landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Security Jobs

Auto-apply to these security jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Sompo International logo
Sompo InternationalConshohocken, PA
As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions. Job Description Are you looking for your next opportunity? Sompo has a unique opportunity for an Application Security Engineer in our Information Security team. Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers. Our business, your impact, our opportunity: What you'll be doing: Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations. Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection. Maintain a strong familiarity with: Sompo's full stack of security technologies and common application architectures regulatory requirements for security and privacy technologies. The various Sompo teams who are non-technical subject matter experts on those regulations. Industry-standard approaches for aligning development, operations, and security. Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls. Application security review (development lifecycle, technology selection) Application security testing and instrumentation (production operations) Support of security tooling and automation What you'll bring: Minimum of 5 years of experience in information security. Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages. Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria. Strong understanding of: HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight. Development and direct work experience with: Languages for automation, especially Python and Powershell, Query tools. Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis. Packet captures for low level network troubleshooting Application development building blocks, Web application security components Native security controls in the Microsoft stack (OS, Office, Edge) Ability to write ad hoc queries using one or more of the following: Splunk, Powershell, Regular expressions, SQL, XPATH Ability to write practical audience-relevant documentation related to troubleshooting. B.S. in Computer Science or Software Engineering Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience. At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees. Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance. We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs: Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution Pharmacy benefits with mail order options Dental benefits including orthodontia benefits for adults and children Vision benefits Health Care & Dependent Care Flexible Spending Accounts Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children Company-paid Disability benefits with very competitive salary continuation payments 401(k) Retirement Savings Plan with competitive employer contributions Competitive paid-time-off programs, including company-paid holidays Competitive Parental Leave Benefits & Adoption Assistance program Employee Assistance Program Tax-Free Commuter Benefit Tuition Reimbursement & Professional Qualification benefits In today's world, what do we stand for? Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo. Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.

Posted 30+ days ago

B logo
Bronson Battle CreekKalamazoo, MI
CURRENT BRONSON EMPLOYEES - Please apply using the career worklet in Workday. This career site is for external applicants only. Love Where You Work! Team Bronson is compassionate, resilient and strong. We are driven by Positivity which inspires us to be our best and to go above and beyond for our patients, for one another, and for our community. If you're ready for a rewarding new career, join Team Bronson and be part of the experience. Location BMH Bronson Methodist Hospital Title Healthcare Security Specialist- (Kalamazoo): full-time 72 hr./pp, 3rd shift (11p-7a), schedule shift V (wk1: Tues., Wed., Th., Sat.; wk2: Sun., Tues., Wed., Th., Fri.). Responsible for the safety and security of BHG properties and grounds as well as patients, visitors and staff. Bronson Healthcare Security Specialists will uphold Bronson's policies and procedures through the Standards for Excellence and will display professionalism and provide exceptional customer service at all times. High school diploma or general education degree (GED); security and/or healthcare security experience preferred. Valid Michigan driver's license is required. Must be able to be insured through Bronson's insurance carrier. Maintains a level of professional conduct that promotes good hospital and community relations. Demonstrates commitment to providing outstanding customer service in a manner that is reflective of our mission, values and customer service standards. Greets patients and visitors and assists them to their destination. Must have good verbal and written communication skills. Completes reports and documentation. Maintain annual department continuing education trainings and certificates, along with system CBLs. Receive certification in CPI and Violent Patient Management. Ability to utilize / operate a computer, tablet / mobile device, and security surveillance system for significant portions of their shift. Involves regularly lifting of bulky or moderately heavy weight (i.e., up to 50 pounds), and occasionally assisting with heavier tasks or expending the equivalent effort in pushing, pulling, or otherwise handling material, equipment, and other objects. Employees providing direct patient care must demonstrate competencies specific to the population served. Must be able to take control during stressful situations and emergencies. ● Enforces No-Trespass orders. Ability to recognize problems or potential problems and take corrective action. Perform work which produces high levels of mental/visual fatigue (e.g., interactive and repetitive or small detailed work Interact and problem solve with other units and staff members in assisting with direct patient care situations where a security presence is needed. Must be able to cope with a high level of stress, including dealing with the anger, fear and hostility of others in a calm manner. Must be comfortable in defusing and de-escalating stressful situations as well as using patient management techniques as a part of responding to resistance to gain control of a patient or subject who is engaging in work place violence. Responds to calls for aid from various hospital areas, particularly the Emergency Department. Assists with calming or possible restraining of disturbed patients. Escorts individuals from hospital premises when necessary Assist/communicate with staff, patients/visitors, and local law enforcement during codes and/or situations that require a high state of readiness. Responds to emergency security situations. Responds to emergency codes, as necessary. Investigates and prepares reports detailing accidents, thefts, lost property, safety and security violations, and so forth. Completes incident reports and follows up on all incomplete reports. Serves as "charge" whenever assigned. Coordinates routine operations, directs the activities of other personnel, and assumes functional charge of the shift(s) as assigned. May be asked to provide education (e.g., access control, fire drills, etc.). Assists with parking control. Escorts employees and visitors to their cars upon request. Provides general assistance to people with car trouble (e.g., lockout, jump start, etc.). Patrols hospital buildings and grounds according to established round schedule in order to detect and prevent theft, vandalism, fire, and other threats to hospital security. In addition, makes periodic unscheduled rounds. Perform site specific duties as needed. Shift Third Shift Time Type Full time Sign-On Bonus External Candidates Only: Up to $750.00 Retention Bonus External Candidates Only, $750.00 Scheduled Weekly Hours 36 Cost Center 1700 Security (BMH) Agency Use Policy and Agency Submittal Disclaimer Bronson Healthcare Group and its affiliates ("Bronson") strictly prohibit the acceptance of unsolicited resumes from individual recruiters or third-party recruiting agencies ("Recruiters") in response to job postings or word of mouth. Unsolicited resumes sent to any employee of Bronson by Recruiters, without both a valid written agreement with Bronson and a direct written request from the Bronson Talent Acquisition Department for a specific job position, will be considered the property of Bronson. Furthermore, no fees will be owed or paid to Recruiters who submit resumes for unsolicited candidates, even if those candidates are hired. This policy applies regardless of whether the Recruiter has a pre-existing agreement with Bronson. Only candidates submitted through a specific written agreement with the Bronson Talent Acquisition Department for a named position are eligible for fee consideration.

Posted 2 weeks ago

Paladin Technologies logo
Paladin TechnologiesSeattle, WA
The Senior Technician - Security; will provide efficient and high-quality installations related to integrated security systems. This position will require a high level of project involvement, including the physical installation, testing and closing-out process. Responsibilities: Serve as the subject matter expert and mentor to assigned team of technicians Install, test, troubleshoot, repair, and maintain all Security systems at customer sites Installation will include, but not limited to: Video NVR/Servers, IP Cameras, Access Control Devices, Intrusion Devices, Head End Panel Installations, Intercoms, Wireless Devices, Switch Gear. Perform assigned projects within scope, in a timely manner, and on budget Provide customers with system operation and training Excellent attention to detail including maintaining concise daily records and following of operational standards and practices Maintain a professional appearance and attitude Adhere to all applicable safety rules and regulations Review materials options and verify count accuracy Maintain a clean and orderly jobsite Facilitate the delivery of staged materials to the jobsite Coordinate with Project Management and Field Technicians for project scheduling Please note; at times you may be required to work night shift Work at required heights utilizing ladders, scaffolding, lifts, or other. Work in confined spaces as necessary. Required Qualifications: 5+ years of work experience as a Senior / Lead Technician with a security integrator (including current manufacturer certifications) Industry experience working with access control, video surveillance, and intrusion Valid US drivers license with acceptable record Ability to pass pre-employment screening State of Washington Electrical License/card Preferred Qualifications: Industry Experience: Healthcare, Education, Manufacturing, Utilities, Financial & Hospitality. Video Surveillance: Avigilon, Genetec, Milestone, Bosch, Axis, Hanwha, Exacq. Access Control: Lenel, Software House, Avigilon, Genetec, Identiv, Honeywell, Open Path, RS2, S2, AMAG, Gallagher, Open Options. Intrusion: DMP, DSC, Honeywell, Bosch. Locking Hardware: Maglocks, Strikes, Mortise, Cylindrical, ADA applications. Data Terminations. Field engineering or estimating skills. Updating blueprints on Bluebeam. Experience with Procore, Fieldwire, Smartsheets, etc. Experience with programing, testing and training end users on various security systems. Out of town travel work if required. Vaccinations may be required by our customers, specifically related to any worksite location in the health care industry Demonstrated Professional Competencies Ability to troubleshoot electronic systems and find solutions Ability to use sound judgment and perform under pressure Ability to operate as part of a team Great written and verbal communication Good troubleshooting skills, exceptional customer service Positive attitude PHYSICAL DEMANDS: In general, the following physical demands are representative of those that must be met by an employee to successfully perform the essential functions of the job. While performing the duties of this job, the employee is regularly required to stand, climb, walk, sit, push, pull, squat, crawl, and stoop. The employee is regularly required to use hands to finger, handle, feel objects, and type on keyboard; reach with hands and arms; talk and hear. Specific vision abilities required by the job include close vision, distance vision, depth perception, and the ability to adjust focus. The use of power tools will be required to effectively perform this position. The employee must occasionally lift and/or move up to 50 pounds and may be required to work at heights over 1.8m. Working Conditions In general, the following conditions of the work environment are representative of those that an employee encounters while performing the essential functions of this job. While performing the duties of this job, the employee will be exposed to outdoor weather conditions, work on job sites, may be required to travel to and from job site locations, may work in a typical office environment, and is occasionally exposed to construction equipment. The noise level in the work environment is usually moderate. Confined space entry may be required. High work may be required. Benefits Paladin Technologies offers a strong compensation package including medical, dental, and vision insurance, company paid life insurance, 401k matching, PTO and paid sick leave, training and certification opportunities, and more. Pay: $45.00ph - $54.00ph DOE

Posted 30+ days ago

Navan logo
NavanPalo Alto, CA
Navan has transformed the corporate travel, payment, and expense landscape by consistently prioritizing user needs and leveraging innovative, AI-powered solutions. We are seeking a Sr. Manager of Product Security to lead, mentor, and scale a team of product security engineers. This is a highly technical, hands-on leadership role focused on securing our products by integrating security throughout the SDLC and fostering a 'shift left' security culture. You will be responsible for building strong partnerships with engineering and product teams to accelerate secure software releases at scale. What You'll Do: Lead, coach, and guide a team of product security engineers, providing mentorship and technical guidance. Act as a hands-on technical leader for high-impact security initiatives across our portfolio you will be responsible for Security Architecture for all our products and AI initiatives. Guide the team in performing comprehensive threat modeling and security reviews. Design and develop security tools, automation, and custom solutions to continuously improve the S-SDLC. Partner with engineering and product teams to drive security ownership and accountability. Help build and mature our Red Team and PSIRT functions. What We're Looking For: Proven experience leading and managing a team of security engineers. 8-10 years of technical product security experience, with a strong focus on SDLC tooling, automation, and remediation. Expertise in performing threat modeling, architecture reviews, and penetration testing for complex applications, including those within financial or healthcare environments. Deep, hands-on knowledge of security for distributed systems at scale. In-depth understanding of modern Authentication and Authorization protocols (SAML, OIDC, RBAC//REBAC). Experience with Agile development in a containerized, microservices environment. Proficiency with cloud (AWS), security testing tools (SAST, DAST, etc.), and CI/CD pipelines. Published contributions to the security community. Knowledge of compliance standards like PCI DSS and SOC2. Experience in fast-paced, small team environments, delivering outsized impact.

Posted 2 weeks ago

River City Bank logo
River City BankSacramento, CA
Description The Director of Information Security is responsible for establishing and maintaining the overall information security program within the Bank. The Director is responsible for providing leadership, strategic direction, and guidance to ensure the confidentiality, integrity, and availability of the Bank's information assets. The Director oversees the development and implementation of information security policies, procedures, and controls and ensures compliance with industry regulations and standards. _ ____ Essential Functions Develops and implements a comprehensive information security program, including policies, procedures, and controls. Monitors and urgently addresses current and emerging cybersecurity risks that pertain to the Bank and its customers. Advises the Bank's Chief Risk Officer, IT Committee, and Senior Management in developing and implementing information technology safeguard strategies and controls to mitigate risks. Conducts ongoing information security compliance monitoring and performs IT and customer information risk assessments for all areas of the Bank. Monitors and continuously upgrades information security and business resiliency capabilities across the enterprise. Manages enterprise-wide Business Continuity Planning (BCP), including establishing and validating policies and procedures to restore business-critical services of the Bank in the event of a disaster or event. Works closely with and challenges the Director of Information Technology and the Chief Risk Officer to develop strategic plans and makes recommendations for significant information technology projects involving functional changes within the Bank. Provides the Board with an annual assessment of the Bank's Information Security program in accordance with the Gramm Leach Bliley Act. Assures audit compliance and procedure quality control through internal and external reviews, recommends and initiates corrective actions, and ensures system resources are in compliance with established Bank policies, procedures, and state and federal laws, rules and regulations. Manages physical security policies, protocols, procedures, and systems. Ensures policies and procedures are consistently applied across the Bank and ensures adherence with regulatory requirements. Continuously monitors and assesses the information security team and resources to ensure the organization employs and develops top talent. Performs personnel actions, including performance appraisals, disciplinary actions, and interviewing candidates for employment, and supervises the daily activities of the department, including, but not limited to, effective delegation of assignments, developing work schedules, and providing necessary training. Fosters a culture of security awareness and accountability throughout the organization. Works with the Training Officer to develop and deliver security awareness and training programs to educate employees on security best practices. Supports Community Reinvestment Act (CRA) through business development efforts. Actively participates in community organizations. Maintains a current knowledge of bank regulations. Ensures compliance with all Federal, State and Bank policies, procedures, and regulations. Other duties as assigned. Requirements Bachelor's degree in Computer Science, Information Technology, or a related field. Extensive experience in information security management, including experience in a leadership or executive role. Professional certifications such as ISACA-CISM, and/or ISC2-CISSP are required. In-depth knowledge of information security frameworks, standards, and best practices. Strong understanding and experience in implementing the guidelines of FFIEC IT Booklets. Strong understanding of risk management principles and experience conducting risk assessments. Demonstrated ability to develop and execute strategic plans and initiatives. Strong leadership and people management skills, with the ability to build and develop a high-performing security team. Up-to-date knowledge of emerging threats, vulnerabilities, and security technologies. Ability to deal with complex problems involving multiple facets and variables in non-standardized situations. Additional Comments: River City Bank is an Affirmative Action and Equal Opportunity Employer with a commitment to diversity. Individuals seeking employment at River City Bank are considered without regards to ancestry, age, color, physical or mental disability, genetic information, gender, gender identity, gender expression, marital status, medical condition, national origin, race, religion, sex, sexual orientation, protected veteran/military status or any other consideration made unlawful by federal, state or local laws. Note: River City Bank does not sponsor applicants for work visas. For CA residents please read the Notice at Collection - California before applying. NOTE: We are not currently accepting inquiries from recruiters or recruiting agencies. All applications must be submitted directly by the candidates.

Posted 30+ days ago

Match Group logo
Match GroupHouston, TX
Match Group is on a mission to change the world, bringing people together and facilitating millions of connections that otherwise might not have been possible. With tens of millions of users and an expansive global presence, our reach is expansive - and rapidly growing. We're looking for an AI focused Staff Software Security Engineer to join our team. As an AI Software Security Engineer you will help ensure the highest standard of security for Match Group products and our members. The scope of the role spans applications, infrastructure, devices, vendors, and anything else potentially at risk to the organization. Candidates that will excel in the role have technical backgrounds within security and are well-versed in manually identifying vulnerabilities as well as having a track record of writing security-adjacent code. Experience with various prompt engineering techniques, models, and strategies is strongly preferred. Know where you belong. Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Match, Hinge, PlentyOfFish, The League, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn't stop at our products - it's the foundation of every team we hire. We are flexible and offer remote or hybrid working models in the United States as options to accommodate our team. Match Group is headquartered in Dallas, TX with offices in LA, Palo Alto, and New York. How You'll Make an Impact: Develop tooling leveraging AI to identify security vulnerabilities in code and configuration oversights. Pursue strategies to reduce tooling noise and false positives, leaving actionable security vulnerabilities to prioritize with the brand teams. Interface with engineering teams and effectively convey impact and provide remediation guidance for vulnerabilities. Take ownership of the security research function to contribute to the security blog and speak at security conferences. We Could Be a Match if You Have: At least 5 years of professional experience in application security. A track record of manually testing for and identifying impactful vulnerabilities. The ability to effectively partner and communicate with Engineering and Product teams. Experience securing large-scale web/mobile applications, including performing security code reviews, vulnerability assessments, and manual testing for logic flaws. Experience with various prompt engineering techniques and AI models to effectively develop tooling. Ability to write clean and maintainable code integrating across various systems. Experience publicly writing about or presenting security related work. Bachelor's Degree in Computing Science or related field. Strong Candidates Will Have: Experience submitting high impact vulnerabilities to bug bounty programs, responsible disclosures, or published CVEs. Public work in the security space such as tooling, blog posts, or conference talks outlining novel techniques. The ability to identify gaps and pain points scaling application security and develop low-friction solutions through automation. $180,000 - $210,000 a year The compensation range listed above is representative of the base salary offered. Factors such as scope and responsibilities of the position, candidate's work experience, education/training, job-related skills, internal peer equity, as well as market and business considerations may influence base pay offered. This salary range is reflective of a position based in the United States. This salary will be subject to a geographic adjustment (according to a specific city and state), if an authorization is granted to work outside of the location listed in this posting. #LI-CENTRAL #LI-CH1 Why Match Group? Our mission is simple - to help people find love and happiness! We love our employees too and understand the importance of all life's milestones. Here are some of the benefits we are proud to offer: Mind & Body- Medical, mental health, and wellness benefits to support your overall health and well-being Financial Wellness- Competitive compensation, 100% employer match on 401k contributions up to 10% (cap at $10,000), as well as an employee stock purchase program to help you feel supported in your financial security Unplug- Generous PTO and 18 paid holidays so you can unplug Career- Annual training allowance for professional development and ERG membership opportunities and events so you feel connected and empowered in your work Family- Families come in all shapes and sizes so we offer 20 weeks of 100% paid parental leave, fertility, adoption, and child care resources, as well as pet insurance and discounts Company Gatherings- We host fun happy hours and company events where our employees get to know each other and build a sense of connection and belonging! We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, or any other legally protected characteristic. Period. If you require a reasonable accommodation to participate in the hiring process - such as during pre-employment testing or interviews - please indicate this by selecting "Yes" in the accommodation request field. We'll reach out to discuss your needs if you're selected for the interview stage. #MG

Posted 30+ days ago

Johnson & Johnson logo
Johnson & JohnsonJackson, MS
At Johnson & Johnson, we believe health is everything. Our strength in healthcare innovation empowers us to build a world where complex diseases are prevented, treated, and cured, where treatments are smarter and less invasive, and solutions are personal. Through our expertise in Innovative Medicine and MedTech, we are uniquely positioned to innovate across the full spectrum of healthcare solutions today to deliver the breakthroughs of tomorrow, and profoundly impact health for humanity. Learn more at https://www.jnj.com Job Function: Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture Job Category: Scientific/Technology All Job Posting Locations: Albuquerque, New Mexico, United States of America, Albuquerque, New Mexico, United States of America, Atlanta, Georgia, United States, Austin, Texas, United States, Baltimore, Maryland, United States, Billings, Montana, United States, Birmingham, Alabama, United States, Boise, Idaho, United States, Burlington, Vermont, United States, Charleston, West Virginia, United States, Charlotte, North Carolina, United States, Chicago, Illinois, United States, Columbia, Maryland, United States, Columbus, Ohio, United States, Concord, New Hampshire, United States, Danvers, Massachusetts, United States of America, Denver, Colorado, United States, Des Moines, Iowa, United States, Detroit, Michigan, United States, Dover, Delaware, United States, Fargo, North Dakota, United States, Hartford, Connecticut, United States, Indianapolis, Indiana, United States, Irvine, California, United States of America, Jackson, Mississippi, United States {+ 22 more} Job Description: We are seeking the best talent for a Senior Cloud Security Engineer to join our MedTech Product Security team. The role can be based in Raritan, NJ or Danvers, MA. Remote work options may be considered on a case-by-case basis and if approved by the Company. Are you passionate about security and interested in joining a community of collaborative colleagues working in a Patient First! culture? If that's you, we have an immediate opportunity for a Senior Cloud Security Engineer to join the newly formed Product Security team to help ensure security is implemented by design for this top-performing medical device company. This is an exciting opportunity to impact development initiatives that will shape future product development and industry standards. You will own the Product Security process that includes both pre-market and post-market processes engineering teams leverage throughout the product development lifecycle. If you are eager to leverage your security risk and compliance skills to make a difference and directly impact patient lives, this could be perfect for you. Primary Duties and Responsibilities Being at the office in Danvers MA for a minimum of 3 days per week (for candidates within commutable distance to site). Partner with engineering teams (cloud, console) to drive successful adherence to Abiomed's product security policies, processes, program objectives. Create, update, and improve product security processes. Act as an SME on cyber security matters and provide guidance to development teams. Advocate for proactive inclusion of cyber security input into all phases of the product life cycle, process improvements, strategic product road map planning. Deliver documentation for pre-market product development activities including security plans, threat models, security requirements, SBOM, and risk management documentation. Drive and monitor post-market vulnerability management activities, with adherence to strict timelines. Perform security risk assessment on Cloud infrastructure and applications. Collaborate with the development team to integrate security measures into the CI/CD pipeline and the DevSecOps processes. Continuous improvement of Defender Score. Support compliance certification activities, such as SOC2, FedRAMP, ISO 27001, etc. Identify, research, evaluate, and integrate new compliance requirements, industry standards, and best practices into the product security programs. Maintain relationships with Abiomed's Information Sharing and Analysis Organizations. Guide teams to make decisions that balance business needs with medical device security objectives. Work across organizational boundaries and exhibit empathy with customers, both internal and external. Perform other related duties and responsibilities, as assigned. Qualifications Required: Bachelor's degree 5+ years industry experience in Information Security. Experience working in a Cloud Scrum/Agile Azure DevOps environment. Familiarity with some or all of these tools: Snyk, Veracode, Wiz, JIRA, Confluence. Experience with Containerization technologies such as Docker and Kubernetes. Working knowledge of regulatory standards and compliance frameworks (e.g., NIST Cybersecurity Framework, ISO27001, SOC2, HIPAA, GDPR). Experience with security risk management techniques. Demonstrated organizational skills, attention to detail, the ability to handle multiple assignments simultaneously in a timely manner and be able to meet assigned deadlines. Committed to working with a sense of urgency and embracing new challenges. Strong communication and interpersonal skills. Preferred: Experience working in an FDA-regulated environment. Johnson & Johnson is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or other characteristics protected by federal, state or local law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act. Johnson and Johnson is committed to providing an interview process that is inclusive of our applicants' needs. If you are an individual with a disability and would like to request an accommodation, please email the Employee Health Support Center (ra-employeehealthsup@its.jnj.com) or contact AskGS to be directed to your accommodation resource. #JNJTECH #LI-HYBRID The anticipated base pay range for this position is : $100,000 - $172,500 Additional Description for Pay Transparency: The Company maintains highly competitive, performance-based compensation programs. Under current guidelines, this position is eligible for an annual performance bonus in accordance with the terms of the applicable plan. The annual performance bonus is a cash bonus intended to provide an incentive to achieve annual targeted results by rewarding for individual and the corporation's performance over a calendar/performance year. Bonuses are awarded at the Company's discretion on an individual basis. Employees and/or eligible dependents may be eligible to participate in the following Company sponsored employee benefit programs: medical, dental, vision, life insurance, short- and long-term disability, business accident insurance, and group legal insurance. Employees may be eligible to participate in the Company's consolidated retirement plan (pension) and savings plan (401(k)). Employees are eligible for the following time off benefits: Vacation - up to 120 hours per calendar year Sick time - up to 40 hours per calendar year; for employees who reside in the State of Washington - up to 56 hours per calendar year Holiday pay, including Floating Holidays - up to 13 days per calendar year of Work, Personal and Family Time - up to 40 hours per calendar year Additional information can be found through the link below. http://www.careers.jnj.com/employee-benefits The compensation and benefits information set forth in this posting applies to candidates hired in the United States. Candidates hired outside the United States will be eligible for compensation and benefits in accordance with their local market.

Posted 4 days ago

Match Group logo
Match GroupAustin, TX
Match Group is on a mission to change the world, bringing people together and facilitating millions of connections that otherwise might not have been possible. With tens of millions of users and an expansive global presence, our reach is expansive - and rapidly growing. We're looking for an AI focused Staff Product Security Engineer to join our team. As an AI Product Security Engineer you will help ensure the highest standard of security for Match Group products and our members. The scope of the role spans applications, infrastructure, devices, vendors, and anything else potentially at risk to the organization. Candidates that will excel in the role have technical backgrounds within security and are well-versed in manually identifying vulnerabilities as well as having a track record of writing security-adjacent code. Experience with various prompt engineering techniques, models, and strategies is strongly preferred. Know where you belong. Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Match, Hinge, PlentyOfFish, The League, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn't stop at our products - it's the foundation of every team we hire. We are flexible and offer remote or hybrid working models in the United States as options to accommodate our team. Match Group is headquartered in Dallas, TX, with offices in LA, Palo Alto, and New York. How You'll Make an Impact: Develop tooling leveraging AI to identify security vulnerabilities in code and configuration oversights. Pursue strategies to reduce tooling noise and false positives, leaving actionable security vulnerabilities to prioritize with the brand teams. Interface with engineering teams and effectively convey impact and provide remediation guidance for vulnerabilities. Take ownership of the security research function to contribute to the security blog and speak at security conferences. We Could Be a Match if You Have: At least 5 years of professional experience in application security. A track record of manually testing for and identifying impactful vulnerabilities. The ability to effectively partner and communicate with Engineering and Product teams. Experience securing large-scale web/mobile applications, including performing security code reviews, vulnerability assessments, and manual testing for logic flaws. Experience with various prompt engineering techniques and AI models to effectively develop tooling. Ability to write clean and maintainable code integrating across various systems. Experience publicly writing about or presenting security related work. Bachelor's Degree in Computing Science or related field. Strong Candidates Will Have: Experience submitting high impact vulnerabilities to bug bounty programs, responsible disclosures, or published CVEs. Public work in the security space such as tooling, blog posts, or conference talks outlining novel techniques. The ability to identify gaps and pain points scaling application security and develop low-friction solutions through automation. $180,000 - $210,000 a year The compensation range listed above is representative of the base salary offered. Factors such as scope and responsibilities of the position, candidate's work experience, education/training, job-related skills, internal peer equity, as well as market and business considerations may influence base pay offered. This salary range is reflective of a position based in the United States. This salary will be subject to a geographic adjustment (according to a specific city and state), if an authorization is granted to work outside of the location listed in this posting. #LI-CENTRAL #LI-CH1 Why Match Group? Our mission is simple - to help people find love and happiness! We love our employees too and understand the importance of all life's milestones. Here are some of the benefits we are proud to offer: Mind & Body- Medical, mental health, and wellness benefits to support your overall health and well-being Financial Wellness- Competitive compensation, 100% employer match on 401k contributions up to 10% (cap at $10,000), as well as an employee stock purchase program to help you feel supported in your financial security Unplug- Generous PTO and 18 paid holidays so you can unplug Career- Annual training allowance for professional development and ERG membership opportunities and events so you feel connected and empowered in your work Family- Families come in all shapes and sizes so we offer 20 weeks of 100% paid parental leave, fertility, adoption, and child care resources, as well as pet insurance and discounts Company Gatherings- We host fun happy hours and company events where our employees get to know each other and build a sense of connection and belonging! We are proud to be an equal opportunity employer and we value the rich dynamics that diversity brings to our company. We do not discriminate on the basis of race, religion, color, creed, national origin, ancestry, disability, marital status, age, sexual orientation, sex (including pregnancy and sexual harassment), gender identity or expression, uniformed service or veteran status, genetic information, or any other legally protected characteristic. Period. If you require a reasonable accommodation to participate in the hiring process - such as during pre-employment testing or interviews - please indicate this by selecting "Yes" in the accommodation request field. We'll reach out to discuss your needs if you're selected for the interview stage. #MG

Posted 30+ days ago

Acuity International logo
Acuity InternationalReston, VA, VA
Our vision aims to empower our clients by actively leveraging our broad range of services. With our global presence, we have career opportunities all across the world which can lead to a unique, exciting and fulfilling career path. Pick your path today! To see what career opportunities we have available, explore below to find your next career! COVID Notification: Candidates selected for a position must provide proof of COVID-19 vaccination or have an approved reasonable accommodation request on file for a medical condition or sincerely held religious belief that prevents them from complying with Acuity's mandatory COVID-19 vaccination requirement. To request a reasonable accommodation form, email humanresources@acuityinternational.com Responsibilities: Perform day-to-day personal protective security functions. Drive the lead vehicle, principal's vehicle, follow-vehicle, and/or act as response agent whenever required in motorcade or similar operations. Carry and operate weapons as specified in daily post and detail orders, or upon orders from the SDL, USC, or SL. Participate in advance security preparations. Man the security post at the principal's residence, the command post, or other static post as required. Serve as a member of a QRF as assigned. Qualifications: For bio approval, the PSS shall meet the following qualifications: Applicants must pass the pre-employment Physical Readiness Test (PRT) in order to advance in the application process for the position. Must be a U.S. citizen. Must possess a minimum of three (3) years of applicable experience. A minimum of one (1) year of this experience must include experience in protective security assignments. Experience may be gained in the employ of any national, state, provincial, local, or commercial entities providing armed protective services that require skills similar to those identified in the PSS training course as outlined in WPS III IDIQ, Attachment 2, Training. This experience must be earned in locations with significant risk. Upon bio approval and before beginning work on the contract, the PSS shall: Attend and successfully complete the PSS training course, as outlined in WPS III IDIQ, Attachment 2, Training. Qualify with the Glock-19, M4 or MK18 as specified by the designated TO, M240, and M249, re-qualifying as required in WPS III IDIQ, Attachment 2, Training. Obtain and maintain a Personnel Security Clearance as identified in the TO. Complete the WPS III Physical Readiness Test, per WPS III IDIQ, Attachment 15, Physical Readiness Test Protocols and Standards, at the sixty-five (65) percent performance level, and maintain that fitness level for the duration of his/her service on the TO. Possess no impediments to traveling overseas to and within countries that are considered dangerous or unhealthy in general, or to the country or countries assigned in the applicable TO. Preferred Qualifications Strong written and oral presentation skills Excellent interpersonal and communication skills Excellent organization skills Proven ability to work both collaboratively and autonomously Strong initiative Ability to work under pressure and meet tight deadlines Based upon the needs of the program and Project Management discretion, qualified individuals may be required to temporarily fill an alternate position. Acuity International is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration without regard to race, color, sex, national origin, age, protected veteran status, or disability status. For OFCCP compliance, the taxable entity associated with this job posting is: JANUS ESOP HOLDINGS LLC

Posted 30+ days ago

M logo
Mistral AIParis, TX
About Mistral At Mistral AI, we believe in the power of AI to simplify tasks, save time, and enhance learning and creativity. Our technology is designed to integrate seamlessly into daily working life. We democratize AI through high-performance, optimized, open-source and cutting-edge models, products and solutions. Our comprehensive AI platform is designed to meet enterprise needs, whether on-premises or in cloud environments. Our offerings include le Chat, the AI assistant for life and work. We are a dynamic, collaborative team passionate about AI and its potential to transform society. Our diverse workforce thrives in competitive environments and is committed to driving innovation. Our teams are distributed between France, USA, UK, Germany and Singapore. We are creative, low-ego and team-spirited. Join us to be part of a pioneering company shaping the future of AI. Together, we can make a meaningful impact. See more about our culture on https://mistral.ai/careers . Job Summary We are seeking a talented and experienced software engineer to join our Engineering team. You'll work closely with the research, product, solution and program management teams to serve our frontier models to customers wherever they use our technology. You will be involved in key components of our technology, including model deployment, performance optimization, real time streaming services, DX tools implementation, cloud infrastructure management... Additionally, you will work to evangelize the Engineering team with best practices in secure coding and architecture. The role is based in Paris and reports to the Head of Engineering. What you will do Software Engineering (80%) New model releases: you will ensure fast and reliable launch of new models and new features to customers System design and development: help build systems, APIs and interfaces to interact with large language models Build and test infrastructure: you will work to improve and extend the infrastructure needed to package, deploy and integrate our core technology within first-party systems and third-party platforms Safety: you will help solve the unique challenges that come with maintaining AI safety on third-party platforms Observability and Monitoring: you will collaborate closely with both internal and external stakeholders to ensure our services achieve high availability and deliver state-of-the-art performance for our users Performance and Resource Optimization: you will be responsible for identifying and solving complex system problems, with the aim to optimize the performance (latency and throughput) of multiple layers of large-scale distributed systems. Security Focus (20%) Security Advocacy: Act as a security advocate within the team, sharing best practices and raising awareness about secure coding principles. Secure System Development: Design and implement robust, secure systems, ensuring that all development adheres to the highest security standards. Code and Architecture Reviews: Conduct in-depth reviews of code and architectural designs, focusing on identifying and mitigating security vulnerabilities. Vulnerability Management: Identify, address, and mitigate vulnerabilities in applications and systems, ensuring proactive measures are in place. Cross-Team Collaboration: Work collaboratively across teams to provide security guidance, ensuring security considerations are integrated into development processes. Secure Coding Practices: Write secure, maintainable code while considering the broader implications and risks of security decisions. You may be a good fit if: You hold a Master's degree in Engineering or Computer Science. You have a proven experience as a Software Engineer with a focus on backend or fullstack development. You have hands-on experience working on security projects, integrating security considerations into software products or a past experience as SRE (Site Reliability Engineering). You have strong development skills in Python, with a track record of building and maintaining secure systems. You're able to review code and system architectures with a security-first mindset, identifying risks and proposing solutions. You are autonomous and a self-starter. You are a proactive problem-solver with a continuous improvement mindset. Ideally you have Familiarity with industry standards for secure software development (e.g., OWASP, ISO 27001). Experience with vulnerability scanning tools and secure development lifecycle (SDLC) practices. Location & Remote This role is primarily based at our HQ in Paris, France. We will prioritize candidates who either reside in Paris or are open to relocating. We strongly believe in the value of in-person collaboration to foster strong relationships and seamless communication within our team. Our remote work policy is designed to offer flexibility, enhance work-life balance, and boost productivity. The number of remote workdays is determined by each manager, taking into account individual autonomy and specific circumstances-such as increased flexibility during the summer months. Regardless of the arrangement, we expect all employees to maintain open lines of communication with their teams and be available during core working hours. In certain specific situations, we will also consider remote candidates based in one of the countries listed in this job posting (currently France, UK, Germany, Netherlands, Spain and Italy). In that case, we ask all new hires to visit our Paris office: for the first month of their onboarding (accommodation and travelling covered) then at least 3 days per month What we offer Competitive salary and equity ️ Health insurance Transportation allowance Sport allowance Meal vouchers Private pension plan Parental : Generous parental leave policy Visa sponsorship

Posted 30+ days ago

N logo
Nordstrom Inc.Chicago, IL
Job Description The ideal asset protection security ambassador helps prevent loss of inventory through interactions and training with other coworkers, maintaining a visible presence throughout the store and interacting with customers in a professional and pleasant demeanor. A day in the life… Greet and engage customers in a timely, professional and personable manner and respond to customer's needs Maintain visible presence by wearing a Nordstrom provided security officer style uniform Perform monitoring and surveillance activities Assess and assist in emergency situations Reduce and control loss of inventory through audits, training, and education Maintain a high level of confidentiality You own this if you have… The ability to maintain an active, visible floor presence as a deterrent in designated areas A calm head when dealing with safety issues, including dealing with suspects who engage in aggressive behavior Accountability, initiative and a high level of ownership Meet any local licensing requirements The ability to work a flexible schedule based on business needs We've got you covered… Our employees are our most important asset and that's reflected in our benefits. Nordstrom is proud to offer a variety of benefits to support employees and their families, including: Medical/Vision, Dental, Retirement and Paid Time Away Life Insurance and Disability Merchandise Discount and EAP Resources A few more important points... The job posting highlights the most critical responsibilities and requirements of the job. It's not all-inclusive. There may be additional duties, responsibilities and qualifications for this job. Nordstrom conducts background checks and considers qualified applicants with criminal histories in a manner consistent with all legal requirements. Applicants with disabilities who require assistance or accommodation should contact the nearest Nordstrom location, which can be identified at www.nordstrom.com. Please be mindful that there may be legal notices and requirements related to this job posting that are specific to your state. Review the Career Site FAQ's for relevant information and guidelines. 2022 Nordstrom, Inc Current Nordstrom employees: To apply, log into Workday, click the Careers button and then click Find Jobs. Pay Range Details The pay range(s) below has been provided in compliance with state specific laws. Pay ranges may be different for other locations. Pay offers are dependent on the location, as well as job-related knowledge, skills, and experience. $20.00 - $20.80 Hourly This position may be eligible for performance-based incentives/bonuses. Benefits include 401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more. Eligibility requirements may apply based on location, job level, classification, and length of employment. Learn more in the Nordstrom Benefits Overview by copying and pasting the following URL into your browser: https://careers.nordstrom.com/pdfs/Ben_Overview_07-14_Variable_ES-US.pdf

Posted 1 week ago

Parsons Commercial Technology Group Inc. logo
Parsons Commercial Technology Group Inc.Chantilly, VA
In a world of possibilities, pursue one with endless opportunities. Imagine Next! When it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with exceptional people sharing a common quest. Imagine a workplace where you can be yourself. Where you can thrive. Where you can find your next, right now. We've got what you're looking for. Job Description: Parsons is looking for a talented Cloud Information System Security Engineer to join our growing team! In this role you will get to support services to advanced customer mission systems throughout the full systems lifecycle. What You'll Be Doing: Define system security requirements in coordination with security stakeholders including system engineers, program managers, security control assessors, and authorizing officials. Provide independent cybersecurity advice and guidance to government stakeholders. Develop or review system security designs and architectures. Support testing of systems during development, reaccreditation and provide evaluation to program stakeholders. Review results from system security scans and advise system engineers on best methods to remediate findings. Support engineering analysis of alternatives, tradeoffs, and risk treatment decisions. Develop and/or review cybersecurity documentation in support of customer Risk Management Framework (RMF) process; in accordance with NIST SP 800-37 Rev 5. Coordinate RMF processing with program and developer staffs. Work with interdisciplinary teams to deliver trustworthy and secure systems. What Required Skills You'll Bring: Active TS/SCI Clearance with CI Polygraph and ability to maintain one. 5+ years of system and/or security engineering work performed in support of U.S. Government customers subject to the Risk Management Framework (NIST 800-53) or Intelligence Community Directive (ICD) 503. (ISC)2 Certified Information System Security Professional (CISSP) OR Certified Cloud Security Professional (CCSP) OR CASP+ CE certification. Experience reviewing and developing RMF Assessment and Authorization (A&A) documentation, e.g. System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POAMs). Experience implementing NIST SP 800-53 Revision 5 security requirements and NIST SP 800-53A security assessment procedures. What Desired Skills You'll Bring: Cybersecurity work performed in support of mission-essential space/ground system acquisitions and implementations. Ability to explain complex cybersecurity issues to a diverse audience in layman's terms Experience with the cyber security of SIGINT solutions. Experience implementing or assessing cybersecurity solutions using technologies such as: Nessus, WebInspect, Splunk, Open SCAP Microsoft Windows Server Active Directory RedHat Linux Virtualization Platforms: Hyper-V, VMware Real Time Operating Systems (RTOS) (i.e. QNX, VxWorks) VDI (Desktop), Citrix Experience securing cloud-hosted assets in AWS/Azure/etc. Network engineering/design of LANs, WANs, MANs, including underlying routing protocols, and implementation. (TCP/IP, BGP, OSPF) Experience presenting verbal/written communications to Senior leadership including ISSMs, ISOs, security directors Experience with systems engineering lifecycle processes Act as an advisor to the Government ISSM on ATO extensions, body of evidence reviews Experience guiding systems through the approval process per NIST-800-37 RMF Strong initiative and communication skills. Although not explicitly required, successful candidates typically have a B.S. or M.S. degree in a technical field Security Clearance Requirement: An active Top Secret SCI w/Polygraph security clearance is required for this position. This position is part of our Federal Solutions team. The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what's next to deliver the solutions our customers need now. Salary Range: $128,700.00 - $231,700.00 We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle! Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status. We truly invest and care about our employee's wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest-APPLY TODAY! Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to https://www.parsons.com/fraudulent-recruitment/ .

Posted 5 days ago

Inter-Con Security Systems, Inc. logo
Inter-Con Security Systems, Inc.Little Rock, AR
Company Overview: Founded in 1973, Inter-Con Security Systems, Inc. is a leading US-owned security company, providing integrated security solutions to government and commercial customers on four continents. Inter-Con remains under family ownership and control and operates as the industry leader in the field of customized, high-requirement security solutions. Inter-Con employs over 25,000 security officer personnel world-wide, trained and managed by a team of professionals with unsurpassed military, law enforcement, and security experience. Inter-Con is Everywhere Security Matters. Why Work at Inter-Con? Passion: Inter-Con is a thriving company that is passionate about its products and people. Joining the Inter-Con family is an opportunity for growth and career advancement in an environment that truly cares for its employees. By joining the Inter-Con family, you're working with the best to build a safer future. People: Inter-Con is more than a company, it's an alumni base. We believe in positioning the right people in the right place to help them achieve their long-term aspirations for career growth. We have transitioned thousands of security officers into successful careers in law enforcement, government services, foreign affairs and many more. Your career success drives our success. Benefits: Inter-Con offers excellent full-time and part-time benefits that include: flexible scheduling to accommodate lifestyle commitments, vacation, sick leave, medical, dental, sponsorship for Top Secret Clearance, comprehensive training, discounts on higher education and much more. Partner with us to begin a journey that begins with a commitment and leads to a career of a lifetime. Stand out. Be proud. Be Inter-Con! Employment Opportunity At Inter-Con we take pride in providing customized security solutions for our clients. As an Unarmed Security Officer, you will be part of a security team that supports critical facilities and infrastructure, public venues that requires an enhanced presence and asset protective services. This position an integral part of the broad spectrum of specialized security services Inter-Con provides its clients every day. Specific benefits include: Competitive Pay Recognition and Reward Programs. Training and Career Development. Opportunities for Medical, dental, Holidays, vacation and sick, and 401 (k) retirement plan. Uniform and equipment provided Additional benefits vary depending on position. Expected Responsibilities: This area of responsibility is primarily responsible for shift activity and supervision of all the guard posts during their shift. The supervisor will maintain a thorough understanding of the responsibilities for each guard post and will be able to fill in for any vacancy at a post. The supervisor will make sure that all the posts are covered and make sure that the Manager is notified of any events that occur during their shift. The supervisor must have communication ability via company radio and/or cell phone so that Manager can contact them to mitigate issues that fall under the responsibility of the contracted party. Qualifications Qualifications: Authorized to work in the United States Must possess 1-2 years of Supervisor experience Security Guard Registration Card First Aid / CPR / AED Certification Must have a valid Identification Speak, read, and write English Must be age 21 or older Shall possess a minimum of a high school diploma or equivalency Pass a background Check Pass a 5-panel drug test Must be of high integrity and possess exemplary security skills and judgment. Must possess above average computer skills and must hold all necessary and required licenses, permits and certifications required by the of assignment to perform security officer duties. Veterans Inter-Con is passionate about hiring veterans. In fact, we've hired thousands of veterans over the years and plan to keep hiring as many as we can. If you are veteran in search of a rewarding career among a team that holds an affinity for those who served as well as values your success and growth within our organization, please take a moment to review our website for all our extensive opportunities. Visit www.icsecurity.com/careers/. Inter-Con Security Systems, Inc. is an affirmative action employer who provides equal employment opportunities to minorities, females, veterans, and disabled individuals, as well as other protected groups. License PPO# 6822 California Applicants: Pursuant to the California Consumer Privacy Act, please review the Privacy Notice for California Residents found in Section 10 of our Privacy Policy which explains the categories of personal information that we collect and the purposes for which we use such personal information

Posted 30+ days ago

CONTACT GOVERNMENT SERVICES logo
CONTACT GOVERNMENT SERVICESChicago, IL
ISSO Employment Type: Full-Time, Experienced Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com #CJ $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Vast Space logo
Vast SpaceLong Beach, CA
At Vast, our mission is to contribute to a future where billions of people are living and thriving in space. We are building artificial gravity space stations, allowing long-term stays in space without the adverse effects of zero-gravity. Our initial crewed space habitat will be Haven-1, scheduled to be the world's first commercial space station when it launches into low earth orbit in May 2026. Our team is all-in, committed to executing our mission safely and on time. If you want to work with the most talented people on Earth furthering space exploration for humanity, come join us. Vast is looking for a Senior Software Engineer, Security, reporting to the Senior Manager, Software Engineering, to support the development and maintenance of the organization's growing cybersecurity infrastructure. As a software engineer on our growing team, you'll have an opportunity to learn and grow under the mentorship of seasoned engineers from aerospace and big tech, building powerful and secure software that helps expand humanity into space. This will be a full-time, exempt position located in our Long Beach location. Responsibilities: Work with team to design, implement, and maintain a wide variety of backends, tools, and pipelines directly in support of Vast's mission-critical security services Partner with various engineering teams to assist in the implementation and design of their security-sensitive features and services Influence and adopt practices and patterns for security and software that will scale to what will eventually become a very large codebase and team Minimum Qualifications: Bachelor's degree in computer science, math, or other engineering discipline 6+ years experience with building security services and configurations (i.e. IAM, short-lived certificates, API security) Deep security knowledge in one or more domains (i.e. cryptography, network security, infrastructure security) Development experience in any modern programming language (including but not limited to Python, C++, Rust, Go) Experience building, shipping, and supporting security applications in the cloud Proficiency using the command line, writing shell scripts, and an understanding of the GNU/Linux operating system Preferred Skills & Experience: Experience working on ambiguous problems Production DevOps experience (Docker and K8s preferred) Experience working with multiple programming languages Experience with API Design Deep security knowledge in one or more domains Confident communicator, both written and verbal Collaborative mindset Problem solver with a bias for action Pay Range: Senior Security Software Engineer - $155,000 - $196,000 Salary Range: California $155,000-$196,000 USD COMPENSATION AND BENEFITS Base salary will vary depending on job-related knowledge, education, skills, experience, business needs, and market demand. Salary is just one component of our comprehensive compensation package. Full-time employees also receive company equity, as well as access to a full suite of compelling benefits and perks, including: 100% medical, dental, and vision coverage for employees and dependents, flexible paid time off for exempt staff and up to 10 days of vacation for non-exempt staff, paid parental leave, short and long-term disability insurance, life insurance, access to a 401(k) retirement plan, One Medical membership, ClassPass credits, personalized mental healthcare through Spring Health, and other discounts and perks. We also take pride in offering exceptional food perks, with snacks, drip coffee, cold drinks, and dinner meals remaining free of charge, and lunch subsidized as part of Vast's ongoing commitment to providing high-quality meals for employees. U.S. EXPORT CONTROL COMPLIANCE STATUS The person hired will have access to information and items subject to U.S. export controls, and therefore, must either be a "U.S. person" as defined by 22 C.F.R. § 120.62 or otherwise eligible for deemed export licensing. This status includes U.S. citizens, U.S. nationals, lawful permanent residents (green card holders), and asylees and refugees with such status granted, not pending. EQUAL OPPORTUNITY Vast is an Equal Opportunity Employer; employment with Vast is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Posted 2 weeks ago

U logo
Umb Financial CorporationKansas City, MO
As part of UMB's Corporate Information Security and Privacy (CISP) team, the mission is to identify threats, vulnerabilities, and risks and to help protect the people, information, and services within the organization. CISP works closely with all lines of business. This role will work especially close with UMB enterprise technology and information security teams to ensure data protection initiatives are present, usable and, understood within the organization. As the Sr. Information Security Risk Analyst, you will be responsible for supporting UMB Financial Corporation's Information Security Program to ensure UMB is able to address rapidly changing threats, technologies, and business conditions. This is a subset of the overall responsibilities which involves other multiple initiatives as assigned by Corporate Risk leadership. This role is hybrid (Mon through Thu on-site / Fri remote) located in downtown Kansas City, MO. How you'll spend your time: Collaborate and drive security initiatives, working with people across multiple teams and diverse functions. Enable the business and other stakeholders to make risk-aware decisions by advising business units and technology leaders of the information security risks and proposing acceptable risk treatment options and alternatives. Support the information security program efforts through the collection of performance indicators, metrics, and other evidence and communicating relevant, succinct, and actionable recommendations to leadership. Support UMB's PCI-DSS compliance and assessment activities while supporting our internal technology and business teams across the organization. Proactively maintain a current and working understanding of information security best practices, the practical application of security concepts, relevant information security and technology regulations, threats, and industry trends. Assist in responding to internal/external audits, including third-party security assessments, if applicable. Maintain a current and working understanding of relevant information security and technology regulations and industry trends, including UMB Information Security Policies and the practical application of the Policies. Manage multiple simultaneous workstreams supporting disparate stakeholders, providing appropriate and timely communication of issues, concerns, risks, and status. We're excited to talk with you if: You have at least 5 years of experience in information security, security audit, or information security risk management/compliance. You have a Bachelor's degree in Management Information Systems (MIS), Computer Science or a related discipline OR equivalent work experience. You have strong knowledge of risk and controls, including working knowledge of standards and frameworks such as COSO, COBIT, ISO, NIST, and ITIL. You have the ability to thrive in an environment of change and manage multiple tasks and responsibilities simultaneously. You have understanding of and practical experience with information security risk assessments and information security audits. Bonus Points If: You have CISSP, CRISC, SEC+ or applicable certifications/accreditation. You have strong understanding of information security regulatory requirements and best practices. You have general understanding of banking and financial services processes, and the related risks to securing and managing data. Applicants must have legal authority to work in the United States. Work Visa sponsorship not available for this position. Compensation Range: $69,230.00 - $149,000.00 The posted compensation range on this listing represents UMB's standard for this role, but the actual compensation may vary by geographic location, experience level, and other job-related factors. In addition, this range does not encompass the full earning potential for this role. Please see the description of benefits included with this job posting for additional information UMB offers competitive and varied benefits to eligible associates, such as Paid Time Off; a 401(k) matching program; annual incentive pay; paid holidays; a comprehensive company sponsored benefit plan including medical, dental, vision, and other insurance coverage; health savings, flexible spending, and dependent care accounts; adoption assistance; an employee assistance program; fitness reimbursement; tuition reimbursement; an associate wellbeing program; an associate emergency fund; and various associate banking benefits. Benefit offerings and eligibility requirements vary. Are you ready to be part of something more? You're more than a means to an end-a way to help us meet the bottom line. UMB isn't comprised of workers, but of people who care about their work, one another, and their community. Expect more than the status quo. At UMB, you can expect more heart. You'll be valued for exactly who you are and encouraged to support causes you care about. Expect more trust. We want you to do the right thing, no matter what. And, expect more opportunities. UMBers are known for having multiple careers here and having their voices heard. UMB and its affiliates are committed to inclusion and diversity and provide employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including gender, pregnancy, sexual orientation, and gender identity), national origin, age, disability, military service, veteran status, genetic information, or any other status protected by applicable federal, state, or local law. If you need accommodation for any part of the employment process because of a disability, please send an e-mail to talentacquisition@umb.com to let us know the nature of your request. If you are a California resident, please visit our Privacy Notice for California Job Candidates to understand how we collect and use your personal information when you apply for employment with UMB.

Posted 3 weeks ago

Bumble logo
BumbleAustin, TX
Inclusion at Bumble Inc. Bumble Inc. is an equal opportunity employer and we strongly encourage people of all ages, colour, lesbian, gay, bisexual, transgender, queer and non-binary people, veterans, parents, people with disabilities, and neurodivergent people to apply. We're happy to make any reasonable adjustments that will help you feel more confident throughout the process, please don't hesitate to let us know how we can help. In your application, please feel free to note which pronouns you use (For example: she/her, he/him, they/them, etc). Introduction At Bumble Inc., we're on a mission to build the most trusted, safe, and secure dating experience in the world. Our Security team plays a critical role in that mission - working around the clock and across time zones to protect our members and our company. We believe security is best achieved through collaboration, scale, and diverse thinking. That's why we're continuing to build a global, inclusive team of engineers who solve real-world problems with creativity and precision. As a Senior Cloud Security Engineer, you'll be instrumental in protecting the next evolution of our platform as we expand and migrate deeper into the cloud. You'll shape the strategy, build the tools, and influence how Bumble thinks about cloud security for years to come. What you'll do Design, build, and deploy cloud-native security tooling to protect Bumble's cloud environments Own and drive key cloud security initiatives, influencing infrastructure design and implementation Integrate seamlessly into our 24/7/365 global Security Operations team - including participation in a rotating on-call schedule Partner closely with Infrastructure, and Engineering to embed security early and everywhere Support incident response with deep technical knowledge and calm leadership under pressure Enhance and extend our internal tooling, while leveraging best-in-class external platforms Mentor teammates and contribute to a culture of knowledge sharing and up-skilling Must haves 6+ years of experience with large-scale, enterprise cloud environments (preferably AWS or GCP) 6+ years of experience with cloud-native architectures and modern security frameworks like Zero Trust 6+ years of experience with leading incident response efforts with calm, confidence, and technical authority You're a strong communicator, especially when collaborating across technical and non-technical teams Nice to haves Experience mentoring or coaching others in security best practices Background working in globally distributed teams across multiple time zones Familiarity with infrastructure-as-code and cloud automation $185,000 - $197,000 a year Location This role is based in Austin, and we ask that you're within a commutable distance to this office, so that you're able to come onsite regularly to collaborate across engineering teams. We have a hybrid environment that requires you to be in the office Monday - Wednesday. Please note: We are unable to offer Visa sponsorship at this time Global benefits Maven Fertility We offer a $10,000 lifetime benefit opportunity to all employees and their partners around the world. This benefit can be used to support your reproductive journey - from abortion care and related travel costs to fertility treatment, egg-freezing, adoption, surrogacy, and more. Family & compassionate paid leave Family leave to support you and your loved ones when needed (including victims of domestic abuse or violent crime). 26 weeks parental leave 26 weeks paid leave for the primary caregiver following the birth, adoption, surrogacy or foster care of a child. The secondary caregiver will also receive 26 weeks paid leave after 1 year of employment. Unlimited paid time off Take the time you need when you need it. Company-wide week off Once a year, we have a company-wide week off (it's essential for some teams to continue working and they will be offered alternative time off instead). Focus Fridays Every Friday we try to have a no meeting, no deadline, no email and no Slack rule on a Friday so you can focus without distraction. Check out more of our local benefits here About Us Bumble Inc. is the parent company of Bumble, Badoo, Bumble For Friends, and Geneva. The Bumble platform enables people to build healthy and equitable relationships, through Kind Connections. Founded by Whitney Wolfe Herd in 2014, Bumble was one of the first dating apps built with women at the center and connects people across dating (Bumble Date), friendship (Bumble For Friends) and professional networking (Bumble Bizz). Badoo, which was founded in 2006, is one of the pioneers of web and mobile dating products. Bumble For Friends is a friendship app where people in all stages of life can meet people nearby and create meaningful platonic connections. Geneva is a group and community app for people to connect based on shared interests. AI in Bumble Hiring At Bumble, we may use AI tools to support parts of our recruitment process - such as helping us record, transcribe, and summarize conversations, and supporting job alignment by comparing resumes and job descriptions to highlight skills and potential roles that may be a good match. These tools help us work more efficiently and stay focused on you during our conversations. Importantly, all hiring decisions are made by people. AI is used only to support our team's efficiency and improve the candidate experience - not to evaluate or decide on your candidacy. Participation in AI-supported interviews and conversations is completely voluntary and will not impact your candidacy. If you'd prefer to opt out, simply let your recruiter or interviewer know at the start of a call, or anytime during the interview or conversation. Summaries and related data are retained only as long as needed in line with our internal data retention policies. If at any point you'd like a transcription or summary deleted, please contact your recruiter directly.

Posted 30+ days ago

S logo
Safe Streets USAPensacola, FL
Our Smart Security Pro's mission is to show our residential customers that they are truly valued as we have a strong emphasis on providing an unparalleled 5-Star experience unmatched in the Smart Security industry. As an SSP, you'll play a pivotal role in what matters most to our customers: enhancing the safety and security of their families and homes. We know what it takes to be successful here at SafeStreets. If you have a passion for making a difference in people's lives, a strong sales background, and a winning mindset, we will assist you in creating a seamless transition into a new career. The process is simple. There is no cold calling or D2D sales involved. We get your foot in the door by connecting customers to you who are already interested in ADT home security. In-home appointments are scheduled and provided for you by our Inside Sales team. By helping customers review their security options on-site and move forward with a custom home security package designed by you, you will have the opportunity to earn uncapped sales commissions based on how the homeowner decides to protect their home. The best part is you control the process from start to finish, leaving the customer better protected than before you arrived. Looking to change industries? Feel confident in knowing that we have Pro's with backgrounds in every type of industry that have made a seamless and successful transition to the role of an SSP. With a paid training program provided, we have all the tools to teach you what you need to know. What do you need to be qualified for this position? Nothing more than a passion for customer service, a strong sales background, and a desire to help keep others safe and secure. We provide the tools/equipment, paid training, and post-training support you will need. We even hand deliver the customers to you - no need to go searching for your own leads! SafeStreets is always evolving! SafeStreets set out to make some big changes to kick off 2025 with how our Smart Security Pros are paid and we now have the best compensation plan in the industry! Here's what our SSP's look forward to: Highest sales commission opportunities in the industry with our technicians earning on average 25% commission - UNCAPPED! More than 30% of our field earned over $100k+ in 2024 Increased Mileage pay with pay kicking in nearly 3x earlier than previously Paid for every installation action taken on site Same-day and Holiday bonuses More upgrade commission options Doubled Referral pay opportunity Doubled our yearly loyalty bonuses Still not convinced? Our recruiters are standing by right now to talk more in depth about how SafeStreets can change your life! What we Offer: Competitive base salary with generous and uncapped commission structure Company-provided equipment and select tools Remote and independent work environment Ongoing training and professional development opportunities Opportunities for career advancement within a rapidly growing organization Scheduling flexibility Medical/Dental/Vision/Life Insurance/401K The Responsibilities: Helping homeowners create customized Smart Security solutions for their personal needs 5-star Customer interaction - every day is a new opportunity; you'll be the first face-to-face contact our customers have with SafeStreets! Customized installation, troubleshooting, and demonstration of ADT-monitored security systems Qualifications: Entrepreneurial and career oriented mindset Excellent communication, negotiation, and interpersonal skills Reliable vehicle and valid driver's license Proof of vehicle insurance (100/300/100 minimum) Smartphone/tablet SafeStreets values the safety of our employees and customers. That is why we are committed to providing personal protective equipment (PPE) or stipends to our technicians to further ensure their safety. This job entails meeting certain physical requirements, including the ability to work above head level, carry loads of 30-50 pounds (such as equipment boxes and ladders), operate power tools, and navigate confined spaces like attics and crawl spaces. Safe Streets is an equal opportunity employer. All aspects of employment including the decision to hire, promote, discipline, or terminate, will be based on merit, competence, performance, and business needs. Safe Streets does not discriminate on the basis of race, color, religion, sex (including pregnancy and gender identity), marital status, age, national origin, sexual orientation, disability, genetic information, military service, or any other status protected under federal, state, or local law. Applicants have rights under Federal Employment Laws. FMLA - https://www.dol.gov/agencies/whd/fmla EEO- https://www.eeoc.gov/history/equal-employment-opportunity-act-1972 EPPA - https://www.dol.gov/agencies/whd/polygraph

Posted 30+ days ago

Cox Enterprises logo
Cox EnterprisesAtlanta, GA
Company Cox Automotive- USA Job Family Group Information Technology Job Profile Cybersecurity Sr Lead Architect Management Level Sr Manager- Non People Leader Flexible Work Option Hybrid- Ability to work remotely part of the week Travel % Yes, 15% of the time Work Shift Day Compensation Compensation includes a base salary of $144,900.00 - $241,500.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program. Job Description The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cloud and on-premises environments. This position's architecture focus is on securing multi-cloud infrastructure and services and on-premises infrastructure. Peer cybersecurity architects will be focused on application security, software as a service (SaaS), and network security. This role will use their deep cybersecurity knowledge in the designing and building of secure infrastructure and services in both multi-cloud and on-premises environments. They must be able to collaborate with cross-functional teams throughout the organization and propose well-defined cybersecurity architectural guidelines to be adopted by product and enterprise engineering teams. This role will directly report to the Senior Director of Cybersecurity Architecture at Cox Automotive. Primary Responsibilities Identify and recommend relevant cybersecurity policies, standards, procedures, and guardrails. Drive the definition of cybersecurity guidelines across the product and enterprise architecture group by leading working groups focused on cybersecurity. Develop secure design patterns in conjunction with the product and enterprise architecture group based on standards that can be adopted and implemented by engineering teams. Contribute to the development of non-cyber architecture-related governance patterns, policies, and standards. Provides complex analysis of potential risks to information systems' security and recommends innovative solutions. Work with cross-functional technical, development and delivery teams to ensure the application of smooth, efficient and scalable release processes. Engage with business teams and engineering teams to define cybersecurity guardrails that promote efficient and seamless adoption of secure design patterns. Participate in security events and incident response to identify gaps in current design and propose solutions to prevent threats from reoccurring. Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements. Collaborate with data users, software and other technical stakeholders to ensure security considerations are factored into and underpin development and operational decision making. Collaborate with cybersecurity peers to incorporate vulnerability management, governance, risk and compliance, cyber defense, continuous controls monitoring, and identity governance into cybersecurity standards as a cohesive cybersecurity organization. Minimum Qualifications Bachelor's degree in a related discipline and 8 years of experience in a related field. The right candidate could also have a different combination, such as a master's degree and 6 years of experience; a Ph.D. and 3 years of experience in a related field; or 12 years' experience in a related field. At least 4 years focused on cybersecurity. Must have practical expertise in AWS cloud infrastructure and services and on-premises infrastructure. Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders. Excellent customer service skills, writing, and executive presentation skills. Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices. Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership. Evaluate risks and recommend actions based on impact and likelihood of the risk to the business. Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization. Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen. Experience utilizing Agile methodologies. Initiating change and deploying solutions in Fortune 1000 companies. Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA). Preferred Qualifications Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments. Relevant experience with application security, SaaS, network security, DevSecOps, and software-defined networking across a variety of environments and deployments. Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC). Experience with application security implementations and standard methodologies. Extensive technology knowledge and recognized expertise in several areas including Python, .NET, Java, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar. Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures. AWS Well-Architected Framework. Experience establishing a strategy for and implementing cloud enterprise solutions in AWS, GCP, or Azure. A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate). Big four consulting or Fortune 500 company experience. Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA). Drug Testing To be employed in this role, you'll need to clear a pre-employment drug test. Cox Automotive does not currently administer a pre-employment drug test for marijuana for this position. However, we are a drug-free workplace, so the possession, use or being under the influence of drugs illegal under federal or state law during work hours, on company property and/or in company vehicles is prohibited. Benefits The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave. About Us Through groundbreaking technology and a commitment to stellar experiences for drivers and dealers alike, Cox Automotive employees are transforming the way the world buys, owns, sells - or simply uses - cars. Cox Automotive employees get to work on iconic consumer brands like Autotrader and Kelley Blue Book and industry-leading dealer-facing companies like vAuto and Manheim, all while enjoying the people-centered atmosphere that is central to our life at Cox. Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page. Cox is an Equal Employment Opportunity employer- All qualified applicants/employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Cox provides reasonable accommodations when requested by a qualified applicant or employee with disability, unless such accommodations would cause an undue hardship. Applicants must currently be authorized to work in the United States for any employer without current or future sponsorship.

Posted 30+ days ago

C logo
COMPU DYNAMICS LLCRichmond, VA
At Compu Dynamics, we don't just build infrastructure-we create the backbone of the digital future. As North America's premier technology infrastructure design-build partner, we design, construct, and maintain mission-critical data centers for some of the world's most innovative companies. With roots in one of the fastest-growing data center markets in the world, our growth is as intentional as our impact. Summary/Objective: The Superintendent's responsibility is to oversee the day-to-day operations of low voltage and security cabling installations. This position requires no direct supervision. Essential Functions: Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Lays out project work and ensures that materials, tools, equipment, etc. are scheduled in a timely manner to meet scope, budget and project schedules. Accountable for the on-site supervision of assigned construction projects, trade contractors, and field personnel, in such a way as to ensure scheduled completion of projects within established budget, time frame, quality and performance standards, and customer/client satisfaction. Assists operations manager with selecting, orienting, and training employees; maintaining a safe, secure, and legal work environment. Accomplishes staff results by communicating job expectations; planning, monitoring, and appraising job results; coaching, counseling, and disciplining employees; developing, coordinating, and enforcing systems, policies, procedures, and productivity standards Provides timely and completed documentation of work performed Oversees job site as needed. Trains/mentors junior technicians. Expert knowledge of equipment installation practices and the effects of mounting choices/locations and cable dress in a dense operating environment Strong knowledge of Server, SAN, and Network technologies Understanding of NFPA/NEC documents, EIA/TIA standards, building codes, and safety practices Collaborate with various stake holders to remove project obstacles Responsible for maintaining a high level of professionalism with clients, vendors and colleagues; works to establish a positive working relationship Provides timely and completed documentation of work performed Drives company/personal vehicle throughout service area while following all local laws Operates vehicles and other equipment safely; adheres to safety protocols; reports hazards and risks; behavior contributes to a safe and secure working environment Competencies: Excellent communication and time management skills 5-7 years of managing CCTV, Access Control and Security Installations Working knowledge of server and enterprise class computer hardware Expert knowledge of fundamentals and best practices of cabling media types Intermediate use of Microsoft Office Suite Intermediate use of Procore or other project management related resources/programs Supervisory Responsibility: Supervise low voltage and security installation employees. Work Environment: This job operates in a field environment; it involves exposure to potentially dangerous materials and extreme temperatures. Work is often required after normal working hours, including nights, weekends and holidays. This position required up to 25% travel. Physical Demands: While performing the duties of this job, the employee is occasionally required to stand; walk; sit; use hands to finger, handle, or feel objects, tools or controls; reach with hands and arms; climb stairs/ladders; pushing/pulling; talk or hear. The employee must occasionally lift or move equipment up to 50 pounds. Required Education and Experience: Fluent in Spanish Experience in a large-scale network operations/data center environment OSHA10 Bachelor's degree in an IT related field or equivalent of education and experience 10+ years' experience DCJS Certified Valid driver's license in good standing Preferred Education and Experience: Lenel Certified BISCI certified ITIL V3 Foundations Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. Military Codes: 120A, 255N, 5915, 6042, 1493 #PM23 Compu Dynamics Pay Range $45-$60 USD Compu Dynamics offers a comprehensive benefits package to include: Medical, Dental, Vision, 401k with dollar-for-dollar company match up to 4%, various voluntary benefits, Employer paid life insurance, 7 Holidays, paid Parental Leave, Volunteer Time Off, up to 4 weeks PTO after 60 days and you get your birthday off! Compu Dynamics, LLC provides equal employment opportunity to all individuals regardless of their race, color, creed, religion, gender, gender identity, age, sexual orientation, national origin, disability, veteran status, or any other characteristic protected by state, federal, or local law. Further, the company takes affirmative action to ensure that applicants are employed, and employees are treated during employment without regard to any of these characteristics. All employment offers are contingent upon successful completion of our pre-employment drug screening, background/criminal check, and motor vehicle check.

Posted 3 weeks ago

Sompo International logo

Application Security Engineer

Sompo InternationalConshohocken, PA

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

As a leading provider of insurance and reinsurance with worldwide operations and employees in Bermuda, U.S., U.K., Continental Europe and Asia, we recognize that our success is derived directly from those who matter the most: our people. At Sompo International, our values of integrity, collaboration, agility, execution and excellence underpin our culture and our commitment to providing an employee experience that attracts and engages the best talent in the industry. As we continue to grow, we strive to find diverse, innovative and driven professionals to join our teams and offer a broad range of career and development opportunities at all levels, in multiple business areas, in each of our locations throughout the world. Our compensation and benefits programs are market driven and competitive, with excellent family friendly policies and flexible working provisions.

Job Description

Are you looking for your next opportunity?

Sompo has a unique opportunity for an Application Security Engineer in our Information Security team.

Location: This position will be based out of one of our US locations preferably the NYC / Purchase, NY / Garden City, NY / Morristown, NJ / Boston, MA / Conshohocken, PA or Charlotte, NC office. We strive for collaboration which is why we offer a work environment where our employees thrive and develop long lasting careers.

Our business, your impact, our opportunity:

What you'll be doing:

  • Develop and implement application-focused security controls during all phases of Sompo's Secure Software Development Lifecycle and production operations.
  • Collaborate, as needed, with development teams to enhance their secure coding practices, application design patterns, and technology selection.
  • Maintain a strong familiarity with:
  • Sompo's full stack of security technologies and common application architectures

regulatory requirements for security and privacy technologies.

  • The various Sompo teams who are non-technical subject matter experts on those regulations.
  • Industry-standard approaches for aligning development, operations, and security.
  • Be responsible for continuously improving our suite of troubleshooting documents, SOPs, and support tools so that the IT support teams can self-resolve/diagnose application-level issues related to security incidents and/or controls.
  • Application security review (development lifecycle, technology selection)
  • Application security testing and instrumentation (production operations)
  • Support of security tooling and automation

What you'll bring:

  • Minimum of 5 years of experience in information security.

  • Systematic thinking - the ability to take a complex sequence of events and isolate the critical/relevant stages.

  • Excellent interpersonal skills - the ability to engage with both end users and IT colleagues to understand a problem and determine fact patterns, measurable requirements, and success criteria.

  • Strong understanding of:

  • HTTP, HTML, REST, SOAP, JSON, XML, YAML, and other data formats, web authentication patterns, especially SAML and OAuth, TLS/X509, and cookies, DNS, TCP/IP, and related tools (e.g., interpreting packet captures), Encryption at rest and in flight.

  • Development and direct work experience with:

  • Languages for automation, especially Python and Powershell, Query tools.

  • Excel for ad-hoc analysis. Must be comfortable aggregating disparate sets of logs and other data for unified analysis.

  • Packet captures for low level network troubleshooting

  • Application development building blocks, Web application security components

  • Native security controls in the Microsoft stack (OS, Office, Edge)

  • Ability to write ad hoc queries using one or more of the following:

  • Splunk, Powershell, Regular expressions, SQL, XPATH

  • Ability to write practical audience-relevant documentation related to troubleshooting.

  • B.S. in Computer Science or Software Engineering

Salary Range: $115,000 - $165,000 Actual compensation for this role will depend on several factors including the cost of living associated with your work location, your qualifications, skills, competencies, and relevant experience.

At Sompo, we recognize that the talent, skills, and commitment of our employees drive our success. This is why we offer competitive, high-quality compensation and benefit programs to eligible employees.

Our compensation program is built on a foundation that promotes a pay-for-performance culture, resulting in higher incentive awards, on average, when the Company does well and lower incentive awards when the Company underperforms. The total compensation opportunity for all regular, full-time employees is a combination of base salary and incentives that gets adjusted upfront based on overall Company performance with final awards based on individual performance.

We continuously evaluate and update our benefit programs to ensure that our plans remain competitive and meet the needs of our employees and their dependents. Below is a summary of our current comprehensive U.S. benefit programs:

  • Two medical plans to choose from, including a Traditional PPO & a Consumer Driven Health Plan with a Health Savings account providing a competitive employer contribution
  • Pharmacy benefits with mail order options
  • Dental benefits including orthodontia benefits for adults and children
  • Vision benefits
  • Health Care & Dependent Care Flexible Spending Accounts
  • Company-paid Life & AD&D benefits, including the option to purchase Supplemental life coverage for employee, spouse & children
  • Company-paid Disability benefits with very competitive salary continuation payments
  • 401(k) Retirement Savings Plan with competitive employer contributions
  • Competitive paid-time-off programs, including company-paid holidays
  • Competitive Parental Leave Benefits & Adoption Assistance program
  • Employee Assistance Program
  • Tax-Free Commuter Benefit
  • Tuition Reimbursement & Professional Qualification benefits

In today's world, what do we stand for?

Ethics and integrity are the foundation of delivering on our commitment to you. We believe that core values drive success, and that when relationships are held in the highest regard, there is nothing that cannot be accomplished. At Sompo, our ring is more than a logo, it is a symbol of our promise. Click here to learn more about life at Sompo.

Sompo is an equal opportunity employer and we intentionally value inclusion and diversity. Above all, we want you to work in an environment that respects everyone's unique contributions - we are passionately committed to equal opportunities. We do not discriminate based on race, color, religion, sex orientation, national origin, or age.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall