Cyber Sentinel Skills Challenge
Cyber Security Engineer Job In Cincinnati, OH
Correlation One is hosting the Cyber Sentinel Skills Challenge, a unique, one-day cybersecurity competition sponsored by the U.S. Department of Defense (DoD). Win your share of a $15,000 prize pool, solve fun cybersecurity challenges, and access new job opportunities at the DoD.
This event is designed to help you:
Unlock career opportunities and get on the radar of DoD recruiters
Test your skills and gain experience solving some of the most pressing security threats globally through 20+ Capture the Flag-style simulations
Connect with your peers and build a strong, supportive network of cybersecurity professionals
Competition details:
When: June 14, 2025
Where: Virtual
Duration: 8 hours (11am - 7pm ET)
Cost: Free
Early application deadline: April 8, 2025
Total prize pool: $15,000
Experience required: All levels of cybersecurity are welcome
Challenge categories: Forensics, Malware/ Reverse Engineering, Networking & Reconnaissance, Open-Source Intelligence Gathering (OSINT), Web Security
About you:
You must be a U.S. Citizen or a permanent resident with a valid Green Card.
You must be over the age of 18.
Individuals from all levels of cybersecurity experience, whether you are a seasoned cybersecurity professional or just starting in the field, are welcome to apply.
Cyber Security Engineer
Cyber Security Engineer Job In Cleveland, OH
We are seeking a skilled Cybersecurity Specialist to join our team and support the development of NASA's Lunar Exploration Ground Sites (LEGS) and other space network related activities. As a Teltrium Cybersecurity Engineer, you will play a crucial role in ensuring the security and integrity of large development projects. You will work closely with cross-functional teams to design, implement, and maintain robust security measures that protect our digital assets and sensitive information from cyber threats.
Key Responsibilities:
Develop and implement security architectures for large-scale systems.
Conduct risk assessments and identify potential vulnerabilities.
Develop and manage security protocols in accordance with NIST 800-50, 800-47, and 800-53A standards.
Design and integrate security controls into the system development lifecycle.
Conduct detailed assessments of potential risks to systems and applications and develop strategies to mitigate these risks.
Perform security audits during development to ensure compliance with NIST and NASA standards and identify areas for improvement.
Qualifications:
Education
: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
Experience:
Minimum of 3 years of experience in cybersecurity, with a focus on NIST standards.
Certifications:
Relevant certifications such as CISSP, CISM, or CompTIA Security+ are preferred.
Role/Work Schedule:
This is a full-time, on-site position in Cleveland, Ohio.
Preferred Skills:
In-depth knowledge of NIST 800-50, 800-47, and 800-53A standards.
Proficiency in risk assessment and mitigation techniques.
Strong analytical and problem-solving skills.
Excellent communication and interpersonal skills.
Ability to work independently and as part of a team.
Familiarity with various security tools and technologies.
REMOTE Sr Cyber Security Engineer (Red Team Engineer) - No C2C
Remote Cyber Security Engineer Job
REMOTE Cyber Security Engineer (Red Team) - No C2C and No Sponsorship
MUST LIVE IN: Illinois, New York, Texas, or Washington D.C.
One of the world's most prominent derivatives marketplace is focused on seeking highly motivated individuals to help foster their corporate culture and uphold their core values with integrity. In this role, you will be working with the most advanced trading technology and industry-leading clearing and risk management capabilities. Come join their world-class team!
This Contract role as a Remote Cyber Security Engineer - Red Team (must live in Illinois, New York, Texas, or Washington D.C.), is responsible to lead red team exercises against a hybrid environment using threat intelligence and the MITRE ATT&CK Framework.
Responsibilities:
· Lead red team exercises against a hybrid environment using threat intelligence and the MITRE ATT&CK Framework.
· Participate in purple team exercises that are intelligence driven to test cyber detections
· Build and maintain Red and Purple team infrastructure, automating functions where possible.
· Continually research new offensive security tactics, techniques, and procedures and communicate knowledge of the same to other team members.
· Conduct ad-hoc offensive security testing using industry standard tools and/or internally developed tools.
· Lead report creation activities including compromise narratives and detailed technical findings with appropriate risk severity ratings, tactical and strategic recommendations to reduce risk levels, peer review of team's deliverables.
· Assist cyber defense teams during incident investigations providing subject matter expertise on attacker tradecraft and mindset.
· Interface with other information security departments, as well as other technology departments and business stakeholders to raise awareness of security issues and to provide knowledge sharing on remediation.
· Active contributor to Red and Purple Team activities for internal presentations and conference.
Requirements:
· Approx 8 years' experience with industry standard Red Team testing tools (Cobalt Strike, Mythic C2, Rubeus, Bloodhound, Covenant, etc.); or the ability to demonstrate equivalent knowledge.
· Expert understanding of how an Advanced Persistent Threat could compromise a financial institution without using phishing.
· Expert understanding of Red Team concepts, tools, and automation strategies.
· Expert understanding of MITRE ATT&CK framework tactics, techniques, and procedures.
· Expert understanding of measuring and rating vulnerabilities based on principal characteristics of a vulnerability.
· Expert understanding of Windows and Linux system hardening concepts and techniques.
· Expert understanding of modifying payloads to bypass detections like EDR.
· Expert understanding of how to compromise a company without using phishing.
· Strong understanding with at least one scripting language (Python, Ruby, PowerShell, Bash, etc.).
· Experience with at least one cloud environment (AWS, GCP, Azure).
· Experience attacking cloud, on-prem and/or hybrid environments from initial access all the way through actions on objective.
Nice to have:
· Previous experience of Red Team project delivery to include creation and execution of statement of work, risk mitigation strategies, and working with stakeholders to remediate findings.
· Experience of using multi operating system command and control tools.
· Experience developing custom attack tradecraft or modifying existing tools.
· Experience using automated configuration management such as Chef.
· Experience discovering and exploiting vulnerabilities in AI systems.
· Experience of conducting Offensive Security and/or Red Team exercises against mac OS, iOS, or ChromeOS.
· Recognized industry certifications such as, but not limited to, GPEN, GXPN, GREM, eCPTX, eCPPT, OSCP, OSWE, CISSP, CPSA, CRT, etc.
· Knowledgeable in Industry Security standards (i.e.: TIBER-EU, CBEST, NIST Cyber Security Framework, ISO27002, etc.).
· Knowledgeable in Agile project management.
Benefits:
Solving IT, a Woman and LGBTQ+ owned and operated organization is thrilled to provide a comprehensive benefit package to all our W2 employees and their families, regardless of gender. We are proud to offer five diverse health plan options as well as a PPO dental plan through Blue Cross Blue Shield, Term Life/AD&D Insurance, and a 401(k) Savings Plan. Solving IT covers a portion of the health and dental premiums for our employees.
As you progress in your professional journey, Solving IT is dedicated to accommodating your evolving preferences and matching you with fulfilling projects. We champion equality and embrace diversity in all its forms. Creating an atmosphere that encourages varied perspectives to collaborate fosters personal development, strengthens team unity, and contributes to the overall success of the organization!
Whether you're seeking your next career challenge or aiming to stay abreast of industry trends, Solving IT is committed to supporting your career advancement. We actively encourage applications from all backgrounds and utilize the most up-to-date market insights and compensation data to ensure that you receive not just advice, but the complete Solving IT Experience.
Securities Lending Analyst
Cyber Security Engineer Job In Columbus, OH
The SBL Lender's primary objective is to manage a specific credit portfolio. Core responsibilities include:
• Analyzing, structuring, pricing, risk-grading and documenting lines of credit, term loans and standby letters of credit
• Providing guidance to market partners with questions on client needs and how to accomplish that within the SBL credit mandate
• Review of other transactions that have the element of credit risk, including the annual review of existing products
• Role includes approval authority and typically final approval within credit authority on new deals, amendments and reviews
Qualifications:
- Bachelor degree or related prior experience preferred
- Candidates should have 0-5 years of private banking/asset management, and credit/lending experience
- Strong communication and interpersonal skills
- Good organizational skills and ability to work with minimal supervision in a high production and fast-paced environment
- General understanding of financial markets and securities industry
- Ability to work well in an integrated team alongside a range of personality types
Senior Advanced Security Engineer
Cyber Security Engineer Job In Cincinnati, OH
**This role requires 4 days/ week onsite
Are you passionate about safeguarding applications and ensuring robust security? Do you thrive in dynamic environments where your expertise can make a real impact? If so, we have the perfect opportunity for you!
About the Role:
As a Sr. Advanced Security Engineer on our CIS Cyber Resilience Team, you'll be at the forefront of protecting Kroger's digital assets. Your mission, should you choose to accept it, involves diving deep into application security, pen-testing, and secure coding practices. You'll play a crucial role in identifying and mitigating vulnerabilities, ensuring our applications and infrastructure are rock-solid.
What You'll Do:
Assess & Protect: Conduct thorough security assessments and pen-tests on Kroger websites and services.
API Security: Lead the charge in supporting our new solution for API-based security issues.
Tool Mastery: Provide expert support for various application security tools, becoming the go-to person for all things security.
Educate & Advocate: Help developers understand vulnerabilities and articulate the risks, guiding them on effective remediation techniques.
Collaborate & Innovate: Work closely with architects, developers, and CIS counterparts, while also engaging with industry experts and utilizing cutting-edge tools to stay ahead of threats.
Skills Required:
Experience with Dynamic Application Security Tools (specifically HCL Appscan, Burp Suite)
Experience with Static Source Code Analysis Tools (specifically SNYK)
Experience with Software Composition Analysis Tools (specifically SNYK)
Experience with API Security Tools (specifically NoName Security)
Experience with PostMan API Platform
Proficiency in programming and scripting languages.
What Success Looks Like:
Subject Matter Expert: You're the go-to expert for application security tooling.
Risk Communicator: You can clearly explain vulnerabilities and their risks to developers.
Problem Solver: You provide practical solutions for remediation, ensuring our applications are secure.
Ready to make a difference? Apply now and join us in our mission to secure Kroger's digital future!
Security Engineer
Remote Cyber Security Engineer Job
About Us At the Commonwealth of Kentucky, we are committed to enhancing our community through technology and innovation. Our healthcare professionals and application specialists work to ensure the safety and well-being of our residents. If you are seeking a meaningful role where you can make a tangible impact on healthcare and technological advancement, this opportunity may be the perfect fit.
The Opportunity
The Office of Application and Technology Services (OATS) is seeking a highly motivated Information Security Architect to join our team. Reporting to the Chief Information Security Officer (CISO), this role serves as the principal security advisor responsible for planning, designing, implementing, and maintaining security frameworks across the division.
As the Subject Matter Expert (SME) for security operations, you will collaborate with internal development teams and vendor partners to strengthen the security posture of our systems. This role requires expertise in risk assessment, compliance, security architecture, and strategic planning to protect sensitive information and assets.
Key Responsibilities
Security Program Development & Strategy
* Assess the current security program, define future security strategies, and develop an implementation roadmap.
* Develop key performance indicators (KPIs) to measure security program effectiveness.
* Collaborate with division leaders to ensure security initiatives align with business objectives.
Security Policy & Compliance
* Design and enforce security policies and procedures aligned with industry best practices.
* Ensure compliance with regulatory frameworks such as FISMA, FedRAMP, ISO 27001, NIST, and COBIT.
* Provide guidance on security decisions based on organizational vision and mission.
Security Architecture & Infrastructure
* Develop a security architecture framework aligned with business and technology needs.
* Design security strategies and roadmaps for cloud and on-premise environments.
* Establish baseline security configurations for operating systems, network segmentation, and access management.
Risk Assessment & Incident Response
* Conduct risk assessments, threat modeling, and vulnerability analysis for applications and services.
* Develop and maintain incident response plans to effectively mitigate security threats.
* Perform forensic investigations to analyze and prevent future security incidents.
Collaboration & Secure Development
* Work closely with DevOps teams to integrate security best practices into the development lifecycle.
* Advocate for secure coding standards and escalate concerns regarding insecure coding practices.
* Partner with privacy and compliance teams to safeguard sensitive data.
Security Awareness & Training
* Develop and deliver security awareness training to educate employees on risks and best practices.
* Provide ongoing support to teams regarding security-related inquiries.
Preferred Qualifications
Education & Experience
* Bachelor's degree in Computer Science, Information Security, or a related field (advanced degree preferred).
* 5+ years of experience in information security architecture, design, and implementation.
* Strong background in security regulations, compliance, and risk management.
Certifications (Preferred but Not Required)
* Certified Information Systems Security Professional (CISSP)
* Certified Information Security Manager (CISM)
* Certified Information System Auditor (CISA)
* Other relevant security certifications
Technical & Leadership Skills
* In-depth knowledge of network security, encryption, authentication, and identity management.
* Experience implementing security tools and technologies (firewalls, IDS/IPS, endpoint protection, etc.).
* Strong communication skills to translate security concepts for technical and non-technical stakeholders.
* Ability to work independently and lead security initiatives across teams.
* Strong problem-solving and analytical skills with an innovative mindset.
Job Type: Contract
Pay: $50.00 per hour
Schedule:
* Monday to Friday
Work Location: Remote
Senior Security Engineer
Remote Cyber Security Engineer Job
We are Bugcrowd. Since 2012, we've been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd, visit ***************** Based in San Francisco and New Hampshire, Bugcrowd is supported by General Catalyst, Rally Ventures, Costanoa Ventures, and others.
Job Summary
The Senior Security Engineer's role is to aid the organizational security efforts of Bugcrowd, while proactively improving our security posture. As the last line of defense for one of the largest crowdsourced security platforms, you will be challenged regularly! Accordingly, we require a motivated team who are willing to push their own boundaries and step out of their comfort zones, while being supported by Bugcrowd and the director of Cybersecurity. The Senior Security Engineer will receive mentoring from the team, while providing mentoring to others, and you will be responsible for managing your individual engineering workload. This role also requires excellent communication skills as the cybersecurity department liaises with all other departments within the company.
Essential Duties and Responsibilities
Security Architecture and Application Security - Working with developers to uplift the current security controls and architecting solutions.
Tool Creation - Creating tools used internally for securing the company, majorly in Python and Golang.
Operations / Incident Response - Aiding with the process of Incident Response, and security operational activities when required.
Risk Management - Assessing the risk behind security issues, and tracking core metrics.
Pentesting - Performing security assessments of Bugcrowd assets (and vendors).
Quality Improvement - Contributing to the continual improvement of the Cybersecurity team's policies and standards of practice.
Experience Required
5+ years of experience in a similar role or its equivalent.
Familiarity with application security testing techniques (can perform a security assessment and code review should they be given a product, identifying weaknesses, ability to document findings, exploit development experience is a bonus).
Knowledge of OWASP Top 10 and common security vulnerabilities of modern web apps.
Knowledge of Incident Response and operating systems as this role requires responding to incidents within the specified timezone.
Knowledge of threat intelligence.
Ability to understand a vulnerability and work with developers to patch it.
Great communicator who is comfortable communicating across multiple teams.
Self-motivated, autonomous and organized - must be able to operate from a calendar, be punctual, and manage timelines of projects/tasks for self and others.
Cloud experience (AWS preferred).
Understanding of Identity and Access Management (IAM).
Ability to proactively find solutions (i.e., figure things out for themselves, look at configurations, learn what they mean, document potential solutions to solve the problems).
Has the ability to be self-sufficient.
Has some prior red teaming knowledge.
Familiarity with git and pull requests is a must.
Familiarity with a ticketing system / issue tracking system is a must (e.g: Notion and Jira).
Preferred Bachelor's Degree in Computer Science, MIS or equivalent experience.
Working Conditions
The ideal candidate must be able to complete all physical requirements of the job with or without reasonable accommodation.
Sitting and/or standing - Must be able to remain in a stationary position 50% of the time.
Carrying and/or lifting - Must be able to carry/move laptop as needed throughout the work day.
Environment - remote, work-from-home 100% of the time.
Culture
At Bugcrowd, we understand that diversity in the workplace is vital to a company's success and growth. We strive to make sure that people are included and have a sense of being part of making Bugcrowd not only a great product but a great place to work.
We regularly hear from both customers and researchers that Bugcrowd feels like a family, and we strive to maintain that internally as well.
Our team consists of a broad range of people: musicians, adventure sports junkies, nature lovers, parents, cereal enthusiasts, night owls, cyclists, artists-you get the point.
At Bugcrowd, we are solving security threats and vulnerabilities that are relevant to everyone, therefore we believe solving these problems takes all kinds of backgrounds. We value the perspectives and experiences people from underrepresented backgrounds bring.
Disclaimer
This position has access to highly confidential, sensitive information relating to the technologies of Bugcrowd. It is essential that the applicant possess the requisite integrity to maintain the information in the strictest confidence.
The company is authorized to obtain background checks for employment purposes under state and federal law. Background checks will be conducted for positions that involve access to confidential or proprietary information (including trade secrets).
Background checks may include Social Security verification, prior employment verification, personal and professional references, educational verification, and criminal history. Applicants with conviction histories will not be excluded from consideration to the extent required by law.
Bugcrowd is EOE, Disability/Age Employer.
Individuals seeking employment at Bugcrowd are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.
#J-18808-Ljbffr
Senior Security Engineer
Remote Cyber Security Engineer Job
Your Impact
You are excited about the care, feeding, and growth of high-availability, scalable, cloud-based systems with a strong focus on security. You will respond to and investigate escalated security incidents. You will help to create and implement sophisticated monitoring and detection techniques. We need a high-energy security professional to help expand and mature our security operations. There are plenty of challenges to conquer that requires a range of security knowledge, experience, and passion.
What You'll Do
Location: Work from home as much as you want, live nearby any of our awesome US R&D Hubs (Seattle, Scottsdale, San Francisco, Atlanta, or Boston) so you can easily collab in-person when it's helpful and be an active part of our vibrant Axon culture.
Reports to: Security Operations Center Manager
Direct Reports: 0
Design, develop, implement, and maintain tooling to improve Axon's ability to detect and respond to security events
Participate in an on-call rotation to investigate and remediate escalated security events, serving as a final point of escalation for complex issues beyond routine alerts.
Evaluate and integrate new security tools and technologies into the SOC
Partner with teams throughout the company to help design and build solutions that enable Axon employees to do their jobs securely.
Write run books and occasionally draft incident reports for leadership
Engineer solutions to address current security attack methods and detection techniques.
Provide input to the overall Information Security Program for enhancing the information security strategy when necessary.
Stay current on security industry trends, attack techniques, mitigation techniques, and security technologies by attending conferences, networking with peers, and other educational opportunities.
What You Bring
A fundamental understanding of how modern, distributed cloud-based applications function
Demonstrated experience in security best practices, or an interest in building and expanding that knowledge
Experience responding to and investigating information security events and incidents
1+ year(s) of experience using SOAR and SIEM solutions
Fluency in development languages like Python or Go, and shell scripting (bash/powershell)
Experience in interacting with cloud platforms like Azure and AWS via APIs
Working competency with GitOps
Strong problem solving skills, including the ability to analyze complex information to discover root cause.
Strong written and verbal communication skills.
Bachelor's degree or higher, or equivalent experience.
Benefits that Benefit You
Competitive salary and 401k with employer match
Discretionary paid time off
Paid parental leave for all
Medical, Dental, Vision plans
Fitness Programs
Emotional & Mental Wellness support
Learning & Development programs
And yes, we have snacks in our offices
Benefits listed herein may vary depending on the nature of your employment and the location where you work.
The Pay: Axon is a total compensation company, meaning compensation is made up of base pay, bonus, and stock awards. The starting base pay for this role is between USD 127,350 in the lowest geographic market and USD 203,760 in the highest geographic market. The actual base pay is dependent upon many factors, such as: level, function, training, transferable skills, work experience, business needs, geographic market, and often a combination of all these factors. Our benefits offer an array of options to help support you physically, financially and emotionally through the big milestones and in your everyday life. To see more details on our benefits offerings please visit ******************************
#J-18808-Ljbffr
Data Security Architect DLP
Cyber Security Engineer Job In Milford, OH
Must Have Technical/Functional Skills
Data Security, DLP, Microsoft Purview, Cyber security, Sensitivity labelling
Roles & Responsibilities
• Develop and apply security & privacy best practices into all projects that collect, store, and disseminate consumer data.
• Implement programs to secure data in Customer environment by developing and applying security policies using Microsoft Purview.
• Closely work along with Architects from our Data Visualization, Data Analytics, Data Storage, and our Global Privacy Teams to integrate security best practices creatively and seamlessly into our Data collecting, Data storing and Data dissemination platforms.
• Work with Application owners and Privacy Teams to develop and deploy industry best practices for management Authentication and Authorization to consumer data.
• Architect and Engineer data protection mechanisms for data at rest and data in transit.
• Deploy security best practices for interface integrations between data origin, data lake, data consumers as well as supporting middleware.
• Work with Global Security Team to Audit User permissions, monitor and mitigate risks to the data store.
Generic Managerial Skills:
Strong interpersonal skills, with an emphasis on the ability to effectively influence others and develop productive working relationships
Salary Range: $100,000-$150,000 a year
Information Systems Security Officer - Clearance Required
Remote Cyber Security Engineer Job
Description:What We're Doing: Lockheed Martin, Rotary Mission Systems Cyber & Intelligence invites you to step up to one of today's most daunting challenges: the use of advanced electronics to undermine our way of life. As a cyber security professional at Lockheed Martin, you'll protect the networks that our citizens and the world depend upon each minute: Financial assets. Healthcare information. Critical infrastructure. Hazardous materials. The uninterrupted flow of energy that keeps modern life moving. Here, you'll work with cybersecurity experts on the forefront of threat protection and proactive prevention. In this fast-paced, real-world environment, you'll draw on all your education and experience as well as the resources of Lockheed Martin to keep the threats at bay.
Cyber | Lockheed Martin
Who we are:
The program is on fire for cyber. In support of our customer, members of the team are responsible for providing full lifecycle support including analysis, design, development, integration, testing, procurement, deployment, security, training and sustainment for collection and antenna systems.
Why Join Us:
Your Health, Your Wealth, Your Life
Our flexible schedules, competitive pay and comprehensive benefits enable you to live a healthy, fulfilling life at and outside of work.
Learn more about Lockheed Martin's competitive and comprehensive benefits package.
We support our employees, so they can support our mission.
The Work:
In this important role, the Information Systems Security Engineer (ISSE) will:
• Participate as a security engineering representative on engineering teams for the design, development, implementation and/or integration of secure networking, computing, and enclave environments
• Participate as a security engineering representative on engineering teams for the design, development, implementation and/or integration of IA architectures, systems, or system components
• Participate as the primary security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of secure networking, computing, and enclave environments
• Apply knowledge of IA policy, procedures, and workforce structure to design, develop, and implement secure networking, computing, and enclave environments
• Interact with the customer and other project team members
• Participate as the primary security engineering representative on engineering teams for the design, development, implementation, evaluation, and/or integration of IA architectures, systems, or system components
• Support the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures
• Support security planning, assessment, risk analysis, and risk management
• Identify overall security requirements for the proper handling of Government data
• Provide security planning, assessment, risk analysis, and risk management
• Perform system or network designs that encompass multiple enclaves, to include those with differing data protection/classification requirements
• Recommend system-level solutions to resolve security requirements
• Support the Government in the enforcement of the design and implementation of trusted relationships among external systems and architectures
This position is participating in our External Referral Program. If you know somebody who may be a fit, click here to submit a referral. If your referral is hired, you'll receive a $3000 payment! Code extrefer
#extrefer
#RMSIL2025
#onelmjob
Basic Qualifications:
• Candidate must possess active security clearance with a polygraph
• Fourteen (14) years experience as an ISSE on programs and contracts of similar scope, type, and complexity is required
• Bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required. Four (4) years of ISSE experience may be substituted for a bachelor's degree
• DoD 8570.01-M compliance with IASAE Level 2 is required CISSP Certification is required
• Full understanding of the Risk Management Framework (RMF) process & procedures
• Experience with NIST 800-53 security control implementation and self-testing
• Experience reviewing vulnerability scans
Desired Skills:
Experience with:
• System Security Plans
• Information System Certification and Accreditation processes
• Risk management Frameworks
Clearance Level: TS/SCI w/Poly SP
Other Important Information You Should Know
Expression of Interest: By applying to this job, you are expressing interest in this position and could be considered for other career opportunities where similar skills and requirements have been identified as a match. Should this match be identified you may be contacted for this and future openings.
Ability to Work Remotely: Onsite Full-time: The work associated with this position will be performed onsite at a designated Lockheed Martin facility.
Work Schedules: Lockheed Martin supports a variety of alternate work schedules that provide additional flexibility to our employees. Schedules range from standard 40 hours over a five day work week while others may be condensed. These condensed schedules provide employees with additional time away from the office and are in addition to our Paid Time off benefits.
Schedule for this Position: 9x80 every other Friday off
Pay Rate: The annual base salary range for this position in California and New York (excluding most major metropolitan areas), Colorado, Hawaii, Illinois, Maryland, Minnesota, Washington or Washington DC is $139,600 - $246,100. For states not referenced above, the salary range for this position will reflect the candidate's final work location. Please note that the salary information is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Life Insurance, Short-Term Disability, Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Education Assistance, Parental Leave, Paid time off, and Holidays.
(Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.
This position is incentive plan eligible.
Lockheed Martin is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics.
The application window will close in 90 days; applicants are encouraged to apply within 5 - 30 days of the requisition posting date in order to receive optimal consideration.
Join us at Lockheed Martin, where your mission is ours. Our customers tackle the hardest missions. Those that demand extraordinary amounts of courage, resilience and precision. They're dangerous. Critical. Sometimes they even provide an opportunity to change the world and save lives. Those are the missions we care about.
As a leading technology innovation company, Lockheed Martin's vast team works with partners around the world to bring proven performance to our customers' toughest challenges. Lockheed Martin has employees based in many states throughout the U.S., and Internationally, with business locations in many nations and territories.
Experience Level: Experienced Professional
Business Unit: RMS
Relocation Available: Possible
Career Area: Information Security/Information Assurance
Type: Task Order/IDIQ
Shift: First
Cyber Security Engineer
Cyber Security Engineer Job In Columbus, OH
div itemprop="description"section class="job-section" id="st-company Description"divp class="googlejobs-paragraph--empty"/ph2 class="title"Company Description/h2/divdiv class="wysiwyg"pAll SA Technologies requirements are Direct Client Requirements from IT Hiring Managers.
We guarantee you the best rate for your skills and performance.
/p/div/sectionsection class="job-section" id="st-"divp class="googlejobs-paragraph--empty"/ph2 class="title"/h2/divdiv class="wysiwyg" itemprop="responsibilities"pHello,br/br/br/Title: Cyber Security Engineerbr/br/Location: Columbus, OHbr/br/Contract Duration: 6 monthsbr/br/br/br/br/Job Description:br/Hired candidate will be responsible for information cyber security analysis amp; response with the mission of protecting the firm from internet attacks / threat actors.
br/br/-Lead initiatives and the implementation of capabilities in order to advance the Cyber Threat program.
br/-Enhance and distribute security incident response and escalation procedures to ensure timely and effective handling of security events and alerts -Apply knowledge of technical, analytical skills to ensure the confidentiality, integrity, and availability of all information systems assets and ensure compliance with company policies, procedures, contractual, and regulatory requirements.
br/-A solid understanding of Penetration Testing, Vulnerability Management, Threat Vector Analysis, Intrusion Detection and Prevention, Incident Management and Response, Web Application Security, Risk Assessment and Mitigation methodologies, and Counter Threat Operations.
br/-Extensive knowledge of all common business-related IT functions -Able to identify potential online security risks -Adept at preparing detailed training procedures -Solid understanding of various security software applications -Strong work ethic that includes solid attendance record and frequent overtime -Excellent internal and external communications skillsbr/br/br/br/br/br/br/br/br/br/br/br/br//p/div/sectionsection class="job-section" id="st-additional Information"divp class="googlejobs-paragraph--empty"/ph2 class="title"Additional Information/h2/divdiv class="wysiwyg" itemprop="incentives"pAll your information will be kept confidential according to EEO guidelines.
/p/div/section/div
Virtual Cyber Security SDR, BDR, Contract to Hire
Remote Cyber Security Engineer Job
Company Overview: Our Client is a leading provider of cutting-edge cybersecurity solutions to protect businesses from evolving digital threats. They pride themselves on our innovative approach to safeguarding sensitive data, networks, and systems. Their team of experts provides comprehensive cybersecurity solutions that empower organizations to navigate the complex digital landscape with confidence.
Position Summary: As a Virtual SDR, BDR at our Client, you will play a pivotal role in driving the success of our cybersecurity solutions across the United States. As one of the first 20 employees, you will play a vital role in shaping the direction of our company and driving growth. Their recent seed round raised an unbelievable $11M at a $36M valuation, and the founders' last venture resulted in a big exit with the sale of the company to Microsoft.
They operate in the IT Security space and are 100% virtual. In this dynamic and customer-facing role, you will leverage your technical expertise and sales acumen to provide strategic guidance and support to our clients throughout the sales process.
This position offers a unique blend of technical knowledge, sales skills, and the opportunity for nationwide travel.
We Are Looking For:
As a mid-level Business Development Rep. (BDR SDR) you'll be at the tip of the spear, responsible for researching and qualifying top of funnel leads while being the first to connect with our potential customers. You'll research and build contact lists, make outbound cold calls/emails to those who fit our Ideal Customer Profile (ICP) and will then partner with AEs to get customers onboarded. This position will spend roughly 80% of the time on the phone or email prospecting for new clients. This position is a great way for individuals to gain in-depth sales experience with a rapidly growing SaaS security company looking to win the category!
What You'll Do:
Generate high volume quality MQLs through various direct sales efforts such as calls, emails, events, webinars, and other channels generated by Marketing.
Make daily outbound calls/emails to prospects who have demonstrated interest.
Follow up on all calls and emails until meetings are booked or you've been able to move the prospect through the funnel.
Record all activities and properly manage lead stage/flow in our Salesforce CRM.
Achieve or exceed monthly quotas of meetings, demos, and qualified leads worked with AEs.
Schedule product demos on AE's calendar.
Discern buyer intent and partner with AEs to get the right customers onboarded.
Work closely with Marketing, Product, and CS/CX to clearly communicate critical top-of-funnel feedback and suggestions that help optimize segmentation, content, & features.
What You'll Need:
Must have BDR/SDR experience in the SaaS or similar software space
Great speaking self-awareness and ability to read prospect signals and adjust accordingly to move the prospect down the funnel.
Must have a clear, easy-to-understand phone voice and a professional Zoom presence with the ability to engage and empathize over the phone.
Hands-on experience with multiple sales prospecting techniques like cold calling, cold emailing, video conference selling, and social outreach is a must.
Knowledge of sales & marketing constructs, the evergreen funnel, and playbooks are important.
Must be a great listener with an ability to address objections graciously and frame the next steps clearly.
Good writers and creative thinkers needed - Must be able to craft well-written (great grammar and spelling), compelling emails, and responses that lead prospects down the funnel.
Verifiable track record of success and goal attainment in a frontline sales-oriented role
Deep knowledge of software and social networks (especially LinkedIn, Facebook, and Twitter) is important.
Track record of (over)achieving sales quotas.
Must have a strong, self-motivated drive, passion, and desire to deliver results.
Experience in a fast-growing startup environment is a big plus.
What We Offer:
Contract to Hire, Strong Salary plus comm after 90 days
Full Benes
PreIPO equity
Be part of an exciting high-growth SaaS organization
An impactful role with lots of growth potential
A lot of freedom to apply your creative and strategic skills
A work-hard, play-hard environment
100% virtual
Virtual Cyber Security SDR, BDR, Contract to Hire
In-Vehicle Cyber Security Engineer
Cyber Security Engineer Job In Columbus, OH
We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves?
The In-Vehicle Cybersecurity Engineer will act as a technical lead designing security into our vehicles. Engineers will evaluate, critique, and drive secure designs from concept to implementation. In-Vehicle Cybersecurity Engineers identify new methods of securing our technologies from drafting specifications to executing testing.
Engineers need to be able to understand and evaluate risk for in-vehicle systems. Recognizing and accommodating the limitations of embedded in-vehicle systems is essential. Engineers are expected to take ownership of assignments including developing in-depth understanding of the technologies under review, working to close security gaps and mitigate identified vulnerabilities, and report out to security management. Over time, Engineers will grow to become subject matter experts acting to develop and mature security controls and features in the vehicle.
**What you'll do...**
+ Own ECU and Vehicle level cyber security design and process integration
+ Interface with cross-functional teams on technical issues related to cyber security
+ Perform risk analysis (i.e. TARA) so that appropriate countermeasures can be developed
+ Develop and maintain security requirements and design validation methodologies (DVM)
+ Develop and maintain technical documentation as required
+ Provide training and consulting to internal Ford function teams
+ Support major product programs/new features with security needs
+ Collaborate on Advanced Engineering projects with internal and external partners
+ Research technologies and security benchmarking data gathering
+ Some traveling may be required (conferences, regional team meetings, government/academia visits, etc.)
**You'll have...**
+ Bachelor's Degree in Electrical Engineering, Computer Engineering, Software Engineering or Computer Science OR a combination of education and experience
+ 5+ years of experience with embedded, IoT and/or automotive systems cyber security
+ Experience with security system engineering, development, and testing
+ Experience with networking and communication protocols (e.g. firewall config, TLS, MACsec, etc.)
+ Experience designing cyber security controls such as secure communication/networking, secure gateway, IDS, IPS, secure boot, etc.
+ Experience developing and maintaining engineering documentation including requirements, specifications, test plans, etc.
+ Self-starter with ability to work independently and collaboratively
+ Strong communication and analytical skills
**Even better, you may have...**
+ Master's Degree in Cyber Security, Electrical Engineering, Computer Engineering, Software Engineering or Computer Science is a plus
+ 7+ years of experience with embedded, IoT and/or automotive systems cyber security
+ Experience with in-vehicle network architecture, modules, and protocols (Automotive Ethernet, CAN/CAN-FD, J1939, USB, SPI, UART, JTAG, etc.)
+ Experience with symmetric and asymmetric cryptography, digital signature, hash, message authentication, encryption, key exchange
+ Experience with HSM, SHE, TEE, SELinux, hypervisor, etc.
+ Experience with SecOC, AUTOSAR
+ Understanding of embedded RTOS and Linux based operating systems
+ Understanding of system level architecture, development, design principals
+ Experience with at least one modern software programming language (C, C++, C#, Python, Java, etc.)
+ CISSP, GSEC, etc. are a plus
This description outlines the general nature and scope of work typically performed in this job. It is not intended to be an exhaustive list of all duties, responsibilities, knowledge, skills, work requirements, etc. It may vary slightly based on business or geographic needs and is subject to being reviewed and updated periodically.
You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!
As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder...or all of the above? No matter what you choose, we offer a work life that works for you, including:
- Immediate medical, dental, vision and prescription drug coverage
- Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
- Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
- Vehicle discount program for employees and family members and management leases
- Tuition assistance
- Established and active employee resource groups
- Paid time off for individual and team community service
- A generous schedule of paid holidays, including the week between Christmas and New Year's Day
- Paid time off and the option to purchase additional vacation time.
For a detailed look at our benefits, click here:
******************************* (****************************************************************************************************************************************************************************
This position is a range of salary grades **7-8.**
Visa sponsorship is not available for this position.
SOUTHEAST MI RESIDENTS: Please note, this job is posted as remote unless the selected candidate lives within 50 miles of Dearborn, MI. In this case we request the candidate to be on-site 1-2 days a week.
Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************.
\#LI-Remote
**Requisition ID** : 41638
Cyber Security Analyst/Implementation Specialist
Cyber Security Engineer Job In Columbus, OH
Responsibility for information cyber security analysis & response with the mission of protecting the firm from internet attacks / threat actors. Lead initiatives and the implementation of capabilities in order to advance the Cyber Threat program Enhance and distribute security incident response and escalation procedures to ensure timely and effective handling of security events and alerts
Apply knowledge of technical, analytical skills to ensure the confidentiality, integrity, and availability of all information systems assets and ensure compliance with company policies, procedures, contractual, and regulatory requirements.
A solid understanding of Penetration Testing, Vulnerability Management, Threat Vector Analysis, Intrusion Detection and Prevention, Incident Management and Response, Web Application Security, Risk Assessment and Mitigation methodologies, and Counter Threat Operations.
Qualifications
Cyber Security Analyst/Implementation Specialist - need someone that has broad cyber security knowledge that can not only recommend solutions, but more importantly also has experience implementing/managing those solutions.
MUST HAVE JAVA DEVELOPMENT BACKGROUND
Need solid remediation experience - how to remediate vulnerabilities in a web application
CISSP certification is nice to have, not mandatory
Additional Information
Job Status: Contract to Hire
Eligibility: EAD Green Card/ Green Card/ US Citizens
Share the Profiles to *********************
Contact:
************
Keep the subject line with Job Title and Location
Senior Information Security & Risk Engineer
Cyber Security Engineer Job In Columbus, OH
Headquartered in Dublin, Ohio, Cardinal Health, Inc. (NYSE: CAH) is a global, integrated healthcare services and products company, providing customized solutions for hospitals, health systems, pharmacies, ambulatory surgery centers, clinical laboratories and physician offices worldwide.
The company provides clinically-proven medical products and pharmaceuticals and cost-effective solutions that enhance supply chain efficiency from hospital to home. Cardinal Health connects patients, providers, payers, pharmacists and manufacturers for integrated care coordination and better patient management. Backed by nearly 100 years of experience, with approximately 50,000 employees in 46 countries, Cardinal Health ranks among the top 20 on the Fortune 500.
We currently have a full-time career opening within Information Security to support the growth of our Navista Application Suite and the Integrated Oncology Network (IoN).
**Department overview**
The Information Security department at Cardinal Health enables Cardinal Health to securely deliver healthcare products and solutions that improve the lives of people every day by ensuring security practices and controls are embedded into Cardinal Health's people, process and technology. We are a remote-first team and are excited to offer full-time remote opportunities.
**Functional Overview**
The Senior Information Security & Risk Engineer is a new capability for Cardinal Health and will be executed by the Product Security team. The primary goal of this position is to ensure delivery of best-in-class cybersecurity, risk management, and compliance for Navista, an oncology Managed Service Offering hosted by Cardinal Health.
**Job Overview**
The Information Security & Risk Engineer will be responsible for day-to-day activities in implementing the corporate information security and compliance program. The individual will be a front-line partner to technical teams and work across the organization to deliver security and compliance initiatives aligning to corporate policies, standards, procedures and audit activities. Success in the role will be measured by the effectiveness of the implementation of information security, risk management and compliance directives.
This role will work with various IT and business teams to drive both information security and compliance initiatives. The individual will assist with internal and external security compliance monitoring activities, review client audits, IT control audits, architecture reviews, threat modeling and security risk assessments. Good interpersonal and relationship building skills are essential for success.
**Job Responsibilities Include:**
+ Maintain governance program that ensures that the security policies, standards and process are in place
+ Serve as liaison to other Cardinal Health teams to ensure knowledge share and best practices
+ Partner with the engineering, architecture and operations teams to ensure delivery of infrastructure design and threat models which prove security requirements
+ Monitor security trends and drive security best practices throughout the organization via threat models and risk analysis
+ Evaluate, design, test, and recommend new or improved controls
+ Work with third party firms and consultants to conduct independent security audits, vulnerability scans, and penetration tests
+ Partner with developers to mentor and advise on secure coding and SDLC practices, define test cases and ensure appropriate testing, remediations, and mitigations
+ Investigate, drive resolution and document security incidents
+ Travel to various Integrated Oncology Network (IoN) sites may be required
**Qualifications**
+ Bachelors Degree in related field, or equivalent work experience leading cybersecurity or information security initiatives
+ Have 5+ years information security related work experience, preferably within the healthcare industry
+ Extensive experience with network and infrastructure design and security, ideally within the Azure cloud
+ Experience in vulnerability management programs, vulnerability assessments and advanced understanding of risk management
+ Familiarity with at least one common programming language, software development pipelines, and system lifecycles
+ Familiarity with standards such as HIPAA/HITECH, ISO, ITIL, NIST, PCI DSS, & SOX, CCPA, OWASP
+ Professional security certification (CISSP or CISM preferred)
+ Experience advising and mentoring diverse teams where you do not have direct authority
+ Strong written and verbal communication skills
**Anticipated salary range:** $121,600 - $182,385
**Bonus eligible:** Yes
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 4/7/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
Cyber Security Analyst - DLP (136026)
Cyber Security Engineer Job In Ohio
:
Crown Equipment Corporation is a leading innovator in world-class forklift and material handling equipment and technology. As one of the world's largest lift truck manufacturers, we are committed to providing the customer with the safest, most efficient and ergonomic lift truck possible to lower their total cost of ownership.
Primary Responsibilities
Oversee the implementation and management of data protection strategies within an organization
Lead a team focused on DLP by providing guidance and support to ensure effective data protection measures
Create and enforce policies to prevent data breaches and ensure data security
Continuously monitor data movement and usage to detect and respond to potential data loss incidents
Manage and respond to data loss incidents, coordinating with other departments to mitigate risks
Continuously monitor network traffic for security incidents and anomalies
Configure firewalls, intrusion detection\protection systems (IDS\IPS), and data encryption programs
Minimum Qualifications
High school diploma or equivalent
Preferred Qualifications
Bachelor's degree in Cyber Security or Computer Science
Experience with Palo Alto Network Security Solutions like Prisma Access, Strata Cloud Manager, and DLP\CASB solutions
Familiarity with Cisco FirePower\FMC & Dell SecureWorks security solutions
IT Security certifications (e.g. CISSP, CISM, CRISC, CISA, or SANS)
Excellent written and oral, written, deductive reasoning, and analytical trouble shooting skills
Good interpersonal skills and facilitate positive relations between business groups
Work Authorization:
Crown will only employ those who are legally authorized to work in the United States. This is not a position for which sponsorship will be provided. Individuals with temporary visas or who need sponsorship for work authorization now or in the future, are not eligible for hire.
No agency calls please.
Compensation and Benefits:
Crown offers an excellent wage and benefits package for full-time employees including Health/Dental/Vision/Prescription Drug Plan, Flexible Benefits Plan, 401K Retirement Savings Plan, Life and Disability Benefits, Paid Parental Leave, Paid Holidays, Paid Vacation, Tuition Reimbursement, and much more.
EO/AA Employer Minorities/Females/Protected Veterans/Disabled
IT Security Specialist 4/ITSS2 (39604)
Cyber Security Engineer Job In Columbus, OH
IDEALFORCE has a CONTRACT position available immediately for a IT Security Specialist(ITSS2) to join our customer in Columbus, OH. This is an ONSITE position and require in person interview. Please find below additional details about this job.
Job Description
Security Consultant to help IT Augment the security staff until OIT can take over all Security related needs for the agency. This position will function as a highly skilled Security Consultant with specific responsibilities that include:
-Monitor network and information system activity.
-Respond to alerts (analyze, interpret, investigate, resolve) based on monitoring activity, for security (malware, malicious actor), and other purposes (malicious activity, misuse, etc.) Uses creativity and innovation to automate and streamline processes and procedures.
-Understands customer support, likes to work with people and can ensure that the customer is satisfied.
-Manage, update, modify alerts, adjust/fine tune event correlation rules, etc. (e.g. filter false positives, increase accuracy/relevance/effectiveness), create new rules based on threat changes/evolving risk, etc.
-Understanding of basic Networking principles, including network troubleshooting for connectivity issues, DHCP, DNS, use of tools like PING, NSLOOKUP and NETSTAT
-Perform specialized security functions (e.g. forensics for incident response).
-Perform event correlation, analysis of malicious activity indicators, and appropriate response, based on review and access to multiple security tools and services.
-Provide routine security and general support (tickets, ad-hoc requests, etc.) to all DPS departments/users, IT groups/resources, external (other state agencies, public), etc.
SPECIAL NOTE: Client is running a 24/7 operation. Consultant may need to come in during incident or emergency situations.
During the interview process with the ODPS staff, the resource consultant must demonstrate competence/experience in their specific area(s) of project assignment. The resource's experience must also be documented for review and verification. Offered resources not showing technical or functional competence/experience will be sufficient reason to reject the Offeror's proposal. It is the responsibility of the Offeror to pre-screen their candidates to ensure compliance. Resource will have a background check conducted by ODPS.
Qualifications
-1-2 Years SIEM (Q-Radar preferred)
-8 years customer service experience
-8 Years Troubleshooting experience
-8+ years knowledge of Networking to including PING, NETSTAT, DHCP, DNS, and NSLOOKUP.
-8 years' experience with Active Directory.
-4 Years experience with Web and Email Filtering and Security (Ironport)
-5+ Years experience with Imperva (DAM/WAF)
-1 years of Vulnerability scanning experience (Qualys)
-3 years A/V suite experience McAfee
-3 years IPS (IBM)
-Contributes to continuous process improvements to increase the efficiency of section.
-Excellent communication skills both written and oral.
-Strong communication/ leadership skills.
-Strong influence, collaboration and negotiation experience.
-Ability to collaborate with supporting resources across business and/or functional lines.
-Have excellent oral and written skills/possess strong meeting and work session facilitation skills.
-Have the ability to work independently and as part of a team, the ability to manage time and resources to meet assigned deadlines.
-Have strong understanding of prioritization stemming from the elicitation of system and/or user requirements.
-Have excellent organizational skills, proven analytical, planning, problem solving, and decision-making skills.
-Must be knowledgeable in the English language/speak clearly and understandably use the English language.
Desired Skills
-Q-Radar
-Ironport Web and Email Security
-Imperva
-Certifications in Microsoft
-Powershell 3.0 scripting background.
-Qualys
-McAfee Enterprise solutions
-IPS
-Splunk
-Other security related tools.
-ITIL Knowledge and ITSM Tools.
Additional Information
Additional Information :
- "All your information will be kept confidential according to EEO guidelines".
- All candidates who are authorized to work in US are encouraged to apply.
- Candidates must clear the Background check prior to commencing the assignment.
THIRD PARTY CANDIDATES:
Email your candidate/s resume to joseph dot shelton at idealforce.com along with the following details: Rate, Current location and Availability.
Disclaimer :
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed.
Information Security Engineering Senior Manager
Cyber Security Engineer Job In Columbus, OH
About this role: Join an exciting, fast-paced organization working on cutting edge encryption, tokenization and key management technologies, leveraged to protect information companywide. Wells Fargo is seeking a Information Security Engineering Senior Manager to lead and oversee Teams working with hardware security modules (HSMs), security appliances, application encryption and tokenization. This leadership role requires strong Information Technology and Information Security foundational knowledge, as well as experience with and awareness of encryption/tokenization and key management technologies and engineering practices. The ideal candidate for this position will have demonstrated experience leading a team, influencing and collaborating with all levels of leadership, including Executives, in a large Enterprise environment. The role closely partners across Wells Fargo Technology Infrastructure, Cybersecurity and lines of business to drive information protection product delivery, support business priorities and oversees the allocation of people and financial resources to ensure commitments are met and align with strategic objectives
In this role, you will:
* Manage a team of Information Security Engineers that design, document, test, maintain and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication or directory services, email, internet, applications, or endpoint security.
* Engage more experienced information security and line of business management to identify, formulate and implement information security solutions and controls.
* Lead a large, complex information security unit or a number of smaller specialized work units with direct impact to companywide information security objectives having high risk and complexity.
* Manage security consulting on large projects for internal clients to ensure conformity with corporate information security policy and standards.
* Set guidelines for compliance and risk management requirements for supported area and work with other stakeholders to implement key risk initiatives.
* Oversee resource allocations to ensure commitments align with strategic objectives.
* Manage implementation of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management and business continuity.
* Maintain a broad awareness of the state of information security across the enterprise and industry.
* Influence change to information security policy, standards and procedures for systems, applications or tools.
* Lead large, companywide projects and initiatives.
* Represent the organization to regulators, industry groups and governmental agencies.
* Interface with Information Security Industry Leaders, Financial industry Leaders, Analysts and Regulators.
* Advise more experienced leadership or executive management on issues with high, critical impact on the company.
* Manage allocation of people and financial resources for Information Security Architecture.
* Develop and guide a culture of talent development to meet business objectives and strategy.
Required Qualifications:
* 10+ years of strategic technology leadership experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
* 10+ years of experience building, leading, managing, and mentoring high-performance engineering or operations teams.
* 5+ years of experience in a leadership/management role specific to engineering teams working with encryption/key management (e.g. Hardware Security Modules), Public Key Infrastructure (PKI) or related information protection technologies
* 10 + year's Experience with engineering, support and application integration of various HSM vendor products like FutureX, Thales and Atalla HSMs
* 2+ year's experience with Programming / scripting knowledge for automating and integrating cryptographic libraries with HSMs
Desired Qualifications:
* Advanced expertise in cryptography and key lifecycle management
* Experience with Application encryption and tokenization product like Opentext Voltage is a plus
* Ability to influence across all organizational levels, particularly senior/executive management
* Knowledge and understanding of leveraging and administering digital certificates, and keys for authentication and encryption.
* Deep knowledge of information security frameworks, standards, and best practices, including NIST and ISO guidelines for encryption and automated resilience.
* Familiarity with compliance standards such as FIPS 140-2, PCI DSS and Common Criteria
* Proficiency with monitoring and data analysis tools like Splunk and Elasticsearch for encryption-related security event detection and performance tracking.
* Knowledge of synthetic transaction monitoring tools to ensure the reliability and availability of critical systems.
* Experience in designing and implementing self-healing systems, including automated recovery and fault-tolerant solutions.
* Strong vendor management skills, including evaluating, onboarding, and collaborating with vendors for encryption tools and automated recovery solutions.
* Exceptional ability to communicate complex technical concepts to a wide range of audiences, including executives.
* Knowledge of cloud-based HSM solutions and hybrid deployments (on-premises and cloud)
* Familiarity with risk assessment, incident response planning, and audit processes for HSM governance
* 3+ years experience with Agile practices and frameworks such as SCRUM and KANBAN as well as Confluence and JIRA toolsets.
Job Expectations:
* Ability to travel up to 10% of the time.
* Hybrid work schedule requires onsite presence (3 days / week).
Pay Range
Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements, skills, experience, or work location. The range listed is just one component of the compensation package offered to candidates.
$144,400.00 - $300,000.00
Benefits
Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees.
* Health benefits
* 401(k) Plan
* Paid time off
* Disability benefits
* Life insurance, critical illness insurance, and accident insurance
* Parental leave
* Critical caregiving leave
* Discounts and savings
* Commuter benefits
* Tuition reimbursement
* Scholarships for dependent children
* Adoption reimbursement
Posting End Date:
30 Mar 2025
* Job posting may come down early due to volume of applicants.
We Value Diversity
At Wells Fargo, we believe in diversity, equity and inclusion in the workplace; accordingly, we welcome applications for employment from all qualified candidates, regardless of race, color, gender, national origin, religion, age, sexual orientation, gender identity, gender expression, genetic information, individuals with disabilities, pregnancy, marital status, status as a protected veteran or any other status protected by applicable law.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in US: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.
Information Security Expert
Cyber Security Engineer Job In Columbus, OH
Title: Information Security SME/Developer with .NET development Duration : 5 Months contract (High possibility of Extension) Interview Type: Both iLinc Web Cam and In Person Interview Skills Required Experience working in Microsoft Identity Integration Server (MIIS) 2003 Required 2 Years
Experience with Identity Lifecycle Manager (ILM) 2007 Required 2 Years
Experience with Forefront Identity Manager (FIM) 2010 including design and implementation Required 2 Years
Experience and strong development skills in the MS Metadirectory Services Namespace in C# Required 2 Years
.NET development experience Required 5 Years
Thanks
Naimesh Solanki
Sr. Technical Recruiter
Phone: ************ x 6578
Qualifications
Experience working in Microsoft Identity Integration Server (MIIS) 2003 Required 2 Years
Experience with Identity Lifecycle Manager (ILM) 2007 Required 2 Years
Experience with Forefront Identity Manager (FIM) 2010 including design and implementation Required 2 Years
Experience and strong development skills in the MS Metadirectory Services Namespace in C# Required 2 Years
Additional Information
All your information will be kept confidential according to EEO guidelines.
Security Engineer 4 - FedRAMP Compliance Architect
Cyber Security Engineer Job In Columbus, OH
PagerDuty, Inc. (NYSE:PD) is a global leader in digital operations management. Half of the Fortune 500 and nearly 70% of the Fortune 100 trust PagerDuty as essential infrastructure. Join us. (******************************* At PagerDuty, you'll tackle complex problems, collaborate with kind and ambitious people, and help build a more equitable world-all in a flexible, award-winning workplace.
PagerDuty is seeking a **Security Engineer 4 - FedRAMP Compliance Architect** to join our diverse, customer-focused team! This **Security Engineer 4 - FedRAMP Compliance Architect** will design, implement, and maintain secure architectures that meet FedRAMP requirements in a multi-tenant cloud environment. This role combines deep technical expertise with FedRAMP compliance knowledge to create scalable, secure solutions. You'll be the glue between security compliance requirements and technical implementation, ensuring our cloud infrastructure meets federal security standards while enabling business objectives.
**Key Responsibilities:**
+ Design, implement, and maintain system architectures to align with FedRAMP requirements.
+ Serve as the subject matter expert (SME) on FedRAMP, advising internal teams on security best practices, control implementations, and risk mitigation strategies.
+ Collaborate with engineering, operations, product, and corporate IT teams to develop secure cloud-based architectures that meet federal compliance mandates.
+ Implement governance strategy on technical security controls, including access management, configuration, encryption, logging, monitoring, and vulnerability management.
+ Support annual assessments, security control reviews, and audits, coordinating with third-party assessors (3PAO) and government sponsors.
+ Technical support for external stakeholders on customer responsibilities.
+ Key contributor to the development and maintenance of the System Security Plan (SSP), Policies and Procedures, Configuration Management Plan, Secure System Development Life Cycle, and other FedRAMP documentation
+ Partner with the GRC (Governance, Risk, and Compliance) team to efficiently track and resolve security findings.
**Basic Qualifications:**
+ 5+ years of experience in cloud security architecture, compliance, or cybersecurity engineering, with at least 3 years of experience supporting FedRAMP Moderate or High authorization.
+ Deep expertise in FedRAMP, NIST 800-53, FISMA, and cloud security best practices.
+ Strong ability to assess security risks and recommend technical and procedural mitigations.
+ Experience working with AWS GovCloud, Azure Government, or other federal cloud environments.
+ Experience with audit preparation, risk assessments, and working with third-party assessors (3PAOs).
+ Exceptional written and verbal communication skills for creating and managing FedRAMP documentation.
**Preferred Qualifications:**
+ Experience supporting DoD IL 4 or 5 environments.
+ Experience with data governance frameworks, secure data storage, and data lifecycle management in multi-tenant cloud environments.
+ Understanding of NIST AI Risk Management Framework (AI RMF) and its implications for secure AI adoption in government environments.
+ Familiar with SaaS security tools (such as Sumo Logic, Datadog, Crowdstrike, Wiz, Lucidchart, Snyk, and Qualys).
+ Familiarity with Cloud Native and SaaS constructs, including architectures, DevOps, CI/CD, and SecOps disciplines.
+ Relevant certifications, such as:
+ Certified Information Systems Security Professional (CISSP)
+ AWS Security Specialty, or equivalent
+ CompTIA Advanced Security Practitioner (CASP+)
+ Certificate of Cloud Security Knowledge (CCSK)]]
The successful applicant will be performing work in FedRAMP environments, and therefore, must be a U.S. Person (i.e. U.S. citizen, U.S. national, lawful permanent resident, asylee, or refugee). **This position may also perform work that the U.S. government has specified can only be performed by a U.S. citizen on U.S. soil.**
The base salary range for this position is 176,000 - 281,000 USD. This role may also be eligible for bonus, commission, equity, and/or benefits.
Our base salary ranges are determined by role, level, and location. The range, which is subject to change based on primary work location, reflects the minimum and maximum base salary we expect to pay newly hired employees for the position. Within the range, we determine pay for an individual based on a number of factors including market location, job-related knowledge, skills/competencies and experience.
Your recruiter can share more about the specific offerings for this role, as well as the salary range for your primary work location during the hiring process.
**Hesitant to apply?**
We encourage you to submit your resume even if you don't meet every requirement. We value potential and consider each candidate's full professional story. Whether you're exploring a career change or taking your next step, we look forward to reviewing your application. If this just isn't the right role or time - sign up for job alerts (**************************************** !
**Where we work**
PagerDuty currently has offices (**************************************** in Atlanta, Lisbon, London, San Francisco, Santiago, Sydney, Tokyo, and Toronto. We offer a hybrid, flexible environment. We also provide ample opportunities for connection, like team offsites and volunteering events.
**How we work**
Our values (************************************** guide how we support customers, collaborate with colleagues, develop products, and foster a culture of belonging. They define not just our actions, but what it means to be Dutonian.
**What we offer**
As a global organization, our total rewards approach is competitive with industry standards and aligned with local laws and regulations. Learn more, including country-specific offerings, on our benefits site (********************************************** .
**Your package may include:**
- Competitive salary
- Comprehensive benefits package from day one
- Flexible work arrangements
- Company equity*
- ESPP (Employee Stock Purchase Program)*
- Retirement or pension plan*
- Generous paid vacation time
- Paid holidays and sick leave
- Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
- Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)*
- Paid volunteer time off: 20 hours per year
- Company-wide hack weeks
- Mental wellness programs
*Eligibility may vary by role, region, and tenure
**About PagerDuty**
PagerDuty, Inc. (NYSE:PD) is a global leader in digital operations management, enabling customers to achieve operational efficiency at scale with the PagerDuty Operations Cloud. The PagerDuty Operations Cloud combines AIOps, Automation, Customer Service Operations and Incident Management with a powerful generative AI assistant to create a flexible, resilient and scalable platform to increase innovation velocity, grow revenue, reduce cost, and mitigate the risk of operational failure. Half of the Fortune 500 and nearly 70% of the Fortune 100 rely on PagerDuty as essential infrastructure for the modern enterprise.
PagerDuty is Great Place to Work-certified, a Fortune Best Workplace for Millennials, a Fortune Best Medium Workplace, a Fortune Best Workplace in Technology, and a top rated product on TrustRadius and G2.
Go behind-the-scenes on our careers site (*********************************** and @pagerduty on Instagram.
**Additional Information**
PagerDuty is committed to creating a diverse environment and is an equal opportunity employer. PagerDuty does not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, parental status, veteran status, or disability status.
PagerDuty is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application process. Should you require accommodation, please email accommodation@pagerduty.com and we will work with you to meet your accessibility needs.
PagerDuty uses the E-Verify employment verification program.