landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Security Jobs

Auto-apply to these security jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Information System Security Officer (Isso)-logo
Information System Security Officer (Isso)
KBRMaryland, LA
Title: Information System Security Officer (ISSO) : Information System Security Officer (ISSO) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country's most critical role - protecting our national security. Why Join Us? Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace. Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense. This is a contingent position based upon contract award KBR is seeking a highly motivated and career-oriented Information System Security Officer (ISSO) to join our team supporting a government client in Maryland. Responsibilities Include: The Information System Security Officer (ISSO) is responsible for developing and implementing strategies to safeguard the organization's critical information assets, ensuring compliance with relevant security policies, standards, and regulations. The ISSO will help guide a team of professionals in identifying security risks, developing mitigation plans, and maintaining a robust security posture across the organization. The ideal candidate will have a strong background in space and intelligence systems with extensive experience using the Risk Management Framework (RMF). Responsibilities include: Develop, update, and/or review RMF documentation to include the System Security Plan (SSP), Security Control Traceability Matrix (SCTM), Plan of Action and Milestone (POA&M), Risk Assessment Report (RAR), and Security Assessment Plan (SAP). Assess system compliance against NIST, DoD, and IC security requirements to include the NIST 800-53 and 800-171 controls, and DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs). Provide Subject Matter Expert (SME) knowledge on matters related to RMF activities across multiple systems and networks of various classifications. Develop and implement information security policies, procedures, and guidelines in accordance with industry best practices, regulatory requirements, and required government policy. Participate in sessions aimed at identifying, planning, and executing strategies in response to emerging cybersecurity policies. Maintain awareness and knowledge of evolving security and risk management standards and communicate and apply relevant changes to existing processes. Collaborate with cross-functional teams to ensure the security of new and existing systems and applications. Other duties as assigned. Required Skills and Experience: Security Clearance Requirements: Active TS/SCI and willingness to sit for a poly upon request. Bachelor's degree in computer science, information systems, or related field and at least ten (5) years of relevant work experience in IT or cybersecurity Minimum of five (2) years of experience performing ISSM or ISSO duties in classified environments DoD 8140-compliant baseline certification (CISSP preferred) Experience with cloud service providers (CSPs) (e.g. AWS, Azure) Demonstrated experience with Risk Management Framework Familiarity and experience with technologies such as eMASS, Xacta, ACAS, and Splunk Experience in assessing systems using NIST 800-53 and/or DISA STIGs and SRGs Excellent oral and written communication skills. Desired Master's Degree preferred in Engineering, Computer Science Basic Compensation: $102,700.00 - $154,000.00 Annual This range is for the Maryland area only The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity. Additional Compensation: KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance. Benefits: KBR offers a selection of competitive lifestyle benefits which could include a 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development. Belong, Connect and Grow at KBR At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver- Together. KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law Belong, Connect and Grow at KBR At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver- Together. KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

Posted 30+ days ago

Workday Application Security & Controls Director-logo
Workday Application Security & Controls Director
PwCSan Francisco, CA
Industry/Sector Not Applicable Specialism Workday Management Level Director Job Description & Summary A career in Enterprise Application Risk will allow you to develop and apply strategies that help clients leverage enterprise technologies so they can get a higher return on their investment, mitigate risks, streamline processes, and find operational inefficiencies. The work revolves around creative problem solving and applying innovative technologies to enable strategies that increase the value of the applications that run our client's business. Our focus is on creating effective and efficient design for the most important business, security and compliance processes for our clients. We touch on aspects of application security and areas prone to fraud and financial misstatement and on streamlining processes that are part of our client's core business so they can get a higher return on this key investment. Using innovative, and proprietary technologies, we help to bridge the gap between business stakeholders, compliance functions, and Information Technology teams to assist in understanding how to embrace new ways of working while limiting their financial and operational risk profile. We use knowledge of financial system design, risk mitigation, business process design, data integrity, security, and use of data analytics. Our clients make large investments in enterprise financial systems, and they need to design those systems to meet the needs of their business while providing capabilities to improve end user experiences while managing risk. Our team helps companies manage risks on their journey to a more digitally integrated environment which enables them to better harness cloud technologies. As part of our team, you will focus on helping clients gain value across their technology ecosystem by addressing risks tied to systems, security, data, reporting, and programs. To really stand out and make us fit for the future in a constantly changing world, each and every one of us at PwC needs to be a purpose-led and values-driven leader at every level. To help us achieve this we have the PwC Professional; our global leadership development framework. It gives us a single set of expectations across our lines, geographies and career paths, and provides transparency on the skills we need as individuals to be successful and progress in our careers, now and in the future. As a Director, you'll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. PwC Professional skills and responsibilities for this management level include but are not limited to: Support team to disrupt, improve and evolve ways of working when necessary. Arrange and sponsor appropriate assignments and experiences to help people realise their potential and support their long-term aspirations. Identify gaps in the market and spot opportunities to create value propositions. Look for opportunities to scale efficiencies and new ways of working across multiple projects and environments. Create an environment where people and technology thrive together to accomplish more than they could apart. I promote and encourage others to value difference when working in diverse teams. Drive and take ownership for developing connections that help deliver what is best for our people and stakeholders. Influence and facilitate the creation of long-term relationships which add value to the firm. Uphold the firm's code of ethics and business conduct. The Opportunity As part of the Enterprise Application Risk - Workday Compliance and Security team you are responsible for managing and understanding Workday implementations, configurations, and optimizations of business process controls and application security. As a Director you set the strategic direction, lead business development efforts, and oversee multiple projects while maintaining impactful executive-level client relations. You play a crucial role in driving business growth, shaping client engagements, and mentoring the future leaders. Responsibilities Manage and understand Workday implementations Set strategic direction and lead business development Oversee multiple projects and maintain executive-level client relations Drive business growth and shape client engagements Mentor the future leaders Configure and enhance business process controls Assure application security Foster a collaborative and innovative environment What You Must Have Bachelor's Degree 9 years of ERP controls auditing, consulting and/or implementing experience with a minimum of 4 years of experience with Workday What Sets You Apart Workday Financials or HCM certification Managing and understanding Workday implementations and configurations Identifying and addressing client needs and relationships Leading teams to generate a vision and establish direction Demonstrating business development skills and leading proposal efforts Managing large engagements and evaluating controls and security Leading client projects and understanding business and technology Defining resource requirements, project workflow, and budgets Working directly with systems integrators in Workday implementations Travel Requirements Up to 40% Job Posting End Date Learn more about how we work: https://pwc.to/how-we-work PwC does not intend to hire experienced or entry level job seekers who will need, now or in the future, PwC sponsorship through the H-1B lottery, except as set forth within the following policy: https://pwc.to/H-1B-Lottery-Policy . As PwC is an equal opportunity employer, all qualified applicants will receive consideration for employment at PwC without regard to race; color; religion; national origin; sex (including pregnancy, sexual orientation, and gender identity); age; disability; genetic information (including family medical history); veteran, marital, or citizenship status; or, any other status protected by law. For only those qualified applicants that are impacted by the Los Angeles County Fair Chance Ordinance for Employers, the Los Angeles' Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, San Diego County Fair Chance Ordinance, and the California Fair Chance Act, where applicable, arrest or conviction records will be considered for Employment in accordance with these laws. At PwC, we recognize that conviction records may have a direct, adverse, and negative relationship to responsibilities such as accessing sensitive company or customer information, handling proprietary assets, or collaborating closely with team members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all. The salary range for this position is: $148,000 - $317,000, plus individuals may be eligible for an annual discretionary bonus. For roles that are based in Maryland, this is the listed salary range for this position. Actual compensation within the range will be dependent upon the individual's skills, experience, qualifications and location, and applicable employment laws. PwC offers a wide range of benefits, including medical, dental, vision, 401k, holiday pay, vacation, personal and family sick leave, and more. To view our benefits at a glance, please visit the following link: https://pwc.to/benefits-at-a-glance

Posted 1 week ago

Physical Security Systems Specialist Support-logo
Physical Security Systems Specialist Support
RippleNew York, NY
THE WORK: Work as a Physical Security Systems Specialist Support in New York. Experience brand-new security technologies in a dynamic environment at Ripple Labs Inc. Grow your career and develop your skills. WHAT YOU'LL DO: Provide management and administrative support for Ripple security systems, including access control, CCTV, and intrusion systems. Design, configure, commission, and document support for security projects. Provide project management and technical support for both on-site and remote projects. Deliver technical support for end users, system administrators, and service support technicians. Triage and resolve Tier2-level issues through collaboration and resourceful problem-solving. Document issues and resolutions for trend analysis and knowledge sharing. Advance sophisticated issues to vendors or senior engineering support as needed. Maintain outstanding customer focus and happiness by responding promptly to security support team issues. Manage system requirements and configurations for Avigilon supporting security systems. Build and maintain support documentation for ongoing and new security projects. Assist in training and developing standard operating procedures (SOPs). Audit security systems for adherence to global SOPs, identify vulnerabilities, and ensure effective system use. WHAT YOU'LL BRING: Minimum 2 years of physical security experience. College degree or relevant coursework in computer science (or equivalent experience). 2+ years of technical experience with security systems technology, including CCTV, access control, and intrusion detection. Desired experience with IP intercom, analytics, and perimeter security. Strong IP networking skills. Basic field troubleshooting techniques for low voltage systems. Extensive knowledge of Windows operating systems and GSuite. Excellent communication skills, both verbal and written. Assertive, self-starter with a strong sense of urgency. Outstanding integrity and customer-service skills. Strong organizational skills with outstanding attention to detail. Great teammate with a positive attitude. Independent individual with strong problem-solving abilities, who thinks critically and creatively. Willingness to travel as needed for remote office support. Ability to work outside regular business hours to support global teams. Scripting/software development experience is a plus.

Posted 30+ days ago

Sr. Security Engineer-logo
Sr. Security Engineer
GuidehouseWashington, DC
Job Family: Systems Engineering Travel Required: None Clearance Required: Active Top Secret (TS) What You Will Do: Provides the expertise to conduct systems analysis, certification and accreditation, integration of secure products, security test and evaluation, and development of complex information systems to meet information system security requirements. A broad knowledge of the technical information systems security discipline is required. The candidate will be responsible for updating system software, reviewing and applying content (AV, NIDS) updates, developing custom signatures and content, administration of firewalls, IDS, and other security system rule sets and policies. The candidate will need to have a strong knowledge of the underlying technologies that contribute to the system infrastructure and how they interact. Network, Operating Systems, Applications and Servers, and Security Hardware and Software. Responsibilities of this role are as follows, to include but not limited to: Develop system security design documentation Develop network security systems and security operation center knowledge base articles, how-to documents, standard operating procedures, and policies Develop incident investigation and incident handling knowledge base articles, how-to documents, and standard operating procedures Design, implement, maintain, administer, and operate network security systems Review all IT system development plans to ensure designs meet governmental regulatory standards and provide an appropriate level of protection for the client systems and data that interacts with those systems Conducts analysis of system requirements and components and performs system audits to ensure intended system functionality, operation, and performance requirements are met Develops programs, scripts, or code segments as necessary to facilitate operation, administration, maintenance, or analysis of data and systems Performs evaluation and review of GOTS/COTS software and systems to ensure they meet government regulatory requirements Evaluates, installs, configures, tests, and updates network security systems and hardware Trained and skilled individual with in-depth knowledge of the Security Tasks listed in the SOW. Resource will provide training and knowledge transfer on these technologies to the other operational resources team What You Will Need: An ACTIVE and MAINTAINED "TOP SECRET" Federal or DoD security clearance; must UPGRADE and MAINTAIN a "TOP SECRET/SCI (TS/SCI)" Federal or DoD security clearance EIGHT (8) or more years of experience in network and/or endpoint security architecture. CISSP certification CEH certification Understanding of and experience working in a classified environment Candidate should have strong analytical and organizational skills Candidate should have concise writing skills, excellent MS Word skills as well as other MS Office Applications Experience with network security tools such as Tenable Nessus/SecurityCenter, Cisco ASA, Splunk, etc. What Would Be Nice To Have: Bachelor's Degree Additional security certifications or product specific certifications for any required or desired technologies Security Operations, Engineering, and Architecture Tellix Security Products IBM BigFix Nessus/SecurityCenter Splunk Firewalls RedHat/CentOS/Ubuntu/*nix Windows Desktop and Server Operating Systems Virtualization Technologies (VMWare, etc) The annual salary range for this position is $130,000.00-$216,000.00. Compensation decisions depend on a wide range of factors, including but not limited to skill sets, experience and training, security clearances, licensure and certifications, and other business and organizational needs. What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

Posted 2 weeks ago

Principal Application Security Architect-logo
Principal Application Security Architect
LPL Financial ServicesSan Diego, CA
Are you a team player? Are you curious to learn? Are you interested in working in meaningful projects? Do you want to work with cutting-edge technology? Are you interested in being part of a team that is working to transform and do things differently? If so, LPL Financial is the place for you! Job Overview: LPL's Information Security team is seeking an exceptional Principal Security Architect to engage on API project efforts in Cloud, On-prem and Data security architectures. As the Principal Application Security Architect at LPL, you will work side by side with our Development, Operations, Business units, and Enterprise Architecture teams to ensure our environments are secured and monitored. The right person for this role will have a broad technical cloud security background with a focus on security design, detection, prevention, and response to security threats. Responsibilities: Secure APIs by implementing robust access control mechanisms, OAuth, JWT, and configuring API gateway security to ensure authenticated and authorized access. Develop reusable security design patterns addressing common cybersecurity challenges, ensuring consistency and best practices across diverse technology stacks and business domains. Craft clear, actionable security standards and policies, aligning them with industry best practices and regulatory requirements while ensuring adaptability to emerging technologies. Lead the design and innovation of security architectures, integrating advanced technologies to protect against evolving threats while enabling business agility and growth. Collaborate with key stakeholders to align security initiatives with business objectives, ensuring broad support and integration at all levels. Expertise in cybersecurity frameworks, network security, cloud security, identity management, and encryption, with proficiency in implementing zero-trust architectures and secure DevOps practices across diverse IT environments. Threat modeling, risk assessment, and vulnerability management, coupled with experience in SIEM implementation, log analysis, and incident response in complex enterprise settings. Conduct thorough threat analysis using intelligence and analytics to identify and mitigate potential security risks proactively, reducing business impact. Implement and oversee a risk management framework, balancing security investments with business needs to protect assets while supporting growth and innovation. Securing machine learning models against adversarial attacks, ensuring data privacy in AI training sets, and implementing ethical AI principles in security applications. Develop secure AI/ML pipelines, including model integrity verification, secure feature engineering, and anomaly detection in AI-driven systems. What are we looking for? We want strong collaborators who can deliver a world-class client experience. We are looking for people who thrive in a fast-paced environment, are client-focused, team oriented, and are able to execute in a way that encourages creativity and continuous improvement. Requirements: 3+ years in API security. Proven record designing secure API gateways and microservices architectures. 8+ years of experience working knowledge of information security controls, guidelines, and standards (e.g., ISO27000 series, OWASP, CSA CCM, CIS 20 Critical Security Controls, SOX, and NIST). 8+ years of experience with technical knowledge/coding skills in any of the following: Java, C# .Net, Ruby and/or Python Core Competencies: Must be self-driven, yet flexible and highly adept at consulting, negotiating, communicating, consensus building, and presenting. Ability to remain calm under pressure while managing multiple tasks. Demonstrated ability to learn from mistakes and apply constructive feedback to improve performance. Preferences: Bachelor's Degree or equivalent years of experience In-depth knowledge of AWS and its core services, including EC2, S3, IAM, VPC, and security-related services like security groups, ACLs AWS Security Hub, AWS WAF, and Amazon GuardDuty. Working knowledge of Terraform, Cloud Formation, Pulumi, and/or Ansible. Solid experience securing scalable web architectures and distributed systems. Solid understanding of malware, emerging threats, attacks, and vulnerability management. CCSP/Other Cloud Specific Certification, CISSP and/or GIAC are a plus. AI/ML security. Proven record securing ML models and AI pipelines in financial services. Proficient in ML algorithms, deep learning frameworks, AI ethics. Experienced in AI/ML security controls. Expert in OAuth, OpenID Connect, JWT. Proficient in API threat modeling, automated security testing. #LI-Hybrid Pay Range: $148,988-$248,313/year Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play - such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer! Company Overview: LPL Financial Holdings Inc. (Nasdaq: LPLA) was founded on the principle that the firm should work for advisors and institutions, and not the other way around. Today, LPL is a leader in the markets we serve, serving more than 23,000 financial advisors, including advisors at approximately 1,000 institutions and at approximately 580 registered investment advisor ("RIA") firms nationwide. We are steadfast in our commitment to the advisor-mediated model and the belief that Americans deserve access to personalized guidance from a financial professional. At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients. Join LPL Financial: Where Your Potential Meets Opportunity At LPL Financial, we believe that everyone deserves objective financial guidance. As the nation's leading independent broker-dealer, we offer an integrated platform of cutting-edge technology, brokerage, and investment advisor services. Why LPL? Innovative Environment: We foster creativity and growth, providing a supportive and responsive leadership team. Learn more about our leadership team here! Limitless Career Potential: Your career at LPL has no limits, only amazing potential. Learn more about our careers here! Unified Mission: We are one team on one mission-taking care of our advisors so they can take care of their clients. Learn more about our mission and values here! Impactful Work: Our size is just right for you to make a real impact. Learn more here! Commitment to Equality: We support workplace equality and embrace diverse perspectives and backgrounds. Learn more here! Community Focus: We care for our communities and encourage our employees to do the same. Learn more here! Benefits and Total Rewards: Our Total Rewards package goes beyond just compensation and insurance. It includes a mix of traditional and unique benefits, perks, and resources designed to enhance your life both at work and at home. Learn more here! Join the LPL team and help us make a difference by turning life's aspirations into financial realities. Please log in or create an account to apply to this position. Principals only. EOE. Information on Interviews: LPL will only communicate with a job applicant directly from an @lplfinancial.com email address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant's bank or credit card. Should you have any questions regarding the application process, please contact LPL's Human Resources Solutions Center at (855) 575-6947. EAC1.22.25

Posted 30+ days ago

Technical Security Education Curriculum (Tscm) Instructor-logo
Technical Security Education Curriculum (Tscm) Instructor
CACI International Inc.Fort Washington, MD
Technical Security Education Curriculum (TSCM) Instructor Job Category: Training Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US Responsible for conducting and facilitating general and specific training. Duties may include delivering training based on customer requirements using a variety of techniques including face-to-face, online, synchronous, asynchronous, and self-paced instruction. May include employing blended learning techniques to include a combination of eLearning tools, lectures, classroom discussions, team exercises, readings, case studies, role plays and demonstrations of required skills through work-related tasks. You'll provide training to the Intelligence Community (IC) workforce and maintain existing course content for currency and relevancy. You will employ both classroom instruction and alternative delivery methods for students located at Ft. Washington, MD and, possibly, temporarily at other CONUS/OCONUS locations as deem necessary to the mission. What You'll Get to Do: Provide training to the Intelligence Community (IC) workforce and to maintain existing course content for currency and relevancy. You will employ both classroom instruction and alternative delivery methods for students located at Ft. Washington, MD and, possibly, temporarily at other CONUS/OCONUS locations as deem necessary to the mission. More About the Role: You will prepare and present classroom lectures and assist in TSEC curriculum modernization. Use blended learning technologies, deliver training on the knowledge and skills required for conducting compliant, effective, and efficient TS/TSCM training. Work with course developers to ensure the correct information and best teaching methodologies are used. You'll Bring These Qualifications: Active TS/SCI with Poly. Graduate of the Interagency Training Center (ITC) TSCM Fundamentals Course and/or Graduate of the ITC's Basic Technical Operations Course (BTOC) or equivalent. A minimum of 6-years of applied practical experience in Federal Technical Surveillance Countermeasures (TSCM) or Technical Surveillance Activities (TSA) in the last 10-years Four years' experience teaching/training adults in the last 10 years. Completion of an Undergrad or Graduate degree in Education and Training maybe considered in lieu of teaching experience. Undergrad or Graduate degree in Electrical Engineering, Mechanical Engineering, Computer Science, Physical Science, and Physics may be considered in lieu of TS or TSCM experience. These Qualifications Would be Nice to Have: Level 3 Technician Certification 8570 CompTIA Cyber Security Analyst (CYSA+) Penetration Testing certification or experience Cyber Threat Hunting certification or experience Cyber Incident Response certification or experience FLIR Thermographer Certification Non-Destructive Testing Certification ____ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ____ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here. The proposed salary range for this position is: $84,900 - $178,400 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Posted 1 week ago

Senior Security Engineer-logo
Senior Security Engineer
IntelycareQuincy, MA
Senior Security Engineer At IntelyCare, purpose matters! We are changing the future of healthcare by changing the future of work for nurses. We've built our mission-driven company on the idea that nursing professionals deserve better and when they are happy, patient care is elevated, and our healthcare systems thrive. Through our easy-to-use app and platform, nursing professionals get the pay, freedom, and flexibility they deserve while our partnered facilities get access to nursing resources when and where they need them. As IntelyCare's Senior Security Engineer, you will assume a leading role in enhancing and safeguarding our organization's information security posture. This position requires expertise in multiple security domains and demands a high level of accountability. You will lead strategic security initiatives, collaborate with cross-functional teams, and contribute to the continuous improvement of our security infrastructure. Information security engineers must continually adapt to stay a step ahead of cyber attackers and stay up to date on the latest technologies and cybersecurity trends. Engineers in this role are expected to consistently learn and grow. This is not a passive career opportunity, but one that requires a passion for security and rigor to protect the business. Essential Duties & Responsibilities Provide advanced troubleshooting for endpoint security issues, demonstrating an in-depth understanding of diverse environments. Implement, maintain, and monitor security tooling, including but not limited to Entra, Sentinel, Wiz, GitHub, and CrowdStrike, applying advanced insights for proactive threat detection and response. Implement, maintain, and monitor security measures such as WAF, API gateways, conditional access, ZTNA, and backup systems. Take a leadership role in vulnerability management, ensuring comprehensive and effective mitigation. Take an active role in risk management, particularly third-party risk management, ensuring risk is commensurate with business objectives. Respond to security incidents, employing investigative techniques, tactical mitigation and remediation skills, and coordinating cross-functional efforts. Support identity and access management (IAM) governance, policies, and solutions. Define and operate security awareness and secure code training programs. Take a lead role in participating in technical and non-technical projects requiring information security oversight while ensuring compliance with policies, procedures, and standards. Perform other duties as assigned, showcasing an elevated level of responsibility and expertise in the information security domain. Qualifications Bachelor's degree or equivalent experience preferred in one of the following: Computer Science/Engineering, Information Systems, or a related field. At least 4-6 years of information security experience (or combination of 8 to 10 years of IT system administration with security). Extensive hands-on experience with AWS, Linux, AzureAD/Entra, networking, and vulnerability management tools, with a proven track record of senior-level proficiency. Hands-on experience with logging and monitoring systems, SIEM, and EDR/MDR. Experience conducting risk assessments that protect the business and align with compliance and privacy laws. Experience with basic scripting (Bash, Python) Familiarity with the SDLC and software development practices. Demonstrated interest in detection engineering, cloud security, and risk management. Willingness to provide assistance as needed, including during off-hours, to enable prompt incident response. Proven ability to effectively communicate business risk in the context of information security at a senior level, providing insights that contribute to strategic decision-making. Excellent verbal and written communication skills, including the ability to tailor answers appropriately to the audience. The ability to approach problems and solutions holistically while paying attention to details. Physical Demands While performing the duties the physical requirements are: constantly reach to use computers, monitors, and other office equipment constantly need to view objects at close and distant ranges constantly communicate with others verbally and in writing frequently required to sit or stand This position functions in an office and technical environment and requires fine manipulation and simple grasping to utilize the computer and other standard office equipment. Required occasional lifting and transporting of items weighing up to 25 lbs. This position may require occasional travel. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. Please be aware, qualified candidates will be contacted directly via email by an IntelyCare Talent Acquisition Partner, from an IntelyCare email address.

Posted 30+ days ago

Security Officer I-logo
Security Officer I
Brigham And Women's HospitalNewton, MA
Site: Newton-Wellesley Hospital Mass General Brigham relies on a wide range of professionals, including doctors, nurses, business people, tech experts, researchers, and systems analysts to advance our mission. As a not-for-profit, we support patient care, research, teaching, and community service, striving to provide exceptional care. We believe that high-performing teams drive groundbreaking medical discoveries and invite all applicants to join us and experience what it means to be part of Mass General Brigham. Job Summary Summary Provides a safe and secure environment for hospital patients, visitors, and employees by enforcing hospital security regulations and by continuously watching for and reporting potential safety hazards and unusual occurrences in a timely manner through patrol of assigned areas. Investigate complaints or potential criminal conduct; assist in restraining patients as necessary; provide protective services. Possesses and exhibits excellent customer service skills. If applicable, responsible for the arrest of criminal suspects under the authority of State Special Police license. Does this position require Patient Care? Yes Essential Functions Patrols assigned areas, giving particular attention to those areas where security problems have occurred. Identifies unsafe conditions and improperly secured areas/property to help prevent theft, injuries or damages to Hospital property, patients, visitors and employees. Maintains strict confidentially standards at all times. Investigates thefts, shortages and other complaints involving potential criminal misconduct by questioning individuals involved with specific incidents; notifies appropriate law enforcement agencies of potential/real civil or criminal misconduct and detains suspicious individuals as appropriate; when authorized will make arrests as appropriate; participates in subsequent court proceedings as required. Prepares and submits written reports in a complete and accurate manner; makes notations in log of all incidents; keeps Supervisor informed at all times. Maintains accountability for valuables/property and forms of evidence coming into incumbent's custody; ensures safekeeping; maintains documentation. Performs as Dispatcher utilizing "state of the art" integrated security systems; radio dispatches personnel to respond to occurrences and phone calls for assistance; provides and maintains documentation. Participates in assistance with workplace and domestic victims; responds to medical emergencies; when authorized assists in the restraint of patients; involved in the protection of dignitaries; controls pedestrian and vehicular traffic. Voluntary participation in various departmental committees, task forces, and teams. Qualifications Education Bachelor's Degree Criminal Justice preferred Can this role accept experience in lieu of a degree? No Licenses and Credentials Class D Passenger Vehicle Driver's License [State License] - Generic- HR Only preferred Basic Life Support [BLS Certification] - Data Conversion- Various Issuers preferred Basic Officer Certification [CHSO] - International Association for Healthcare Security and Safety preferred Supervisory Certification [CHSS] - International Association for Healthcare Security and Safety preferred Personal Drivers License (New Hampshire)- New Hampshire Division of Motor Vehicles preferred MGH Security RMV Check/Registry of Motor Vehicles Driving Report- MGB Internal preferred Experience Experience in hospital, security/police, emergency medical or customer services preferred 3-5 years preferred Knowledge, Skills and Abilities Strong interpersonal communication and customer service skills. Recognize, acknowledge, respect, and effectively interact with all people, establish positive relationships, and gain the trust and respect of others. Ability to deal with and effectively deescalate anxious/stressed people and manage aggression. Works effectively both independently and in teams. Able to multitask. Strong problem-solving skills. Critical and analytical thinking, good judgment, prioritizing, industrious and creative resolutions for positive outcomes. Customer service skills: accessible, energetic, concerned, empathetic, positive attitude, collaborative, and flexible. Displays positive image, tact, and diplomacy, active listening, articulate. Demonstrates the understanding of community policing, risk analysis and crime prevention concepts and practices. Strong writing skills to provide and maintain documentation to support data. Intermediate computer skills: typing and use of database software. Additional Job Details (if applicable) Physical Requirements Standing Frequently (34-66%) Walking Frequently (34-66%) Sitting Occasionally (3-33%) Lifting Frequently (34-66%) 35lbs+ (w/assisted device) Carrying Frequently (34-66%) 20lbs- 35lbs Pushing Occasionally (3-33%) Pulling Occasionally (3-33%) Climbing Rarely (Less than 2%) Balancing Frequently (34-66%) Stooping Occasionally (3-33%) Kneeling Occasionally (3-33%) Crouching Occasionally (3-33%) Crawling Rarely (Less than 2%) Reaching Frequently (34-66%) Gross Manipulation (Handling) Frequently (34-66%) Fine Manipulation (Fingering) Frequently (34-66%) Feeling Constantly (67-100%) Foot Use Rarely (Less than 2%) Vision- Far Constantly (67-100%) Vision- Near Constantly (67-100%) Talking Constantly (67-100%) Hearing Constantly (67-100%) Remote Type Onsite Work Location 2014 Washington Street Scheduled Weekly Hours 40 Employee Type Regular Work Shift Evening (United States of America) EEO Statement: Newton-Wellesley Hospital is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religious creed, national origin, sex, age, gender identity, disability, sexual orientation, military service, genetic information, and/or other status protected under law. We will ensure that all individuals with a disability are provided a reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. To ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Veteran's Readjustment Act of 1974, and Title I of the Americans with Disabilities Act of 1990, applicants who require accommodation in the job application process may contact Human Resources at (857)-282-7642. Mass General Brigham Competency Framework At Mass General Brigham, our competency framework defines what effective leadership "looks like" by specifying which behaviors are most critical for successful performance at each job level. The framework is comprised of ten competencies (half People-Focused, half Performance-Focused) and are defined by observable and measurable skills and behaviors that contribute to workplace effectiveness and career success. These competencies are used to evaluate performance, make hiring decisions, identify development needs, mobilize employees across our system, and establish a strong talent pipeline.

Posted 30+ days ago

Security Coordinator-logo
Security Coordinator
LifeChurch.tvEdmond, OK
The Security Coordinator is primarily responsible for supporting the Security Specialist with security processes, including physical security operations, incident report follow-up, and operational support at the Central/Edmond campus. The Security Coordinator provides operational and administrative support in coordination with their team's efforts to further Life.Church's mission and reach people for Christ. The Security & Campus Safety Operations Team equips and empowers Life.Church staff to make good decisions in crises and emergencies. At Life.Church, we exist to lead people to become fully devoted followers of Christ. It's been our mission since 1996 and has guided us every day. Leading people isn't just an expectation; it's a necessity. It's a cornerstone of our culture. That's why we're always seeking leaders-leaders like you-to bring your skills to life. We are one church meeting in multiple locations, and we want to help you become the person God made you to be. What You'll Do Maintain a visible presence at designated locations such as the Security Office, First Impressions, StaffKids, Edmond Lobby, Headquarters, the parking lots, and other high-traffic areas. Conduct regular interior and exterior patrols, including but not limited to random checks of exterior doors, StaffKids playground, basketball court, walking trail, and courtyards. Monitor video security system and respond to suspicious activity. Complete internal incident reports. Respond to incidents such as disturbances or medical emergencies. Complete or ensureincident reports are completed. Be familiar with emergency equipment locations (AEDs, bleed control kits, fire extinguishers, fire alarms) and evacuation procedures. Support the Security Specialist with campus-specific and central security initiatives, including video security management, staff training, resource development, campus incident report follow-up. Collaborate with the First Impressions, StaffKids, and Central Operations teams to address safety concerns. Skills Needed to Succeed Ability to self-motivate, make independent decisions, and solve problems with innovation. Effective at multi-tasking and time management to meet strict deadlines while remaining flexible and open to change. Excellent verbal, written, and interpersonal communication skills to clearly explain complicated processes and fosterpartnerships. High School Diploma or GED. 1-3 years of related experience. Must be eligible to obtain an armed security guard license through the State of Oklahoma. Benefits We Offer ・ Paid parental leave, including maternity, paternity, and adoption leave. ・ Generous employer-paid leave for the use of vacation, sick time, and other qualifying reasons. ・ Innovative and comprehensive Medical, Dental, and Vision insurance that provides team members with useful resources and savings to navigate their holistic health. ・ Life insurance policy provided for all staff members at 2x annual salary at no cost. Additional life insurance coverage is available to purchase. ・ Short-Term and Long-Term disability is covered at 100% for full-time qualified staff members. ・ Comprehensive wellness and mental health benefits allow staff to proactively invest in their physical and emotional health. ・ Generous 401(k) retirement plan allowing a team member to have up to 12.5% (including employee contribution, employer match, and employer discretionary contribution) contributed into their account in their first year. It doesn't stop there-the more years on staff, the greater the investment! ・ $160 annually in development dollars for team members to invest in their professional growth. ・ Casual dress and work environment. ・ And much more! Our Beliefs, Culture, and Commitment to Diversity At Life.Church, every staff member, and intern is a minister and is expected to engage in the church's ministry fully. We consider ministry readiness and an individual's capacity to represent Life.Church's beliefs as a minister during the selection process for all staff and intern positions. An essential function within every position held by a staff member or intern at Life.Church is to uphold and represent the beliefs of Life.Church. Learn more about what we believe at Life.Church. While we unite around our mission, we know unity doesn't mean uniformity. Our calling is too great, and our mission is too important not to be intentional about strengthening our team through diversity. We know that diverse perspectives in race, ethnicity, background, age, and gender are essential to reaching the world for Christ. To learn more about how we strengthen our team through diversity, visit our careers page. All data collected in our application process, from resume collection to application questions, is used for recruitment purposes only.

Posted 1 week ago

Security Administrator-logo
Security Administrator
CACI International Inc.Montgomery, AL
Security Administrator Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US Anticipated Posting End: There is not an anticipated end date for this posting since applications are needed on an ongoing basis. The Opportunity: As a Security Administrator on EITaaS, you will play a crucial role in fortifying our risk posture by identifying, assessing, and mitigating vulnerabilities across our classified systems. You will be at the forefront of developing and implementing strategies to proactively address potential threats, ensuring the integrity and security of our digital infrastructure. You will work closely with the Nessus team in developing scan policies, frequency, and alignment with the DAF. You will report status and updates to the Program Information Security Officer and to the customer in cybersecurity meetings. This position description is not an active opening but is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI. Responsibilities: Vulnerability Management: Conduct regular vulnerability assessments to identify and prioritize potential security risks. Collaborate with cross-functional teams to analyze and interpret vulnerability scan results. Communicate response plans and POA&MS with the DAF organizations. Risk Assessment: Evaluate the severity and potential impact of identified vulnerabilities on our systems. Provide actionable recommendations for remediation and risk mitigation. Policy Development: Create and manage the programs Vulnerability Management Plan; outlining how the program tracks CVEs and remediations for all systems. Contribute to the development and enhancement of other cybersecurity policies and procedures. Ensure compliance with DAF standards and regulations related to vulnerability management. Collaboration and Communication: Work closely with IT, development, and operations teams to facilitate timely vulnerability remediation. Communicate effectively with stakeholders, translating technical vulnerabilities into business impact. Continuous Improvement: Stay abreast of the latest cybersecurity threats, vulnerabilities, and industry best practices. Drive continuous improvement initiatives to enhance the overall cybersecurity posture of the organization. Improve and automate existing vulnerability management systems. Qualifications: Required: Active Secret Clearance 10+ Years of relevant experience (Bachelor's Degree in relevant field may be substituted for 5 years of relevant experience). Strong knowledge of Tenable Nessus (ACAS), Common Vulnerabilities and Exposures (CVEs), and the DoD. Familiarity with industry security standards and frameworks such as NIST or DoD Controls Ability to analyze security incidents, perform root cause analysis, and propose effective solutions. Knowledge of encryption technologies, access controls, and identity and access management (IAM) principles. Excellent communication and problem-solving skills to collaborate effectively with cross-functional teams. Required DoD 8140 compliant certification such as CompTIA Security+ Other relevant cybersecurity certifications like Certified Information Systems Security Professional (CISSP), or Certified Information Security Manager (CISM), are a plus. Understanding of regulatory requirements related to information security (e.g., GDPR, HIPAA) is advantageous. Familiarity with cloud security concepts and solutions is a plus. Dedication to staying current with emerging cybersecurity trends and threats. This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI. ____ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ____ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here. Since this position can be worked in more than one location, the range shown is the national average for the position. The proposed salary range for this position is: $75,200-$158,100 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Posted 1 week ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesDenver, CO
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Electronic Security Engineer - Genetec Specialist-logo
Electronic Security Engineer - Genetec Specialist
Trofholz Technologies, Inc.Sacramento, CA
Are you a Genetec expert ready to work on high-impact security projects in a performance-driven, employee-focused organization? Trofholz wants to hear from you. Trofholz Technologies wants a highly skilled Electronic Security Engineer - Genetec Specialist to support premier clients including SMUD and NIWC Atlantic. This role demands a seasoned professional with deep experience in Genetec video surveillance and access control systems. Ready to elevate your career? We're looking for a leader who aligns with our QCCIT Values: Quality in delivery and service Commitment to client satisfaction and project success Creativity in solving challenges Integrity in every action Team spirit that fosters collaboration and trust Be More. Do More. Make a Difference at Trofholz. Why Join Trofholz? We are a federal and commercial contractor recognized for our technical excellence, innovation, and commitment to our employees. Our work makes a national impact, and our culture supports your growth, autonomy, and long-term career journey. TFZ is a place where YOU are valued! Responsibilities: Design, configure, install, and troubleshoot Genetec systems in complex, high-security environments. Interface directly with clients to ensure project expectations and standards are met. Collaborate with cross-functional teams to deliver best-in-class physical security solutions. Requirements: Bachelor's degree and 2 years full-time non-classroom hands-on experience in local area network and/or wide area network planning, design, configuration, installation, implementation, troubleshooting, integration, performance monitoring, maintenance, enhancement, and security management; or equivalent 5 plus years of MS Windows Server and AD installation, configuration, and administration in a senior/lead role. 3 plus years of knowledge and experience administering a Genetec VMS (video management system) environment. 3 plus years of knowledge and experience with VMware. Multiple Genetec certifications (Security Center Omnicast and/or Enterprise, Config Tool, Advanced Video/Access, etc.), with extensive hands-on experience with Genetec Security Center. Other associated professional/vendor certification(s) Must be in the Sacramento, CA area or willing to relocate. Knowledge and experience with EMC SAN administration. Ability to obtain and maintain necessary government clearances. Preferred: Microsoft certifications. EMC storage certifications. VMware certification. Salary: 120K-125K Company Benefits: We support your health, growth, and goals with a strong package: Medical, Dental, and Vision Plans (HSA Options Available) 401(k) with Employer Match Paid Time Off and 11 Paid Holidays Employer-sponsored Life and AD&D Insurance Employer-sponsored Short-Term & Long-Term Disability Flexible Spending Accounts Company Sponsored Training Wellness and Support Programs Ready to lead with integrity and impact? At Trofholz, your growth depends on you. We are a performance-based organization that empowers employees to thrive. We value Quality, Commitment, Creativity, Integrity, and Transparency - and we live them. We believe that when You grow, We grow. Join us and take ownership of your future. Apply today at www.trofholz.com and become part of a mission-focused, people-first organization. Trofholz Technologies, Inc. is an Equal Opportunity/Affirmative Action Employer. We celebrate diversity and are committed to building an inclusive environment for all employees. Trofholz is an equal opportunity/affirmative action employer, and we E-Verify. All offers of employment at Trofholz are contingent upon clear results of a thorough background check and drug screen.

Posted 1 week ago

Senior Penetration Testing And Software Security Specialist-logo
Senior Penetration Testing And Software Security Specialist
AprioAtlanta, GA
Work with a nationally ranked CPA and advisory firm that is passionate for what's next. Aprio has 30 U.S. office locations, one in the Philippines and more than 2,100 team members that speak 60+ languages across the globe. By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio. Join Aprio's Risk Advisory and Assurance Services team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Software Security and Offensive Security Manager to join their dynamic team. Aprio's RAAS team serves leading technology service providers, from disruptive start-ups to global market leaders. Our services include consulting, advisory, audits and examinations for other leading security and IT compliance standards and protocols such as: SOC 1, SOC 2, ISO 27001, ISO 27701, HITRUST, CMMC, FedRAMP, NIST CSF, GDPR, PCI DSS and others. We are seeking an experienced Offensive Security and Penetration Testing professional to join our team and help us develop this service line from the ground up. We have great people dedicated to delivering a great client service experience, We are information security and compliance experts, and We are committed to fostering a startup environment where teammates are rewarded for having a growth mindset. Your opportunities as a member of the Aprio Risk Advisory and Assurance Services team: Be part of a transformative growth journey! Following our recent acquisition of SecurityBricks, a leader in innovative security solutions, Aprio has positioned our team at the forefront of cybersecurity and compliance services advancements. Contribute to cutting-edge initiatives as we expand into CMMC, FedRAMP, PCI SSF, and work around other high performers developing custom software security solutions, offering opportunities to tackle unique security challenges in high-stakes, regulated industries. Work on diverse, high-impact projects across a number of teams and industries, and take on the opportunity to build a team around you over time. Access unparalleled professional development through training, certifications, and hands-on experience with emerging technologies, ensuring you stay ahead in the rapidly evolving cybersecurity landscape. Enjoy a collaborative, innovative culture with competitive salary, comprehensive benefits, and flexible work arrangements, fostering both personal and professional growth. Desired Background and Characteristics for this Role: Experience with cloud infrastructure offensive security assessments (e.g., AWS, Azure, GCP), web application and API penetration testing, and traditional network penetration testing. Experience with application and software security including performing static application security, dynamic application security, and memory forensic analysis. Proficiency in developing assessment documentation and documenting the results of your work. Familiarity with penetration testing and application requirements for common security compliance frameworks (e.g., FedRAMP, PCI DSS, PCI SSF). Candidates interested in the Role should possess the following: Minimum of 5 years' experience in penetration testing or a related cybersecurity role, with a focus on application/software, network, cloud infrastructure, web application, and API testing. Hands-on experience with network penetration testing, including assessment of protocols (e.g., TCP/IP, DNS, VPN), firewalls, and intrusion detection/prevention systems. Hands-on experience with cloud security testing in platforms such as AWS, Azure, or GCP, and their cloud native solutions. Hands-on experience web application penetration testing, covering OWASP Top 10 vulnerabilities (e.g., SQL injection, XSS, CSRF) and secure coding practices. Hands-on experience with application security and tools used to perform source code, memory and runtime analysis (i.e., SAST, DAST and memory forensics analysis). Strong proficiency in API security testing, including REST, SOAP, and GraphQL, with experience in identifying issues like broken authentication, excessive data exposure, and injection flaws. Familiarity with common penetration testing tools such as Burp Suite, Metasploit, Nmap, Nessus, Wireshark, and Kali Linux. Experience with scripting languages (e.g., Python, Bash, PowerShell) for automating tests. Understanding of secure development lifecycle (SDLC) and DevSecOps practices to integrate security into CI/CD pipelines. Strong analytical and problem-solving skills, with the ability to think like an attacker and identify complex attack chains. Excellent communication skills to articulate technical findings to both technical and non-technical stakeholders in verbal and written form. Requirement: This role requires you to maintain at least one industry certification related to cyber security including: CCNP, CISSP, CSSLP, GPEN, GCED, CEH, CHFI, or GCFA. Bonus- OSCP, OSWE, CRTP, and other certifications that require hands on skills application to obtain are a huge plus. Bonus- PCI PA-DSS and PCI SSF experience $120,000 - $140,000 a year The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range. The application window is anticipated to close on August 27th and may be extended as needed. Why work for Aprio: Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm. Perks/Benefits we offer for full-time team members: Medical, Dental, and Vision Insurance on the first day of employment Flexible Spending Account and Dependent Care Account 401k with Profit Sharing 9+ holidays and discretionary time off structure Parental Leave - coverage for both primary and secondary caregivers Tuition Assistance Program and CPA support program with cash incentive upon completion Discretionary incentive compensation based on firm, group and individual performance Incentive compensation related to origination of new client sales Top rated wellness program Flexible working environment including remote and hybrid options What's in it for you: Working with an industry leader: Be part of a high-growth firm that is passionate for what's next. An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience. We call it the Aprio Way. This shared mindset creates lasting relationships between team members and with clients. A great team: Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture. Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally. Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement. Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance. EQUAL OPPORTUNITY EMPLOYER Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law. Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.

Posted 1 week ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
GuidehouseSpringfield, VA
Job Family: IT Cyber Security Travel Required: None Clearance Required: Active Top Secret SCI (TS/SCI) What You Will Do: The ISSO will support a large IC client Security & Infrastructure Office with information and data security procedures and processes. Regular duties will include: Operate within cleared environments to perform Information Assurance specific activities for customer needs and timelines. Perform assessments of systems and networks within the networking environment and identify where those systems or networks deviate from acceptable configurations, enclave policy, or applicable Agency policies and guidelines. Perform compliance audits (passive evaluation) and vulnerability assessments (active evaluation). Develop Risk Management Framework (RMF) process operating procedures, policies, and related documentation. Perform duties per NIST SP 900-137, Continuous Monitoring, and audit for anomalous or malicious user activity. Periodically review audits of all systems and monitor corrective actions to ensure closure of all action items. Manage media, including handling and control, labeling, virus-scanning solutions, and data transfers between classification domains via manual and automated processes. Create and enforce strict program control processes to ensure risk mitigation, system accreditation, and certification attainment support. Support will include process support, analysis support, coordination support, security certification test support, security documentation support, investigations, software research, hardware introduction and release, emerging technology research inspections, and periodic audits. What You Will Need: An ACTIVE and MAINTAINED TOP SECRET with SCI (TS/SCI) Federal or DoD security clearance Bachelor's degree FIVE (5) years of professional experience with the most recent THREE (3) being in Information Security or Information Assurance Meet requirements for DoD 8570 IAT Level I Certification (i.e. A+ CE CCNA-Security Network+ CE SSCP) What Would Be Nice To Have: An ACTIVE and MAINTAINED TS/SCI Federal with DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph Familiarity with security violation mitigation measures and incident reporting actions. Proficiency in computer networking concepts and protocols and network security methodologies. Familiarity with host/network access control mechanisms. Knowledge of cybersecurity principles to manage risks tied to use, processing, storage, and transmission of data. Demonstrated ability to conduct research and analysis for network and information system security principles and best practices. Knowledge of information security program management and project management principles and techniques. What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains including @guidehouse.com or guidehouse@myworkday.com. Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact recruiting@guidehouse.com. Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

Posted 30+ days ago

Sr. Information Systems Security Officer (Isso)-logo
Sr. Information Systems Security Officer (Isso)
Contact Government ServicesDallas, TX
Sr. ISSO Employment Type:Full-Time, Experienced /p> Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $118,560 - $171,253.33 a year

Posted 30+ days ago

Senior Security Engineer, Brokerage & Money-logo
Senior Security Engineer, Brokerage & Money
RobinhoodBellevue, WA
Join a leading fintech company that's democratizing finance for all. Robinhood Markets was founded on a simple idea: that our financial markets should be accessible to all. With customers at the heart of our decisions, Robinhood and its subsidiaries and affiliates are lowering barriers and providing greater access to financial information. Together, we are building products and services that help create a financial system everyone can participate in. With growth as the top priority... The business is seeking curious, growth-minded thinkers to help shape our vision, structures and systems; playing a key-role as we launch into our ambitious future. If you're invigorated by our mission, values, and drive to change the world - we'd love to have you apply. About the team + role The Robinhood Credit and Money Security team's mission is to not only protect Robinhood and it's customers, but also empower the organization to achieve its business goals securely and efficiently. As a Senior Security Engineer, you will work directly with members of the business as well as engineering to gain an understanding of, and help secure, the products and services offered by Robinhood Credit and Money. The role is located in the office location(s) listed on this job description which will align with our in-office working environment. Please connect with your recruiter for more information regarding our in-office philosophy and expectations. What you'll do You will conduct comprehensive security reviews of new products and features for existing products and recommend remediation strategies. You will collaborate with engineering and product teams to ensure security requirements are met and standard methodologies are followed. You will research new and emerging security threats to the business and provide recommendations on strengthening the security posture of the business. You will dive deep within the business you support and cultivate a security subject matter expertise What you bring You have a deep understanding of system and application architecture and are able to assess for security vulnerabilities and identify areas to strengthen You have experience in facilitating code reviews and understand how to recommend remediations identified in SAST/DAST reports You are familiar with the inner-workings of cloud environments and the unique challenges in securing them. You understand how to THINK like an offensive engineer resulting in blue team methodologies You use data for compelling story-telling on our security risk maturity and growth What we offer Market competitive and pay equity-focused compensation structure 100% paid health insurance for employees with 90% coverage for dependents Annual lifestyle wallet for personal wellness, learning and development, and more! Lifetime maximum benefit for family forming and fertility benefits Dedicated mental health support for employees and eligible dependents Generous time away including company holidays, paid time off, sick time, parental leave, and more! Lively office environment with catered meals, fully stocked kitchens, and geo-specific commuter benefits Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected salary range for this role is based on the location where the work will be performed and is aligned to one of 3 compensation zones. This role is also eligible to participate in a Robinhood bonus plan and Robinhood's equity plan. For other locations not listed, compensation can be discussed with your recruiter during the interview process. Zone 1 (Menlo Park, CA; New York, NY; Bellevue, WA; Washington, DC) $187,000-$220,000 USD Zone 2 (Denver, CO; Westlake, TX; Chicago, IL) $165,000-$194,000 USD Zone 3 (Lake Mary, FL; Clearwater, FL; Gainesville, FL) $146,000-$172,000 USD Click here to learn more about available Benefits, which vary by region and Robinhood entity. We're looking for more growth-minded and collaborative people to be a part of our journey in democratizing finance for all. If you're ready to give 100% in helping us achieve our mission-we'd love to have you apply even if you feel unsure about whether you meet every single requirement in this posting. At Robinhood, we're looking for people invigorated by our mission, values, and drive to change the world, not just those who simply check off all the boxes. Robinhood embraces a diversity of backgrounds and experiences and provides equal opportunity for all applicants and employees. We are dedicated to building a company that represents a variety of backgrounds, perspectives, and skills. We believe that the more inclusive we are, the better our work (and work environment) will be for everyone. Additionally, Robinhood provides reasonable accommodations for candidates on request and respects applicants' privacy rights. Please review the specific Robinhood Privacy Policy applicable to the country where you are applying.

Posted 30+ days ago

Head Of Cyber Security Governance-logo
Head Of Cyber Security Governance
Guardian LifeNew York, NY
Are you a Cybersecurity Leader with a passion for building resilient organizations and driving strategic change? Guardian is seeking a Security Leader to join our Security Governance team. As the Head of Cyber Security Governance, you will partner with cybersecurity teams and business units to embed security into strategic initiatives. You will lead the development and continuous improvement of Security Policies and Standards, Cybersecurity Project Advisory Services, and a robust Security Training & Awareness Program. Your role is critical to enhancing Guardian's security posture through innovation, automation, and operational excellence, while ensuring regulatory compliance and fostering a culture of secure-by-design thinking across the organization. You will Security Governance & Strategic Alignment Design, implement, and maintain enterprise-wide cybersecurity policies, standards, and procedures that align with industry frameworks and regulatory requirements (e.g., NIST CSF, ISO 27001, CIS Controls, SOC2, PCI-DSS, NYDFS). Provide strategic and tactical guidance to business and technology teams on secure architecture, risk mitigation, and compliance. Act as a security leader and liaison for designated business units or functions for security considerations across various projects, and initiatives. Align cybersecurity strategy with business goals to proactively identify and mitigate risks. Collaborate with executives, product leaders, and engineering teams to embed security into development and operations. Ensure global cybersecurity services, SLAs, KRIs, and processes meet defined objectives Risk Management & Governance Facilitate risk assessments, threat modeling, and security posture reviews. Identify and communicate cybersecurity and third-party risks to business stakeholders. Ensure compliance with regulatory frameworks and internal standards. Adapt and localize security policies to meet applicable regulatory and business requirements. Security Programs & Initiatives Drive initiatives in cloud security, access controls, third-party risk, and data protection. Translate technical risks into business-relevant language for leadership. Guide incident response and business continuity planning for critical functions. Culture, Awareness & Stakeholder Engagement Lead the development and delivery of a comprehensive cybersecurity training and awareness program tailored to diverse audiences across the organization. ·Promote a culture of security through engaging campaigns, simulations, and targeted education. Provide executive-level reporting on security posture, metrics, and risks. Foster a risk-aware, security-conscious culture across teams. You are A strategic thinker and hands-on leader who thrives in a collaborative, fast-paced environment. You bring a balance of technical expertise, business acumen, and communication skills that enable you to influence at all levels of the organization. You have 10+ years of experience in information security, IT risk management, or cyber risk consulting At least 5+ years in leadership roles interfacing with senior business stakeholders. Proven experience in highly regulated industries (e.g., banking, insurance, healthcare, or technology). Experience with security in hybrid or cloud-native environments (e.g., AWS, Azure, GCP). Familiarity with regulatory and compliance frameworks (e.g., NIST, NYDFS, SOC 2, PCI-DSS). Proven experience developing and managing security policies, standards, and awareness programs. Strong background in providing security advisory services for IT and business projects. Deep knowledge of enterprise security architecture, cloud security, and data governance. Strong business acumen with ability to translate security into strategic risk insights. Excellent communication, influencing, and stakeholder management skills. Ability to balance risk mitigation with business enablement. Proven ability to lead cross-functional teams and manage complex initiatives. Bachelor's or Master's in Information Security, or related field. Preferred certifications: CISSP, CISM, CRISC Reporting Relationships As our Head of Cyber Security Governance, you will report to our Deputy CISO who reports to the Chief Information Security Officer. Location Hybrid: 3 days in the office, 2 days WFH - Hudson Yards, New York City Salary Range: $148,940.00 - $244,685.00 The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation. Our Promise At Guardian, you'll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards. Inspire Well-Being As part of Guardian's Purpose - to inspire well-being - we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at www.guardianlife.com/careers/corporate/benefits. Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits. Equal Employment Opportunity Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law. Accommodations Guardian is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Guardian also provides reasonable accommodations to qualified job applicants (and employees) to accommodate the individual's known limitations related to pregnancy, childbirth, or related medical conditions, unless doing so would create an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact applicant_accommodation@glic.com. Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday.

Posted 3 weeks ago

HW Security Architect-logo
HW Security Architect
NXP Semiconductor, Inc.Austin, TX
Primary Responsibilities: Specification of innovative and disruptive security solutions Security requirements management and definition, linking security mechanisms to functional requirements Specification, design and review of security architectures Detailed attack modeling and definition of security mechanisms in hardware, firmware, protocols, etc. Advising and training the teams on design, implementation and test of hardware/software security mechanisms Detailed implementation reviews (RTL, firmware code) Planning, coordination and execution of pre-silicon vulnerability analysis (VA) Technical interface to customers and to the different business and product development teams Certification support and technical interface with evaluators and certifiers Root cause analysis of security defects and vulnerabilities Qualifications: Master/PhD in Cryptography, Security, Software Engineering or Electrical Engineering Minimum of 10 years industry experience in the design and development of Embedded Secure Systems. Strong knowledge of SoCs and/or Secure Element products Security background, ideally experience in embedded security Familiar with "state of the art" CAD tools (e.g. Cadence, …) Knowledge of Hardware description languages (System Verilog, VHDL) Able to work independently Excellent communication skills, both written and verbal Willing to travel internationally More information about NXP in the United States... NXP is an Equal Opportunity/Affirmative Action Employer regardless of age, color, national origin, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, marital status, status as a disabled veteran and/or veteran of the Vietnam Era or any other characteristic protected by federal, state or local law. In addition, NXP will provide reasonable accommodations for otherwise qualified disabled individuals. #LI-56ed

Posted 1 week ago

(198) System Security Engineer-logo
(198) System Security Engineer
Arlo SolutionsWashington, DC
Company Summary Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future. This opportunity is contingent upon award Company Summary Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future. Position Overview As a Cloud-focused System Security Engineer, you will be responsible for ensuring the integrity, confidentiality, and availability of systems and data. This role entails bridging security assessment requirements and ensuring they are completed ahead of deployment to enable a seamless integration into the DoD's CDAO ecosystem. Your expertise will be essential in identifying vulnerabilities, conducting risk assessments, and developing strategies to mitigate security risks. Work Location Washington, DC Job Responsibilities and/or Success Factors Design, implement, and maintain security infrastructure components such as firewalls, intrusion detection/prevention systems, VPNs, and encryption protocols to protect the organization's systems and data. Conduct regular vulnerability assessments and penetration testing to identify weaknesses in systems, applications, and network infrastructure. Develop and implement remediation plans to address identified vulnerabilities. Develop and maintain incident response plans and procedures. Lead incident response activities during security breaches or incidents, including investigation, containment, and recovery. Monitor security logs and alerts to identify potential security incidents or breaches. Analyze security event data to identify trends and potential security risks. Develop and enforce security policies, standards, and procedures in accordance with industry best practices and regulatory requirements. Ensure compliance with relevant guidance such as NIST, SSDF, OWASP, etc. Develop and deliver security awareness training programs to educate employees on security best practices and promote a culture of security awareness throughout the organization. Maintain accurate and up-to-date documentation of security configurations, procedures, and incident response plans. Support the design, test, and development of a secure modular open-source platform. Support investigation of system security hardening with updated POA&M and update A&A documentation for AWS, Azure, and government required Cloud Environments Support engineering, analysis, and implementation of CDAO cybersecurity acceptance criteria to run and deploy CDAO JATIC Platform, frameworks, packages, and toolkits from a government supported ecosystem. Support security engineering and documentation of core CDAO Platform as a distributable and accredited package from PYPI, other Open-Source Security Frameworks, and government supported marketplaces. Support Security Investigation and documentation for additional environments, as required. Stay abreast of the latest security threats, vulnerabilities, and technologies. Evaluate new security technologies and products to assess their suitability for the organization's security needs. Education and Minimum Qualifications Must be a US Citizen TS/SCI clearance Bachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred. Professional certifications such as CISSP, CISM, CEH, CCSK, SANS GIAC are highly desirable. Proven experience in designing, implementing, and maintaining security infrastructure components. Strong knowledge of network security protocols, cryptography, and secure coding practices. Experience in secure coding practices and development within a CI/CD DevSecOps environment. Expansive knowledge with integrating Iaas, Paas, and SaaS offerings into government cloud environments. Experience with security assessment tools such as Nessus, Metasploit, Nmap, Wireshark, etc. Experience with incident response procedures and tools. Familiarity with relevant regulations and compliance requirements. Excellent analytical and problem-solving skills. Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams. AAP Statement We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.

Posted 30+ days ago

Windows Security Researcher, Level 3-logo
Windows Security Researcher, Level 3
Independent SoftwareAnnapolis Junction, MD
What you will be doing! As a Level 3 Windows Security Researcher, you will be part of a team focused on conducting security research related to Windows technologies. The ideal candidate should be familiar with the latest techniques in vulnerability research and demonstrate the ability to adhere to best practices. Attention to detail is critical, especially when documenting research findings. Additionally, you will often be required to write code in C, Python, and Assembly to showcase control over identified vulnerabilities. Job Description / Requirements: Strong understanding of the Windows Kernel and device drivers Experience in reading and writing assembly language (x86/x64) Extensive experience with debugging tools (e.g., WinDBG) Proficient development experience in C, Python, and Assembly Ability to collaborate effectively with researchers and developers as part of a team Clearance Required: Must possess an active TS/SCI with Full Scope Polygraph security clearance to be considered for this role Independent Software is an Equal Opportunity Employer EOE, M/F/D/V

Posted 30+ days ago

KBR logo
Information System Security Officer (Isso)
KBRMaryland, LA
Apply

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

Title:

Information System Security Officer (ISSO)

: Information System Security Officer (ISSO)

Belong. Connect. Grow. with KBR!

KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country's most critical role - protecting our national security.

Why Join Us?

  • Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
  • Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
  • Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.

This is a contingent position based upon contract award

KBR is seeking a highly motivated and career-oriented Information System Security Officer (ISSO) to join our team supporting a government client in Maryland.

Responsibilities Include:

The Information System Security Officer (ISSO) is responsible for developing and implementing strategies to safeguard the organization's critical information assets, ensuring compliance with relevant security policies, standards, and regulations. The ISSO will help guide a team of professionals in identifying security risks, developing mitigation plans, and maintaining a robust security posture across the organization. The ideal candidate will have a strong background in space and intelligence systems with extensive experience using the Risk Management Framework (RMF). Responsibilities include:

  • Develop, update, and/or review RMF documentation to include the System Security Plan (SSP), Security Control Traceability Matrix (SCTM), Plan of Action and Milestone (POA&M), Risk Assessment Report (RAR), and Security Assessment Plan (SAP).
  • Assess system compliance against NIST, DoD, and IC security requirements to include the NIST 800-53 and 800-171 controls, and DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
  • Provide Subject Matter Expert (SME) knowledge on matters related to RMF activities across multiple systems and networks of various classifications.
  • Develop and implement information security policies, procedures, and guidelines in accordance with industry best practices, regulatory requirements, and required government policy.
  • Participate in sessions aimed at identifying, planning, and executing strategies in response to emerging cybersecurity policies.
  • Maintain awareness and knowledge of evolving security and risk management standards and communicate and apply relevant changes to existing processes.
  • Collaborate with cross-functional teams to ensure the security of new and existing systems and applications.
  • Other duties as assigned.

Required Skills and Experience:

  • Security Clearance Requirements: Active TS/SCI and willingness to sit for a poly upon request.
  • Bachelor's degree in computer science, information systems, or related field and at least ten (5) years of relevant work experience in IT or cybersecurity
  • Minimum of five (2) years of experience performing ISSM or ISSO duties in classified environments
  • DoD 8140-compliant baseline certification (CISSP preferred)
  • Experience with cloud service providers (CSPs) (e.g. AWS, Azure)
  • Demonstrated experience with Risk Management Framework
  • Familiarity and experience with technologies such as eMASS, Xacta, ACAS, and Splunk
  • Experience in assessing systems using NIST 800-53 and/or DISA STIGs and SRGs
  • Excellent oral and written communication skills.

Desired

  • Master's Degree preferred in Engineering, Computer Science

Basic Compensation:

  • $102,700.00 - $154,000.00 Annual

This range is for the Maryland area only

The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity.

Additional Compensation:

KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance.

Benefits:

KBR offers a selection of competitive lifestyle benefits which could include a 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver- Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver- Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.