, provides an empathetic and conversational chatbot. Pi is a public instance of building from our 350B+ frontier model with our sophisticated fine-tuning (10M+ examples), inference, and orchestration platform. We are now focusing on building new systems that directly support the needs of enterprise customers using this same approach. Want to work with us? Have questions? Learn more below. About the Role About the Role As a Member of Technical Staff, Security Software Engineer, you will be the cornerstone of our backend security efforts. In a role that bridges core software engineering and security best practices, you will design and implement secure systems, ensuring our technology remains resilient against evolving threats. This position is for a backend engineer with strong SWE skills and a solid foundation in security, ready to take ownership of security at Inflection AI. This is a good role for you if you: Have robust experience as a backend software engineer with a focus on building secure systems. Possess a solid foundation in security best practices, including secure coding, vulnerability assessment, and incident response. Are adept at designing and implementing backend services with an emphasis on security without sacrificing performance or scalability. Are comfortable with modern technologies such as container orchestration (e.g., Kubernetes, Docker) and cloud security services (e.g., AWS Security Hub, GCP Security Command Center). Thrive in environments where you can take initiative and own critical aspects of security in a fast-paced, innovative setting. Have experience with industry-standard security tools for static/dynamic code analysis (e.g., CodeQL, Snyk, SonarQube) and are eager to integrate these into CI/CD pipelines. Responsibilities include: Designing, developing, and maintaining secure backend systems that underpin our AI platform. Implementing security features and best practices throughout our codebase to safeguard data and infrastructure. Collaborating with cross-functional teams to integrate security considerations into all aspects of product development and deployment. Conducting regular security reviews, audits, and code assessments to proactively identify and mitigate vulnerabilities. Building and maintaining secure CI/CD pipelines with integrated security scanning and vulnerability management tools. Helping shape and implement company-wide security strategies and protocols as the primary security point of contact at Inflection AI. Employee Pay Disclosures At Inflection AI, we aim to attract and retain the best employees and compensate them in a way that appropriately and fairly values their individual contributions to the company. For this role, Inflection AI estimates a starting annual base salary will fall in the range of approximately $175,000 - $350,000 depending on experience. This estimate can vary based on the factors described above, so the actual starting annual base salary may be above or below this range. Benefits Inflection AI values and supports our team’s mental and physical health. We are focused on building a positive, safe, inclusive and inspiring place to work. Our benefits include:  Diverse medical, dental and vision options  401k matching program  Unlimited paid time off  Parental leave and flexibility for all parents and caregivers Support of country-specific visa needs for international employees living in the Bay Area Interview Process Apply: Please apply on Linkedin or our website for a specific role. After speaking with one of our recruiters, you’ll enter our structured interview process, which includes the following stages: Hiring Manager Conversation – An initial discussion with the hiring manager to assess fit and alignment. Technical Interview – A deep dive with an Inflection Engineer to evaluate your technical expertise. Onsite Interview – A comprehensive assessment, including: A domain-specific interview A system design interview A final conversation with the hiring manager Depending on the role, we may also ask you to complete a take-home exercise or deliver a presentation. For non-technical roles , be prepared for a role-specific interview, such as a portfolio review. Decision Timeline We aim to provide feedback within one week of your final interview.

Posted 30+ days ago

Information Security Engineer-logo
Information Security Engineer
ReBuild ManufacturingLos Angeles, CA
About Re:Build Manufacturing Re:Build Manufacturing is a rapidly growing family of industrial businesses combining enabling technologies, operational superiority, and strategic M&A to build America’s next generation industrial company. At Re:Build we deploy deep expertise in operations management and technology to supercharge performance of our subsidiaries by implementing core technologies across industrial platforms in diverse growth markets. Our goal is to help revitalize the U.S. manufacturing base over the coming decades, creating substantial opportunities for our employees and the communities where we operate. We leverage deep professional expertise and a candid, principled operating culture to drive differentiated outcomes for our customers, our employees, our communities and our investors. Ours is a fast-paced environment where individuals can stretch and be challenged with a wide variety of opportunities and projects. We empower and support our employees to pursue their fullest potential and provide meaningful avenues for personal and professional growth.   Who we are looking for You will be responsible for implementing and monitoring technical security controls to ensure compliance with Re:Build's requirements and enhance the overall security posture of the organization. You will be a direct report to the VP, Security, working closely with security, IT personnel, software engineers, and partners across our businesses to identify and remediate vulnerabilities and deficient controls, investigate anomalies, and implement processes and technology that systematically reduce risk to the organization. What you get to do! Design, implement, and manage security controls, leveraging Microsoft 365 E5 Security and Compliance and Azure. Analyze systems and networks for compliance with Re:Build policy, industry standard methodologies and regulations. Conduct regular security assessments, vulnerability scans, and penetration tests to identify and address potential security risks. Fully leverage Microsoft Sentinel, increasing observability and monitoring, promptly responding to, and tuning alerts to mitigate threats, minimize impact, and reduce noise. Collaborate with IT and other departments to ensure security is integrated into all aspects of the organization's infrastructure and processes. Stay up-to-date with the latest security trends, threats, and technologies to continually improve the organization's security posture. Assist in the development and execution of business impact assessments, incident response plans and disaster recovery procedures with collaborators across Re:Build. Work with Security and IT personnel to prepare and manage Information Assurance documentation including System Security Plans (SSPs) and Plans of Action & Milestones (POA&M). Lead root cause analysis on security incidents and provide recommendations for containment and remediation. Prepare and present regular reports on key performance indicators, security metrics, and incidents to senior management. Evangelize information security and foster a security culture. What you bring to the Team Minimum of 5 years’ security experience, including implementation and management of security controls, vulnerability management, and investigations. Significant experience with Microsoft 365 Security and Compliance tools and Azure Sentinel. Demonstrated ability to prioritize and manage multiple workloads efficiently, and communicate effectively with diverse teams and stakeholders to ensure timely and successful completion of security initiatives. Bachelor's degree in Information Security (or related field) and/or relevant certifications (e.g., Security+, Microsoft Cybersecurity Architect Expert, CMMC Certified Professional, CISSP) preferred. Background administering and/or securing Windows, Linux, and cloud providers (e.g., AWS, Azure) preferred. Background supporting security and compliance initiatives in the manufacturing and/or defense industries preferred. Strong understanding of security frameworks and standards, specific experience with NIST SP 800-171 and other 800-series publications preferred. To conform to U.S. Government technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C 1324b(a)(3), or eligible to obtain the required authorizations from the U.S.   Location Requirements This position is remote eligible, but preference will be given to candidates within commuting distance to one of our locations and willingness to work in office at least once/week: Los Angeles, CA (preferred) Denver, CO Framingham, MA Merrimack, NH Kalamazoo, MI New Kensington, PA Cleveland, OH Rock Hill, SC Rochester, NY Compensation includes base salary range $110K to $150K, depending on location and work experience. Additionally you will be eligible for annual cash bonus and equity.  The BIG payoff We are a company who is going to make a difference in the industries and the communities in which we choose to operate. Every employee of Re:Build will share ownership in the company and will share in the financial rewards of the success we achieve together, at all levels of the company! We want to work with people that reflect the communities in which we operate Re:Build Manufacturing is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, marital status, parental status, cultural background, organizational level, work styles, tenure and life experiences. Or for any other reason. Re:Build is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at accommodations.ta@ReBuildmanufacturing.com or you may call us at 617.909.6275.  

Posted 5 days ago

Sr Security Operations Engineer - Detection Engineering-logo
Sr Security Operations Engineer - Detection Engineering
SimpliSafeBoston, MA
About SimpliSafe We’re a high-tech home security company that’s passionate about protecting the life you’ve built and our mission of keeping Every Home Secure. And we’ve created a culture here that cares just as deeply about the career you’re building. Ours is a no ego culture of collaboration and innovation where those seeking their next challenge can find big opportunities and make a huge impact on the lives of all those who we protect. We don’t just want you to work here. We want you to grow and thrive here. We’re embracing a hybrid work model that enables our teams to split their time between office and home. Hybrid for us means we expect our teams to come together in our state-of-the-art office on two core days, typically Tuesday and Wednesday, working together in person and choosing where they work for the remainder of the week. We all benefit from flexibility and get to use the best of both worlds to get our work done. Why are we hiring? Well, we’re growing and thriving. So, we need smart, talented, and humble people who share our values to join us as we disrupt the home security space and relentlessly pursue our mission of keeping Every Home Secure. What You’ll Do We’re looking for an operations engineer to build, maintain, monitor, and improve on our security services. As a Security Operations Engineer you will help deploy and manage services fully owned by the Security team, such as the anti-malware, SIEM, network monitoring, and vulnerability management platforms. You will also be responsible for maintaining and improving our incident detection and response capabilities.  Primary Responsibilities Include Responsible for administration, configuration, and maintenance of tooling and platforms used chiefly by the security team Maintain and improve our detection and response capabilities, including through active testing of our detection capabilities using established TTPs to uncover weaknesses in our defenses Working with our managed services vendors to tune and improve our security product integrations, dashboards, and alerts Serve as a primary point of escalation for security incidents and investigations Perform security incident analysis, response, and remediation as necessary Contribute to building and improving on the process for security incident response What You’ll Bring 5+ years of experience in a technology operations, cyber security, or related field Minimum knowledge of security investigation and incident response required Basic knowledge of atomic testing for the purpose of purple teaming Strong problem solving skills Ability to work with and analyze data sets to gain relevant insights Able to work collaboratively with teams supporting product, engineering, infrastructure, and IT functions Willingness to learn and immediately apply new skills Experience with applicable technology platforms a plus: AWS, Okta, Crowdstrike, JAMF, SIEM What Values You’ll Share Customer Obsessed - Building deep empathy for our customers, putting them at the core of our work, and developing strong, long-term relationships with them. Aim High - Always challenging ourselves and others to raise the bar. No Ego - Maintaining a “no job too small” attitude, and an open, inclusive and humble style. One Team - Taking a highly collaborative approach to achieving success. Lift As We Climb - Investing in developing others and helping others around us succeed. Lean & Nimble - Working with agility and efficiency to experiment in an often ambiguous environment. What We Offer A mission- and values-driven culture and a safe, inclusive environment where you can build, grow and thrive   A comprehensive total rewards package that supports your wellness and provides security for SimpliSafers and their families (For more information on our total rewards please click here ) Free SimpliSafe system and professional monitoring for your home.  Employee Resource Groups (ERGs) that bring people together, give opportunities to network, mentor and develop, and advocate for change. We wholeheartedly embrace and actively seek applications from all individuals, no matter how they identify. We are committed to cultivating a diverse and inclusive workplace, and we believe our work is enriched when we incorporate a multitude of perspectives, backgrounds, and experiences. We want everyone who works here to thrive and contribute to not only our mission of keeping every home secure, but also to making our workplace safe and supportive for others. If a reasonable accommodation may be needed to fully participate in the job application or interview process, to perform the essential functions of a position, or to receive other benefits and privileges of employment, please contact careers@simplisafe.com .

Posted today

Senior Security Engineer -logo
Senior Security Engineer
HighnoteSan Francisco, CA
About Highnote  Founded in 2020 by a team of leaders from Braintree, PayPal, and Lending Club, Highnote is an all in one card issuer processor and program management platform. We give digital-first organizations the flexibility to easily issue and process payment cards that accelerate business growth and profitability.  We’ve raised $104M+ and grown our team to 120+ employees. Headquartered in San Francisco, we’ve managed to build one of the most advanced payments teams in the industry, with team members in 25+ US states.  Operating through our core values of customer obsession, executional excellence, intentional inclusion, we’re helping businesses grow for the future by creating the payment products demanded by tomorrow, with the ability to solve for use cases that don’t exist yet. We are fast-moving, hands-on, and strongly believe everyone deserves a seat at the table. We believe we’re unlocking incredible opportunities that can change the future of payments, as long as we have the right people to make it happen.  Job Description We are looking for a Senior Security Engineer to lead the overall security efforts at Highnote. It's an opportunity to take all your prior security experience and learnings, work with engineering leadership and various teams to improve security, and most importantly, be an evangelist for security across the company. Ideal candidates should have similar experience with early-stage companies. What you’ll be doing Refine and execute the overall security strategy Drive to and maintain security policies and processes Own various compliance programs such as PCI-DSS, SOC1/2, and GDPR Own and drive application and web security initiatives, ensuring industry best practices Serve as a security consultant in design discussions and reviews Drive secure coding and SDLC initiatives Manage penetration testing efforts and bug bounty programs Evaluate various technologies for improving security defenses and monitoring Integrate security controls across cloud-native and third-party tools Own infrastructure and vendor security audits Work with the infrastructure team on securing GCP, AWS, and On-Premise Colos Implementing security best practices across Kubernetes and Istio Own security incident response and related systems What we are looking for 7+ years of experience in information security space Experience in leading the overall security efforts Experience with one or more scripting/programming languages Experience with cloud platforms, such as GCP or AWS Knowledge of cryptography, PKI, TLS, etc Familiarity with static and dynamic code analysis tools Experience with APIs Ability to work autonomously in a fast-paced and cross-functional environment Bonus skills Experience in the financial payments technology space Experience with SpringBoot, Kubernetes and Istio Experience with big data technologies, such as BigQuery Why Highnote? We’re a startup that allows for our employees to truly build from the ground up and impact every layer of our organization.  We’re a team of payments obsessed individuals. While some of us come from the fintech world, some of us don’t. We value the varied backgrounds and the diverse perspectives of our employees.  We’re small on hierarchy and big on growth. We’re a flat organization that allows everyone to have direct exposure to our leadership team. We are looking for builders who thrive in ambiguity.  We’re backed by Oak HC/FT, Costanoa Ventures, and XYZ Ventures. Angel Investors include Bill Ready (CEO at Pinterest) and Renaud Laplanche (Co-Founder & CEO of Upgrade). Highnote benefits Flexible Paid Time Off  100% healthcare coverage + 75% coverage for dependents 401k program Up to 16 weeks off for Maternity leave + up to 6 weeks of Paternity leave Equity in Highnote Stipend to build out your home office; internet and phone reimbursement At Highnote we have built a total rewards philosophy that includes fair, equitable, geo-based compensation that is performance and potential based. Our compensation packages are competitive based on robust market research and are a combination of a cash salary, equity, and benefits. In compliance with the Equal Pay for Equal Work Act, the annual salary range for applicants is $170,000-$230,000. Please note that positions located in San Francisco are hybrid and include core working days of Tuesday, Wednesday, Thursday in office.  We provide flexible work options based on distance from our downtown SF office. Highnote believes in the power of face-to-face, personal connection. As a result, we prioritize in-person candidates.  Highnote is a diverse and inclusive company committed to growing a diverse and inclusive team. We invite people from all backgrounds and identities to apply. We do not discriminate based on gender identity or expression, sexual orientation, race, religion, age, national origin, citizenship, disability, pregnancy status, veteran status, or any other characteristics protected by US federal state or local laws, or the laws of the country or jurisdiction where you work. Additionally, we encourage everyone to share which pronouns you wish for us to use when addressing you (i.e.: she/her, he/him, they/them, etc).

Posted 30+ days ago

Lead Security Engineer-logo
Lead Security Engineer
NateraSan Carlos, CA
Job Overview: We are seeking a highly skilled Lead Security Engineer to join our cybersecurity team with a focus on Endpoint, MDM (Mobile Device Management), IOT, and Cloud Security. This role is critical in designing, implementing, and maintaining robust security measures for endpoint devices, ensuring the protection of enterprise data across mobile, desktop, and other endpoints. The ideal candidate will have extensive security engineering experience, hands-on expertise in MDM solutions, and a strong all-around understanding of cybersecurity principles to safeguard our organization against evolving threats. The ideal candidate should have solid hands-on experience in highly regulated industry such as healthcare and/or financial organizations.   Key Responsibilities: Design, deploy, and manage MDM solutions (e.g., Google MDM, Intune, Jamf, AirWatch) to secure endpoints, including mobile phones, tablets, laptops, and desktops. Develop and enforce security controls for endpoint devices accessing enterprise data, ensuring compliance with internal and regulatory standards Experiences with VDI solutions such as Island Conduct risk assessments and vulnerability scans on endpoint systems, remediating identified weaknesses. Collaborate with IT and security teams to integrate MDM solutions with existing infrastructure, including identity management and network security systems. Monitor and respond to endpoint security incidents, leveraging EDR (Endpoint Detection and Response) tools and threat intelligence. Maintain up-to-date knowledge of emerging threats, particularly those targeting mobile and endpoint devices, and implement proactive countermeasures. Provide technical expertise and training to junior team members and end-users on secure device usage. Document configurations, policies, and incident response procedures to ensure operational continuity and audit readiness Qualifications and Requirements: Experience: Minimum of 10 years in cybersecurity engineering, with at least 8 years of hands-on experience in endpoint security and MDM solutions. Technical Skills: Proficiency in MDM platforms (e.g., Google MDM, Microsoft Intune, Jamf). Strong knowledge of endpoint security tools, including EDR, antivirus, and encryption technologies. Experience with operating systems (Windows, macOS, iOS, Android) and their security configurations. Enterprise Golden Image engineering. Familiarity with identity and access management (IAM) systems and integration (e.g., Azure AD, Okta). Expert understanding of Windows, Linux, and Mac security. Understanding of network security principles and integration with endpoint protection. Expert hands-on knowledge in AWS Security, Privilege Management, and Data Protection. General Security Expertise: Broad knowledge of cybersecurity domains, including threat modeling, vulnerability management, and incident response. Hands-On Experience: Proven ability to configure, troubleshoot, and optimize MDM and endpoint security solutions in real-world environments. Certifications: Preferred certifications include CISSP, CISM, CEH, CompTIA Security+, or vendor-specific MDM certifications (e.g., Microsoft Certified: Endpoint Administrator). Soft Skills: Strong problem-solving skills, excellent communication for cross-functional collaboration, and ability to explain complex security concepts to non-technical stakeholders. Scripting or automation skills (e.g., PowerShell, Python) for endpoint management tasks. Experience with AI programming such as Cursor. Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experiences. Preferred Qualifications: Experience with cloud-based security solutions and zero-trust architecture. Knowledge of compliance frameworks (e.g., NIST, ISO 27001, GDPR, HIPAA). The pay range is listed and actual compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years & depth of experience, certifications and specific office location. This may differ in other locations due to cost of labor considerations. Remote USA $135,800 — $169,800 USD OUR OPPORTUNITY Natera™ is a global leader in cell-free DNA (cfDNA) testing, dedicated to oncology, women’s health, and organ health. Our aim is to make personalized genetic testing and diagnostics part of the standard of care to protect health and enable earlier and more targeted interventions that lead to longer, healthier lives. The Natera team consists of highly dedicated statisticians, geneticists, doctors, laboratory scientists, business professionals, software engineers and many other professionals from world-class institutions, who care deeply for our work and each other. When you join Natera, you’ll work hard and grow quickly. Working alongside the elite of the industry, you’ll be stretched and challenged, and take pride in being part of a company that is changing the landscape of genetic disease management. WHAT WE OFFER Competitive Benefits - Employee benefits include comprehensive medical, dental, vision, life and disability plans for eligible employees and their dependents. Additionally, Natera employees and their immediate families receive free testing in addition to fertility care benefits. Other benefits include pregnancy and baby bonding leave, 401k benefits, commuter benefits and much more. We also offer a generous employee referral program! For more information, visit www.natera.com . Natera is proud to be an Equal Opportunity Employer. We are committed to ensuring a diverse and inclusive workplace environment, and welcome people of different backgrounds, experiences, abilities and perspectives. Inclusive collaboration benefits our employees, our community and our patients, and is critical to our mission of changing the management of disease worldwide. All qualified applicants are encouraged to apply, and will be considered without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, age, veteran status, disability or any other legally protected status. We also consider qualified applicants regardless of criminal histories, consistent with applicable laws. If you are based in California, we encourage you to read this important information for California residents.  Link: https://www.natera.com/notice-of-data-collection-california-residents/ Please be advised that Natera will reach out to candidates with a @ natera.com  email domain ONLY. Email communications from all other domain names are not from Natera or its employees and are fraudulent. Natera does not request interviews via text messages and does not ask for personal information until a candidate has engaged with the company and has spoken to a recruiter and the hiring team. Natera takes cyber crimes seriously, and will collaborate with law enforcement authorities to prosecute any related cyber crimes. For more information: - BBB announcement on job scams   - FBI Cyber Crime resource page  

Posted 2 weeks ago

SpaceX logo
Network Security Administrator
SpaceXHawthorne, CA
Apply

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.


NETWORK SECURITY ADMINISTRATOR


SpaceX is looking for a Network Security Administrator with expertise in network security technologies (firewalls, VPNs, IDS/IPS, etc.) This employee will be a member of the Network Security Engineering team and will focus on firewalls. The ideal candidate will be flexible, excel at multi-tasking, and flourish in a fast-paced and challenging environment. This person should be a self-starter, self-motivator and possess the ingenuity to excel in this position. 

RESPONSIBILITIES:



  • Develop and implement network security tools

  • Provide subject matter expertise on network security, firewalls and industry best practices

  • Manage firewall configurations within the SpaceX enterprise network based on operational requirements 

  • Analyze and proactively come up with creative network solutions for operational needs that present security challenges

  • Manage and maintain network security systems by applying system patches and other periodic maintenance tasks

  • Work with other SpaceX teams to determine functional needs and communicate security policies

  • Build out threat models and assess risk for proposed architectures


BASIC QUALIFICATIONS:



  • High school diploma or equivalency certificate

  • 2+ years of network security experience; OR 4+ years of professional IT networking experience

  • Professional experience with network firewalls


PREFERRED SKILLS AND EXPERIENCE:



  • Proficient understanding of network security technologies, their operation and limitations, including: 

    • Firewalls (Palo Alto and Juniper) 

    • Network IDS/IPS Solutions 

    • Switch/Router ACLs 

    • Network Access Control solutions 

    • IPSec and TLS -based VPNs



  • Familiarity with networking protocols and the OSI Model 

  • Experience testing and implementing changes in a production environment 

  • Adept at learning new technologies and systems 

  • Strong self-starting and time-management skills 

  • Good communication skills, both written and verbal 


ADDITIONAL REQUIREMENTS:



  • Must be willing to work extended hours and weekends as needed

  • This role is located in Hawthorne, CA and requires you to be onsite. Remote or hybrid work will not be considered



COMPENSATION AND BENEFITS:    
    
Pay range:    
Network Security Administrator/Level I: $85,000.00 - $115,000.00/per year    
Network Security Administrator/Level II: $105,000.00 - $140,000.00/per year    
    
Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.


Base salary is just one part of your total rewards package at SpaceX. You may also be eligible for long-term incentives, in the form of company stock, stock options, or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Employees accrue paid sick leave pursuant to Company policy which satisfies or exceeds the accrual, carryover, and use requirements of the law.

ITAR REQUIREMENTS:



  • To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.  


SpaceX is an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.


Applicants wishing to view a copy of SpaceX’s Affirmative Action Plan for veterans and individuals with disabilities, or applicants requiring reasonable accommodation to the application/interview process should reach out to EEOCompliance@spacex.com