Information Security Specialist
Security Engineer Job In Tempe, AZ
Our client is seeking a Information Security Specialist to join their team! This position is located in Tempe, Arizona.
Perform internal reviews to validate items identified in discovery
Identify any gaps with and assist with remediation in coordination with bank teams
Work with local resources, identify and help to prioritize migration to company devices and standards to limit business disruptions
Assist in SIEM configuration with reference to SIEM-related instructions
Assist in any events in support of security operations and engineering and where not possible, to provide backfill as needed to support local resources
Identify and aid to prioritize migration to company policies and procedures for any existing hardware or software that is not immediately replaced to include non-standard equipment or applications
Coordinate with security monitoring teams as needed to ensure full visibility and accessibility during events
Provide investigative support for Cyber Defense personnel
Work with bank personnel to identify and prioritize gaps within the M&A and bank policies and procedures and any need for remediation as the migration to full bank integration occurs
Document or identify existing documentation in support of security operations efforts
Desired Skills/Experience:
5+ years of experience in configuring, maintaining, and troubleshooting enterprise Windows and Linux environments
5+ years of hands-on experience managing production environments in AWS, Azure, and Google Cloud Platform
5+ years proven experience in implementing and integrating SIEM solutions, particularly CrowdStrike
5+ years of Blue Team experience in security monitoring, threat detection, and incident response
5+ years experience in performing log analysis and investigating security-related incidents
Expertise in fine-tuning SIEM platforms for improved security visibility and threat detection
Excellent analytical abilities with a strong focus on creating detailed documentation and process improvement
Benefits:
Medical, Dental, & Vision Insurance Plans
401K offered
$33.00 - $48.00 (est. hourly rate)
Systems Engineer ( District Sales Engineer )
Security Engineer Job In Phoenix, AZ
Our Mission
At Palo Alto Networks everything starts and ends with our mission:
Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we're looking for innovators who are as committed to shaping the future of cybersecurity as we are.
Who We Are
We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday - from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included.
As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few!
Job Description
Your Career
The District Systems Engineer, Commercial, is a vital part of our sales team, serving as a trusted technical advisor to customers and helping them secure their businesses with Palo Alto Networks solutions. You will provide pre-sales technical support to our commercial sales teams, aligning security solutions with customer needs and ensuring successful deployments that drive adoption and business value.
As a District Systems Engineer, you will work with customers to understand their security challenges, architect solutions that address those challenges, and demonstrate the value of Palo Alto Networks' comprehensive cybersecurity platform. You will be responsible for driving technical wins and ensuring the continued satisfaction of our customers in the commercial sector.
Your Impact
Curiosity and problem-solving drive the District Systems Engineer role, and you thrive on helping customers secure their environments with innovative solutions. You define your impact by:
Partnering with sales teams to meet and exceed sales quotas by building and implementing strategic technical account plans
Positioning, demonstrating, and designing security architectures across the Palo Alto Networks portfolio based on customer business needs and architecting complex environments, including network security, security operations, and cloud security.
Driving customer adoption of the Palo Alto Networks security platform by helping customers achieve enhanced security, operational efficiency, and business flexibility
Conducting technical discovery to understand customer requirements and aligning solutions to their specific needs
Leading proof-of-concept (PoC) engagements, technical workshops, and product demonstrations to showcase the capabilities of our security platform
Collaborating with Professional Services, Customer Success, and Specialist teams to ensure seamless implementation and adoption of solutions
Effectively communicating complex security concepts to a variety of stakeholders, from technical practitioners to executive leadership
Orchestrating supporting resources (Specialists, Channel Partners, Customer Support) to drive a unified strategy for customer success
Promoting end-to-end security solutions, including Palo Alto Networks and partner professional services, to maximize customer security posture and business value
Staying ahead of industry trends, competitive landscapes, and emerging security threats to position Palo Alto Networks as the cybersecurity leader
Continuously investing in personal development to enhance technical expertise and professional skills while actively contributing to the District Systems Engineer community and industry events
Demonstrating diversity in technical knowledge across SOC, Cloud, Networking, and NetSec, with an emphasis on SOC and Cloud, to drive cross-training and develop platform expertise across the team
Becoming a technical leader with the desire to grow into a Palo Alto Networks portfolio architect, gaining expertise from NGFW to SASE, SOC, Cloud, and Unit 42 consulting services
Balancing technical acumen with strategic thinking-acting as one part technical architect and one part CTO
Building and maintaining strong relationships while demonstrating strong consulting skills
Understanding the competitive landscape deeply, at least in your area of specialty
Designing and architecting large, complex environments, leveraging expertise in your technical domain
Developing strong business acumen with near-term potential to grow into CTO/CIO/CISO-level leadership
Willingness to travel up to 50% within the assigned district
Serving as a role model and mentor for inside Systems Engineers
Qualifications
Your Experience
6+ years of experience in pre-sales, sales engineering, or a similar technical role
Strong understanding of data networking, security architectures, and modern cloud computing environments
Experience delivering cybersecurity solutions that solve complex technical challenges and align with customer business initiatives
Ability to influence and gain buy-in from key stakeholders, whether in customer-facing or internal engagements
Strong technical presentation, workshop, and proof-of-concept delivery skills
Expertise in designing, implementing, or managing one or more of the following security solutions: Network Security, SASE, SaaS, CNAPP, or SOC Transformation Technologies
Experience collaborating with Customer Support teams to ensure successful implementation and adoption of security solutions
Background in complex sales cycles involving multiple decision-makers and multi-product solutions is preferred
Field sales position requiring travel for in-person customer engagements (please discuss specifics with the recruiter)
Additional Information
The Team
Our District Systems Engineers work closely with customers across the commercial sector to secure their digital environments. We educate, inspire, and empower organizations to transform their security architectures and adopt the most advanced cybersecurity solutions available today.
You will be supported by industry-leading tools, systems, and a team dedicated to your success. At Palo Alto Networks, collaboration is at the heart of what we do. Everyone is committed to helping each other succeed, whether in solutions selling, learning, or professional development. Our District Systems Engineering community is driven by the mission to be our customers' cybersecurity partner of choice, protecting their digital way of life.
Compensation Disclosure
The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary + commission target (for sales/commissioned roles) is expected to be between $198000/YR - $273000/YR. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here.
Our Commitment
We're problem solvers that take risks and challenge cybersecurity's status quo. It's simple: we can't accomplish our mission without diverse teams innovating, together.
We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com.
Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.
All your information will be kept confidential according to EEO guidelines.
Generation Systems Engineer III
Security Engineer Job In Phoenix, AZ
Akkodis is currently seeking a Sr. Generation Systems Engineer (Technical field advisors/ Field Engineers / Plant Engineer) for a Direct hire opportunity with a client located in Phoenix AZ.
Targeted Salary: $90k - 150K (Depending yrs. of exp.)
2 roles: Combustion Turbine / Steam Turbines
Benefits (401K, PTO, perks, etc)
Note:
Industrial Systems Experience (plant site, chemical industry, boots on the ground, dealing with engineering issues in the field)
Experience in R&D, worked with Solar Turbines, small scale bench testing, really positive attitude.
This is a collaborative role. Must be able to work across business units and operations maintenance
Job Summary:
The Engineer III - Combustion Turbine
Provides technical, design, and analytical support for system plans, engineering requests, proposals, and presentations.
Performs engineering tasks, makes technical decisions, provides guidance, and may require shift work.
Applies advanced technical expertise to complex projects and problem-solving, with deep knowledge in specific engineering areas or broad expertise across multiple fields.
Understands engineering technology and processes, focuses on long-term results, provides final technical solutions, and may work shifts.
The Generation Systems Engineer III - Steam Turbines
Provides technical, design, economic, and analytical support for long-range system plans, engineering requests, proposals, and presentations.
Performs engineering tasks, makes technical decisions, provides guidance and leadership, and may be subject to shift work.
Applies advanced technical expertise to complex projects and emergent issues, with deep knowledge in specific engineering areas or broad engineering expertise.
Understands engineering technology, establishes effective solutions, provides final technical decisions, and may be subject to shift work.
Requirements:
A four year Bachelor of Science degree in an engineering discipline or related applied science discipline.
5 to 8+ years of working experience in Engineering-related positions.
Experience in the utility industry.
If you feel this is not something that you are currently interested in, but know of someone, that might be, please share the details with them or let me know their details so I can reach out to them!
Benefits include but are not limited to:
401(k) with match
Medical insurance
Dental Insurance
Vision assistance
Paid Time Off
To read our Candidate Privacy Information Statement, which explains how we will use your information, please visit ******************************************
The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:
· The California Fair Chance Act
· Los Angeles City Fair Chance Ordinance
· Los Angeles County Fair Chance Ordinance for Employers
· San Francisco Fair Chance Ordinance
Audio Systems Engineer
Security Engineer Job In Tempe, AZ
We are a customer focused provider of audio solutions. We exceed users' expectations with well thought out design, integration, and service. Our purpose-built products meet our customers where they are at, enhancing their moment with a powerful experience through music.
Job Title: Audio Systems Engineer Job Location: Tempe, AZ (100% Onsite)
Rockford Fosgate is looking for an experienced and passionate Audio Systems Engineer. You will be responsible for working closely with Product Development and other engineering teams to define high level system requirements as well as tuning and optimizing the audio performance of class-leading audio systems.
KEY RESPONSIBILITIES:
Owns the Rockford Signature Sound for both aftermarket and OEM audio systems.
Works closely with product managers to define acoustic system performance.
Works closely with embedded team to create flexible DSP architectures.
Consult with electrical team to specify, develop and validate new amplifiers and electronics.
Consult with acoustic team to specify, develop and validate new loudspeakers.
Tunes and optimizes system audio performance to achieve acoustic design targets.
Champion internal and external system listening demos and collect subjective feedback.
Design and set up acoustic system reliability tests.
Provide acoustic technical expertise to mechanical, amplifier, embedded, and internal vehicle install teams to execute cross-departmental projects.
Communicate with customers and OEM partners to assess customer needs and identify system design goals.
Create detailed technical design input presentations to communicate acoustic design decisions and directions with suppliers, customers, and various internal groups (New Product Development, Marketing, Sales, etc.).
Required Skills/Qualifications:
BS degree in acoustics, physics, electrical engineering, mechanical engineering, or another related field.
Exceptional knowledge in acoustic and psychoacoustics fundamentals, and their application.
Advanced knowledge of audio system architecture and system tuning.
Strong knowledge of DSP building blocks (filters, compressors, limiters, equalizers, etc.).
Experience with various acoustic test equipment such as Klippel, Audio Precision, etc.
Expert level troubleshooting skills for complete vehicle audio systems.
Strong team player with positive attitude and willingness to learn and collaborate in group settings.
Excellent written, verbal, technical, and interpersonal communication skills.
Self-starter with strong organizational skills and attention to detail.
Ability to effectively execute multiple projects concurrently in a fast-paced deadline driven environment.
Desired Skills (Optional):
1-3 years of experience in an acoustic design role.
Experience in the design and engineering of transducers and loudspeaker systems.
Strong understanding of physics fundamentals.
Knowledge of OEM automotive data and infotainment buses such CAN, A2B, AVB, etc.
Proficient in DSP design tools such as Sigma Studio, Audio Weaver, etc.
Proficient in the use of simulation tools such as Klippel SIM2, Loudsoft Suite (Fine Cone, Fine Motor, Fine Xover, Fine Suspension, Fine Box), Finite Element Magnetic Modeling (FEMM), etc.
Familiarity with software scripting /automation using Python, LabVIEW, Excel macros, etc.
Experience with speaker enclosure design and fabrication.
Active license to operate a motorcycle is a plus.
About Rockford & Benefits
Rockford Fosgate is an equal opportunity employer located in Tempe, Arizona. Join us and thrive in a dynamic office environment where your contributions truly make a difference. Enjoy the benefits of flexibility, competitive pay, affordable healthcare, a 401k match, and a pathway for growth.
Interested and qualified applicants are encouraged to send their resume and cover letter. Visit *********************** to learn more about us.
Lead I, IAM and Data Security Engineer
Security Engineer Job In Arizona
**About the Role:** **Grade Level (for internal use):** 11 **The Team :** S&P Ratings Security team focuses on protecting our clients and users from all aspects of modern-day security threats. The mission of our team is to safeguard systems and data by developing innovative solutions to counter the biggest security challenges.
**Responsibilities and Impact:**
This technical lead position is critical in designing, developing, and implementing innovative solutions to safeguard confidential and sensitive data. Your expertise will drive alignment with corporate policies and cutting-edge cybersecurity design principles, ensuring resilience against current and emerging cyber threats. We seek a subject matter expert (SME) with a proven track record of developing and managing advanced security solutions to protect systems, design robust security architectures, and balance cybersecurity risks with evolving business and market demands
Additional responsibilities include:
+ Evaluate data threats, identify vulnerabilities, and prioritize security risks across systems.
+ Create and enforce data security policies to ensure compliance with industry standards.
+ Review and strengthen access management controls to address security gaps.
+ Implement scalable data encryption techniques to protect sensitive data at rest and in transit.
+ Consolidate user repositories and identity providers across the organization.
+ Collaborate with Application teams and stakeholders to establish data classification policies and security controls for sensitive data.
+ Perform threat modeling, secure code reviews, and design reviews for high-risk applications.
+ Develop automated security testing processes using scripting and open-source tools.
+ Stay current with emerging technologies and trends related to security architecture.
+ Promote enterprise standards and best practices to ensure security compliance.
+ Serve as a technical security advisor for new technologies and applications.
+ Coach and train development teams on IAM and data security best practices.
**Compensation/Benefits Information (US Applicants Only):**
S&P Global states that the anticipated base salary range for this position is $127,700 - $175,000. Final base salary for this role will be based on the individual's geographic location, as well as experience level, skill set, training, licenses, and certifications. In addition to base compensation, this role is eligible for an annual incentive plan. This role is eligible to receive additional S&P Global benefits. For more information on the benefits that we provide to our employees, please click here (********************************************* .
**What We're Looking For:**
**Basic Required Qualifications:**
+ Bachelor's degree in Computer Science or related field, or relevant work experience.
+ 7+ years in Security engineering roles with a focus on data security and IAM.
+ Expertise in Data Security use cases (In Transit, At Rest, In Use) and cloud security controls.
+ Knowledge of identity repositories such as LDAP, Active Directory, and Entra (Azure AD).
+ Experience with cloud KMS (AWS KMS, Azure Key Vault, Google KMS).
+ Familiarity with privileged access management systems like CyberArk, SailPoint.
+ Strong understanding of authentication and authorization protocols (OAuth, SAML, Kerberos).
+ Expertise in Application Security, Web services security, and Cloud-native applications.
+ Knowledge of security architecture, TCP/IP, encryption, TLS, ECC, and PKI/Certificates.
+ Experience with IAM solutions (Okta, Entra ID, AD/LDAP).
**Additional Preferred Qualifications:**
+ Experience with automation security.
+ Programming expertise - Java, Python, Agile SDLC processes.
+ Strong understanding of Hardware Security Modules (HSM's) and PKCS#11, JCE or HSM-vendor API's.
+ Experience migrating applications from On-Prem Active Directory to Entra (Azure AD).
+ Knowledge with AWS cloud architecture and virtualization technologies such as Containers, EKS, Kubernetes, and VMware.
+ Experience in defining and documenting security reference architectures and standards
+ Experience with automation tools associated with DevOps and CI/CD pipelines, and with security integration into CI/CD.
+ Database, datalake knowledge - Postgres, Oracle, Databricks, Snowflake.
**Right to Work Requirements:**
This role is limited to persons with indefinite right to work in the United States.
**Return to Work:**
Have you taken time out for caring responsibilities and are now looking to return to work? As part of our Return to Work initiative, Restart, we are encouraging enthusiastic and talented returners to apply, and will actively support your return to the workplace.
**About S&P Global Ratings**
At S&P Global Ratings, our analyst-driven credit ratings, research, and sustainable finance opinions provide critical insights that are essential to translating complexity into clarity so market participants can uncover opportunities and make decisions with conviction. By bringing transparency to the market through high-quality independent opinions on creditworthiness, we enable growth across a wide variety of organizations, including businesses, governments, and institutions.
S&P Global Ratings is a division of S&P Global (NYSE: SPGI). S&P Global is the world's foremost provider of credit ratings, benchmarks, analytics and workflow solutions in the global capital, commodity and automotive markets. With every one of our offerings, we help many of the world's leading organizations navigate the economic landscape so they can plan for tomorrow, today.
For more information, visit ************************
**What's In It For** **You?**
**Our Purpose:**
Progress is not a self-starter. It requires a catalyst to be set in motion. Information, imagination, people, technology-the right combination can unlock possibility and change the world.
Our world is in transition and getting more complex by the day. We push past expected observations and seek out new levels of understanding so that we can help companies, governments and individuals make an impact on tomorrow. At S&P Global we transform data into Essential Intelligence , pinpointing risks and opening possibilities. We Accelerate Progress.
**Our People:**
We're more than 35,000 strong worldwide-so we're able to understand nuances while having a broad perspective. Our team is driven by curiosity and a shared belief that Essential Intelligence can help build a more prosperous future for us all.
From finding new ways to measure sustainability to analyzing energy transition across the supply chain to building workflow solutions that make it easy to tap into insight and apply it. We are changing the way people see things and empowering them to make an impact on the world we live in. We're committed to a more equitable future and to helping our customers find new, sustainable ways of doing business. We're constantly seeking new solutions that have progress in mind. Join us and help create the critical insights that truly make a difference.
**Our Values:**
**Integrity, Discovery, Partnership**
At S&P Global, we focus on Powering Global Markets. Throughout our history, the world's leading organizations have relied on us for the Essential Intelligence they need to make confident decisions about the road ahead. We start with a foundation of **integrity** in all we do, bring a spirit of **discovery** to our work, and collaborate in close **partnership** with each other and our customers to achieve shared goals.
**Benefits:**
We take care of you, so you can take care of business. We care about our people. That's why we provide everything you-and your career-need to thrive at S&P Global.
Our benefits include:
+ Health & Wellness: Health care coverage designed for the mind and body.
+ Flexible Downtime: Generous time off helps keep you energized for your time on.
+ Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills.
+ Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs.
+ Family Friendly Perks: It's not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families.
+ Beyond the Basics: From retail discounts to referral incentive awards-small perks can make a big difference.
For more information on benefits by country visit: *****************************************
**Inclusive Hiring and Opportunity at S&P Global:**
At S&P Global, we are committed to fostering an inclusive workplace where all individuals have access to opportunities based on their skills, experience, and contributions. Our hiring practices emphasize fairness, transparency, and equal opportunity, ensuring that we attract and retain top talent. By valuing different perspectives and promoting a culture of respect and collaboration, we drive innovation and power global markets.
S&P Global has a Securities Disclosure and Trading Policy ("the Policy") that seeks to mitigate conflicts of interest by monitoring and placing restrictions on personal securities holding and trading. The Policy is designed to promote compliance with global regulations. In some Divisions, pursuant to the Policy's requirements, candidates at S&P Global may be asked to disclose securities holdings. Some roles may include a trading prohibition and remediation of positions when there is an effective or potential conflict of interest. Employment at S&P Global is contingent upon compliance with the Policy.
-----------------------------------------------------------
**Equal Opportunity Employer**
S&P Global is an equal opportunity employer and all qualified candidates will receive consideration for employment without regard to race/ethnicity, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, marital status, military veteran status, unemployment status, or any other status protected by law. Only electronic job submissions will be considered for employment.
If you need an accommodation during the application process due to a disability, please send an email to: *************************** and your request will be forwarded to the appropriate person.
**US Candidates Only:** The EEO is the Law Poster **************************************************************** describes discrimination protections under federal law. Pay Transparency Nondiscrimination Provision - **********************************************************************************************
-----------------------------------------------------------
20 - Professional (EEO-2 Job Categories-United States of America), IFTECH202.2 - Middle Professional Tier II (EEO Job Group), SWP Priority - Ratings - (Strategic Workforce Planning)
**Job ID:** 310774
**Posted On:** 2025-02-24
**Location:** Virtual, New York, United States
Data Security Analyst
Security Engineer Job In Sierra Vista, AZ
Responsibilities
Secure Division Support. The GCC provides CSSP responsibilities and conducts DODIN Operations and DCO - Internal Defensive Measures (IDM) to protect the DODIN IAW the DoDM 8530.01 and the DoD Cybersecurity Services Evaluator Scoring Metrics (ESM). These responsibilities are broken into five (5) CSSP functions; Identify, Protect, Detect, Respond, and Recover. GCC is responsible to conduct these functions for its assigned portion of the DODIN for both unclassified and classified networks/ systems. The division provides support services for the protection, monitoring, analysis, detection, and response to unauthorized activity within the DoD Information Systems and Networks. DCO-IDM services are required to defend against unauthorized activity on all Army assets residing on the NIPRNet and SIPRNet. The division provides defensive measures to protect and defend information, computers, and networks from disruption, denial, degradation, or destruction. The division provides sensor management and event analysis and response for network and host-based events. For sensor management, the division provides management of in-line Network Intrusion Protection System/Network Intrusion Detection System (NIPS/NIDS) sensors monitoring all CONUS DoDIN-A NIPRNet and SIPRNet Enterprise traffic to detect sensor outages and activities that attempt to compromise the confidentiality, integrity, or availability of the network. In coordination with GCC Operations, DCO initiates defensive security procedures upon detection of these attacks. Event analysis and response includes the processes involved with reducing multiple cyber incidents to actual malicious threat determinations and mitigating those threats IAW guidance received from GCC Government leadership. Support the Government in providing services for CSSP services on both the NIPRNet and SIPRNet IAW Appendix E: Secure Division Workload Assessment in support of the CONUS portion of the DoDIN-A. Develop reports and products, both current and long-term, in support of CSSP and course of action development. Prepare Tactics, Techniques, and Procedures (TTP), SOPs, Executive Summary (EXSUMS), trip reports, and information/point papers. Contribute during the preparation of agreements, policy, and guidance documentation such as Memorandums of Understanding / Agreement (MOU/A), Service Level Agreements (SLA).
• Cyber Defense Operations (CDO) Support. Provide sufficient staffing to maintain on-site capability IAW PWS paragraph 5.4: Place of Work and Work Hours to work directly with GCC Operations personnel in conducting initial triage/cyber incident analysis to include, review correlated events, system/device logs, and SIEM event data to determine and recommend/take immediate DCO-IDM response actions. Immediate response actions can include submission of a cyber-incident response ticket, making an initial determined category of cyber incident (IAW Chairman of the Joint Chiefs of Staff Manual (CJCSM) 6510), and/or notifying DCO/ARCYBER/Higher Headquarters IAW Commander's Critical Information Requirements (CCIR) reporting requirements. All other CDO operations must have an on-call capability to take actions as required to respond to cyber incidents IAW policy and/or Government direction.
• Incident Analysis and Mitigation. Provide incident analysis and mitigation support by conducting incident analysis and recommending mitigation measures in response to general or specific Advanced Persistent Threats (APT), (attempted exploits/attacks, malware delivery, etc.) on Army networks. In support of incident analysis and mitigation, the Contractor shall:
• Block/deny access by hostile sites or restrict access by specific ports/protocols and/or applications.
• Provide recommendations to the supporting operations and maintenance organization to take necessary action where the CSSP-D Division does not administratively control the sensor grid.
• Provide justification of IDMs and/or operational impact (implied or accepted risk) to a Configuration Control Board (CCB) and/or Authorizing Official (AO), as required, for mitigation action (IDM) approval. If deemed appropriate (or as requested), the internal defensive measure may involve coordination of a Network Damage Assessment (NDA), Network Assistance Visit (NAVs), or other version of the Computer Defense Assistance Program (CDAP) mission.
• Monitor all sensors and agents managed by the GCC for security event analysis and response and maintain/update the triage database with current threat data and response methods in real-time with follow-up recurring within 72 hours of last response. The Contractor shall respond to a detected event and perform triage, ensure proper handling of the associated trouble ticket (TT), and process events accordance with appropriate TTPs.
• Provide all initial cyber incident reports to Law Enforcement and Counterintelligence (LE/CI) agencies and:
• Maintain an up-to-date POC list for LE/CI agencies as routinely provided by the Major Cybercrimes Unit (MCU) and Cyber Counterintelligence agencies.
• In cases where an active investigation will be opened, LE/CI agencies will provide written request that will include the official case number, specific data logs, and other required information IAW local TTPs.
• Provide support and expertise include the provision of the required data along with a summary or analysis of the data. Data and answers provided in the analysis shall pertain specifically to requirements in the LE/CI official request or within CSSP-D TTPs.
• Provide all initial cyber incident investigation reports to LE/CI .
• Maintain a Master Station Log (MSL) to document high visibility cyber incidents, defined as events identified in an ARCYBER Task Order, a Named Operation, or a Category 1 (CAT1), with status, discuss DCO topics, share internal tasks between shifts, document call outs, and share any additional relevant instructions between shifts and up through GCC Leadership and Operations reporting channels. The MSL must be available for Government inspection at any given time to ensure accurate tracking of the above information.
Qualifications
Basic Qualifications:
2 years with BS/BA; 0 years with MS/MA; 6 years with no degree
Certifications: DCWF Code 422 Advanced: TBD
Possess and maintain a Secret security clearance
Demonstrated experience in information security or related field
Demonstrated experience developing data security standards
Experience in application level, database, file system and full disk encryption
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range $80,000 - $128,000. This represents the typical salary range for this position based on experience and other factors. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Security Engineer
Security Engineer Job In Arizona
Responsibilities & Qualifications
RESPONSIBILITIES
Assist the PM in prepare daily, weekly, and assessment reports and deliverables in support of cybersecurity and SCA efforts.
Documentation and Compliance: Creates functional and technical documentation. Ensures project disciplines are followed, with strict adherence to RMF and FISMA guidelines.
Document and report security-related incidents to appropriate authorities
Assist Information System Owners and Gov't Stakeholders with Assess and Authorize (A&A) processes
Evaluate an array of IT devices (e.g. Windows, RHEL, Cisco routers, switches, firewalls, etc.) for DoD compliance using SCAP Compliance checker, ACAS, Evaluate STIG, and via manual STIG check reviews
Must be proficient in navigating through the eMASS application
Provide DoD Cybersecurity analysis and risk based security recommendations for the various systems
Assess various systems IAW DoDI 8500, DoDI 8510 and NISP SP 800-53
Identify the mitigation controls for identified risks and propose additional strategies for identified vulnerabilities
Act as the Cybersecurity Subject Matter Expert
Consult in other projects when needed
Continue education and learning new and evolving technology
Perform special projects and other duties assigned
REQUIRED QUALIFICATIONS
Active Secret Clearance
At least five (5) years of direct experience in information security and two (2)years of Security Engineering experience
DoD 8140 DCFW 722 Advanced: CISM or CISSO or FITSP-M or GCIA or GCSA or GCIH or GSLC or GICSP or CISSP-ISSMP or CISSP
Meet DoD 8570 IASAE-II certification: CISSP, CASP, or CSSLP
Computing Environment Certification (e.g. CEH, Linux, CCNA, VMWare, etc.)
Overview
TekSynap, a “Fast 50” technology company in the Washington DC area that offers technology solutions to federal, state and local government agencies. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.
Visit us at *****************
Apply now to explore jobs with us!
We are seeking a Security Engineer to support the PM with Risk Management Framework (RMF) activities such as performing network and systems security, conducting product evaluations, securing information systems, and conducting SCA activities.
Additional Job Information
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
WORK AUTHORIZATION/SECURITY CLEARANCE
Citizenship - US
Clearance requirement - Secret
OTHER DUTIES
N/A
EQUAL EMPLOYMENT OPPORTUNITY
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Security Engineer
Security Engineer Job In Arizona
Responsibilities & Qualifications
RESPONSIBILITIES
Assist the PM in prepare daily, weekly, and assessment reports and deliverables in support of cybersecurity and SCA efforts.
Documentation and Compliance: Creates functional and technical documentation. Ensures project disciplines are followed, with strict adherence to RMF and FISMA guidelines.
Document and report security-related incidents to appropriate authorities
Assist Information System Owners and Gov't Stakeholders with Assess and Authorize (A&A) processes
Evaluate an array of IT devices (e.g. Windows, RHEL, Cisco routers, switches, firewalls, etc.) for DoD compliance using SCAP Compliance checker, ACAS, Evaluate STIG, and via manual STIG check reviews
Must be proficient in navigating through the eMASS application
Provide DoD Cybersecurity analysis and risk based security recommendations for the various systems
Assess various systems IAW DoDI 8500, DoDI 8510 and NISP SP 800-53
Identify the mitigation controls for identified risks and propose additional strategies for identified vulnerabilities
Act as the Cybersecurity Subject Matter Expert
Consult in other projects when needed
Continue education and learning new and evolving technology
Perform special projects and other duties assigned
REQUIRED QUALIFICATIONS
Active Secret Clearance
At least five (5) years of direct experience in information security and two (2)years of Security Engineering experience
DoD 8140 DCFW 722 Advanced: CISM or CISSO or FITSP-M or GCIA or GCSA or GCIH or GSLC or GICSP or CISSP-ISSMP or CISSP
Meet DoD 8570 IASAE-II certification: CISSP, CASP, or CSSLP
Computing Environment Certification (e.g. CEH, Linux, CCNA, VMWare, etc.)
Overview
TekSynap, a “Fast 50” technology company in the Washington DC area that offers technology solutions to federal, state and local government agencies. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.
Visit us at *****************
Apply now to explore jobs with us!
We are seeking a Security Engineer to support the PM with Risk Management Framework (RMF) activities such as performing network and systems security, conducting product evaluations, securing information systems, and conducting SCA activities.
Additional Job Information
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
WORK AUTHORIZATION/SECURITY CLEARANCE
Citizenship - US
Clearance requirement - Secret
OTHER DUTIES
N/A
EQUAL EMPLOYMENT OPPORTUNITY
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Cyber Security Engineer
Security Engineer Job In Arizona
Responsibilities
System Management Branch. Part of DoDIN-A operations focus on multiple dispersed, independent/intra-dependent systems performing multiple functions (Operating System (OS), Hardware (HW), database, software applications, etc.) that are interoperable with other elements or systems to perform a function as part of a larger, more complex system. The GCC operates, monitors, sustains, and secures Enterprise directed systems throughout the GCC AOR and internal services.
• Sensor Operation and Management. The GCC uses network and host monitoring systems (IPS/IDS, SIEM, and other sensor systems) to monitor, detect, identify, verify, and report security events. Support the Government by installing, maintaining, deploying, managing, and hardening multiple types of Enterprise level sensor systems. Manage all NIPRNet and SIPRNet sensors within the CONUS Theater comprised of devices IAW TE 2 Services and Assets, with a growth of approximately 20% throughout the life of the task order. Perform advanced systems administration for the Enterprise sensor mission relative to platform architecture, configuration, lifecycle support, and technology refresh and infusion. Perform daily backups, implement system upgrades, and ensure system configurations/accounts/passwords conform to baseline standards.
• Operate, monitor, sustain, and secure the SIEM using the full capabilities of the application (e.g., logging all security events and performing event analysis). Historically, the SIEM aggregates 50 million security events per day from multiple sources including IPS, IDS, Firewalls, Proxies, Routers, HBSS, and server system logs. As technology evolves, other sources may be added (i.e. Active Directory domain controllers, DNS servers, etc.).
• Develop and document disaster recovery procedures for GCC managed sensors, including IPS/IDS, system baseline tools (e.g., ESM), host-based systems and agents, server managers, applications, and remote management systems. Disaster recovery procedures shall be stored in the current Government-approved data repository.
• Establish and maintain written procedures to set up, track, and document status and location of hardware and software for each baseline of sensors. Procedures shall be stored in the current Government-approved data repository.
• Coordinate with installation NECs or customer points of contact on sensor installation and troubleshooting. The Contractor shall maintain points of contact rosters for NECs or NEC-like entities that provide on-site technical support and update rosters as new information is received.
Qualifications
Basic Qualifications:
8 years with BS/BA; 6 years with MS/MA; 3 years with PhD
Certifications: Broadcom DXNetOps: Spectrum. DCWF code 521 Advanced: Certified Information Systems Security Professional (CISSP) or GIAC Certified Intrusion Analyst (GCIA) or GIAC Cloud Security Essentials (GCLD) or GIAC Defensible Security Architecture (GDSA) or GIAC Global Industrial Cyber Security Professional (GICSP) or GIAC Security Essentials Certification (GSEC) or Information Systems Security Architecture Professional (ISSAP) or Information Systems Security Engineering Professional (ISSEP)
Active TS/SCI Clearance
Ability to conduct vulnerability assessments and monitor networks to support test and operational environment requirements.
Solid understanding of data transport, encryption, networking, IT systems, and cybersecurity fundamentals.
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range $66,000 - $106,000. This represents the typical salary range for this position based on experience and other factors. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Certified Ethical Hacker
Security Engineer Job In Gold Canyon, AZ
Job Brief: We are looking for a talented and trustworthy certified ethical hacker to conduct in-depth penetration tests on our customer's computer systems. As a certified ethical hacker, you will be required to research the type of system being used, find ways to penetrate the system and identify any weaknesses. You may also be required to create penetration test reports and advise on security upgrades.
To ensure success as a certified ethical hacker, you should have advanced knowledge of computer and internet security systems, high-level hacking skills, and the ability to create clear and concise reports. A top-notch certified ethical hacker quickly identifies security flaws and provides useful advice on how to improve the system.
Responsibilities:
Meeting with clients to discuss the security system currently in place.
Researching the company's system, network structure, and possible penetration sites.
Conducting multiple penetration tests on the system.
Identifying and recording security flaws and breaches.
Identifying areas of high-level security.
Reviewing and rating the security network.
Creating suggestions for security upgrades.
Compiling penetration test reports for the client.
Conducting penetration tests once new security features have been implemented.
Suggesting alternate upgrades.
Skills Required:
Bachelor's degree in information technology or computer science.
CEH Certification.
Proven work experience as a certified ethical hacker.
Advanced knowledge of networking systems and security software.
In-depth knowledge of parameter manipulation, session hijacking, and cross-site scripting.
Technical knowledge of routers, firewalls, and server systems.
Good written and verbal communication skills.
Good troubleshooting skills.
Ability to see big-picture system flaws.
Senior Security Engineer
Security Engineer Job In Arizona
KUBRA is excited to announce the hiring of a talented Senior Cloud Security Engineer to join our dynamic team! This pivotal role focuses on designing, optimizing, and maintaining a secure computing environment with a strong emphasis on application and cloud security. As a Senior Cloud Security Engineer, they will play a critical part in ensuring KUBRA's security standards are consistently met, implemented, and reviewed across both on-premises and online platforms. Their expertise will help shape a resilient security framework for KUBRA's technology, driving innovation and trust in our cloud and application environments!
This is a HYBRID role located in Tempe, Arizona.
What you get to do every day!Identify and provide guidance on appropriate controls based on industry standards to drive cloud and customer security solutions framework based on business risk and cloud native threats Develop and implement cloud security architectures focused on AWS Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements Establish and enforce secure application development practices, including secure coding, threat modeling, SAST/DAST and vulnerability management.Conduct security assessments of cloud infrastructure, applications, and CI/CD pipelines.Provide security guidance and best practices to Product and Service Delivery teams.Define and implement security policies, standards, and procedures for cloud and application security.Work with engineering and operations teams to integrate security controls within cloud-native services.Lead security reviews, architecture assessments, and risk analysis for new and existing applications.Monitor security trends, vulnerabilities, and threats in cloud and application security domains.Collaborate with compliance teams to ensure adherence to regulations such as PCI-DSS, SOC 1/2, ISO 27001 etc Respond to security incidents and provide expertise in forensic analysis and remediation.Design and implement network security controls, including firewall configuration and management.Manage firewall solutions such as Akamai and cloud-native security services to protect applications and infrastructure.Ensure robust network security by implementing intrusion detection/prevention systems (IDS/IPS), web application firewalls (WAFs), and DDoS mitigation strategies.Design and implement database security controls, including data encryption, access control, and monitoring.Conduct database vulnerability assessments and ensure compliance with security policies.Work with database administrators to apply security best practices to relational and NoSQL databases.Implement data masking, tokenization, and audit logging for sensitive data protection.Develop and implement Infrastructure as Code (IaC) security best practices to ensure secure provisioning and configuration of cloud resources.Ensure security is embedded in IaC templates using tools like Terraform and AWS Cloud Formation.Perform security architecture design reviews and provide recommendations to improve the security posture of KUBRA's application, database, and cloud platforms Perform periodic testing, code analysis, and security assessments of KUBRA owned applications Govern Watch over cloud security systems for change and configuration control thereby suggesting changes to further improve the overall security posture.Partner with DevSecOps, Application and Infrastructure teams to ensure any vulnerabilities or issues are resolved per security guidelines Stay up to date with current cyber security risk and analyze trends to proactively prevent problems.Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements
What kind of person should you be?Excellent verbal, written and interpersonal skills Ability to detail and effectively discriminate relevant logs / security events Ability to handle multiple tasks and projects concurrently Excellent written and verbal communication skills Ability to plan and manage complex security projects, and meet the deadlines Excellent organization, time management and problem-solving skills Ability to handle pressure under minimum or no direct supervision
What skills do you need?Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field.7+ years of experience in cybersecurity, with a focus on Security Architecture, cloud and application security.Strong knowledge of cloud security frameworks (AWS Well-Architected Framework, CSA-CCM, CIS Controls).Experience with securing cloud-native applications, microservices, and containerized environments (Kubernetes, Docker).Expertise in secure software development practices, including OWASP Top 10 and SAST/DAST methodologies.Familiarity with DevSecOps principles and tools such as Terraform, GitHub Actions, or AWS CodePipeline.Hands-on experience with identity and access management (IAM), encryption, and key management.Proficiency in scripting and automation using Python, Bash, or PowerShell.Experience with firewall technologies, network security principles, and secure network architecture design.Experience with database security, including best practices for relational and NoSQL databases.Experience with Infrastructure as Code (IaC) security and automation using Terraform, AWS CloudFormation, or similar tools.Industry certifications such as CISSP, CCSP, AWS Certified Security, or GIAC are preferred.
What can you expect from us?Award-winning culture that fosters growth, diversity and inclusion for all Paid day off for your birthday Free LinkedIn Learning subscription Bi-annual performance-based bonuses Continued education with our education reimbursement program Flexible schedules Free unlimited access to our refreshment stations (fully stocked with tea, coffee and other beverages) Two paid days for volunteer opportunities Free on-site Fitness center Access to a ‘Tickets at Work' membershipA free premium membership for ‘Headspace'; an app geared towards mental health and wellbeing 401k Matching
Equal Employment Opportunity: KUBRA is committed to the principles of equal employment opportunity. We do not discriminate in hiring on the basis of sex, gender identity, sexual orientation, race, color, religion, creed, national origin, physical or mental disability, protected veteran status, or any other characteristic protected by federal, state, or local law. We will provide accommodations during the recruitment process upon request by emailing **************************. Information received relating to accommodation will be addressed confidentially.
We thank all applicants for their interest; however, only candidates under consideration will be contacted.
While we value the skills and experiences listed in our job requirements, we also recognize that talent comes in many forms, and welcome applications from candidates who meet most but not all specified requirements. If you possess a strong desire to learn and grow in a dynamic work environment, apply now!
KUBRA is a fast-growing company that delivers customer communications solutions to some of the largest utility, insurance, and government entities across North America. KUBRA offers billing and payments, mapping, mobile apps, proactive communications, and artificial intelligence solutions for customers. With more than 1.5 billion customer interactions annually, KUBRA services reach over 40% of households in the U.S. and Canada. KUBRA is an operating subsidiary of Hearst.
Our office is small enough to allow creative individuals to flourish, yet large enough to provide long-term stability. We place a tremendous amount of responsibility on our team members to be productive, focused and self-motivated. We offer a casual work environment, competitive compensation and a stellar benefits program.
KUBRA does not typically provide immigration-related assistance, including employment-based work visa (e.g. H-1B) sponsorship, work permit applications and extensions, permanent residence (green card) sponsorship, LMIA applications or permanent residency nominations. Candidates must ensure they have legal authorization to work in the U.S/ Canada. All sponsorship determinations are case by case based on business need.
Systems Engineer with ACTIVE Secret Security Clearance (US Citizenship REQUIRED)
Security Engineer Job In Scottsdale, AZ
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours.
TITLE: Systems Engineer with ACTIVE Secret Security Clearance (US Citizenship REQUIRED)
CLEARANCE: ACTIVE Secret Security clearance required and TS/SCI, obtainable within reasonable time
LOCATION: ONSITE in Scottsdale AZ 85257 (no relocation package)
RATE RANGE:$65/hr - $75/hr W2 (no health benefits while on contract)
***No C2C, we can NOT work with outside agencies/vendors, and we can NOT do 1099-US CITIZENSHIP IS REQUIRED***
RESPONSIBILITIES:
Geologics is currently seeking an Advanced Systems Engineer in our Scottsdale, AZ facility.
As an Advanced Systems Engineer, you'll participate in requirements analysis and management, functional analysis, performance analysis, system design, trade studies, systems integration and test (verification) in the development and evaluation of networks and information systems. It's your chance to step up to the challenge and prove you're ready to lead the world.
DUTIES AND TASKS:
Performs requirements analysis, requirements definition, requirements management, functional analysis, performance analysis, system design, detail trade studies, systems integration and test (verification), validation and interface definition studies of subsystem or system elements under supervision of the lead systems engineer
Performs technical planning, cost and risk analyses, and supportability and effectiveness analyses for subsystems and system elements
Performs customer requirements analysis, develops system requirements and defines allocations to lower levels (elements and components)
Performs detailed technical analyses for a subsystem or system elements
Develops and evaluates systems, networks and information systems to ensure designs meet applicable governmental security specifications
May provide system accreditation/certification evaluation and test support to ensure all technical security features (e.g., identification, authentication, access control, labeling, and auditing) of the system are considered and function properly
May develop system security documentation on both new and fielded information systems
Participates in Modeling and Simulation
Researches and analyzes data, such as vendor products, COTS components, GFE/CFE, specifications, and manuals to determine feasibility of design or application
Supports the generation of technical engineering products by using the appropriate standards, processes, procedures, and tools throughout the system development life cycle
May provide leadership and/or direction to lower level employees
Independently determines proposed approach to solutions
Contributes to the completion of major programs and projects
Plans and executes project tasks for activities described above
Creative, innovative responsibilities requiring advanced decision-making skills
Defines processes for technical platforms, system specifications, input/output and working parameters for hardware and/or software compatibility
Demonstrates good judgment in selecting methods and techniques for obtaining solutions
Designs a complete and complex framework, system or product
Identifies, analyzes and resolves system design weaknesses
Regular contact with senior levels of internal working groups
Contact with Deputy Program Managers Engineering (DPME) and other professionals within the Engineering department and with project teams across the company
KNOWLEDGE SKILLS AND ABILITIES:
Coordinating external interfaces and ICDs
Multi-level security domain expertise (and cross-domain)
Quickly (with a more agile light-weight approach) decomposing requirements to a level that can avoid requirements bloat (and communicate/track impacts)
People that may have a working relationship with related people from Iridium, SDA, Northrup, York, and Lockheed
System-level networking person that can face off with the GFE WAN provider and coordinate detailed network design
Someone that can understand what is in scope and what is out of scope and manage that complexity
People with agile program experience
EDUCATION REQUIRED
Bachelor's degree in Systems Engineering, or a related Science, Engineering or Mathematics field. Agile experience preferred, plus a minimum of 5 years of relevant experience; or Master's degree plus a minimum of 3 years of relevant experience.
If you would like to interview for this position, please send an updated WORD version of your resume to Dee Smith,
*********************
Information Security Specialists
Security Engineer Job In Phoenix, AZ
American Express Travel Related Services Company, Inc. seeks Information Security Specialists to develop plans and strategies for information security tools, processes, and programs. Provide guidance on information security processes, controls, and compliance, and information security risk management. Respond to changes in the regulatory environment and assist other organizations in doing the same. Make strategic recommendations to enhance information security, including processes, procedures, governance approaches, and compliance.
Position requires a Master's degree in Computer Science, Engineering, Information Systems, or a related STEM field, and 2 years of experience with application security, application penetration testing, and data science. Experience must include 2 years of experience with each of the following: building, deploying, and maintaining end-to-end data science solutions; Security Operations Center (SOC) analysis; creating predictive models in support of risk evaluation and corporate governance; developing cybersecurity capabilities for the financial services industry; developing artificial intelligence, machine learning, and natural language processing capabilities; applying Threat Hunting Analytics; object oriented design and full stack development; and Big Data, CI/CD process and tools, including Docker, Git, Jenkins, and release pipeline. Telecommuting is available up to 2 days per week.
Job Location: Phoenix, AZ
Salary Range: $110,000.00 to $190,000.00 annually
We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include:
* Competitive base salaries
* Bonus incentives
* 6% Company Match on retirement savings plan
* Free financial coaching and financial well-being support
* Comprehensive medical, dental, vision, life insurance, and disability benefits
* 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
* Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
* Free and confidential counseling support through our Healthy Minds program
* Career development and training opportunities
For a full list of Team Amex benefits, visit our Colleague Benefits Site.
American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law. American Express will consider for employment all qualified applicants, including those with arrest or conviction records, in accordance with the requirements of applicable state and local laws, including, but not limited to, the California Fair Chance Act, the Los Angeles County Fair Chance Ordinance for Employers, and the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance. For positions covered by federal and/or state banking regulations, American Express will comply with such regulations as it relates to the consideration of applicants with criminal convictions.
US Job Seekers/Employees - Click here to view the "Know Your Rights" poster and the Pay Transparency Policy Statement.
If the links do not work, please copy and paste the following URLs in a new browser window: ****************************************** to access the three posters.
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we'll consider a number of job-related factors, including experience and location.
#LI-DNI
Generation Systems Engineer III - Steam Turbines
Security Engineer Job In Phoenix, AZ
Akkodis is seeking a Generation Systems Engineer III - Steam Turbines for a direct hire opportunity with a client in Phoenix, AZ
Generation Systems Engineer III - Steam Turbines
Salary: $90-115k
Job Overview
The Generation Systems Engineer III - Steam Turbines provides technical engineering, design, economic and analytical support to participate in developing long-range system plans and conducting engineering requests, proposals and presentations.
You are responsible for:
Performs engineering tasks requiring skills and experience gained through application of engineering methods and analysis.
Responsibility for technical decisions and interpretations.
Provides technical guidance and leadership to others as needed.
May be subject to shift work.
Minimum Requirements
Engineer III - Steam Turbines
A four-year bachelor's degree in an engineering discipline or related applied science discipline (see approved list) from an ABET accredited institution, an International Engineering Alliance (IEA) recognized institution or an ABET Mutual Recognition Agreement (MRA) institution.
Five (5) years of working experience in engineering-related positions.
Preferred Special Skills, Knowledge or Qualifications
Problem analysis/resolution techniques.
Knowledge of applicable codes, standards, practices, methods and safety standards in the area of applicable engineering discipline.
Experience in the utility industry.
Approved degrees:
Materials Science/Metallurgy, Physics, Chemistry, Math, Nuclear, Electrical, Mechanical, Civil, Electronics, Computer Science, Environmental, Chemical, Architectural, Structural. (A four-year bachelor of Engineering Technology degree is not considered an automatic equivalent for a B.S. degree in Engineering. A review of the degree program curriculum must be completed by Engineering department management.)
Major Accountabilities
1) Prepares engineering plans, designs, analysis, specifications, cost estimates, evaluations, studies, technical reviews, investigations and verifications.
Complies with design, regulatory, operating and maintenance requirements.
- Ensures engineering analyses, design, project control, schedule commitments, or oversight work is technically sound, cost effective, and in compliance with established standards, codes, and regulations.
- Checks and reviews analysis, evaluations, and investigations of others.
2) Interfaces with customers and other departments to ensure project objectives are understood and that work scope meets customer requirements, budget and schedule.
- Contacts customers and various levels of management to obtain or present technical data.
- Presents the results of designs, studies projects (in terms of new techniques) or approaches to subordinates, colleagues, management and customers.
3) Enhances department performance and productivity and/or unit performance by formulating, coordinating, performing analysis and making recommendations for improvements. Provides technical assistance and guidance to department personnel to enhance department performance and productivity.
4) May provide oversight of engineering technical programs by managing the program requirements, working with cross organizational partners, reviewing and internalizing operating experience and coordinating corrective actions to ensure engineering program elements continue to remain healthy.
5) May assume responsibility for small- to medium-scale projects which include planning, designing, scheduling and coordinating all facets of the project.
- Identifies potential schedule or quality problems and initiates corrective action.
- Takes initiative to eliminate barriers and uses resources to ensure desired results.
- May interface with outside agencies and regulatory authorities.
6) Provides technical guidance and leadership to less experienced engineers.
7) May participate in developing long-range strategies for significant site problems.
8) Provides input to projects and recommends modifications to increase operating efficiency and/or reviews design and documentation of projects to ensure compliance with design specifications, schedules and any regulatory requirements.
9) Remains cognizant of current technology and engineering developments as well as industry and competitive developments.
If you feel this is not something that you are currently interested in but know of someone who might be, please share the details with them or let me know their details so I can reach out to them.
Benefits include but are not limited to:
401(k) with match
Medical insurance
Dental Insurance
Vision assistance
Paid Time Off
To read our Candidate Privacy Information Statement, which explains how we will use your information, please visit ******************************************
The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:
· The California Fair Chance Act
· Los Angeles City Fair Chance Ordinance
· Los Angeles County Fair Chance Ordinance for Employers
· San Francisco Fair Chance Ordinance
Cyber Security Engineer
Security Engineer Job In Arizona
Responsibilities System Management Branch. Part of DoDIN-A operations focus on multiple dispersed, independent/intra-dependent systems performing multiple functions (Operating System (OS), Hardware (HW), database, software applications, etc.) that are interoperable with other elements or systems to perform a function as part of a larger, more complex system. The GCC operates, monitors, sustains, and secures Enterprise directed systems throughout the GCC AOR and internal services.• Sensor Operation and Management. The GCC uses network and host monitoring systems (IPS/IDS, SIEM, and other sensor systems) to monitor, detect, identify, verify, and report security events. Support the Government by installing, maintaining, deploying, managing, and hardening multiple types of Enterprise level sensor systems. Manage all NIPRNet and SIPRNet sensors within the CONUS Theater comprised of devices IAW TE 2 Services and Assets, with a growth of approximately 20% throughout the life of the task order. Perform advanced systems administration for the Enterprise sensor mission relative to platform architecture, configuration, lifecycle support, and technology refresh and infusion. Perform daily backups, implement system upgrades, and ensure system configurations/accounts/passwords conform to baseline standards. • Operate, monitor, sustain, and secure the SIEM using the full capabilities of the application (e.g., logging all security events and performing event analysis). Historically, the SIEM aggregates 50 million security events per day from multiple sources including IPS, IDS, Firewalls, Proxies, Routers, HBSS, and server system logs. As technology evolves, other sources may be added (i.e. Active Directory domain controllers, DNS servers, etc.).• Develop and document disaster recovery procedures for GCC managed sensors, including IPS/IDS, system baseline tools (e.g., ESM), host-based systems and agents, server managers, applications, and remote management systems. Disaster recovery procedures shall be stored in the current Government-approved data repository.• Establish and maintain written procedures to set up, track, and document status and location of hardware and software for each baseline of sensors. Procedures shall be stored in the current Government-approved data repository.• Coordinate with installation NECs or customer points of contact on sensor installation and troubleshooting. The Contractor shall maintain points of contact rosters for NECs or NEC-like entities that provide on-site technical support and update rosters as new information is received.
Qualifications
Basic Qualifications:
* 9 years w/o BS/BA; 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD
* Certifications: DCWF code 521 Intermediate: Certified Ethical Hacker (CEH) or CompTIA Cloud+ or CompTIA Cybersecurity Analyst (CySA+) or CompTIA PenTest+ or CompTIA Security+ or GIAC Foundational Cybersecurity Technologies (GFACT) or Systems Security Certified Practitioner (SSCP)
* Active TS/SCI Clearance
* Ability to conduct vulnerability assessments and monitor networks to support test and operational environment requirements.
* Solid understanding of data transport, encryption, networking, IT systems, and cybersecurity fundamentals.
* Ability to work shift hours
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range
$86,000 - $138,000. This represents the typical salary range for this position based on experience and other factors.
EEO
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Security Engineer
Security Engineer Job In Arizona
**Responsibilities & Qualifications** **RESPONSIBILITIES** + Assist the PM in prepare daily, weekly, and assessment reports and deliverables in support of cybersecurity and SCA efforts. + Documentation and Compliance: Creates functional and technical documentation. Ensures project disciplines are followed, with strict adherence to RMF and FISMA guidelines.
+ Document and report security-related incidents to appropriate authorities
+ Assist Information System Owners and Gov't Stakeholders with Assess and Authorize (A&A) processes
+ Evaluate an array of IT devices (e.g. Windows, RHEL, Cisco routers, switches, firewalls, etc.) for DoD compliance using SCAP Compliance checker, ACAS, Evaluate STIG, and via manual STIG check reviews
+ Must be proficient in navigating through the eMASS application
+ Provide DoD Cybersecurity analysis and risk based security recommendations for the various systems
+ Assess various systems IAW DoDI 8500, DoDI 8510 and NISP SP 800-53
+ Identify the mitigation controls for identified risks and propose additional strategies for identified vulnerabilities
+ Act as the Cybersecurity Subject Matter Expert
+ Consult in other projects when needed
+ Continue education and learning new and evolving technology
+ Perform special projects and other duties assigned
**REQUIRED QUALIFICATIONS**
+ Active Secret Clearance
+ At least five (5) years of direct experience in information security and two (2)years of Security Engineering experience
+ DoD 8140 DCFW 722 Advanced: CISM or CISSO or FITSP-M or GCIA or GCSA or GCIH or GSLC or GICSP or CISSP-ISSMP or CISSP
+ Meet DoD 8570 IASAE-II certification: CISSP, CASP, or CSSLP
+ Computing Environment Certification (e.g. CEH, Linux, CCNA, VMWare, etc.)
**Overview**
TekSynap, a "Fast 50" technology company in the Washington DC area that offers technology solutions to federal, state and local government agencies. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.
Visit us at **************** .
Apply now to explore jobs with us!
We are seeking a Security Engineer to support the PM with Risk Management Framework (RMF) activities such as performing network and systems security, conducting product evaluations, securing information systems, and conducting SCA activities.
**Additional Job Information**
**PHYSICAL DEMANDS**
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
**WORK AUTHORIZATION/SECURITY CLEARANCE**
Citizenship - US
Clearance requirement - Secret
**OTHER DUTIES**
N/A
**EQUAL EMPLOYMENT OPPORTUNITY**
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
**Job Locations** _US-AZ-Fort Huachuca_
**ID** _2025-7710_
**Category** _Cybersecurity_
**Type** _Regular Full-Time_
Cyber Security Engineer
Security Engineer Job In Arizona
Responsibilities
Secure Division Support. The GCC provides CSSP responsibilities and conducts DODIN Operations and DCO - Internal Defensive Measures (IDM) to protect the DODIN IAW the DoDM 8530.01 and the DoD Cybersecurity Services Evaluator Scoring Metrics (ESM). These responsibilities are broken into five (5) CSSP functions; Identify, Protect, Detect, Respond, and Recover. GCC is responsible to conduct these functions for its assigned portion of the DODIN for both unclassified and classified networks/ systems. The division provides support services for the protection, monitoring, analysis, detection, and response to unauthorized activity within the DoD Information Systems and Networks. DCO-IDM services are required to defend against unauthorized activity on all Army assets residing on the NIPRNet and SIPRNet. The division provides defensive measures to protect and defend information, computers, and networks from disruption, denial, degradation, or destruction. The division provides sensor management and event analysis and response for network and host-based events. For sensor management, the division provides management of in-line Network Intrusion Protection System/Network Intrusion Detection System (NIPS/NIDS) sensors monitoring all CONUS DoDIN-A NIPRNet and SIPRNet Enterprise traffic to detect sensor outages and activities that attempt to compromise the confidentiality, integrity, or availability of the network. In coordination with GCC Operations, DCO initiates defensive security procedures upon detection of these attacks. Event analysis and response includes the processes involved with reducing multiple cyber incidents to actual malicious threat determinations and mitigating those threats IAW guidance received from GCC Government leadership. Support the Government in providing services for CSSP services on both the NIPRNet and SIPRNet IAW Appendix E: Secure Division Workload Assessment in support of the CONUS portion of the DoDIN-A. Develop reports and products, both current and long-term, in support of CSSP and course of action development. Prepare Tactics, Techniques, and Procedures (TTP), SOPs, Executive Summary (EXSUMS), trip reports, and information/point papers. Contribute during the preparation of agreements, policy, and guidance documentation such as Memorandums of Understanding / Agreement (MOU/A), Service Level Agreements (SLA).
• Defensive Cyber Infrastructure (DCI) Support. Perform the following DCI functions:
• Develop and distribute content provided by security platform vendors at least weekly and as needed.
• Develop and distribute in-house content based on tippers from higher organizations and the Threat Hunt team.
• Provide content development and distribution to tactical edge customers and develop TTPs for doing so.
• Consolidate different data sources into a single view used to assess the status of a specific threat on the network.
• Develop and/or maintain dashboards displaying specific CSSP items of interest (i.e. top 10 attackers, top 10 destinations, top attack vector, etc.) and all active cyber incidents, in near real time, within each respective AOR.
• Maintain, update, test, and implement signatures and policies for each sensor managed by GCC.
• Changes must be approved through the established ITIL process.
• Develop signatures and policies that include both network- and host-based sensors.
• Update as necessary to minimize false positives and validate for proper syntax.
• Conduct all development and testing on isolated networks.
• Document and conduct testing activity with plan procedures, results, and operational procedures as signatures are developed and/or updated.
• Update and validate plan at least annually. A signature test plan shall be developed.
Qualifications
Basic Qualifications:
8 years with BS/BA; 6 years with MS/MA; 3 years with PhD
Certifications: DCWF Code 521 Advanced: Certified Information Systems Security Professional (CISSP) or GIAC Certified Intrusion Analyst (GCIA) or GIAC Cloud Security Essentials (GCLD) or GIAC Defensible Security Architecture (GDSA) or GIAC Global Industrial Cyber Security Professional (GICSP) or GIAC Security Essentials Certification (GSEC) or Information Systems Security Architecture Professional (ISSAP) or Information Systems Security Engineering Professional (ISSEP)
Active TS/SCI Clearance
Ability to conduct vulnerability assessments and monitor networks to support test and operational environment requirements.
Solid understanding of data transport, encryption, networking, IT systems, and cybersecurity fundamentals.
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range $66,000 - $106,000. This represents the typical salary range for this position based on experience and other factors. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Security Analyst
Security Engineer Job In Arizona
Responsibilities & Qualifications
RESPONSIBILITIES
Assist the Security Engineer in prepare daily, weekly, and assessment reports and deliverables in support of cybersecurity and SCA efforts.
Documentation and Compliance: Creates functional and technical documentation. Ensures project disciplines are followed, with strict adherence to RMF and FISMA guidelines.
Document and report security-related incidents to appropriate authorities
Assist Information System Owners and Gov't Stakeholders with Assess and Authorize (A&A) processes
Evaluate an array of IT devices (e.g. Windows, RHEL, Cisco routers, switches, firewalls, etc.) for DoD compliance using SCAP Compliance checker, ACAS, Evaluate STIG, and via manual STIG check reviews
Must be proficient in navigating through the eMASS application
Provide DoD Cybersecurity analysis and risk based security recommendations for the various systems
Assess CSfC IAW DoDI 8500, DoDI 8510 and NISP SP 800-53
Identify the mitigation controls for identified risks and propose additional strategies for identified vulnerabilities
REQUIRED QUALIFICATIONS
Active Secret Clearance
At least three (3) years of direct experience in information security
DoD 8570 IAT-II certification
Computing Environment Certification (e.g. CEH, Linux, CCNA, VMWare, etc.)
Overview
TekSynap, a “Fast 50” technology company in the Washington DC area that offers technology solutions to federal, state and local government agencies. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.
Visit us at *****************
Apply now to explore jobs with us!
We are seeking a Security Analyst to support the Security Engineer with Risk Management Framework (RMF) activities such as performing network and systems security, conducting product evaluations, securing information systems, and assisting in performing SCA activities.
Additional Job Information
WORK ENVIRONMENT AND PHYSICAL DEMANDS
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
Location: Huachuca, AZ
Type of environment: Office
Noise level: Low
Work schedule: Schedule is day shift Monday - Friday.
Amount of Travel: 30%
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
WORK AUTHORIZATION/SECURITY CLEARANCE
Citizenship - US
Clearance requirement - Secret
OTHER DUTIES
N/A
EQUAL EMPLOYMENT OPPORTUNITY
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Information Security Specialist- Cryptographic Solutions
Security Engineer Job In Phoenix, AZ
You Lead the Way. We've Got Your Back. With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you'll learn and grow as we help you create a career journey that's unique and meaningful to you with benefits, programs, and flexibility that support you personally and professionally.
At American Express, you'll be recognized for your contributions, leadership, and impact-every colleague has the opportunity to share in the company's success. Together, we'll win as a team, striving to uphold our company values and powerful backing promise to provide the world's best customer experience every day. And we'll do it with the utmost integrity, and in an environment where everyone is seen, heard and feels like they belong.
Join Team Amex and let's lead the way together.
As part of our diverse tech team, you can architect, code and ship software that makes us an essential part of our customers' digital lives. Here, you can work alongside talented engineers in an open, supportive, inclusive environment where your voice is valued, and you make your own decisions on what tech to use to solve challenging problems. American Express offers a range of opportunities to work with the latest technologies and encourages you to back the broader engineering community through open source. And because we understand the importance of keeping your skills fresh and relevant, we give you dedicated time to invest in your professional development. Find your place in technology on #TeamAmex.
As an Information Security Specialist in the Payment Cryptographic Architecture team you will be responsible for defining and delivering cryptographic solutions by providing technical knowledge and industry insight to influence and guide the development of payment products and platforms. The position will require you to partner with Payment Subject Matter Experts and Product Owners across the Enterprise, working across multiple projects with a focus on unifying the payment ecosystem in accordance with the Technology Risk and Information Security (TRIS) strategy and Enterprise priorities.
In addition to working with the internal teams, this position will support the development of industry standards and security guidelines through the participation in various industry working groups across PCI, EMVCo and ANSI.
How will you make an impact in this role?
This full-time position reports to the Staff Information Security Specialist, and encompasses the following key duties:
* Close partnership with Subject Matter Experts across the payment ecosystem to partner on the development of strategic roadmaps and transformational opportunities for the payment cryptographic services.
* Participate in the review of platform and production solutions with the focus of identifying potential vulnerabilities and opportunities to align to the Technology Risk strategy.
* Provide holistic design and architectural direction for payment platforms and services.
* Design and oversee security patterns and solutions that provide frameworks, interfaces, and services that can be extended and reused across one or more platforms.
* Engagement with Industry bodies such as PCI, EMV and ANSI
* Significant contribution to setting technology direction, development of architecture and influence in implementation.
* Responsibility for leading parallel efforts and delivering high quality crypto/security engineering solutions on time.
* Interact with leaders, engineers and business partners to understand their objectives.
* Extend business product innovation through the adoption and implementation of technology.
* Facilitate a culture of continuous learning by leading in development sessions.
Minimum Qualifications
* BS degree in Computer Science (or related field), with 7+ years of relevant experience
* Able to effectively explain and communicate complex technological problems and solutions in easy-to-understand business language.
* Hands-on experience with design and implementation of cryptographic solutions in a diverse and global environment.
* Knowledge of cryptography technologies involving software and hardware integration and implementation, e.g. hardware security modules, trusted platform modules, authentication and encryption protocols, PKI or key management.
* Holistic understanding of cryptography and key management within the financial industry
* Knowledge and understanding of applied cryptography in the field of Information Security including industry best practices.
* Deep technical experience with at least one field of payment security (e.g., payment cards, mobile payments, ecommerce, etc.)
* Ability to provide hands-on design, solutions and support to technical project teams.
* Expertise in designing and implementing scalable solution architectures that perform at a global enterprise scale.
* Routinely introduces new and impactful technologies based on research, proof of concepts and independent investigation.
Preferred Qualifications
* Demonstrated experience in engagement and participation in working with industry bodies such as PCI, EMVCo, ANSI, etc.
* Experience with multiple payment product form factors (e.g., payment cards, mobile payments, ecommerce, etc.)
Salary Range: $110,000.00 to $190,000.00 annually + bonus + benefits
The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we'll consider your location, experience, and other job-related factors.
We back our colleagues and their loved ones with benefits and programs that support their holistic well-being. That means we prioritize their physical, financial, and mental health through each stage of life. Benefits include:
* Competitive base salaries
* Bonus incentives
* 6% Company Match on retirement savings plan
* Free financial coaching and financial well-being support
* Comprehensive medical, dental, vision, life insurance, and disability benefits
* Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
* 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
* Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
* Free and confidential counseling support through our Healthy Minds program
* Career development and training opportunities
For a full list of Team Amex benefits, visit our Colleague Benefits Site.
American Express is an equal opportunity employer and makes employment decisions without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, disability status, age, or any other status protected by law.
We back our colleagues with the support they need to thrive, professionally and personally. That's why we have Amex Flex, our enterprise working model that provides greater flexibility to colleagues while ensuring we preserve the important aspects of our unique in-person culture. Depending on role and business needs, colleagues will either work onsite, in a hybrid model (combination of in-office and virtual days) or fully virtually.
US Job Seekers/Employees - Click here to view the "Know Your Rights" poster and the Pay Transparency Policy Statement.
If the links do not work, please copy and paste the following URLs in a new browser window: ****************************************** to access the three posters.
Employment eligibility to work with American Express in the United States is required as the company will not pursue visa sponsorship for these positions.
Cyber Security Analyst - Info. Assurance
Security Engineer Job In Arizona
Responsibilities
Cyber Protection, Assessment and Authorization, and Risk Management Framework (RMF). Provides cybersecurity functional support for assessments, authorizations, and documentation Enterprise-fielded systems managed by NETCOM HQ. Efforts include using the Enterprise Mission Assurance Support Service (eMASS) to record RMF activities such as control implementation of all applicable security controls as identified via information system security categorization in accordance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53 and Committee on National Security Systems Instructions (CNSSI) 1253. The number of families and controls will vary depending on the security categorization, the application of overlays (privacy, classified, intel, etc.) and any security control tailoring.
• Adhere to the DoD cybersecurity policy requirements set forth in DoDI 8500.01, “Cybersecurity,” and DoDI 8510.01, “Risk Management Framework (RMF) for DoD Information Technology (IT)” and their successors.
• Provide personnel with knowledge in DoD security hardening, collection, and assessment tools (includes: Security Technical Implementation Guide (STIGs); Assured Compliance Assessment Solution (ACAS) SCAP; Nessus; or other currently Government-approved tools) and expertise with security architectures, firewalls, and network access.
• Possess and retain knowledge of the RMF Knowledge Service - ********************************************* the DoD's official site for enterprise RMF policy and implementation guidelines.
• Review any RMF activities on behalf of NETCOM ensuring adherence to the operational ETPs and Operations Orders hosted on the US Army Component Workspace - Operations tab of the RMF Knowledge Service. The ETPs provide amplifying guidance and process implementation for the Army regarding RMF.
Qualifications
Basic Qualifications:
1+ years of applicable work experience.
Certifications: DCWF Code 722 Intermediate: Certified Chief Information Security Officer (CCISO) or Certified Cloud Security Professional (CCSP) or Certified in Governance Risk and Compliance (CGRC) or CompTIA Cloud+ or CompTIA Security+ or CompTIA SecurityX (formerly CASP+) or Systems Security Certified Practitioner (SSCP)
Possess a Secret Clearnace and the ability to obtain a Top Secret w/SCI security clearance
Ability to conduct vulnerability assessments and monitor networks to support test and operational environment requirements
Solid understanding of data transport, encryption, networking, IT systems, and cybersecurity fundamentals
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range $51,000 - $82,000. This represents the typical salary range for this position based on experience and other factors. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.