landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Security Jobs

Auto-apply to these security jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Senior Software Engineer - Platform Security-logo
Senior Software Engineer - Platform Security
Anduril IndustriesSeattle, WA
Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril's family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years. ABOUT THE TEAM The Lattice Foundations organization is responsible for enabling Anduril's software products to reach a new standard of software excellence. We build tools, operate services, define processes, and develop frameworks to allow Anduril's engineers and operators to execute at all stages of the software development lifecycle with efficiency, quality, and delight. We adapt industry best practices to the complexities of Anduril's domain, develop new systems when we can improve on the state of the art, and integrate it all into a unitary foundation underlying Anduril's software development. The Platform Security team within Lattice Foundations is responsible for the security of the common software platform. We ensure that the platform architecture meets the security need, that the platform contains an appropriate set of well-designed security features, and that the software platform team has a strong security posture both for the development of its own components and for the management of third party dependencies. Platform Security helps other teams at Anduril securely integrate the software platform into their products. ABOUT THE JOB We are looking for an experienced security engineer and builder to join our rapidly expanding team. In this role, you'll design new security features and propose improvements to the security of Anduril's common software platform. You will lead the implementation of these designs, working across the stack to deliver production-quality code that meets the challenging requirements of our customers. Collaboration is key; you'll review designs from other teams to identify potential security problems and work closely with them to agree on effective solutions. You'll also collaborate closely with teams across the company to improve Anduril's security posture. If you're passionate about building things that improve security and if you enjoy both the breadth that comes from working on large systems and the technical depth that is needed to create secure foundations, then this may be the position for you. WHAT YOU'LL DO Lead the design of new security features and of security improvements to common platform services. Our scope is broad, with example domains ranging from operating system hardening, through authentication, to distributed protocols Implement your designs, balancing security, performance, and functional requirements. You may need to work at all levels of the stack, from integrating secure hardware to developing and deploying applications Review design proposals from other teams, identifying potential security issues and proposing solutions Perform threat modeling and analyze existing systems to identify vulnerabilities Provide security advice to engineering teams during their development, helping raise security awareness Collaborate closely with other security practitioners and the software platform team, supporting efforts to improve Anduril's security posture while delivering on our commitments to customers REQUIRED QUALIFICATIONS 3+ years experience designing and developing software Experience designing secure protocols and/or APIs Proficient in at least one of the following: C++, Rust, Golang 2+ years experience securing complex systems Strong working knowledge of cryptographic primitives and best practices, including key management and certificates Experience performing security reviews and threat modeling Strong written and verbal communication skills; proven ability to negotiate and reach consensus Must be a U.S. Person due to required access to U.S. export controlled information or facilities PREFERRED QUALIFICATIONS Proficient in at two or more of the following: C++, Rust, Golang Experience integrating secure hardware, such as TPM or TEE Strong working knowledge of operating system security Experience securing Kubernetes deployments US Salary Range $168,000-$252,000 USD The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including: Platinum Healthcare Benefits: For U.S. roles, we offer comprehensive medical, dental, and vision plans at little to no cost to you. For UK roles, Private Medical Insurance (PMI): Anduril will cover the full cost of the insurance premium for an employee and dependents. For AUS roles, Private health plan through Bupa: Coverage is fully subsidized by Anduril. Basic Life/AD&D and long-term disability insurance 100% covered by Anduril, plus the option to purchase additional life insurance for you and your dependents. Extremely generous company holiday calendar including a holiday hiatus in December, and highly competitive PTO plans. 16 weeks of paid Caregiver & Wellness Leave to care for a family member, bond with your baby, or tend to your own medical condition. Family Planning & Parenting Support: Fertility (eg, IVF, preservation), adoption, and gestational carrier coverage with additional benefits and resources to provide support from planning to parenting. Mental Health Resources: We provide free mental health resources 24/7 including therapy, life coaching, and more. Additional work-life services, such as free legal and financial support, available to you as well. A professional development stipend is available to all Andurilians. Daily Meals and Provisions: For many of our offices this means breakfast, lunch and fully stocked micro-kitchens. Company-funded commuter benefits available based on your region. Relocation assistance (depending on role eligibility). 401(k) retirement savings plan - both a traditional and Roth 401(k). (US roles only) The recruiter assigned to this role can share more information about the specific compensation and benefit details associated with this role during the hiring process. Anduril is an equal-opportunity employer committed to creating a diverse and inclusive workplace. The Anduril team is made up of incredibly talented and unique individuals, who together are disrupting industry norms by creating new paths towards the future of defense technology. All qualified applicants will be treated with respect and receive equal consideration for employment without regard to race, color, creed, religion, sex, gender identity, sexual orientation, national origin, disability, uniform service, Veteran status, age, or any other protected characteristic per federal, state, or local law, including those with a criminal history, in a manner consistent with the requirements of applicable state and local laws, including the CA Fair Chance Initiative for Hiring Ordinance. We actively encourage members of recognized minorities, women, Veterans, and those with disabilities to apply, and we work to create a welcoming and supportive environment for all applicants throughout the interview process. If you are someone passionate about working on problems that have a real-world impact, we'd love to hear from you! To view Anduril's candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/ .

Posted 30+ days ago

Cybersecurity Officer- Application Security-logo
Cybersecurity Officer- Application Security
Metropolitan Transportation AuthorityNew York, NY
Position at MTA Headquarters JOB TITLE: Cybersecurity Officer- Application Security SALARY RANGE: $144,450.00 - $191,000.00 HAY POINTS: 805 DEPT/DIV: Information Technology / Cybersecurity SUPERVISOR: Cybersecurity Director, Infrastructure and Application Security LOCATION: Various/ 2 Broadway, New York, NY 10004 HOURS OF WORK: 9:00 am - 5:30 pm (7.5 hours or as required) This position is eligible for telework, which is currently two days per week. New hires are eligible to apply 30 days after their effective date of hire. The Metropolitan Transportation Authority is North America's largest transportation network, serving a population of 15.3 million people across a 5,000-square-mile travel area surrounding New York City, Long Island, southeastern New York State, and Connecticut. The MTA network comprises the nation's largest bus fleet and more subway and commuter rail cars than all other U.S. transit systems combined. MTA strives to provide a safe and reliable commute, excellent customer service, and rewarding opportunities. Summary of Job The purpose of this position is to provide technical leadership and management of MTA's cyber security program in one or more technical domains. This role deals with both internal and external threats to the MTA systems, which can affect the safety of employees and customers, system integrity, and operational availability. As part of managing the program, the Cybersecurity Officer will need expertise in managing a complex program with highly skilled staff, contracts, and processes associated with risk management that are essential to maintaining electronic and physical safety for MTA's business in all areas that utilize technology (Corporate, Customer Facing and Informational, Fare Payment/PCI, Operational Technologies, 3rd Party Managed, Vendors, etc.). Responsibilities: The Cybersecurity Officer will be responsible for managing and developing staff, technology, and processes to reduce risk with the evolving cyber threat landscape and changing technology portfolio. This position works across multiple technology and cybersecurity domains to ensure cybersecurity is looked at holistically from user, data and component, and systems perspectives. The position also considers all risk assessments, data-driven analytics, and actively seeks to develop and maintain standards, reference architectures, and reduce the risk of the MTA through emerging technologies and trends in the industry. The position is expected to have a level of expertise in one or more domains of technology and effective management. There is a long list of these specialized domains in the cybersecurity field, and this list is growing and ever-changing as the field evolves and as risks and circumstances change. The Application Development Security Manager role is designed to oversee and enhance the security of our software applications from conception through deployment. This position is crucial for ensuring our applications are resilient against cyber threats, comply with industry and regulatory standards, and support our business objectives by mitigating risk, reducing downtime, and safeguarding our reputation. While Cyber threats are increasingly sophisticated and pervasive, securing our application development process is critical. Data breaches, security vulnerabilities, and compliance failures can lead to significant financial losses, legal ramifications, and damage to our brand's trust and integrity. MTA's ability to innovate and deliver is also at stake if we cannot assure the security and reliability of our applications. MTA utilizes in-house and outsourced development teams to create applications/products that deliver business value. As a result, the teams require a dedicated program to ensure the products developed are coded securely consistently. These products enhance internal corporate and operational capability and provide external customers with the capability to leverage MTA's various services. This role will ensure the continuous maturity and implementation of the strategies developed for the application security program. Specific expertise and skillset in the domain of Application Security are required to improve MTA Cybersecurity delivery in the domains of application code development, rapid application coding, DevSecOps, and accommodate the strategic change the Agile Product Management team is currently implementing. This program will provide scale for the 100s of MTA applications managed by MTA IT and/or MTA Business that need constant oversight to enhance the MTA security posture while improving overall availability of the applications. The candidate we are seek needs to have up-to-date application security skills in securing data and applications, and a broad expertise and knowledge in various technologies and design principles, such as Zero-trust architecture, Low-Code application platforms, and the ability to mature and develop processes and governance. The candidate will lead both in-house and vendor resources that provide development support and be responsible for managing the overall program related to developer security coaching, secure libraries and coding techniques, validation, and prioritization of application vulnerabilities, and improving overall developer/management skills in secure coding strategy, tools, and vendors. Critical Skills : Cybersecurity Expertise: A deep understanding of cybersecurity principles, best practices, and the latest threats is essential. This includes knowledge of various attack vectors, security frameworks, and security controls. Application Security Knowledge: Proficiency in understanding common vulnerabilities and weaknesses in software applications, such as OWASP Top Ten, and how to mitigate them is crucial. Coding and Development Skills: Familiarity with various programming languages and development frameworks to identify and remediate security flaws in the codebase. Security Architecture: The ability to design and implement secure software architectures, including threat modeling and risk assessment. Secure Development Lifecycle (SDLC): Knowledge of integrating security practices into the SDLC, including requirements gathering, threat modeling, design, development, testing, and deployment. Ability to perform manual code reviews, open-source software evaluations, tests, and other duties as needed. Security Testing Tools: Proficiency in using security testing tools and techniques such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST). Ability to track, resolve security events and incidents, and conduct security assessments using enterprise AppSec tools or risk mitigation methodologies to evaluate vulnerabilities. Incident Response: A solid understanding of the incident response process to manage and mitigate security incidents effectively. Security Policies and Procedures: Ability to create and enforce security policies and procedures within the development team and organization as a whole. Knowledge of application security architecture, Zero-trust architecture, and application security governance. Expertise with the selection, configuration, integration, and management of application security testing tools. Understanding DevOps tools. Responsibilities Leadership Provide leadership to a strong talent pool of technical professionals Lead a team of multi-functional technical staff planning, building, and maintaining cybersecurity tools, configurations, and risk mitigation to support Information and Operational Technology applications and/or infrastructure products Lead others, as appropriate, and when necessary, that will consist of one or more agile coaches, data analytics researchers, and other cybersecurity personnel Provide leadership in the development of inter-team communication and cohesiveness; sustain culture and support assigned staff during organizational growth/changes. Provide direction on evaluation, selection, implementation, and maintenance of cybersecurity tools, processes, and techniques for their assigned cyber domains and products, ensuring appropriate investment in strategic and operational systems. Leads teams to complete projects when a project manager has not been assigned. Attained significant achievements managing technical teams, contractors, and vendors. Human Resource Management Attract, develop, coach and retain high-performance team members, empowering them to elevate their level of responsibility, span of control and performance in conjunction with the Cybersecurity Management and IT Workforce Planning & Workload Management office. Build staff expertise and competence to meet evolving demands within the Enterprise Product Management unit. Financial Management Demonstrate consistent understanding of funding, communications, and systems; recommend timelines and resources needed to achieve the program goals. Collaborates with IT Business Management Services to identify procurement contracts to support program related activities. Strategy & Planning Assesses and makes recommendations on the improvement and re-engineering within the IT Department and work with the stakeholders at keeping the total cost of ownership down. Promote the use of employee self-service and mobile connectivity within products to reduce the reliance on paper. Recommends and supports automation of business process creating in-line forms and approvals, reducing the reliance on manual approvals that could be untimely. Uses judgment to form conclusions that may challenge conventional wisdom Acquisition & Deployment Coordinates and facilitates consultation with stakeholders to define business and systems requirements for new technology implementations, developing business cases and cost justifications for such initiatives. Provides direction on evaluation, selection, implementation, and maintenance of information systems, ensuring appropriate investment in strategic and operational systems. Advises MTA IT management, as information becomes available, on the changing trends and emerging technology and their potential use within the MTA. Directs the development of the analysis required to determine if Information Technology projects should follow a "Build" (develop with in-house staff) or "Buy" (cloud or packaged solution) methodology. Manages the development and implementation of new modules within assigned products. Advises on the selection, prioritization, development and implementation on products as they relate to the selection, acquisition, development, and installation of MTA IT and OT Security, applications and infrastructure. Management and Oversight Participates in overall business planning bringing a current knowledge and future vision of technology and systems as related to the company's goals. Responsible for leading and reporting on various product progress and deliverables, ensuring that the IT/OT needs of the MTA are met on time and within budget, including identifying weekly, monthly, and annual performance targets to show progress on IT product work and OT objectives. Ensure continuous delivery of product services through oversight of service level agreements with end users and monitoring of product performance. Responsible for the recruitment, development, motivation, training, and retention of a diverse and high performing multi-level IT/OT team of professionals, conforming to budgetary objectives and Human Resources policy and programs in conjunction with the IT Workforce Planning & Workload Management office. Develop business case justifications and cost/benefit analyses for IT spending and initiatives, keeping customizations to a minimum and total cost of ownership down. Cybersecurity Officer-Specific Accountabilities Planning Manage and plan the future technical architecture, providing insight into the future of their area of technology to continually improve effectiveness and efficiency. Manage and plan the development of roadmaps related to their area(s) of expertise to manage and meet identified technology needs. Manage and plan the evaluation of new technologies relative to their domain(s) to determine applicability to and best meet the needs of MTA and constituent agencies. Manage and ensure disaster recovery and contingency plans for their domain(s) to provide users with minimal interruptions in service. Architecture Oversees architectural direction for domains under management to meet senior management and cybersecurity goals. Understand, review, and approve Cybersecurity Reference Architectures and Solutions for applying them. Revalidates systems to the most recent reference architectures to determine gaps, develops and manages programs to align systems to the newest standards and reference architectures Contracts/Vendor Management Contribute and own technical elements of RFPs and RFIs, and negotiate with vendors on technical issues to ensure results are delivered in line with user and organization requirements. Manages contracts and expenses to ensure SLAs and contract renewals are processed timely manner Provide contract management support to ensure vendor deliverables are met Manage and lead major projects and assign service providers with technical expertise to address mission-critical issues, evaluate ongoing vendor service level,s and enforce SLAs and penalties. Documentation Ensure detailed and updated documentation is in place for cybersecurity systems and user processes. Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures) under the direction of the IT Security Manager, where appropriate. Guidance, Communications and Training Support Provides timely and relevant updates to appropriate stakeholders and decision makers Communicates investigation findings to relevant business units to help improve the information security posture Provides technical guidance to project managers and senior leadership on cybersecurity and technology strategies Ensure quality and review and guidance on tests of new systems and manage cybersecurity risks and remediation system testing, baseline, and best practices Provide escalation support to project teams in their area of expertise to promote technical understanding and talent development Provide guidance and take input from Analysts, Engineers, Architects and Technology Subject Matter Experts on cybersecurity and technology best practices, current threat landscape, and a risk management approach for optimal alignment Provides sound cybersecurity recommendations Operations Provide leadership and advisement when necessary during incident response and provide continuous improvement updates to threat model for risks to the business and systems Ensure specific monitoring points are continually updated to assess performance of technologies in their domain(s). Identify and manage the necessary actions to ensure optimal performance and reliability. Research & Analysis Validates and maintains incident response plans and processes to address potential threats Compiles and analyzes data for management reporting and metrics Research emerging technologies and process improvements to stay current and plan for evolving threat landscape to ensure strategy meetings current threats Monitors relevant information sources to stay up to date on current attacks and trends Ensure cybersecurity technology solutions meet strategy meets security framework objectives and business objectives. Hypothesizes new threats and indicators of compromise. Performs other duties and tasks as assigned. Observing the work performed by the contractor. Reviewing invoices and approving them if the work has contractual standards. Addressing performance issues with the contractor when possible. Escalating issues to other parties as needed. Oversee rigorous quality assurance processes to deliver reliability, performance, safety objectives Oversees staff workload and quality of work, addressing performance issues when needed. Qualifications: Experience Bachelor's degree required, preferably in Computer Science or related fields. An equivalent combination of education and experience may be considered in lieu of a degree. A minimum of 5 plus years of relevant experience. Leadership ability CISSP, CISM, or other advanced security-related certification preferred Certifications in technology subdomains preferred (i.e. Cloud, Applications, Infrastructure, Security Technology, etc.). Requires prior experience with installing, maintaining and troubleshooting technology systems. Experience in Project Management Principles (Waterfall and Agile) preferred. Competencies Must possess a deep understanding of technology and cybersecurity domain principles. Proven ability to manage projects and initiatives. Proven ability to manage people. Proven ability to add value to a team. Understanding of Operating Systems, Cloud, Mobile, and Applications. Understanding of TCP/IP (OSI Layers 1- 4) and Internet and Intranet technologies required (OSI Layers 5-7) required. Some Scripting or programming skills (PERL, Python, PowerShell, etc.) preferred as needed. Knowledge of programming languages, frameworks, databases, and software engineering is a must. Proficient in Productivity Tools (i.e. Office 365, Gsuite). Experience with Spreadsheets and Data Analysis. Successful track record in design of software systems to meet the current and future needs of a complex organization OR successful track record in design and implementation of IT Infrastructure and related hardware and software technologies to meet the current and future needs of a complex transportation organization. Strong Verbal/written communications skills. Financial/budgeting planning and management experience a plus. Ability to fit in with the constant shifting needs and demands of the business Department. Core Competency Proficiency Level Competency Definition Collaborates Expert Building partnerships and working collaboratively with others to meet shared objectives Cultivates Innovation Expert Creating new and better ways for the organization to be successful Customer Focus Expert Building strong customer relationships and delivering customer-centric solutions Communicates Effectively Expert Developing and delivering multi-mode communications that convey a clear understanding of the unique needs of different audiences Tech Savvy N/A Anticipating and adopting innovations in business-building digital and technology applications Technical Skills N/A Specialized knowledge and expertise on tools, programs, domains, platforms, and products used for specific tasks Values Diversity Expert Recognizing the value that different perspectives and cultures bring to an organization GENERAL: May need to work outside of normal work hours (i.e., evenings and weekends) Travel may be required to other MTA locations or other external sites Pursuant to the New York State Public Officers Law & the MTA Code of Ethics, all employees who hold a policymaking position must file an Annual Statement of Financial Disclosure (FDS) with the NYS Commission on Ethics and Lobbying in Government (the "Commission"). MTA and its subsidiary and affiliated agencies are Equal Opportunity Employers, including with respect to veteran status and individuals with disabilities. The MTA encourages qualified applicants from diverse backgrounds, experiences, and abilities, including military service members, to apply.

Posted 5 days ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesWashington, DC
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Physical Security Manager - Americas-logo
Physical Security Manager - Americas
MarvellSanta Clara, CA
About Marvell Marvell's semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, automotive, and carrier architectures, our innovative technology is enabling new possibilities. At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead. Your Team, Your Impact The Physical Security Manager, Americas will play a key role in the operation, management, training, and administration for the Global security team in the region. Their primary function is to execute the day-to-day security management and act as the main liaison between security and regional stakeholders. The role will encompass developing and implementing security protocols, conducting risk assessments, managing security teams, and ensure compliance with local and international laws. The Physical Security Manager will work closely with various departments to promote the safety and security of employees, assets, and operations. The Physical Security Manager, Americas will play a key role in the operation, management, training, and administration for the Global security team in the region. Their primary function is to execute the day-to-day security management and act as the main liaison between security and regional stakeholders. The role will encompass developing and implementing security protocols, conducting risk assessments, managing security teams, and ensure compliance with local and international laws. The Physical Security Manager will work closely with various departments to promote the safety and security of employees, assets, and operations. What You Can Expect Experience in the following and not inclusive of: Day to day management of physical security measures at global headquarters and assigned region (reporting, investigations, event coverage assignments, access control measures, emergency response, ensuring access control and camera systems are functioning and supporting remediation). Fostering relationships with site assigned POCs for collaboration and provide remote assistance as warranted Implementation of strategies by senior management (emphasis on execution of and maintain security measures such as access controls, surveillance systems, and emergency response.) Manages on-site contract security teams that fall under j. (i.e., work with vendors in their sphere of influence to ensure no violation of co-employment legalities and report accordingly of shortcomings to next level to ensure service standards) Analysis of costs for each location for roll-up into larger organizational requirements Handles the on-location security opportunities, such as dealing with immediate risks at assigned locations Site level problem solving that does not affect larger organization Incident Response Team oversight Policy and Protocols Collaboration with other departments Training staff and employees Technical knowledge (access and monitoring systems) Reporting and investigations Familiarity with local security regulations At Marvell Technology, our Global Physical Security team is dedicated to safeguarding our employees, assets, and operations worldwide. As the Physical Security Manager for the Americas region, you will play a crucial role in overseeing and managing security operations across multiple offices. Your leadership will be instrumental in developing and implementing security protocols, conducting risk assessments, managing security personnel, and ensuring compliance with local and international laws. Collaborating with various departments, you will promote a culture of safety and security that enables Marvell to innovate and excel in the semiconductor industry. Incident Response: Lead and coordinate responses to security incidents, ensuring swift resolution and minimal impact on operations. Team Oversight: Manage and mentor a team of security professionals, fostering a proactive and vigilant security culture. Policy and Protocols: Develop, implement, and enforce security policies and procedures to maintain a secure environment. Collaboration: Work closely with other departments to integrate security considerations into broader organizational initiatives. Training: Design and deliver training programs to educate employees on security protocols and best practices. Technical Knowledge: Oversee the operation and maintenance of security systems, including access controls and surveillance systems. Reporting and Investigations: Conduct thorough investigations into security incidents and provide detailed reports to senior management. Regulatory Compliance: Stay informed about local security regulations and ensure all security practices comply with relevant laws and standards. What We're Looking For Experience: Proven history in security management and incident oversight within a corporate setting. Leadership: Skilled in providing and managing security solutions through innovation and quality. Interpersonal Skills: Ability to maintain and develop positive working relationships with stakeholders and end-users. Operational Expertise: Proficient in operational security management, including leadership, team management, and incident response within a corporate environment. Communication: Sound interpersonal and communication skills, with experience in issue and conflict resolution. Initiative: Ability to work under own initiative, demonstrating strong work ethics and decision-making capability. Technical Proficiency: Competent in Microsoft Word, Excel, Outlook, and PowerPoint. System Knowledge:Familiarity with security systems such as access controls, camera surveillance systems, and security software platforms. Expected Base Pay Range (USD) 110,450 - 165,500, $ per annum The successful candidate's starting base pay will be determined based on job-related skills, experience, qualifications, work location and market conditions. The expected base pay range for this role may be modified based on market conditions. Additional Compensation and Benefit Elements At Marvell, we offer a total compensation package with a base, bonus and equity.Health and financial wellbeing are part of the package. That means flexible time off, 401k, plus a year-end shutdown, floating holidays, paid time off to volunteer. Have a question about our benefits packages - health or financial? Ask your recruiter during the interview process. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Any applicant who requires a reasonable accommodation during the selection process should contact Marvell HR Helpdesk at TAOps@marvell.com. #LI-JS22

Posted 30+ days ago

Senior Security Assurance Technical Program Manager-logo
Senior Security Assurance Technical Program Manager
ID.meMclean, VA
Company Overview ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 140 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 44 state government agencies, and 66 healthcare organizations. More than 600 consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me's technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to "No Identity Left Behind" to enable all people to have a secure digital identity. To learn more, visit https://network.id.me/ . Role Overview We are seeking a highly skilled Senior Security Assurance Technical Program Manager to join our compliance and security team with a significant focus on Sarbanes Oxley 404 compliance. This role is critical in designing, implementing, and managing security and compliance programs that align with external regulatory requirements. The ideal candidate will be responsible for ensuring compliance with SOX, FedRAMP, ISO 27001, and SOC 2 Type II frameworks, while also leading internal assessments, evidence collection, and audit readiness efforts. This role will work closely with internal teams to validate compliance, manage assurance activities, and maintain our Governance, Risk, and Compliance (GRC) tool. This is an onsite position in one of our hub locations (Mountain View CA or McLean VA) Responsibilities Develop and implement a SOX compliance program, ensuring alignment with regulatory requirements. Contribute to the ongoing maintenance and enhancement of FedRAMP, ISO 27001, and SOC 2 Type II compliance programs. Work cross-functionally with teams to design, implement, and monitor the status of security controls that meet compliance requirements. Manage audit readiness efforts, ensuring timely and accurate collection of evidence for external and internal audits. Collaborate with stakeholders to create system-specific evidence requests and validate compliance with established controls. Lead and perform internal control assessments to verify the effectiveness of security measures and compliance efforts. Interview internal teams to assess control effectiveness, identify gaps, and document findings. Ensure quality assurance of deliverables produced by other team members, maintaining consistency and accuracy. Driving the process to remediate control deficiencies and monitoring of remediation efforts. Maintain a list of baseline and unique controls Provide clear and detailed explanations of controls to auditors to facilitate successful audits. Develop and manage schedules for compliance validation, continuous monitoring, and reporting. Maintain and improve the organization's GRC tool, ensuring accurate tracking and reporting of compliance activities, and enabling automated control evidence collection and measurement. Basic Qualifications Bachelor's degree in information technology, accounting, or a related field, or equivalent experience. 8 to 12 years of experience in compliance program management, including working with technical and business stakeholders to design and prepare IT General Controls (ITGCs), Internal Controls over Financial Reporting (ICFRs), fraud and other financial controls, and regulatory reporting with technical and business stakeholders. 8 to 12 years of experience implementing the COSO framework 5 to 7 years of experience conducting internal compliance assessments and audits, including interviews and evidence collection. 3 to 5 years of experience managing a quality control system to ensure work products and internal processes meet audit standards. 2 to 3 years of experience using GRC tools to track, manage, and report on compliance activities. Preferred Qualifications Experience designing and implementing 1 to 2 internal control programs aligned with regulatory requirements. Experience working at a big 4 accounting firm in the capacity of supporting SOX internal control programs and audits. 5 years of experience with NIST 800-53 requirements. CPA certification (active or inactive) Strong project management skills, including planning, work tracking, and stakeholder coordination. This is an exciting opportunity for a compliance professional looking to take ownership of high-impact security and compliance initiatives in a dynamic and growing organization. If you have a passion for security, compliance, and audit readiness, we encourage you to apply! #LI-JS1 The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role. ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit. The above represents the anticipated total rewards package for this job requisition. Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors. Pay Range $157,485-$193,875 USD ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations. Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy. ID.me participates in E-Verify.

Posted 2 weeks ago

Security- Summit-logo
Security- Summit
Live Nation Entertainment INCDenver, CO
Job Summary WHO ARE WE? Live Nation Entertainment is the world's leading live entertainment company, comprised of global market leaders: Ticketmaster, Live Nation Concerts, and Live Nation Media & Sponsorship. Ticketmaster is the global leader in event ticketing with over 500 million tickets sold annually and more than 12,000 clients worldwide. Live Nation Concerts is the largest provider of live entertainment in the world promoting more than 40,000 shows and 100+ festivals annually for nearly 4,000 artists in over 40 countries. These businesses allow Live Nation Media & Sponsorship to create strategic music marketing programs that connect over 1,000 brands with the 98 million fans that attend Live Nation Entertainment events each year. For additional information, visit www.livenationentertainment.com. Live Nation's Concerts Division is where tours are born, artists come to life, and fans get to experience the rush of live music. From our dozens of owned/operated Amphitheaters to our Global Touring team, from Ticketing and Venue Operations to Marketing and Sales... we foster a fun and upbeat work culture with no shortage of opportunities. With perks ranging from free concert tickets to dog-friendly offices, to progressive benefits like student loan reimbursement and adoption/fertility support... it's no wonder we are certified as a Great Place to Work organization and one of People Magazine's "50 Companies that Care". We want everyone to feel like they belong and can thrive in our community, so we strive to help you achieve your career and personal goals. Live music is our passion and where we find our common ground. There has never been a better time to join Live Nation. WHAT THIS ROLE WILL DO Ensure guest safety through proactive personal interaction and removing hazards in the area of responsibility Prevent and resolve altercations among guests Lead guests and other employees in emergency evacuation procedures and provide assistance Maintain control by circulating through your work area throughout the shift Check identification of any guest who appears to be under 30 years of age who is drinking alcoholic beverages inside the venue Ensure that no weapons or harmful items enter the venue by inspecting every guest with a metal detector or pat-down search Enforce House policy regarding photos/videos/recording devices Safeguard against theft and property damage Communicate clearly using radios, hand signals and flashlights. Remain in constant contact throughout the shift Set up area before opening (stanchions, table configuring, etc.) Keep interior and exterior of the venue clear and safe, cleaning spills and removing food, trash or other obstacles, before, during and after the shift WHAT THIS PERSON WILL BRING Required: Ability to work late hours Flexible schedule 3 years' work experience interacting with people in a positive environment Read, write and speak English fluently Must be able to lift or move up to 25 lbs using proper lifting techniques Tolerance of all cultures, music and art forms Preferred: Bi-lingual Cash handling experience Experience recognizing valid ID's Experience in a live music environment Self-defense training Experience using metal detection equipment EMT or other medical background Physical Demands/Working Environment: Working environment is fast-paced, often loud and stressful Position requires extended periods of prolonged standing and working on your feet Must be able to lift or move up to 25 lbs using proper lifting techniques EQUAL EMPLOYMENT OPPORTUNITY We are passionate and committed to our people and go beyond the rhetoric of diversity and inclusion. You will be working in an inclusive environment and be encouraged to bring your whole self to work. We will do all that we can to help you successfully balance your work and homelife. As a growing business we will encourage you to develop your professional and personal aspirations, enjoy new experiences, and learn from the talented people you will be working with. It's talent that matters to us and we encourage applications from people irrespective of their gender, race, sexual orientation, religion, age, disability status or caring responsibilities. Live Nation strongly supports equal employment opportunity for all applicants regardless of age (40 and over), ancestry, color, religious creed (including religious dress and grooming practices), family and medical care leave or the denial of family and medical care leave, mental or physical disability (including HIV and AIDS), marital status, domestic partner status, medical condition (including cancer and genetic characteristics), genetic information, military and veteran status, political affiliation, national origin (including language use restrictions), citizenship, race, sex (including pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), gender, gender identity, and gender expression, sexual orientation, or any other basis protected by applicable federal, state or local law, rule, ordinance or regulation. We will consider qualified applicants with criminal histories in a manner consistent with the requirements of the Los Angeles Fair Chance Ordinance, San Francisco Fair Chance Ordinance and the California Fair Chance Act and consistent with other similar and / or applicable laws in other areas. We also afford equal employment opportunities to qualified individuals with a disability. For this reason, Live Nation will make reasonable accommodations for the known physical or mental limitations of an otherwise qualified individual with a disability who is an applicant consistent with its legal obligations to do so, including reasonable accommodations related to pregnancy in accordance with applicable local, state and / or federal law. As part of its commitment to make reasonable accommodations, Live Nation also wishes to participate in a timely, good faith, interactive process with a disabled applicant to determine effective reasonable accommodations, if any, which can be made in response to a request for accommodations. Applicants are invited to identify reasonable accommodations that can be made to assist them to perform the essential functions of the position they seek. Any applicant who requires an accommodation in order to perform the essential functions of the job should contact a Human Resources Representative to request the opportunity to participate in a timely interactive process. Live Nation will also provide reasonable religious accommodations on a case by case basis. HIRING PRACTICES The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job. Live Nation recruitment policies are designed to place the most highly qualified persons available in a timely and efficient manner. Live Nation may pursue all avenues available, including promotion from within, employee referrals, outside advertising, employment agencies, internet recruiting, job fairs, college recruiting and search firms. Please note that the compensation information provided is a good faith estimate for this position only and is provided pursuant to the Colorado Equal Pay for Equal Work Act and Equal Pay Transparency Rules. It is estimated based on what a successful Colorado applicant might be paid. It assumes that the successful candidate will be in Colorado or perform the position from Colorado. Similar positions located outside of Colorado will not necessarily receive the same compensation. Live Nation takes into consideration a candidate's education, training, and experience, as well as the position's work location, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the CO EPEWA, a potential new employee's salary history will not be used in compensation decisions. The expected compensation for this position in Colorado is: $17.29 USD Hourly Please note that the compensation information provided is a good faith estimate for this position only and is provided pursuant to the Colorado Equal Pay for Equal Work Act and Equal Pay Transparency Rules. It is estimated based on what a successful Colorado applicant might be paid. It assumes that the successful candidate will be in Colorado or perform the position from Colorado. Similar positions located outside of Colorado will not necessarily receive the same compensation. Live Nation takes into consideration a candidate's education, training, and experience, as well as the position's work location, expected quality and quantity of work, required travel (if any), external market and internal value, including seniority and merit systems, and internal pay alignment when determining the salary level for potential new employees. In compliance with the CO EPEWA, a potential new employee's salary history will not be used in compensation decisions.

Posted 30+ days ago

Engineering Manager, Information Security-logo
Engineering Manager, Information Security
NotableSan Mateo, CA
Notable is the leading healthcare AI platform for transforming workforce productivity. Health systems, hospitals, and payers use Notable to improve healthcare quality, close gaps in patient care, drive member enrollment, and patient acquisition, retention, and reimbursement, scaling growth without hiring more staff. We are on a mission to improve the lives of patients, staff, and clinicians - to improve healthcare for humanity. This isn't just a lofty goal - it's something we're achieving every single day. When you join Notable, you become part of a force actively transforming healthcare. Our aim to impact 100 million patients isn't just a number; it's a commitment to creating meaningful change on a massive scale. Therefore, our culture is purposeful in pursuit of this mission. We believe our culture gives each person the opportunity to do the best work of their lives, work with the best teammates, and have fun achieving great things together. Role Summary: We're looking for an Engineering Manager, Information Security to lead and scale Notable's security program across product, infrastructure, corporate systems, and compliance. While the title reflects our internal leveling, this is a Head of Security-level role with end-to-end responsibility for security and risk across the organization. You'll start with a team of three: two security analysts supporting compliance and operations, and one security engineer focused on building tooling and enabling secure development. Together, you'll own both the tactical and strategic functions of a modern security program. Notable has already achieved HIPAA, HITRUST, and SOC 2 certifications and is currently undergoing ISO 27001 certification, expected by year end. You'll be responsible for maintaining these programs and evolving our internal and product-facing security to meet the expectations of enterprise healthcare customers. What You'll Do: Lead the security team across product security, corporate security, and compliance operations Maintain and enhance existing certifications (HIPAA, HITRUST, SOC 2) and support ongoing ISO 27001 efforts Guide product and application security, including threat modeling, architecture reviews, and developer enablement Enhance and own AI governance and customer data compliance controls Partner with engineering to improve internal security tooling, IAM, CI/CD security, and vulnerability management Own incident response, disaster recovery, and detection programs across infrastructure and corporate environments Oversee corporate security: SaaS app security, endpoint management, SSO/MDM, and internal access controls Collaborate with legal and compliance to manage vendor risk, third-party audits, and customer security reviews Lead internal training and security awareness programs for engineers and employees Track evolving customer requirements, threat landscapes, and regulatory obligations to continuously improve posture What We're Looking For: 10+ years in information security roles, including at least 4+ years in leadership or cross-functional program ownership Strong technical background in security engineering, infrastructure security, or secure software development Experience maintaining certifications such as SOC 2, HIPAA, HITRUST, or ISO 27001 in production environments Skilled in secure SDLC practices, cloud security (GCP preferred), threat modeling, and risk assessment Familiarity with corporate and IT security controls: SaaS platforms, identity management, endpoint security Strong communicator with experience influencing engineering and non-technical stakeholders Able to think strategically and execute pragmatically in a fast-paced, high-trust environment Nice to Have: Prior experience in healthcare, healthtech, or other regulated SaaS companies Experience responding to enterprise customer security reviews or RFPs Familiarity with privacy frameworks (e.g., CCPA, GDPR) Background in building or scaling internal security functions in a startup or growth-stage environment Beware of job scam fraudsters! Our recruiters use @notablehealth.com email addresses exclusively. We do not conduct interviews via text or instant message and we do not ask candidates to download software other than Zoom, to purchase equipment through us, or to provide sensitive personally identifiable information such as bank account or social security numbers. If you have been contacted by someone claiming to be me from a different domain about a job offer, please report it as potential job fraud to law enforcement and contact us here.

Posted 3 days ago

Senior Security Specialist - Cap/Sap-logo
Senior Security Specialist - Cap/Sap
Parsons Commercial Technology Group Inc.Springfield, VA
In a world of possibilities, pursue one with endless opportunities. Imagine Next! When it comes to what you want in your career, if you can imagine it, you can do it at Parsons. Imagine a career working with exceptional people sharing a common quest. Imagine a workplace where you can be yourself. Where you can thrive. Where you can find your next, right now. We've got what you're looking for. Job Description: Basic Qualifications: A Bachelor's degree or equivalent experience in a related field to Personnel security. An active TS/SCI security clearance. Ability to obtain and maintain a CI POLY. 5+ years of experience with Special Access Programs (SAP). 5+ years of experience with Controlled Access Programs (CAP). 5+ years of experience with Alternate Compensatory Control Measures (ACCM). Responsibilities include, but are not limited to: Monitor and manage Special Access Program (SAP) and Alternative Compensatory Control Measure (ACCM) security programs and operations supported by and providing status reports and recommendations for decisions. Obtain access to SAP and ACCM information as required for the execution of the mission partner's sensitive program mission. Conduct reviews of security repositories (Defense Information System for Security (DISS) and Scattered Castles) and nomination reviews of candidates submitted for SAP accesses. Prepare, process, and review, Program Access Requests (PARs) for accuracy and access eligibility; perform SAP indoctrinations, debriefs, and submit visit requests. Execute and review SAP nomination Pre-Screening Questionnaire's (PSQs) and related source documents. Provide data entry, record checks, and run reports utilizing the Joint Access Database Environment (JADE) database. Develop and process solutions to convey to internal and external customers. Provide agency-level technical expertise concerning identified security disciplines and operations support. Monitor security applications through the review and analysis of appropriate metrics and maintain required records. Prepare and disseminate security procedures and guidance. Manage project milestones, support Joint Staff, Department of Defense (DoD) and Department of the Navy high visibility conferences hosted at the National Geospatial Intelligence Agency. Update and maintained appropriate records (e.g. database and hardcopy) of security actions. Liaise with members of the DoD, the Intelligence Community (IC) and other officials as required to keep abreast of current special access cleared personnel. Prepare and deliver briefings to internal and external customers. Prepare various forms of correspondence. Monitor and manage security operations and provide the government with status reports and recommendations for decisions. Apply experience in supporting security concepts, principles and practices to analyze and resolve difficult and complex security issues. Provide technical security expertise, SAP, and ACCM security disciplines, and personnel and physical/industrial operations. Utilize security concepts, principles and practices to analyze and resolve difficult and complex security issues. Desired Qualifications: Experience and exposure to JADE and ICARS Security Clearance Requirement: An active Top Secret security clearance is required to apply, however, the selected candidate must be able to obtain a Top Secret SCI clearance prior to the start date. This position is part of our Federal Solutions team. The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what's next to deliver the solutions our customers need now. Salary Range: $86,700.00 - $151,700.00 We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle! Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status. We truly invest and care about our employee's wellbeing and provide endless growth opportunities as the sky is the limit, so aim for the stars! Imagine next and join the Parsons quest-APPLY TODAY! Parsons is aware of fraudulent recruitment practices. To learn more about recruitment fraud and how to report it, please refer to https://www.parsons.com/fraudulent-recruitment/ .

Posted 2 weeks ago

Workday Application Security & Controls Director-logo
Workday Application Security & Controls Director
PwCWashington, DC
Industry/Sector Not Applicable Specialism Workday Management Level Director Job Description & Summary A career in Enterprise Application Risk will allow you to develop and apply strategies that help clients leverage enterprise technologies so they can get a higher return on their investment, mitigate risks, streamline processes, and find operational inefficiencies. The work revolves around creative problem solving and applying innovative technologies to enable strategies that increase the value of the applications that run our client's business. Our focus is on creating effective and efficient design for the most important business, security and compliance processes for our clients. We touch on aspects of application security and areas prone to fraud and financial misstatement and on streamlining processes that are part of our client's core business so they can get a higher return on this key investment. Using innovative, and proprietary technologies, we help to bridge the gap between business stakeholders, compliance functions, and Information Technology teams to assist in understanding how to embrace new ways of working while limiting their financial and operational risk profile. We use knowledge of financial system design, risk mitigation, business process design, data integrity, security, and use of data analytics. Our clients make large investments in enterprise financial systems, and they need to design those systems to meet the needs of their business while providing capabilities to improve end user experiences while managing risk. Our team helps companies manage risks on their journey to a more digitally integrated environment which enables them to better harness cloud technologies. As part of our team, you will focus on helping clients gain value across their technology ecosystem by addressing risks tied to systems, security, data, reporting, and programs. To really stand out and make us fit for the future in a constantly changing world, each and every one of us at PwC needs to be a purpose-led and values-driven leader at every level. To help us achieve this we have the PwC Professional; our global leadership development framework. It gives us a single set of expectations across our lines, geographies and career paths, and provides transparency on the skills we need as individuals to be successful and progress in our careers, now and in the future. As a Director, you'll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. PwC Professional skills and responsibilities for this management level include but are not limited to: Support team to disrupt, improve and evolve ways of working when necessary. Arrange and sponsor appropriate assignments and experiences to help people realise their potential and support their long-term aspirations. Identify gaps in the market and spot opportunities to create value propositions. Look for opportunities to scale efficiencies and new ways of working across multiple projects and environments. Create an environment where people and technology thrive together to accomplish more than they could apart. I promote and encourage others to value difference when working in diverse teams. Drive and take ownership for developing connections that help deliver what is best for our people and stakeholders. Influence and facilitate the creation of long-term relationships which add value to the firm. Uphold the firm's code of ethics and business conduct. The Opportunity As part of the Enterprise Application Risk - Workday Compliance and Security team you are responsible for managing and understanding Workday implementations, configurations, and optimizations of business process controls and application security. As a Director you set the strategic direction, lead business development efforts, and oversee multiple projects while maintaining impactful executive-level client relations. You play a crucial role in driving business growth, shaping client engagements, and mentoring the future leaders. Responsibilities Manage and understand Workday implementations Set strategic direction and lead business development Oversee multiple projects and maintain executive-level client relations Drive business growth and shape client engagements Mentor the future leaders Configure and enhance business process controls Assure application security Foster a collaborative and innovative environment What You Must Have Bachelor's Degree 9 years of ERP controls auditing, consulting and/or implementing experience with a minimum of 4 years of experience with Workday What Sets You Apart Workday Financials or HCM certification Managing and understanding Workday implementations and configurations Identifying and addressing client needs and relationships Leading teams to generate a vision and establish direction Demonstrating business development skills and leading proposal efforts Managing large engagements and evaluating controls and security Leading client projects and understanding business and technology Defining resource requirements, project workflow, and budgets Working directly with systems integrators in Workday implementations Travel Requirements Up to 40% Job Posting End Date Learn more about how we work: https://pwc.to/how-we-work PwC does not intend to hire experienced or entry level job seekers who will need, now or in the future, PwC sponsorship through the H-1B lottery, except as set forth within the following policy: https://pwc.to/H-1B-Lottery-Policy . As PwC is an equal opportunity employer, all qualified applicants will receive consideration for employment at PwC without regard to race; color; religion; national origin; sex (including pregnancy, sexual orientation, and gender identity); age; disability; genetic information (including family medical history); veteran, marital, or citizenship status; or, any other status protected by law. For only those qualified applicants that are impacted by the Los Angeles County Fair Chance Ordinance for Employers, the Los Angeles' Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, San Diego County Fair Chance Ordinance, and the California Fair Chance Act, where applicable, arrest or conviction records will be considered for Employment in accordance with these laws. At PwC, we recognize that conviction records may have a direct, adverse, and negative relationship to responsibilities such as accessing sensitive company or customer information, handling proprietary assets, or collaborating closely with team members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all. The salary range for this position is: $148,000 - $317,000, plus individuals may be eligible for an annual discretionary bonus. For roles that are based in Maryland, this is the listed salary range for this position. Actual compensation within the range will be dependent upon the individual's skills, experience, qualifications and location, and applicable employment laws. PwC offers a wide range of benefits, including medical, dental, vision, 401k, holiday pay, vacation, personal and family sick leave, and more. To view our benefits at a glance, please visit the following link: https://pwc.to/benefits-at-a-glance

Posted 1 week ago

Principal Network Security Engineer-logo
Principal Network Security Engineer
GartnerStamford, CT
Hiring near our US Centers of Excellence. Hybrid, flexible environment Irving, TX, Fort Myers, FL, or Stamford, CT Gartner offers a hybrid, flexible environment, with remote work that allows associates great flexibility to work from home, and opportunities to connect with colleagues for moments that matter on-site. Candidates that apply should be located within a reasonable proximity to one of Gartner's Centers of Excellence office locations. About Gartner IT: Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting-edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome-driven approach to success, and the notion that great ideas can come from anyone on the team. About the role: Gartner seeks a Principal Network Security Engineer to join our Enterprise Information Security Team. You will be responsible for implementing and maintaining a robust security posture across Gartner's diverse technology landscape. Your expertise in security best practices, network security, data protection, and endpoint security will be essential in protecting Gartner's assets and ensuring the confidentiality, integrity, and availability of our information. A Principal Network Security Engineer is a senior-level position that involves overseeing security strategies and initiatives across an organization. This role requires extensive experience and expertise in cybersecurity, as well as the ability to lead teams and influence organizational security policies. What you will do: Collaborate with Leadership on the long-term strategy for network security, partnering with key resources to execute against that strategy. Overseeing security architecture and design for complex systems. Engaging with stakeholders to align security initiatives with business goals. Collaborate and mentor with a small team of associates focused on network security and security automation. Design, implement, and optimize security solutions that align with industry best practices and Gartner's specific needs. Manage and advise on a variety of security tools and platforms both current state and future state (e.g., NGFW firewalls, cloud network security,). Conducting advanced threat modeling and risk assessments. Contribute to a number of measurable strategic goals and priorities demonstrated through a mature metrics framework. Stay abreast of the latest security technologies and trends to identify opportunities for enhancing Gartner's security controls. Collaborate with cross-functional teams to assess security risks, identify risk, prioritize, and develop remediation plans. Participate in security incident response activities, providing technical expertise and leadership. Develop and maintain comprehensive documentation of security processes, procedures, and configurations. Apply expert knowledge to solve complex business/technical issues. Take ownership of assignments and drive them to completion. Take part in shaping the future of our Information Security organization. What you will need: Proficiency in Network security protocols and technologies. Proven experience in implementing and managing modern network security platforms like Zscaler, NGFW Firewalls, or similar (SaaS and Cloud). Experience with Cloud infrastructure (IaaS & PaaS) in Azure or AWS. Experience with Micro-Segmentation and Zero-Trust principals Advanced knowledge of security architecture and design principles. Strategic thinking and the ability to influence organizational change. Experience in deploying NGFW's using Infrastructure as Code (IAC) with automation tool (Terraform, Ansible, Chef, Puppet, etc.). Strong understanding of security principles, common attack vectors, and mitigation strategies. In-depth knowledge of network security, data protection, intrusion detection systems, and Encryption. Prior success in leading complex technology development, managing priorities, concept-to-implementation execution, and delivering market-leading technology solutions. Expertise in threat intelligence and Incident response. Excellent communication skills for effective interaction with technical and business stakeholders. A proactive and adaptable approach to problem-solving, with a focus on continuous improvement. Familiarity with technical security controls, guidelines, and frameworks outlined by standards such as SOC2, ISO 27001, NIST 800-53. Nice to have: Industry certifications (e.g., CISSP, CCSP, CCNP Security, AWS or Azure Security) Experience with Web Application Firewalls (WAF) policies for new and existing web applications. Software engineering skills in languages like Python, C#, Java, .Net, Node Experience with bot architecture and design Preferred skills in Gsuite, Microsoft Office, JIRA, and Confluence. Who you are: Degree in Computer Science, Information Security, or a related field. Excellent communication, collaboration, and interpersonal skills. Strong problem-solving, critical thinking, and analytical abilities. Ability to work independently and collaboratively within a team. Ability to build trusting, meaningful relationships with peers, stakeholders, partners and suppliers. Results-oriented mindset with a focus on delivering high-quality solutions. Detail-oriented with a passion for maintaining a high level of accuracy and documentation. Self-motivated and driven to stay updated with the latest security trends, technologies, and best practices. Ability to adapt to a fast-paced and ever-changing security landscape. Strong commitment to professionalism, ethics, and maintaining the confidentiality of sensitive information. Don't meet every single requirement? We encourage you to apply anyway. You might just be the right candidate for this, or other roles. What you will get: Competitive Compensation Package Ongoing mentorship and apprenticeship; Leadership courses, development programs, technical courses, certification opportunities and more! 20+ PTO days plus holidays and floating holidays in your first year Extensive Medical, Dental and Vision plans Hybrid environment with flexibility, remote work Parental leave Gartner Gives Charity Match Employee Assistance Program (EAP) Employee Stock Purchase Plan Health and wellness related allowance programs 401K with corporate match, immediate vesting Collaborative, team-oriented culture that embraces diversity Professional development and unlimited growth opportunities #LI-Hybrid #LI-TW1 Who are we? At Gartner, Inc. (NYSE:IT), we guide the leaders who shape the world. Our mission relies on expert analysis and bold ideas to deliver actionable, objective insight, helping enterprise leaders and their teams succeed with their mission-critical priorities. Since our founding in 1979, we've grown to more than 21,000 associates globally who support ~14,000 client enterprises in ~90 countries and territories. We do important, interesting and substantive work that matters. That's why we hire associates with the intellectual curiosity, energy and drive to want to make a difference. The bar is unapologetically high. So is the impact you can have here. What makes Gartner a great place to work? Our sustained success creates limitless opportunities for you to grow professionally and flourish personally. We have a vast, virtually untapped market potential ahead of us, providing you with an exciting trajectory long into the future. How far you go is driven by your passion and performance. We hire remarkable people who collaborate and win as a team. Together, our singular, unifying goal is to deliver results for our clients. Our teams are inclusive and composed of individuals from different geographies, cultures, religions, ethnicities, races, genders, sexual orientations, abilities and generations. We invest in great leaders who bring out the best in you and the company, enabling us to multiply our impact and results. This is why, year after year, we are recognized worldwide as a great place to work. What do we offer? Gartner offers world-class benefits, highly competitive compensation and disproportionate rewards for top performers. In our hybrid work environment, we provide the flexibility and support for you to thrive - working virtually when it's productive to do so and getting together with colleagues in a vibrant community that is purposeful, engaging and inspiring. Ready to grow your career with Gartner? Join us. Gartner believes in fair and equitable pay. A reasonable estimate of the base salary range for this role is 128,000 USD - 186,000 USD. Please note that actual salaries may vary within the range, or be above or below the range, based on factors including, but not limited to, education, training, experience, professional achievement, business need, and location. In addition to base salary, employees will participate in either an annual bonus plan based on company and individual performance, or a role-based, uncapped sales incentive plan. Our talent acquisition team will provide the specific opportunity on our bonus or incentive programs to eligible candidates. We also offer market leading benefit programs including generous PTO, a 401k match up to $7,200 per year, the opportunity to purchase company stock at a discount, and more. The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to seek to advance the principles of equal employment opportunity. Gartner is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Company's career webpage as a result of your disability. You may request reasonable accommodations by calling Human Resources at +1 (203) 964-0096 or by sending an email to ApplicantAccommodations@gartner.com. Job Requisition ID:89889 By submitting your information and application, you confirm that you have read and agree to the country or regional recruitment notice linked below applicable to your place of residence. Gartner Applicant Privacy Link: https://jobs.gartner.com/applicant-privacy-policy For efficient navigation through the application, please only use the back button within the application, not the back arrow within your browser.

Posted 30+ days ago

Security Engineer (Dallas Ft Worth Metroplex)-logo
Security Engineer (Dallas Ft Worth Metroplex)
GartnerIrving, TX
Hiring near our Irving, TX Center of Excellence About Gartner IT: Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients. We make a broad organizational impact by delivering cutting-edge technology solutions that power Gartner. Gartner IT values its culture of nonstop innovation, an outcome-driven approach to success, and the notion that great ideas can come from anyone on the team. About the role Gartner information security teams are a group of passionate information security professionals dedicated to Protecting, Detecting, and Responding to threats. Our team is filled with lifelong learners who are consistently researching ways to better defend and stay ahead of the threats of tomorrow. We are a collaborative group, where good ideas come together whether they come from the most experienced or the newest members of the team. We're looking for a well-rounded and motivated Security Engineer to join our Human Cyber Risk & Assessment Team. In this critical role, you'll be instrumental in safeguarding our organization from human-centric cyber threats. You'll leverage your expertise in information security best practices to identify, assess, and mitigate risks associated with human behavior, ensuring the protection of our sensitive data and systems. This is an excellent opportunity for a professional with 3+ years of experience in Information Security who is passionate about proactive security measures and building a strong security posture. What you will do: Conduct comprehensive assessments of human-centric cyber risks, identifying vulnerabilities and potential attack vectors tied to human actors like phishing, social engineering, and insider threats. Design, implement, and manage Data Loss Prevention (DLP) strategies and controls to prevent unauthorized disclosure or exfiltration of sensitive information. You'll also monitor DLP alerts, investigate incidents, and recommend remediation steps. Develop and implement programs to detect, analyze, and mitigate insider risks, including monitoring user behavior and collaborating with relevant stakeholders (e.g., HR, Legal) on incident response. Stay ahead of current attack vectors, trends, and techniques used by threat actors targeting human vulnerabilities, proactively identifying emerging threats and recommending countermeasures. Advocate for and ensure adherence to information security best practices across the organization, especially regarding human behavior and data handling. Configure, monitor, and optimize security tools relevant to human cyber risk. Support during security incidents related to human-centric threats, assisting with investigation, containment, eradication, and recovery efforts. Contribute to the development and delivery of security awareness training programs to educate employees on human cyber risks and best practices. Generate reports on human cyber risk posture, incident metrics, and the effectiveness of security controls, while maintaining accurate documentation of security processes. Collaborate with cross-functional teams, including IT Operations, Legal, HR, and other security teams, to achieve security objectives. What you will need: Bachelor's degree in Computer Science, Information Security, or a related field required. 2+ years of hands-on experience in Information Security, with a focus on human cyber risk, data loss prevention, and insider threat. Strong understanding of information security best practices, frameworks (e.g., NIST, ISO 27001), and regulatory requirements. In-depth knowledge of Data Loss Prevention (DLP) principles, technologies, and implementation strategies. Proven experience with Insider Risk Management methodologies and tools. Familiarity with current attack vectors tied to human actors, including phishing, social engineering, business email compromise (BEC), and malware delivery. Must have: Experience with Proofpoint Email Security platforms. Experience with Microsoft Defender (Endpoint, Identity, 365). Experience with Microsoft Purview for data governance and information protection. Excellent analytical and problem-solving skills with the ability to identify and assess complex security risks. Strong communication skills (written and verbal) with the ability to explain technical concepts to non-technical audiences. Ability to work independently and as part of a collaborative team. Nice to have: Experience with Zscaler ZIA (Zscaler Internet Access). Relevant security certifications (e.g., CISSP, CISM, GSEC, Security+, SSAP). Who you are: A lifelong learner with a desire for continuous personal and professional development. Someone with proven communication, collaboration, and critical thinking skills. Able to build trusting, meaningful relationships with peers, stakeholders, partners, and suppliers. Capable of defining and communicating risk in a business-relevant language to both non-technical and technical audiences. Someone who can apply expert knowledge to solve complex business/technical issues. Don't meet every single requirement? We encourage you to apply anyway. You might just be the right candidate for this, or other roles! What you will get: Competitive compensation. Limitless growth and learning opportunities. Ongoing mentorship and apprenticeship; Leadership courses, development programs, technical courses, certification opportunities and more! A collaborative and positive culture - join a diverse team of professionals that are as smart and driven as you. A chance to make an impact - your work will contribute directly to our strategy. Enjoy the flexibility of working from home and the energy of collaborating with peers in our dynamic offices. 20+ PTO days plus holidays and floating holidays in your first year. Extensive medical, dental insurance and vision plan. 401K with corporate match, immediate vesting. Health-and-wellness-related allowance programs. Parental leave. Tuition reimbursement. Employee Stock Purchase Plan. Employee Assistance Program. Gartner Gives Charity Match. And much more! LI-Hybrid #LI-DC3 Who are we? At Gartner, Inc. (NYSE:IT), we guide the leaders who shape the world. Our mission relies on expert analysis and bold ideas to deliver actionable, objective insight, helping enterprise leaders and their teams succeed with their mission-critical priorities. Since our founding in 1979, we've grown to more than 21,000 associates globally who support ~14,000 client enterprises in ~90 countries and territories. We do important, interesting and substantive work that matters. That's why we hire associates with the intellectual curiosity, energy and drive to want to make a difference. The bar is unapologetically high. So is the impact you can have here. What makes Gartner a great place to work? Our sustained success creates limitless opportunities for you to grow professionally and flourish personally. We have a vast, virtually untapped market potential ahead of us, providing you with an exciting trajectory long into the future. How far you go is driven by your passion and performance. We hire remarkable people who collaborate and win as a team. Together, our singular, unifying goal is to deliver results for our clients. Our teams are inclusive and composed of individuals from different geographies, cultures, religions, ethnicities, races, genders, sexual orientations, abilities and generations. We invest in great leaders who bring out the best in you and the company, enabling us to multiply our impact and results. This is why, year after year, we are recognized worldwide as a great place to work. What do we offer? Gartner offers world-class benefits, highly competitive compensation and disproportionate rewards for top performers. In our hybrid work environment, we provide the flexibility and support for you to thrive - working virtually when it's productive to do so and getting together with colleagues in a vibrant community that is purposeful, engaging and inspiring. Ready to grow your career with Gartner? Join us. Gartner believes in fair and equitable pay. A reasonable estimate of the base salary range for this role is 74,000 USD - 113,000 USD. Please note that actual salaries may vary within the range, or be above or below the range, based on factors including, but not limited to, education, training, experience, professional achievement, business need, and location. In addition to base salary, employees will participate in either an annual bonus plan based on company and individual performance, or a role-based, uncapped sales incentive plan. Our talent acquisition team will provide the specific opportunity on our bonus or incentive programs to eligible candidates. We also offer market leading benefit programs including generous PTO, a 401k match up to $7,200 per year, the opportunity to purchase company stock at a discount, and more. The policy of Gartner is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to seek to advance the principles of equal employment opportunity. Gartner is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Company's career webpage as a result of your disability. You may request reasonable accommodations by calling Human Resources at +1 (203) 964-0096 or by sending an email to ApplicantAccommodations@gartner.com. Job Requisition ID:87462 By submitting your information and application, you confirm that you have read and agree to the country or regional recruitment notice linked below applicable to your place of residence. Gartner Applicant Privacy Link: https://jobs.gartner.com/applicant-privacy-policy For efficient navigation through the application, please only use the back button within the application, not the back arrow within your browser.

Posted 1 week ago

Smart Home Security Technician-logo
Smart Home Security Technician
Safe Streets USAHartford, CT
Our Smart Security Pro's mission is to show our residential customers that they are truly valued as we have a strong emphasis on providing an unparalleled 5-Star experience unmatched in the Smart Security industry. As an SSP, you'll play a pivotal role in what matters most to our customers: enhancing the safety and security of their families and homes. We know what it takes to be successful here at SafeStreets. If you have a passion for making a difference in people's lives, and a winning mindset, we will assist you in creating a seamless transition into a new career. L6 (or higher level) license required The process is simple. There is no cold calling or D2D sales involved. We get your foot in the door by connecting customers to you who are already interested in ADT home security. In-home appointments are scheduled and provided for you by our Inside Sales team. By helping customers review their security options on-site and move forward with a custom home security package designed by you, you will have the opportunity to earn uncapped sales commissions based on how the homeowner decides to protect their home. The best part is you control the process from start to finish, leaving the customer better protected than before you arrived. What do you need to be qualified for this position? As long as you have an L6 or higher license, you'll need nothing more than a passion for customer service, and a desire to help keep others safe and secure. We provide the tools/equipment, paid training, and post-training support you will need. We even hand deliver the customers to you - no need to go searching for your own leads! L6 (or higher level) license required Still not convinced? Our recruiters are standing by right now to talk more in depth about how SafeStreets can change your life! What we Offer: $40-$50/hour $700 monthly vehicle stipend + gas card Uncapped commission structure Company-provided equipment and select tools Company-provided equipment and select tools Remote and independent work environment Ongoing training and professional development opportunities Opportunities for career advancement within a rapidly growing organization Scheduling flexibility Medical/Dental/Vision/Life Insurance/401K The Responsibilities: Helping homeowners create customized Smart Security solutions for their personal needs 5-star Customer interaction - every day is a new opportunity; you'll be the first face-to-face contact our customers have with SafeStreets! Customized installation, troubleshooting, and demonstration of ADT-monitored security systems Qualifications: Entrepreneurial and career-oriented mindset Excellent communication, negotiation, and interpersonal skills Reliable vehicle and valid driver's license Proof of vehicle insurance (100/300/100 minimum) Smartphone/tablet SafeStreets values the safety of our employees and customers. That is why we are committed to providing personal protective equipment (PPE) or stipends to our technicians to further ensure their safety. This job entails meeting certain physical requirements, including the ability to work above head level, carry loads of 30-50 pounds (such as equipment boxes and ladders), operate power tools, and navigate confined spaces like attics and crawl spaces. Safe Streets is an equal opportunity employer. All aspects of employment including the decision to hire, promote, discipline, or terminate, will be based on merit, competence, performance, and business needs. Safe Streets does not discriminate on the basis of race, color, religion, sex (including pregnancy and gender identity), marital status, age, national origin, sexual orientation, disability, genetic information, military service, or any other status protected under federal, state, or local law. Applicants have rights under Federal Employment Laws. FMLA - https://www.dol.gov/agencies/whd/fmla EEO- https://www.eeoc.gov/history/equal-employment-opportunity-act-1972 EPPA - https://www.dol.gov/agencies/whd/polygraph

Posted 30+ days ago

Software Engineer, Security-logo
Software Engineer, Security
Glean Technologies, Inc.Palo Alto, CA
About Glean We're on a mission to make knowledge work faster and more humane. We believe that AI will fundamentally transform how people work. In the future, everyone will work in tandem with expert AI assistants who find knowledge, create and synthesize information, and execute work. These assistants will free people up to focus on the higher-level, creative aspects of their work. We're building a system of intelligence for every company in the world. On the surface, you can think of it as Google + ChatGPT for the enterprise. Under the hood, our platform is the connective tissue between AI and knowledge. It brings all of a company's knowledge together, understands it at a deep level, provides industry-leading search relevance over it, and connects it to generative AI agents and applications. Glean was founded by a seasoned team of former Google search and Facebook engineers who saw a need in the enterprise space for their technical depth and passion for AI. We're a diverse team of curious and creative people who want to help each other get big things done-so we can help other teams do the same. We're backed by some of the Valley's leading venture capitalists-including Sequoia, Kleiner Perkins, Lightspeed, and General Catalyst-and have assembled a world-class team with senior leadership experience at Google, Slack, Facebook, Dropbox, Rubrik, Uber, Intercom, Pinterest, Palantir, and others. Role Glean is seeking a talented security-focused software engineer to join our growing team. In this role, you will play a critical role in developing and maintaining the security foundation of our platform. You will be responsible for designing, implementing, and testing security features across various software components. What you will do and achieve Design, develop, and maintain secure software for core platform functionalities, particularly focusing on: Authentication and authorization systems Secure communication channels between services (e.g., API security) Secure data storage and access controls Collaborate with cross-functional teams (engineering, product) to integrate security best practices throughout the development lifecycle. Stay up-to-date on the latest security threats, vulnerabilities, and mitigation strategies. Conduct security code reviews and identify potential security risks in existing codebases. Develop and implement automated security testing procedures. Respond to security incidents and participate in incident response procedures. Continuously improve the platform's security posture by identifying and implementing security enhancements. Document security processes, procedures, and best practices. Who you are BA/BS in computer science, or related degree, MS a strong plus Minimum 5+ years of experience in software development with a strong focus on security aspects Proven experience in designing and implementing secure authentication and authorization systems In-depth understanding of secure coding principles and best practices (e.g., OWASP Top 10) Experience with secure communication protocols (e.g., TLS/SSL) Familiarity with security testing tools and methodologies (e.g., static code analysis, penetration testing) Excellent problem-solving and analytical skills Strong communication and collaboration skills Ability to work independently and as part of a cross-functional team Passion for security and a commitment to building secure and reliable systems Key knowledge and skills Thrive in a customer-focused, tight-nit and cross-functional environment - being a team player and willing to take on whatever is most impactful for the company is a must. A proactive and positive attitude to lead, learn, troubleshoot and take ownership of both small tasks and large features. An interest/desire to learn and own various aspects of security. Strong coding skills (for example in Go/Python/Java/C++ etc) with an emphasis on designing for reliability and scale, and writing well-tested components. Experience with cloud security principles and tools (AWS Security, GCP Security) Experience with container security (Docker Security, Kubernetes Security) Benefits Competitive compensation Medical, Vision and Dental coverage Flexible work environment and time-off policy 401k Company events A home office improvement stipend when you first join Annual education stipend Wellness stipend Healthy lunches and dinners provided daily For California based applicants: The standard base salary range for this position is $185,000 - $280,000 annually. Compensation offered will be determined by factors such as location, level, job-related knowledge, skills, and experience. Certain roles may be eligible for variable compensation, equity, and benefits. We are a diverse bunch of people and we want to continue to attract and retain a diverse range of people into our organization. We're committed to an inclusive and diverse company. We do not discriminate based on gender, ethnicity, sexual orientation, religion, civil or family status, age, disability, or race.

Posted 30+ days ago

Utility Officer-Security Guard (Must Have Open Availability)-logo
Utility Officer-Security Guard (Must Have Open Availability)
Walden SecurityKnoxville, TN
#securityofficer A Utilities Officer covers medical leaves, sicknesses, vacations and open posts that do not have an officer assigned. The utility officer must have open availability and be able to work weekends and holidays. Candidate must have a valid drivers license and a driving record acceptable by Walden Security to be an authorized driver of company vehicles. Employee will need to have a valid drivers license and clean driving record (No Dui, multiple accidents or habitual offender-MVR will be checked). Candidate must be a licensed/legal driver, at least 25 years old with an acceptable driving record to be covered under the Walden Security car insurance Utility officers will get an unarmed security license and be paid $17.00 regardless of the post they are assigned. The scheduled is release 1 week prior with exceptions made in emergency situations. Duties may include the following; other duties may be assigned by the Operations Manager or Branch General Manager: Trained and qualified to work multiple posts, in case of call-offs or vacations; Patrols, periodically, buildings and grounds of industrial plant or commercial establishment, docks, logging camp area, or work site; Patrols lobbies, corridors, and public rooms, confers with management, interviews guests and employees, and interrogates persons to detect infringements and investigate disturbances, complaints, thefts, vandalisms, and accidents; Patrols public areas to detect fires, unsafe conditions, and missing or inoperative safety equipment; Examines doors, windows, and gates to determine that they are secure; Performs and sets thermostatic controls to maintain specified temperature in buildings or cold storage rooms; Registers at watch stations to record time of inspection trips; Inspects assigned areas and records data such as property damage, unusual occurrences, and malfunctioning of machinery or equipment, for use of supervisory staff; Watches for and reports irregularities such as fire hazards, leaking water pipes, and security doors left unlocked; Warns violators of rule infractions, such as loitering, smoking, or carrying forbidden articles, and apprehends or expels persons engaging in suspicious or criminal acts; Notifies staff of presence of persons with questionable reputations; Permits authorized persons and regulate vehicle/pedestrian traffic at plant entrance to maintain orderly flow. Drives radio equipped car to through client's establishment, check alarms and locates sources of alarm; Sounds alarm or calls police or fire department by telephone in case of fire or presence of unauthorized persons; Assists management and enforcement officers in emergency situations. Apprehends unauthorized persons found on property, using armed force if necessary, and releases them to custody of authorities. Contacts supervisor by radio or telephone to report irregularities and obtain further instructions. Writes investigation and automobile usage reports. This job has no supervisory responsibilities. Utility (Flex) Officers are subject to supervision from Branch/Account Managers, Post Supervisors and Field Supervisors To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Must be available to work all schedules and shifts and be available to work on short notice for call-offs. High school diploma or general education degree (GED); or one to three months related experience and/or training; or equivalent combination of education and experience. Where applicable: State Security Officer License; Certification in the use of weapons, State Armed License if required; Valid Drivers' License, if in driving position; CPR/AED/First Aid Certification may be needed. While performing the duties of this Job, the employee is regularly required to stand; walk; sit and talk or hear. The employee is frequently required to use hands to finger, handle, or feel. The employee is occasionally required to reach with hands and arms; climb or balance and stoop, kneel, crouch, or crawl. The employee must occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this job include close vision, distance vision, depth perception, ability to adjust focus and ability to see and distinguish basic colors Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.

Posted 2 days ago

Staff Security Engineer - Threat Defense & Automation-logo
Staff Security Engineer - Threat Defense & Automation
Proofpoint IncSunnyvale, CA
It's fun to work in a company where people truly BELIEVE in what they're doing! We're committed to bringing passion and customer focus to the business. About Proofpoint At Proofpoint, we are committed to protecting organizations and individuals from cyber threats through innovative security solutions. Our mission is to safeguard our customers from advanced threats, phishing attacks, and data breaches with cutting-edge technology and a global team of security experts. Role Overview We are seeking an experienced Cyber Incident Response Security Engineer to join our global security team in Sunnyvale, CA and Draper, UT. This is a critical role within our Cyber Incident Response Team (CIRT), responsible for managing and responding to security incidents across our global operations. You will serve as an escalation point for our 24/7 Security Operations Center (SOC) and play a key role in the automation, orchestration, and enhancement of our security incident response capabilities. This position requires deep expertise in cybersecurity, strong analytical skills, and the ability to work collaboratively in a fast-paced environment. If you thrive in a role where you can actively defend against cyber threats, conduct threat hunting, and drive security automation, this opportunity is for you. Key Responsibilities: Incident Response & Escalation: Act as the Level 3 escalation point for high-severity security incidents within the global 24/7 SOC. Lead complex investigations into advanced cyber threats, including malware outbreaks, targeted attacks, and persistent threats. Provide expert-level guidance on containment, mitigation, and remediation strategies. Threat Hunting & Threat Assessment: Proactively hunt for hidden threats within enterprise networks using threat intelligence and behavioral analytics. Develop and refine threat detection rules to improve SOC visibility. Assess emerging threats and provide actionable recommendations to enhance security posture. Security Automation & Orchestration: Design and implement automated workflows to enhance security event triage and response. Leverage SOAR (Security Orchestration, Automation, and Response) platforms to streamline incident response. Work with SIEM (Security Information and Event Management) tools to optimize log ingestion and alerting mechanisms. Security Tooling & Continuous Improvement: Collaborate with security architects and engineers to enhance detection and response capabilities. Perform root cause analysis on security incidents and recommend improvements to security controls. Stay updated on industry best practices and evolving attack techniques to ensure effective defenses. Required Qualifications & Experience Extensive hands-on experience in Cybersecurity Incident Response or Security Operations. Must be a US Citizen. Strong background in SOC operations, SIEM, threat intelligence, and digital forensics. Expertise in investigating malware, phishing, web attacks, insider threats, and advanced persistent threats (APTs). Experience working with security automation and orchestration tools (SOAR). Familiarity with scripting languages such as Python, PowerShell, or Bash for security automation. Strong understanding of MITRE ATT&CK framework, TTPs (Tactics, Techniques, and Procedures), and cyber kill chain. Hands-on experience with cloud security (AWS, Azure, GCP) is a plus. Certifications such as GCIH, GCFA, CISSP, CISM, or OSCP are highly desirable. Ability to work in a fast-paced, global environment and collaborate with cross-functional teams. Why Proofpoint Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the key to our success. We're a customer-focused and a driven-to-win organization with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly 'culture-add', and we strongly encourage people from all walks of life to apply. We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint! #LifeAtProofpoint #LI-AN2 If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us! Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option. Base Pay Ranges: SF Bay Area, New York City Metro Area: Base Pay Range: 182,175.00 - 267,190.00 USD California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska: Base Pay Range: 146,550.00 - 214,940.00 USD All other cities and states excluding those listed above: Base Pay Range: 132,975.00 - 195,030.00 USD

Posted 3 weeks ago

Staff Engineer - Network Security-logo
Staff Engineer - Network Security
Early Warning Services, LLCChicago, IL
At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses. Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment. Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship. The Staff Engineer- Network Security plays a pivotal role in designing, implementing, and maintaining enterprise network security infrastructure, with a focus on proxy and data loss prevention (DLP) solutions. This role leads control testing to ensure adherence to industry standards while working with audit and compliance teams to meet regulatory requirements. Essential Functions: Develops, implements, and optimizes proxy and DLP solutions to protect sensitive data and ensure secure network access. Serves as the subject matter expert (SME) for proxy and DLP solutions, providing strategic and technical guidance to engineering teams, stakeholders, and leadership. Deploys and integrates security solutions from vendors such as Microsoft, Palo Alto, and Netskope into existing and new network environments. Proactively collaborates with audit and compliance teams to ensure all proxy and DLP solutions comply with regulatory requirements (e.g., PCI DSS, SOX, NYDFS). Designs, implements, and tests security controls to meet compliance standards, ensuring alignment with governance policies. Oversees the health, performance, and reliability of proxy and DLP systems, proactively identifying and resolving issues. Consults with security and governance teams to define, implement, and enforce security policies and configurations. Advises the security operations team in investigating and responding to network security incidents related to proxy and DLP technologies. Stays abreast of emerging trends in network security and recommends new tools or processes to enhance the organization's security posture. Develops and maintains detailed technical documentation, including architecture diagrams, operational procedures, control test results, and troubleshooting guides. Minimum Qualifications: Education and/or experience typically obtained through a bachelor's degree in computer science, Information Technology, or related technical field. 10+ years' experience in network security engineering, with at least 5 years of experience in proxy and DLP solutions. Experience working in or with financial institutions, with a strong understanding of regulatory and compliance requirements. Hands-on experience with Microsoft Defender, Palo Alto Prisma Access, and Netskope solutions. Proven track record of collaborating with audit and compliance teams and executing control testing. Deep knowledge of proxy protocols (HTTP/HTTPS, SOCKS) and DLP principles. Expertise in firewall configuration, secure web gateways, and SASE architecture. Strong scripting skills (PowerShell, Python, etc.) for automation and orchestration. Familiarity with Zero Trust frameworks and architectures. Excellent problem-solving and analytical skills. Effective communication and stakeholder management skills. Background and drug screen. Preferred Qualifications Certifications such as Certified Information Systems Security (CISSP), Palo Alto PCNSE, Microsoft SC-200, or Netskope Certified Cloud Security Administrator (NCCSA) or similar. Experience in environments transitioning from traditional proxy services to cloud-based solutions. Knowledge of compliance standards such as PCI DSS, NIST, ISO 27001, and NYDFS. Physical Requirements: Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers. Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation. The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor. The base pay scale for this position in: Phoenix, AZ/ Chicago, IL in USD per year is: $175,000 - $215,000. New York, NY/ San Francisco, CA in USD per year is: $190,000 - $230,000. Additionally, candidates are eligible for a discretionary incentive plan and benefits. This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes. Some of the Ways We Prioritize Your Health and Happiness Healthcare Coverage- Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses. 401(k) Retirement Plan- Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility. Paid Time Off- Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day. 12 weeks of Paid Parental Leave Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work. And SO much more! We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process! Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees. Early Warning Services LLC is a proud participant in E-Verify, a federal program to help ensure a legal and authorized workforce. As part of our hiring process, we electronically verify the employment eligibility of all new hires through E-Verify. For more information on your rights and responsibilities under E-Verify please visit Home | E-Verify.

Posted 30+ days ago

Security EMT-logo
Security EMT
Muckleshoot CasinoAuburn, WA
WE'RE DOUBLING DOWN ON YOUR FUTURE Competitive salary at $31.26/hr. with discretionary performance bonuses 2x a year! Fully paid medical, prescription drug, dental, and vision coverage for you and competitive premiums for your dependents. Complimentary meals and covered team member parking. Employer-paid life insurance, long-term disability, and accidental death and dismemberment coverage. Flexible Spending Account options for health care expenses. Company-paid gaming licenses (Class A & Class B) Variety of additional voluntary benefits and retirement plans. WHAT YOU'LL DO Be the face of MCR for new hires and team members; exemplify MCR's values and set a great example by always demonstrating excellent guest service and professionalism. Assess and evaluate to determine required care. If necessary, arrange for dispatching of rescue unites (Ambulance, helicopter, etc.). Maintain confidentiality and perform all care with consideration to the guest and or team members. Conduct and maintain a safe, clean, and well-stocked environment. Daily inventory and inspections of all equipment. Provide basic health services for guests and team members until emergency response arrives. Provide aid with CPR and First Aid training as needed based on initial evaluation of each situation. Maintain a written log of incidents involving guests or team members; prepare additional detailed reports, as may be required. Adhere to health, fire, and safety regulations, identifies potential safety hazards and reports such to the appropriate personnel. Maintain a current awareness of facilities Disaster Plans and responds appropriately. Remain current and up to date with training concerning emergency medicine and basic life support techniques. Observe and respond to emergencies, incidents, procedure violations, criminal, and other activities as they occur. Document and prepare accurate and complete written records and report in response to incidents, procedure violations, or criminal activities as responded to, observed and/or witnessed. Maintain a neat, clean, and professional appearance. Creates, maintains, and facilitates a positive and safe work environment; promotes positive team member relations and reports issues to the appropriate personnel. Perform Security Officer duties, as assigned. WHAT YOU'LL BRING WA State EMT-B Certification. Hold and maintain a valid WA State Driver License. Must possess and maintain current CPR Certification. Minimum of 18 months current experience in EMT Role. Formal security or law enforcement training, schooling or certification preferred. Previous security, military, or civilian police officer training and/or experience preferred. HOW YOU'LL BE SUCCESSFUL Knowledge of emergency medical procedures, first aid, CPR, and basic life support techniques. Knowledge of security and risk policies and procedures. Knowledge of health & safety standards, and safety regulations as required. Skilled in guest service, problem solving, conflict management and report writing skills. Ability to work in a fast-paced, busy, and somewhat stressful environment and maintain physical stamina, positive mental attitude while dealing effectively with guests, management, team members, and outside contacts while working under pressure and meeting deadlines. Ability to communicate effectively in a positive/upbeat fashion utilizing English; both in oral and written form. Read, write, and speak English fluently. Ability to provide clear verbal and written instructions, prepare reports, and documents necessary to perform tasks. Ability to investigate incidents, interview witnesses and draft legible, factual reports. Ability to physically access all areas of the property. Ability to utilize portable radio or cell phone to be in constant contact for the Department as needed. WHAT TO EXPECT Availability- Ability to work different shifts, holidays, weekends, and nights to support a 24/7 operation. Physical- Ability to maneuver in all areas of casino, ascent/descent from stairs, frequent standing, walking, sitting, reaching, stooping, kneeling, or crouching, and/or prolonged periods of time focusing on tasks. Ability to lift at least 75 lbs. May regularly need to lift/ move, push or pull up material or boxes necessary to the job function, with or without assistance. Environment- Exposure to environmental tobacco smoke (ETS) while working and traversing on the gaming floor. MISSION Our mission is to provide economic stability for our community by creating unforgettable entertainment experiences by inspired team members delivering exceptional guest experiences. VISION We exist to create unforgettable entertainment experiences! VALUES Wisdom: Learn, Share, Grow Respect: Earn it, Show it Integrity: Earn Trust Through Honesty Fun: Bring Smiles to Everyone

Posted 30+ days ago

Sr. Engineer, Cybersecurity (Application Security)-logo
Sr. Engineer, Cybersecurity (Application Security)
National Life GroupAddison, TX
Sr. Engineer, Cybersecurity (Application Security) Summary: Are you a seasoned Senior Application Security Engineer who gets excited by the challenge of securing complex systems against emerging threats? Do you love diving deep into code to find vulnerabilities and crafting solutions that strengthen application defenses? If so, we are looking for you! As a Senior Application Security Engineer, you will play a pivotal role in designing and implementing security controls to protect our applications. Leveraging your extensive hands-on experience with secure coding practices and application security tools, you will develop and enforce policies, procedures, and controls that protect our software from ever-evolving cyber threats. Working closely with cross-functional teams, you will ensure our applications meet the highest standards of security and compliance while fostering a culture of secure software development. In this role, you will tackle exciting challenges that push you to stay ahead of the curve in application security. You will have access to the latest tools and technologies and the opportunity to make a tangible impact on the security posture of our software systems. If you are passionate about application security and love solving complex technical problems, we want to hear from you! Join us and be a key part of shaping the future of secure software at National Life Group. Key Responsibilities: Collaborate with IT leadership to align and support the execution of the Application Security program's vision, strategy, and governance, ensuring it meets organizational objectives. Collaborate with IT teams to enhance the software security program by defining, documenting, and communicating security requirements within the SDLC. This may include integrating Software Composition Analysis (SCA), generating Software Bill of Materials (SBOM), and implementing comprehensive dependency management, ensuring alignment with industry best practices. Work with stakeholders to automate continuous security assessments (web and mobile applications), manage tool implementation, identify critical vulnerabilities, and ensure a streamlined remediation process, minimizing security risk in the development lifecycle. Enhance security reporting capabilities by developing metrics-driven dashboards and reports that communicate current risk exposures to leadership and highlight security improvements, including prioritized remediation and trend analysis. Conduct detailed software, security code, design, and architecture reviews to assess risks, enforce secure coding standards, influence architectural decisions, and ensure potential security issues are identified and addressed prior to production deployments. Lead threat modeling and security risk analysis across client-side and server-side applications. Provide actionable insights to development teams and security leadership, supporting risk-based decision-making process. Collaborate with IT leadership and vendor partners to define and deliver application security training and awareness programs, tailored to development teams, focused on secure coding practices, and reducing vulnerabilities in production. Oversee the governance of application security exceptions, ensuring all requests for deviations from security policies are evaluated based on a thorough risk assessment and documented with appropriate approvals. Maintain an up-to-date knowledge of emerging security threats, vulnerabilities, and best practices, and proactively adjust the organization's security posture to mitigate risks. This includes evaluating new security tools, practices, and frameworks for adoption where appropriate. Promote a culture of security by collaborating with security and IT teams, advocating for secure-by-design principles, and developing reusable security code components that can be integrated into projects where applicable. Job Requirements: Bachelor's degree in computer science, Information Security, or a related field. A minimum of 5 years of experience in software development and/or software design, with hands-on coding experience in .NET, C#, Java, JavaScript and/or Python. A minimum of 3 years of progressive experience in application security, with a demonstrated history of leading secure coding practices. CISSP or CSSLP certification preferred. Experience in designing and implementing security solutions for cloud-based technologies and APIs. Demonstrated ability to translate vulnerability assessments and reports into prioritized, actionable tasks for development teams, ensuring that remediation efforts are aligned with risk assessments to address the most critical issues first. Extensive experience with security assessment tools such as SAST, DAST, SCA, and fuzz testing, paired with a deep awareness of their strengths and limitations. Thorough knowledge of OWASP Top 10, CWE 25, and data protection standards. Strong analytical and problem-solving skills, with the ability to react quickly and effectively to production issues. Excellent communication and presentation skills, with the ability to convey complex ideas in a clear and collaborative manner. Proven ability to manage multiple priorities in a dynamic, fast-paced environment, effectively navigating ambiguity while consistently meeting deadlines. Demonstrated leadership skills, with a passion for mentoring, coaching, and developing teams. Strong relationship-building skills, with the ability to engage stakeholders at all levels, including senior leadership. A proactive, self-motivated attitude with a clear passion for cybersecurity and servant leadership values. The base compensation range represents the low and high end of the range for this position. Actual compensation will vary and may be above or below the range based on various factors including but not limited to qualifications, skills, competencies, location, and experience. The range listed is just one component of our total compensation package for employees. Other rewards may include an annual bonus, quarterly bonuses, commissions, and other long-term incentive compensation, depending on the position. National Life offers a competitive total rewards package which includes: a 401(k) retirement plan match; medical, dental, and vision insurance; a company funded wellness account for director and below employees; 10 paid holidays; a generous paid time off plan (22 days of combined time-off for non-exempt employees and exempt employees have discretion in managing their time, including scheduling time off in the normal course of business, but in no event will exempt employees receive less sick time than required by state or local law); 6 weeks of paid parental leave; and 6 weeks of paid family leave after a year of full-time employment. National Life is accepting applications for this role on an ongoing basis and the role remains open until filled. National Life Group is a trade name of National Life Insurance Company, Montpelier, VT - founded in 1848, Life Insurance Company of the Southwest, Addison, TX - chartered in 1955, and their affiliates. Each company of National Life Group is solely responsible for its own financial condition and contractual obligations. Life Insurance Company of the Southwest is not an authorized insurer in New York and does not conduct insurance business in New York. Equity Services, Inc., Member FINRA/SIPC, is a Broker/Dealer and Registered Investment Adviser affiliate of National Life Insurance Company. All other entities are independent of the companies of National Life Group. National Life Group 1 National Life Dr Montpelier, VT 05604 Social Media Policy Site Disclosure and Privacy Policy

Posted 1 week ago

Prior Law Enforcement - Court Security Officer, Portland ME-logo
Prior Law Enforcement - Court Security Officer, Portland ME
Walden SecurityPortland, ME
Are you looking for a part-time position? Walden Security is currently recruiting experienced Court Security Officers(CSO). CSOs will provide armed security to courthouses under the USMS contract. Essential Duties and Responsibilities: Includes the following and other duties may be assigned: Perform entrance control: Enforce the District's entry and identification system which includes operating security screening equipment to detect weapons, contraband, and prohibited items, checking items such as handbags, briefcases, computers, packages, baby carriages, wheelchairs, etc. Perform roving patrol: Patrol court facilities and grounds of the facility in accordance with applicable post orders. Perform stationary post assignments: Stand guard at stationary posts which include (but not limited to) monitoring closed-circuit television, duress alarm systems and other security equipment, courtrooms, judge chambers, and jury rooms. Perform escort duties: When directed, provide armed escort services for judges, court personnel, jurors, and other designated individuals. Perform garage parking and pedestrian control: Where applicable, direct traffic and control lights on court facility properties, as described in the post orders and/or standard operating procedures. Enforce law and order: Enforce federal law while in the performance of assigned duties. This includes (but not limited to) detaining any person attempting to gain unauthorized access to Government property, or a court proceeding(s), or attempting to commit acts that imperil the safety and security of Government employees, property, and the public. Prepare reports and records: Prepare various reports and records regarding contract performance issues, such as labor hours worked, accidents, fire, bomb threats, unusual incidents, or unlawful acts that occurred within the court facility area. Court attendance: Responsible for securing unattended courtrooms, an inspection of courtrooms prior to a proceeding, testing of security devices, and other duties concerning security of the court area. Preserve order: Responsible for providing security presence in the courtroom, enforcing federal law and judicial orders within the courtroom, enforcing local court rules regarding prohibited items, and providing protection to court proceedings as circumstances dictate. Requirements Education and/or Experience: High school diploma or general education degree (GED). At least three (3) calendar years of verifiable experience as a certified law enforcement officer or its military equivalency (Master-at-Arms, CGPD, Security Forces Specialist, etc.); all three (3) years must have occurred within the last seven (7) years. The experience must have included general arrest authority. Language Skills: Must have the ability to read, write, speak, and understand English. Must possess the ability to understand, explain, interpret, and apply rules, regulations, directives, and procedures. Certificates, Licenses, Registrations: Must have a valid driver's license from state of residency and a safe driving record for the past five years; Must receive clearance from the Department of Justice. Must have completed or graduated from certified Federal, state, county, local or military law enforcement training academy and able to provide certification as proof. Other Qualifications: Must be at least 21 years of age; Ability to pass a pre-employment drug screen and criminal background check. Physical Demands: Must meet medical standards as specified by the United States Marshal Service (USMS); The physical demands are based on the contract and must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws. EOE/AAP/Minorities/Females/Vet/Disabled VEVRAA Federal Contractor #CourtSecurity #PriorLawEnforcement #FederalServices #WaldenWay

Posted 3 weeks ago

Manager, Global Security Operations Center-logo
Manager, Global Security Operations Center
MarvellSanta Clara, CA
About Marvell Marvell's semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, automotive, and carrier architectures, our innovative technology is enabling new possibilities. At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead. Your Team, Your Impact Join Marvell Technology's Global Physical Security team, where we are dedicated to safeguarding our employees, assets, and operations worldwide. As the Manager of the Global Security Operations Center, you will lead a team responsible for maintaining a risk informed, secure environment that enables Marvell to innovate and excel in the semiconductor industry. Your leadership will be pivotal in shaping and implementing security strategies that identify risks, collate information and deliver intelligence that allows our security teams to reduce risk and best protect our people, assets and brand to support our business objectives. What You Can Expect Dynamic fast paced, supportive growth environment Focus on developing a world class GSOC in support of supporting our business Incident Supervision: Lead response efforts during security incidents, including unauthorized access attempts and natural disasters, ensuring swift and effective resolution to protect personnel and assets. Threat Examination: Conduct comprehensive threat analyses and risk assessments to identify vulnerabilities, and develop mitigation strategies to enhance our security posture. Security Policy Implementation: Develop and enforce security procedures to ensure compliance with industry standards and safeguard company assets and personnel. Technology Integration: Oversee the integration and management of security technologies, such as access control systems, intelligence tools, situational awareness tools and surveillance platforms, to maintain a robust awareness infrastructure. 24/7 Surveillance and Monitoring: Ensure continuous monitoring of intelligenc feeds, facilties and security systems, surveillance cameras, and alarms to detect and respond to potential threats promptly. Team Management: Lead and mentor a team of security professionals, providing support and training to foster development and maintain high operational standards. Cross-Organizational Collaboration: Collaborate with various departments to address security threats, ensuring a unified and effective approach to organizational security supporting business objectives. Report Preparation and Filing: Prepare detailed reports on security incidents and maintain accurate records for compliance and analysis purposes. Policy Enforcement and Updates: Regularly review and update policies and procedures for the Global Security Operations Center (GSOC) to adapt to evolving security challenges. Risk Assessment and Mitigation: Conduct regular risk assessments, advise on and implement mitigation strategies to proactively address potential security threats. Access Permission Management: Manage access permissions for end users, ensuring adherence to security protocols and minimizing unauthorized access risks. Travel Tracking: Maintain awareness of employee global travel and surrounding incidents that may impact them. Mass Communication: Send awareness and status checks on risks impacting employees and sites. Executive Protection Support: Provide tracking and operational support to executive protection as needed. Global Incident awareness: Maintain awareness of global incidents and events. What We're Looking For Incident Tracking & Response Expertise: Extensive experience in managing and coordinating responses to security incidents, including unauthorized access attempts and natural disasters. Team Leadership: Proven ability to lead and supervise a team of security professionals, providing mentorship and training to ensure high performance. Risk Management Skills: Strong aptitude for risk assessment and mitigation strategies to identify and address potential security threats effectively. Communication Proficiency: Excellent communication skills to interact with various stakeholders, present ideas clearly, and provide precise instructions during incidents and collate data in succint threat and post incident reports. Security Systems Knowledge: In-depth understanding of security systems and technologies, including surveillance cameras, access control, and intrusion detection tools, situational awareness tools, OSINT research and other risk intelligence platforms. Educational Background: Bachelor's degree in Information Technology, Computer Science, or a related field. Experience: A minimum of 8 years of relevant work experience, with at least 4 years in a supervisory role within security operations. Expected Base Pay Range (USD) 93,900 - 140,700, $ per annum The successful candidate's starting base pay will be determined based on job-related skills, experience, qualifications, work location and market conditions. The expected base pay range for this role may be modified based on market conditions. Additional Compensation and Benefit Elements At Marvell, we offer a total compensation package with a base, bonus and equity.Health and financial wellbeing are part of the package. That means flexible time off, 401k, plus a year-end shutdown, floating holidays, paid time off to volunteer. Have a question about our benefits packages - health or financial? Ask your recruiter during the interview process. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status. Any applicant who requires a reasonable accommodation during the selection process should contact Marvell HR Helpdesk at TAOps@marvell.com. #LI-JS22

Posted 30+ days ago

Anduril Industries logo
Senior Software Engineer - Platform Security
Anduril IndustriesSeattle, WA
Apply

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

Anduril Industries is a defense technology company with a mission to transform U.S. and allied military capabilities with advanced technology. By bringing the expertise, technology, and business model of the 21st century's most innovative companies to the defense industry, Anduril is changing how military systems are designed, built and sold. Anduril's family of systems is powered by Lattice OS, an AI-powered operating system that turns thousands of data streams into a realtime, 3D command and control center. As the world enters an era of strategic competition, Anduril is committed to bringing cutting-edge autonomy, AI, computer vision, sensor fusion, and networking technology to the military in months, not years.

ABOUT THE TEAM

The Lattice Foundations organization is responsible for enabling Anduril's software products to reach a new standard of software excellence. We build tools, operate services, define processes, and develop frameworks to allow Anduril's engineers and operators to execute at all stages of the software development lifecycle with efficiency, quality, and delight. We adapt industry best practices to the complexities of Anduril's domain, develop new systems when we can improve on the state of the art, and integrate it all into a unitary foundation underlying Anduril's software development.

The Platform Security team within Lattice Foundations is responsible for the security of the common software platform. We ensure that the platform architecture meets the security need, that the platform contains an appropriate set of well-designed security features, and that the software platform team has a strong security posture both for the development of its own components and for the management of third party dependencies. Platform Security helps other teams at Anduril securely integrate the software platform into their products.

ABOUT THE JOB

We are looking for an experienced security engineer and builder to join our rapidly expanding team. In this role, you'll design new security features and propose improvements to the security of Anduril's common software platform. You will lead the implementation of these designs, working across the stack to deliver production-quality code that meets the challenging requirements of our customers.

Collaboration is key; you'll review designs from other teams to identify potential security problems and work closely with them to agree on effective solutions. You'll also collaborate closely with teams across the company to improve Anduril's security posture.

If you're passionate about building things that improve security and if you enjoy both the breadth that comes from working on large systems and the technical depth that is needed to create secure foundations, then this may be the position for you.

WHAT YOU'LL DO

  • Lead the design of new security features and of security improvements to common platform services. Our scope is broad, with example domains ranging from operating system hardening, through authentication, to distributed protocols
  • Implement your designs, balancing security, performance, and functional requirements. You may need to work at all levels of the stack, from integrating secure hardware to developing and deploying applications
  • Review design proposals from other teams, identifying potential security issues and proposing solutions
  • Perform threat modeling and analyze existing systems to identify vulnerabilities
  • Provide security advice to engineering teams during their development, helping raise security awareness
  • Collaborate closely with other security practitioners and the software platform team, supporting efforts to improve Anduril's security posture while delivering on our commitments to customers

REQUIRED QUALIFICATIONS

  • 3+ years experience designing and developing software
  • Experience designing secure protocols and/or APIs
  • Proficient in at least one of the following: C++, Rust, Golang
  • 2+ years experience securing complex systems
  • Strong working knowledge of cryptographic primitives and best practices, including key management and certificates
  • Experience performing security reviews and threat modeling
  • Strong written and verbal communication skills; proven ability to negotiate and reach consensus
  • Must be a U.S. Person due to required access to U.S. export controlled information or facilities

PREFERRED QUALIFICATIONS

  • Proficient in at two or more of the following: C++, Rust, Golang
  • Experience integrating secure hardware, such as TPM or TEE
  • Strong working knowledge of operating system security
  • Experience securing Kubernetes deployments

US Salary Range

$168,000-$252,000 USD

The salary range for this role is an estimate based on a wide range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations. Highly competitive equity grants are included in the majority of full time offers; and are considered part of Anduril's total compensation package. Additionally, Anduril offers top-tier benefits for full-time employees, including:

  • Platinum Healthcare Benefits: For U.S. roles, we offer comprehensive medical, dental, and vision plans at little to no cost to you.

  • For UK roles, Private Medical Insurance (PMI): Anduril will cover the full cost of the insurance premium for an employee and dependents.

  • For AUS roles, Private health plan through Bupa: Coverage is fully subsidized by Anduril.

  • Basic Life/AD&D and long-term disability insurance 100% covered by Anduril, plus the option to purchase additional life insurance for you and your dependents.

  • Extremely generous company holiday calendar including a holiday hiatus in December, and highly competitive PTO plans.

  • 16 weeks of paid Caregiver & Wellness Leave to care for a family member, bond with your baby, or tend to your own medical condition.

  • Family Planning & Parenting Support: Fertility (eg, IVF, preservation), adoption, and gestational carrier coverage with additional benefits and resources to provide support from planning to parenting.

  • Mental Health Resources: We provide free mental health resources 24/7 including therapy, life coaching, and more. Additional work-life services, such as free legal and financial support, available to you as well.

  • A professional development stipend is available to all Andurilians.

  • Daily Meals and Provisions: For many of our offices this means breakfast, lunch and fully stocked micro-kitchens.

  • Company-funded commuter benefits available based on your region.

  • Relocation assistance (depending on role eligibility).

  • 401(k) retirement savings plan - both a traditional and Roth 401(k). (US roles only)

The recruiter assigned to this role can share more information about the specific compensation and benefit details associated with this role during the hiring process.

Anduril is an equal-opportunity employer committed to creating a diverse and inclusive workplace. The Anduril team is made up of incredibly talented and unique individuals, who together are disrupting industry norms by creating new paths towards the future of defense technology. All qualified applicants will be treated with respect and receive equal consideration for employment without regard to race, color, creed, religion, sex, gender identity, sexual orientation, national origin, disability, uniform service, Veteran status, age, or any other protected characteristic per federal, state, or local law, including those with a criminal history, in a manner consistent with the requirements of applicable state and local laws, including the CA Fair Chance Initiative for Hiring Ordinance. We actively encourage members of recognized minorities, women, Veterans, and those with disabilities to apply, and we work to create a welcoming and supportive environment for all applicants throughout the interview process. If you are someone passionate about working on problems that have a real-world impact, we'd love to hear from you!

To view Anduril's candidate data privacy policy, please visit https://anduril.com/applicant-privacy-notice/.