The OT Security Site Lead works across multiple technical and business areas to facilitate implementation of the regional OT security initiatives and provide onsite support for core security functions of asset management, vulnerability remediation, and equipment backup and recovery as well as support for incident management. Asset management – achieve/maintain equipment asset visibility targets for the site through the vulnerability and intrusion detection systems (IDS). Vulnerability remediation – lead annual remediation plans for the site and support investigation and resolution of alerts from the IDS system. Regional support – contribute as a subject matter expert in developing OT security tools, systems, and processes across the prevention, vulnerability mgmt., and incident response/recovery workstreams. 2+ years of experience with machine control networks / industrial control systems (ICS); basic understanding of communication networks, cybersecurity fundamentals.
In this pivotal role, you will help shape our organization’s technology landscape, enhance operational efficiency, and support a culture of innovation for our DSA employees. Secure Development Enablement: Integrate security into development processes by promoting secure coding, threat modeling, and vulnerability management. Cloud Security: IAM, encryption, and compliance in AWS, Azure, or Google Cloud.. Data Protection: Encryption, tokenization, and DLP tools.. Regulatory Compliance: Understanding of GDPR, HIPAA, PCI DSS, and related frameworks
Infrastructure as Code (IaC): Develop and manage AWS infrastructure using Terraform, CloudFormation, and Ansible to automate provisioning and configuration.. Security & Compliance: Enforce AWS security best practices, including IAM policies, AWS Shield, AWS Macie, encryption, and FedRAMP compliance.. Certifications: AWS Certified Solutions Architect - Professional (or equivalent AWS certification preferred).. Cloud Security & Compliance: Deep understanding of AWS security tools, IAM best practices, encryption standards, and DoD/Federal compliance frameworks (FedRAMP, NIST, RMF, Zero Trust Architecture).. Technical Tool Proficiency: Strong expertise in Terraform, Ansible, Kubernetes, AWS Lambda, and AWS DevOps services.
Improve Replit's security posture through improved use of static and dynamic analysis, cloud security posture, and access control management. Experience with cloud security posture management (GCP, AWS, or Azure).. Strong understanding of cryptography, PKI, and secure communication protocols.. Knowledge of sandbox technologies and secure code execution environments.. Experience with threat intelligence and security research
This leader will specialize in one of the following domains: Zero Trust (including Identity & Access Management), Cloud Security, Network Security, Security Operations & Response, or Strategy & GRC. The role is pivotal in shaping client engagements, building domain-specific practices, and delivering high-impact security transformation programs.. Domain Ownership Lead one of the five security pillars, with deep expertise in either Zero Trust, IAM, Cloud Security, Network Security, Security Operations, or GRC.. Strong understanding of regulatory frameworks (e.g., NIST, ISO, SOC, HIPAA, PCI DSS).. Experience with security technologies such as Okta, SailPoint, Palo Alto, Splunk, Azure/AWS/GCP security services.. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations.
As a leading global trading firm, our competitive edge relies on speed, precision, agility, and robust security.. Your work will balance risk mitigation with operational agility, enabling innovation without compromising security.. Assess and fortify our global security infrastructure, identifying opportunities for improvement. Proficiency with security technologies and protocols such as encryption, PKI, TLS, Kerberos, and OAuth, applied in a Linux environment. Demonstrated experience in cloud security with hosted and on-prem cloud infrastructure
Sophos is now the largest pure-play Managed Detection and Response (MDR) provider, supporting more than 28,000 organizations.. In addition to MDR and other services, Sophos’ complete portfolio includes industry-leading endpoint, network, email, and cloud security that interoperate and adapt to defend through the Sophos Central platform.. Secureworks provides the innovative, market-leading Taegis XDR/MDR, identity threat detection and response (ITDR), next-gen SIEM capabilities, managed risk, and a comprehensive set of advisory services.. The solutions are powered by historical and real-time threat intelligence from Sophos X-Ops and the newly added Counter Threat Unit (CTU).. Foundational knowledge Managed Detection and Response (MDR) services as well as Incident Response offerings
We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The Information Systems Security Department (R311) within the Global Security Services Division (R300) seeks a Lead Information Systems Cyber Engineer to provide Information Assurance and Cybersecurity services for classified systems. Ensure compliance with Risk Management Framework (RMF) policies, including System Security Plans (SSPs), Risk Assessment Reports, and Security Controls Traceability Matrix (SCTM). Active Top Secret security clearance. Experience with Windows Server 2019, Active Directory, SPLUNK, and intrusion detection tools.
This role will require expertise in cybersecurity risk management, incident response, and cloud security architectures, as well as strong leadership abilities to mentor and guide teams in advancing organizational security capabilities.. RMF Compliance & ATO Processes: Oversee RMF compliance efforts and manage ATO processes for both classified and unclassified systems, ensuring security posture meets federal, DoD, and national security requirements.. Security Architecture Integration: Support the integration of cloud security architectures, vulnerability assessments, and mitigation strategies to enhance system security and resilience.. Extensive experience in integrating enterprise-wide security solutions, including cloud security architectures and vulnerability assessments.. Proven proficiency in leading incident response operations, developing IT security frameworks, and aligning them with DoD, SCI/SAP/JWICS standards.
Provide daily support and perform maintenance tasks (as required) for security infrastructure components, including (but not limited to) Web Security Gateways, Network Access Control systems (ISE), Intrusion Detection and Prevention Systems (IDS/IPS), Firewall policy and rules implementation, etc.. Senior Solutions Engineer (SecOps Services) - Mid-Atlantic region (Remote in NC, VA, WV, MD, DC, DE, NJ, or PA).. Senior Security Engineer, AWS Vulnerability Management - Host OS, AWS Vulnerability Management - Host OS. Senior Security Analyst (Top Secret Clearance).. Associate Director, Cloud Security Architect
The ideal candidate will have a strong background in network security, cloud security (AWS), and SIEM platforms. Minimum 3-5 years of experience in network security, cloud security (AWS), and SIEM platforms. Hands-on experience with SIEM tools like Splunk, Elastic Stack, or others. Industry certifications (e.g., CISSP, AWS Certified Security Specialty, CEH) are a plus. The Plymouth Rock Company and its affiliated group of companies write and manage over $2 billion in personal and commercial auto and homeowner’s insurance throughout the Northeast and mid-Atlantic, where we have built an unparalleled reputation for service.
Under the supervision of the AVP of Information Security, the Senior Information Security Engineer is responsible for implementing, supporting and maintaining robust security controls across cloud and enterprise environments, with a focus on Azure cloud security.. The engineer collaborates closely with development teams to embed security into application and API lifecycles, leveraging secure coding practices, vulnerability assessments, and modern DevSecOps tools.. Additionally, the role supports third-party risk management, audits, and contributes to the organization’s defense against emerging threats, including those related to AI technologies.. Implement and monitor Azure cloud security controls, including identity management, data encryption, and compliance configurations, aligned with architectural standards and best practices.. Collaborate with development teams to ensure application and API security through secure coding, vulnerability assessments, and security testing using AI tools, CI/CD pipelines, Azure DevOps, and API management, adhering to OWASP, NIST, and other standards.
The security team offers guidance and technical expertise in areas like application security, infrastructure and cloud security, policies and procedures, disaster recovery and compliance/regulation.. The Senior Application Security Architect will be part of the central information security team and act as a subject matter expert to all of Morningstar’s product teams by provide security guidance and creating application security standards and patterns.. Identify web/mobile/api application security vulnerabilities and offer remediation advice. A bachelor’s degree and 5+ years’ experience in a development or software security / penetration testing role, or equivalent experience. While some positions are available as fully remote, we’ve found that we’re at our best when we’re purposely together on a regular basis, typically three days each week.
Recognized as a Leader in the Forrester Wave for Microsegmentation, Illumio enables Zero Trust, strengthening cyber resilience for the infrastructure, systems, and organizations that keep the world running.. We’re looking for a strategic and hands-on leader to guide our Technical Product Management (TPM) team.. Marketing & Demand Generation – Drive lead-gen programs, digital marketing strategies, and regional marketing plans.. Deep expertise in network security, segmentation, firewalls, SDN, and cloud security.. Hands-on experience in Network Security, Cloud Security, or Threat Management.
We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do.. The Information Systems Security Department (R311) within the Global Security Services Division (R300) seeks a Lead Information Systems Cyber Engineer to provide Information Assurance and Cybersecurity services for classified systems.. Ensure compliance with Risk Management Framework (RMF) policies, including System Security Plans (SSPs), Risk Assessment Reports, and Security Controls Traceability Matrix (SCTM).. Active Top Secret security clearance.. Experience with Windows Server 2019, Active Directory, SPLUNK, and intrusion detection tools.
TS/SCI with Polygraph RTX Corporation is an Aerospace and Defense company that provides advanced systems and services for commercial, military and government customers worldwide.. It comprises three industry-leading businesses – Collins Aerospace Systems, Pratt & Whitney, and Raytheon.. Its 185,000 employees enable the company to operate at the edge of known science as they imagine and deliver solutions that push the boundaries in quantum physics, electric propulsion, directed energy, hypersonics, avionics and cybersecurity.. Deploy and manage devices using Microsoft Intune, SCCM, or similar endpoint management solutions. Collaborate with IT and security teams to support business continuity, disaster recovery, and incident response
We are seeking a highly skilled Cybersecurity Architect with Cross Domain Solution (CDS) experience to join our team in Orlando, FL. This individual will be responsible for architecting, implementing, and maintaining cybersecurity solutions in high-security environments.. The ideal candidate will have extensive experience in CDS technologies and hold a TS-SCI clearance.. In-depth understanding of cybersecurity frameworks (e.g., NIST, DoD RMF) and compliance requirements.. Familiarity with system hardening, security assessments, and penetration testing.. Preferred Certs- CISSP, ISSEP, CCSP, CISM
West Monroe is excited to hire a Cybersecurity – Manager to deliver on full lifecycle Cyber projects for various industries, which may involve security controls audits & remediation, risk advisory, compliance assessments, threat hunting, resiliency planning, application & cloud security, data protection, identity management and/or strategy & roadmap development.. Lead junior consultants on projects, delegate workstreams, and act as career advisor/mentor. Broad knowledge of cybersecurity competencies such as security controls, threat hunting, incident response strategy, cloud security, application security, etc.. Knowledge of leading security solutions/product capabilities for security domains including: Security Monitoring, Governance, System Protection, Network Security Vulnerability Management, Incident Response, Identity and Access Management and Data Protection.. 1-3 years technical experience in one or more areas including Cloud Security, Data Protection (Microsoft Purview or other), Identity and Access Management (Microsoft or others), AI, Threat Hunting, Dark Web Analysis, and Attack Surface Management
This leader will specialize in one of the following domains: Zero Trust (including Identity & Access Management), Cloud Security, Network Security, Security Operations & Response, or Strategy & GRC. The role is pivotal in shaping client engagements, building domain-specific practices, and delivering high-impact security transformation programs. Domain Ownership : Lead one of the five security pillars, with deep expertise in either Zero Trust, IAM, Cloud Security, Network Security, Security Operations, or GRC. Strong understanding of regulatory frameworks (e.g., NIST, ISO, SOC, HIPAA, PCI DSS). Experience with security technologies such as Okta, SailPoint, Palo Alto, Splunk, Azure/AWS/GCP security services. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations.
Delegates to the project engineering team.. Expert Level Technical Design, Implementation, Migration, and Troubleshooting knowledge in one or more solution spaces (Networking, Software-Defined Networking, cybersecurity controls such as firewalls, SASE, IAM, PAM, PKI, Endpoint Protection, SIEM, compute, storage, virtualization, or cloud, etc.). Zscaler SSE experience, Aruba EdgeConnect, and Cisco SD-WAN experience is preferred.. Deep experience with complex IT infrastructure, cloud, and security projects. Pinnacle level certification (CCIE, VCDX, CISSP) is desired.