Collaborate with cloud security and DevSecOps teams to integrate encryption and key management into CI/CD pipelines and Infrastructure as Code (IaC) deployments.. Stay ahead of advancements in cryptographic algorithms, quantum computing risks, and emerging IoT security frameworks.. Drive innovation in encryption automation, integrating key management with DevSecOps, and Infrastructure as Code (IaC).. Hands-on Experience with key management systems (HashiCorp Vault, ASW KMS, Azure Key Vault, OCI KMS).. Experience with Kubernetes, Terraform, Ansible, Chef, and CI/CD automation.
Our work depends on Software Developer joining our team to support DoD Red Team’s assessments support external customers and target sites, not DTRA. These projects support critical defense capabilities managed by multiple DoD and/or US Government customers. Senior DoD stakeholders such as the Joint Chiefs of Staff, Combatant Commanders, the DoD Chief Information Officer, Undersecretary of Defense for Intelligence, and other DoD Component Heads provide direct guidance on the projects the DoD Red Team supports. Required Technical Skills: Offensive Security Experienced Pentester (OSEP), Advanced Windows Exploitation (OSEE), Exploit Researcher and Advanced Penetration Tester (GXPN), Reverse Engineering Malware (GREM).. In addition, desired skills/certifications are: Host-based computer forensics, network-based forensics, cyber incident response, cyber-criminal investigation, intrusion detection/analysis, designing countermeasures and mitigations against potential exploitations of programming language weaknesses and vulnerabilities, cyber red teaming, network penetration testing, security operations center analysis, defensive cyber operations, or offensive cyber operations. Scheduled Weekly Hours: 40 Travel Required: Less than 10% Telecommuting Options: Hybrid Work Location: USA VA Fort Belvoir Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.
We are seeking an experienced Information Security Compliance Manager with a background in professional services or law firm environments to lead compliance initiatives and oversee security audits.. Supervise the Cyber Security Compliance Analyst , guiding risk assessments, vulnerability management, security process audits, and compliance reporting.. Hands-on experience with cybersecurity tools, security logging, risk analysis, vulnerability management, and governance frameworks.. Exceptional ability to analyze risks, anticipate obstacles, and develop strategic security solutions.. Security certification preferred (CISSP, CISM, CRISC, or equivalent).
Were looking for a Cloud Security Engineer in the Boston area for a hybrid full-time position.. You will be responsible for developing and maintaining infrastructure-as-code (IaC) with Terraform or CloudFormation.. Experience with Azure, AWS, or GCP. Experience with containerization and orchestration technologies such as Docker and Kubernetes. Relevant cybersecurity certifications (e.g., CISA, CRISC, CISSP)
Automate threat intelligence enrichment, real-time event processing, and security data visualization.. Hands-on experience with SIEM (SQL, ELK, etc), SOAR, and EDR (CrowdStrike,) for real-time security monitoring and response.. Expertise in cloud security (AWS, GCP, Azure) and containerized workloads (Kubernetes, Docker) security incident handling.. Strong understanding of threat intelligence, attacker tactics (MITRE ATT&CK), and real-world attack chains.. Certifications: GCFA, GNFA, GREM, GCIH, or equivalent forensic/security certifications.
We are seeking an experienced FinTech Cloud Security Engineer to join our CloudOps team.. Hands-on experience with security tools such as Netskope, Orca/Wiz Security (CNAPP/CSPM), Crowdstrike (CWPP), Snyk, StackHawk DAST, and Knowbe4. 6+ years of experience in DevSecOps, Security Engineering, or similar role- MUST have experience in a cloud security focused role. Relevant security certifications (CISSP, CCSP, AWS/Azure Security certifications). Our cloud-native, AI-powered operating system and technology platform are transforming investment operations to enable reduced fees and the ability to offer new and innovative products, including crypto-asset services, while scaling for the future.
Join to apply for the Associate Principal/Digital Forensics, Incident Response & Cybersecurity (Forensic Services practice) role at Charles River Associates. Leading security and privacy investigations for CRA clients, in preparation of, and in response to, data security matters, which may include ongoing theft of trade secret investigations, cyber breach detection, threat analysis, incident response and malware analysis;. Experience in a hands-on technical role functioning as a testifying expert, digital forensic examiner, incident responder, network forensic analyst or malware analyst;.
The mission of the penetration testing team is to protect Fidelity's assets and our customers' livelihoods from the threat of exploitation by malicious adversaries.. Preferred: OSCP, GWAPT, GXPN, GPEN, LPT, CEH, CISSP or other industry security certifications.. Demonstrated experience with common penetration testing and vulnerability assessment tools such as nmap, Wireshark, Nessus, NeXpose, BackTrack, Metasploit, AppScan, WebInspect, Burp Suite Professional, Acunetix, Arachni, w3af, NTOSpider. The Penetration Testing team forms part of Security Assessment group within Enterprise Cybersecurity (ECS).. Please be advised that Fidelity's business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirementrelated financial activities and the rules and regulations of numerous selfregulatory organizations, including FINRA, among others.
Network Engineer (Hybrid) Clearance Requirement: Active Secret Clearance or higher. Maintain day-to-day network operations and perform disaster recovery and data backup procedures as needed.. 6+ years of experience with Juniper and Palo Alto firewalls.. Basic scripting experience (e.g., Python, Ansible, TCL, Bash).. Juniper or Palo Alto certifications.
Stays abreast of competitive landscape and emerging technologies to best position Comcast Business Services in the marketplace.. Develops sales territory, including cultivation of local partnerships and organizational affiliations.. Demonstrates some knowledge of Network Design, MAN technologies & designs including DSx, OC-x, WDM, Ethernet, Internet Technologies, Functionality & Services, Voice Network Technologies (including VoIP), Data Networking Technologies, Functionality & Services (LAN, MAN, WAN, VPN), Networking Protocols (with an emphasis on Layers 1,2, & 3), Customer Premise Equipment (voice & data), Business Continuity/Disaster Recovery concepts and E-rate Contracting Processes and Procedures.. Product Positioning; Direct Selling; Prospecting; Business Sales; Lead Generation; Cold Calling. Most sales positions are eligible for a Commission under the terms of an applicable plan, while most non-sales positions are eligible for a Bonus.
This role provides technical expertise in multiple areas of cybersecurity to include Cloud Security and Endpoint Security.. Experience in Threat Intelligence/Hunting using KQL.. Solid Microsoft Azure experience, including M365.. Solid understanding of system and network security technologies and related concepts, e.g. boundary protection, network segmentation, firewalls, endpoint security, threat hunting and data protection.. Azure GCC-H exposure is desired.
Motional is looking for a highly skilled Senior Cybersecurity Engineer to join our Enterprise Cybersecurity team.. As a member of the Enterprise Cybersecurity team, you will be responsible for ensuring Motional systems and third party services maintain sufficient security as well as building and deploying new technology to improve Motionals overall security.. This role will be a highly visible role as you will be leading projects with enterprise-wide impact and be in close collaboration with members across the organization.. The role requires a hybrid schedule working out of the Boston Seaport office at least 3 days per week.. Get notified about new Cyber Security Engineer jobs in Boston, MA.
RSM US LLP, the First Choice Advisor to the Middle Market seeks a Security & Privacy Risk Consulting (SPRC) Principal (owner) to join our Risk Consulting Services, SPRC Practice.. Additionally, this individual must possess a variety of skill sets such as pursuing, performing, and overseeing cyber program transformation efforts that include: alignment to governance frameworks such as (HIPAA, SSF, NIST, ISO, FISMA, etc.). , implementation of cyber solutions/products/programs such as threat intelligence/management, data protection/data loss prevention, cloud security, edge protection, endpoint detection and response, identity and access management, zero trust, vulnerability management, Business and Clinical Continuity/Disaster Recovery, Third Party risk management. Deep knowledge and understanding of healthcare related cybersecurity standards (e.g., HIPAA, PCI, MARS-E, etc), including industry and federal guidance.. RSM will consider for employment qualified applicants with arrest or conviction records in accordance with the requirements of applicable law, including but not limited to, the California Fair Chance Act, the Los Angeles Fair Chance Initiative for Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the San Francisco Fair Chance Ordinance.
The ideal candidate will have a strong background in network security, cloud security (AWS), and SIEM platforms.. Minimum 3-5 years of experience in network security, cloud security (AWS), and SIEM platforms.. Hands-on experience with SIEM tools like Splunk, Elastic Stack, or others.. Industry certifications (e.g., CISSP, AWS Certified Security Specialty, CEH) are a plus.. The Plymouth Rock Company and its affiliated group of companies write and manage over $2 billion in personal and commercial auto and homeowners insurance throughout the Northeast and mid-Atlantic, where we have built an unparalleled reputation for service.
We are seeking a Senior Security Engineer to join our team, focusing on defining security workflows and incident response (IR) strategies.. Define and refine security workflows and incident response strategies.. Experience with Security Orchestration, Automation, and Response (SOAR) platforms.. Ideal but not required: Cloud security experience.. You'll have the opportunity to work on the bleeding edge of technology and drive true innovations, all while collaborating closely with industry veterans who are dedicated to defending the market from the new wave of AI-driven attacks.
Design and implement systems including CCTV, access control, intrusion detection, and biometrics. Lead zoning layouts, mantrap flows, visitor access, and badging protocols. Ensure high resiliency with dual-path communications, UPS backups, and penetration testing programs. Security ecosystems like Genetec, LenelS2, Honeywell, or Avigilon.. Remote-first culture with access to WeWork spaces
Also, should have knowledge of 3rd Party security assessments and applicability of SOC1 and SOC2 reports and concepts of vendor risk management.. Application Security - Experience with the design of security controls for multi-tier business solutions including the design of application-level access and entitlement management, data tenancy and isolation, encryption, and logging.. Cloud Security –Technical understanding of virtualization, cloud infrastructure, and public cloud offerings and experience designing security configuration and controls within cloud-based solutions in Microsoft Azure Google GCP, Amazon AWS and other vendors.. Infrastructure Security – Experience with the integration of common infrastructure security technologies and solutions into business solution architectures including the integration of identity & access management, intrusion detection and prevention, security monitoring, and data encryption solutions.. Cloud security certifications such as AZ-300 Azure Architect Technologies, CISSP or security related certifications.
Join to apply for the Litigation Associate (Privacy and Cybersecurity) role at Mintz. Our pretrial, discovery, trial and appellate efforts are designed to solve clients' problems through a collaborative, results-driven approach.. Applicants should have a comprehensive complex litigation skill set and experience in risk assessment, forensic and government investigations, crisis communications and response, and state and federal regulatory enforcement actions.. Responsibilities will include analysis of complex regulatory matters and investigations, advising clients on crisis management and cybersecurity incident response, brief and motion drafting, legal research, running document production, deposition prep, expert discovery and trial practice.. Graduated with a JD or LLM from an ABaccredited law school
Granite's philanthropy is unparalleled with over $300 million in donations to organizations such as Dana Farber Cancer Institute, The ALS Foundation and the Alzheimer's Association to name a few.. We are seeking a highly skilled and motivated Network Security Engineer to join our team.. This role requires in-depth knowledge of various network technology and vendor implementations including Fortinet, Cisco.. Proficiency in designing and implementing network solutions using vendors such as Fortinet, Cisco.. Experience operating and maintaining data center grade Fortinet equipment, experience planning and conducting upgrade cycles for Fortinet equipment.
Overview We are seeking a Director of IT Security to lead and mature our enterprise security program, strengthen our cyber defense posture, and ensure risk-aligned, business-driven protection across a rapidly evolving technology landscape.. Ensure comprehensive integration of cybersecurity principles into business strategies, disaster recovery, business continuity, access management, incident response, and enterprise risk management activities.. Industry-recognized certifications required (e.g., CISSP, CISM, CRISC, CISA).. Proven experience building and leading security teams, with responsibility for security operations, incident response, identity and access management, and regulatory compliance.. Deep expertise across multiple domains such as enterprise security architecture, cloud security, vulnerability management, IT controls, and threat intelligence.