Information Security Engineer - CIRT

10261 New York, New York Top Secret Clearance Jobs

Posted 13 days ago

Job Viewed

Tap Again To Close

Job Description

About the job Information Security Engineer - CIRT
Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours.

A World-Changing Company Palantir builds the world's leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.

The Role As an Information Security Engineer, you are responsible for the security of Palantir's people and infrastructure around the globe. Your technical expertise is second only to your integrity and real passion for security and technology in general. Our ideal candidate works well on a team, is highly motivated, and enjoys solving problems and taking on new challenges.

In this role you'll be the first line of defense for protecting Palantir. Your team is responsible for the 24/7 prevention, detection, and investigation of security events and active attacks across our entire infrastructure. Your work will directly impact the success of Palantir's mission as you seek to make life hard for our adversaries and protect our global network.

Core Responsibilities

  • Build, run, and own infrastructure and automation to detect, contain, and eradicate security threats.
  • Develop alerting and detection strategies to identify malicious or anomalous behavior.
  • Develop new and novel defensive techniques to identify or counteract changes in adversary techniques and tactics.
  • Dissect network, host, memory, and other artifacts originating from multiple operating systems and applications.
  • Perform enterprise-wide operations to uncover sophisticated and undetected threats.
  • Partner closely with other members of the Information Security team to lead changes in the company's network defense posture.
What We Value
  • Broad exposure to multiple security subject areas, including a strong background in forensics or threat intelligence.
  • Deep exposure in Incident Response or Detection Engineering.
  • Desire to further the information security community through substantive contributions (e.g. conference talks, blog posts, public tool development, etc.)
  • Strong working knowledge of TCP/IP networking and common protocols.
What We Require
  • Extensive security experience (3+ years) in at least one major platform (e.g. AWS, Azure, Windows, OS X, Linux, etc.).
  • Proficiency in Python (preferred), PowerShell, or similar.
  • Active TS/SCI security clearance or willingness and eligibility to obtain a security clearance.
Salary The estimated salary range for this position is estimated to be $135,000 - $200,000/year. Total compensation for this position may also include Restricted Stock units, sign-on bonus and other potential future incentives. Further note that total compensation for this position will be determined by each individual's relevant qualifications, work experience, skills, and other factors. This estimate excludes the value of any potential sign-on bonus; the value of any benefits offered; and the potential future value of any long-term incentives.

Our benefits aim to promote health and wellbeing across all areas of Palantirians' lives. We work to continuously improve our offerings and listen to our community as we design and update them. The list below details our available benefits and some of the perks that can be enjoyed as an employee of Palantir Technologies.

Benefits
  • Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance
  • Employees are automatically covered by Palantir's basic life, AD&D and disability insurance
  • Commuter benefits
  • Relocation assistance
  • Take what you need paid time off, not accrual based
  • 2 weeks paid time off built into the end of each year (subject to team and business needs)
  • 10 paid holidays throughout the calendar year
  • Supportive leave of absence program including time off for military service and medical events
  • Paid leave for new parents and subsidized back-up care for all parents
  • Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation
  • Stipend to help with expenses that come with a new child
  • Employees can enroll in Palantir's 401k plan
Life at Palantir We want every Palantirian to achieve their best outcomes, that's why we celebrate individuals' strengths, skills, and interests, from your first interview to your longterm growth, rather than rely on traditional career ladders. Paying attention to the needs of our community enables us to optimize our opportunities to grow and helps ensure many pathways to success at Palantir. Promoting health and well-being across all areas of Palantirians' lives is just one of the ways we're investing in our community. Learn more at Life at Palantir and note that our offerings may vary by region.

In keeping consistent with Palantir's values and culture, we believe employees are "better together" and in-person work affords the opportunity for more creative outcomes. Therefore, we encourage employees to work from our offices to foster connectivity and innovation. Many teams do offer hybrid options (WFH a day or two a week), allowing our employees to strike the right trade-off for their personal productivity. Based on business need, there are a few roles that allow for "Remote" work on an exceptional basis. If you are applying for one of these roles, you must work from the state in which you are employed. If the posting is specified as Onsite, you are required to work from an office.

Palantir is committed to promoting a culture of diversity, equity, and inclusion and is proud to be an Equal Employment Opportunity and Affirmative Action employer. We believe that all Palantirians share the responsibility of upholding our commitment to these values and encourage candidates from a wide range of backgrounds, perspectives, and lived experiences to join us in solving the world's hardest problems. Palantir does not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Palantir is committed to working with and providing reasonable accommodations to qualified individuals with physical and mental disabilities. Please see the United States Department of Labor's EEO poster , EEO poster supplement and Pay Transparency Notice for additional information.

Palantir is committed to making the job application process accessible to everyone. If you are living with a disability (visible or not visible) and need to request a reasonable accommodation for any part of the application or hiring process, please reach out and let us know how we can help.
Apply Now

Threat Modeling Engineer

10261 New York, New York Publicis Groupe

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Company description

Publicis Sapient is a digital transformation partner helping established organizations get to their future, digitally enabled state, both in the way they work and the way they serve their customers. We help unlock value through a start-up mindset and modern methods, fusing strategy, consulting and customer experience with agile engineering and problem-solving creativity. United by our core values and our purpose of helping people thrive in the brave pursuit of next, our 20,000+ people in 53 offices around the world combine experience across technology, data sciences, consulting, and customer obsession to accelerate our clients’ businesses through designing the products and services their customers truly value.

Overview

As a Senior Engineer - Threat Modeling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and Threat Modeling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies.

Your Impact:

  • Conduct thorough threat modeling exercises utilizing established methodologies and frameworks.

  • Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls.

  • Manage the lifecycle of identified threats and associated controls, ensuring timely updates and adjustments as necessary.

  • Deliver comprehensive threat models and related tasks within specified timeframes.

  • Offer constructive feedback, support, and suggestions for enhancing the existing threat modeling process.

  • Present findings and progress updates to senior leadership, team members, and relevant technical stakeholders.

Qualifications

We are seeking an ideal candidate with 8+ years of experience in a range of technologies and processes including:

  • Proficiency in GCP - essential

  • Strong knowledge of security architecture principles, frameworks, and best practices

  • Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA etc.

  • Overall experience in Cybersecurity: 5+ years

  • Security practices encompassing authentication, authorization, logging/monitoring, encryption, infrastructure security, and network/segmentation

  • Knowledge of cloud security frameworks

  • knowledge of Rest API

  • Knowledge in scripting languages and Infrastructure as Code (Terraform, CloudFormation)

  • Familiarity with Jira or other ticketing systems – essential

  • Technical architecture design and review skills – essential

  • Ability to identify vulnerabilities using CWE or OWASP

  • Knowledge of operating systems and their hardening techniques

  • Understanding of development concepts such as CICD, Pipelines, and SDLC

  • Penetration testing knowledge is also super useful

  • Familiarity with Cloud Development Kit (CDK) and GitOps

  • Experience operating in a DevOps/agile team environment

  • Understanding of docker, Kubernetes, serverless architecture, and Helm

  • Exposure to platforms like Snowflake, MongoDB, Terraform Cloud, GitHub, and Databricks

  • Strong analytical skills, diligence, and attention to detail

  • Willingness to conduct research using vendor documentation

  • Capability to create and maintain high-quality documentation

  • Possession of an adversary mindset

  • Continuous learning attitude towards new technologies and methodologies

  • Strong problem-solving skills

  • Excellent communication and collaboration abilities

  • Ability to build and nurture relationships across cross-functional teams

Set Yourself Apart With:

  • Professional Security Certifications: CISSP, CCSP, CISA, CISM, ITIL

  • Relevant GCP certifications are highly desirable: GCP Professional Cloud Architect, GCP Professional Cloud Security Engineer.

  • Strong knowledge of industry standards as they relate to Cloud and Application security management to include ISO, NIST, and Cloud Security Alliance (CSA)

  • Experience working in regulated environments

  • Exposure to agile development, DevOps, SecOps and scrum teams

  • Hands-on-experience with cloud security designs on Azure

  • Development experience (python, Node)

  • Strong desire to learn and contribute solutions and ideas to broader team

Additional information

• Flexible vacation policy; time is not limited, allocated, or accrued

• 16 paid holidays throughout the year

• Generous parental leave and new parent transition program

• Tuition reimbursement

• Corporate gift matching program

Base Pay Range: USD 140,000 - 185,000 (varies depending on experience)

The range shown represents a grouping of relevant ranges currently in use at Publicis Sapient. Actual range for this position may differ, depending on location and specific skillset required for the work itself.

As part of our dedication to an inclusive and diverse workforce, Publicis Sapient is committed to Equal Employment Opportunity without regard for race, color, national origin, ethnicity, gender, protected veteran status, disability, sexual orientation, gender identity, or religion. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at or you may call us at +1- .

View Now

Threat Modeling Engineer

10261 New York, New York Starcom Mediavest Group Germany Gmbh

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Company Description

Publicis Sapient is a digital transformation partner helping established organizations get to their future, digitally enabled state, both in the way they work and the way they serve their customers. We help unlock value through a start-up mindset and modern methods, fusing strategy, consulting and customer experience with agile engineering and problem-solving creativity. United by our core values and our purpose of helping people thrive in the brave pursuit of next, our 20,000+ people in 53 offices around the world combine experience across technology, data sciences, consulting, and customer obsession to accelerate our clients' businesses through designing the products and services their customers truly value.

Job Description

As a Senior Engineer - Threat Modeling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and Threat Modeling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies.

Your Impact:
  • Conduct thorough threat modeling exercises utilizing established methodologies and frameworks.
  • Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls.
  • Manage the lifecycle of identified threats and associated controls, ensuring timely updates and adjustments as necessary.
  • Deliver comprehensive threat models and related tasks within specified timeframes.
  • Offer constructive feedback, support, and suggestions for enhancing the existing threat modeling process.
  • Present findings and progress updates to senior leadership, team members, and relevant technical stakeholders.
Qualifications

We are seeking an ideal candidate with 8+ years of experience in a range of technologies and processes including:
  • Proficiency in GCP - essential
  • Strong knowledge of security architecture principles, frameworks, and best practices
  • Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA etc.
  • Overall experience in Cybersecurity: 5+ years
  • Security practices encompassing authentication, authorization, logging/monitoring, encryption, infrastructure security, and network/segmentation
  • Knowledge of cloud security frameworks
  • knowledge of Rest API
  • Knowledge in scripting languages and Infrastructure as Code (Terraform, CloudFormation)
  • Familiarity with Jira or other ticketing systems - essential
  • Technical architecture design and review skills - essential
  • Ability to identify vulnerabilities using CWE or OWASP
  • Knowledge of operating systems and their hardening techniques
  • Understanding of development concepts such as CICD, Pipelines, and SDLC
  • Penetration testing knowledge is also super useful
  • Familiarity with Cloud Development Kit (CDK) and GitOps
  • Experience operating in a DevOps/agile team environment
  • Understanding of docker, Kubernetes, serverless architecture, and Helm
  • Exposure to platforms like Snowflake, MongoDB, Terraform Cloud, GitHub, and Databricks
  • Strong analytical skills, diligence, and attention to detail
  • Willingness to conduct research using vendor documentation
  • Capability to create and maintain high-quality documentation
  • Possession of an adversary mindset
  • Continuous learning attitude towards new technologies and methodologies
  • Strong problem-solving skills
  • Excellent communication and collaboration abilities
  • Ability to build and nurture relationships across cross-functional teams
Set Yourself Apart With:
  • Professional Security Certifications: CISSP, CCSP, CISA, CISM, ITIL
  • Relevant GCP certifications are highly desirable: GCP Professional Cloud Architect, GCP Professional Cloud Security Engineer.
  • Strong knowledge of industry standards as they relate to Cloud and Application security management to include ISO, NIST, and Cloud Security Alliance (CSA)
  • Experience working in regulated environments
  • Exposure to agile development, DevOps, SecOps and scrum teams
  • Hands-on-experience with cloud security designs on Azure
  • Development experience (python, Node)
  • Strong desire to learn and contribute solutions and ideas to broader team


Additional Information

• Flexible vacation policy; time is not limited, allocated, or accrued
• 16 paid holidays throughout the year
• Generous parental leave and new parent transition program
• Tuition reimbursement
• Corporate gift matching program

Base Pay Range: USD 140,000 - 185,000 (varies depending on experience)

The range shown represents a grouping of relevant ranges currently in use at Publicis Sapient. Actual range for this position may differ, depending on location and specific skillset required for the work itself.

As part of our dedication to an inclusive and diverse workforce, Publicis Sapient is committed to Equal Employment Opportunity without regard for race, color, national origin, ethnicity, gender, protected veteran status, disability, sexual orientation, gender identity, or religion. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at or you may call us at +1- .
View Now

Threat Modeling Engineer

10261 New York, New York Publicis Groupe Holdings B.V

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Company description

Publicis Sapient is a digital transformation partner helping established organizations get to their future, digitally enabled state, both in the way they work and the way they serve their customers. We help unlock value through a start-up mindset and modern methods, fusing strategy, consulting and customer experience with agile engineering and problem-solving creativity. United by our core values and our purpose of helping people thrive in the brave pursuit of next, our 20,000+ people in 53 offices around the world combine experience across technology, data sciences, consulting, and customer obsession to accelerate our clients' businesses through designing the products and services their customers truly value.

Overview

As a Senior Engineer - Threat Modeling you will be a part of a smart cross-functional team delivering digital business transformation solutions to our clients. This position entails an individual contributor role focused on Security Architecture and Threat Modeling, encompassing governance, evaluation of public cloud services, and conducting security reviews for Public Cloud Providers. Collaboration and partnership with Engineering, Information Security, Program Management, and Development teams are essential. The candidate will conduct technical architecture reviews to pinpoint security opportunities, identify exploitable threats, and propose mitigation strategies.

Your Impact:
  • Conduct thorough threat modeling exercises utilizing established methodologies and frameworks.
  • Maintain a rigorous standard of excellence in identifying potential threats and specifying effective mitigation controls.
  • Manage the lifecycle of identified threats and associated controls, ensuring timely updates and adjustments as necessary.
  • Deliver comprehensive threat models and related tasks within specified timeframes.
  • Offer constructive feedback, support, and suggestions for enhancing the existing threat modeling process.
  • Present findings and progress updates to senior leadership, team members, and relevant technical stakeholders.
Qualifications

We are seeking an ideal candidate with 8+ years of experience in a range of technologies and processes including:
  • Proficiency in GCP - essential
  • Strong knowledge of security architecture principles, frameworks, and best practices
  • Experience working with threat modeling methodologies such as MITRE ATT&CK, STRIDE, PASTA etc.
  • Overall experience in Cybersecurity: 5+ years
  • Security practices encompassing authentication, authorization, logging/monitoring, encryption, infrastructure security, and network/segmentation
  • Knowledge of cloud security frameworks
  • knowledge of Rest API
  • Knowledge in scripting languages and Infrastructure as Code (Terraform, CloudFormation)
  • Familiarity with Jira or other ticketing systems - essential
  • Technical architecture design and review skills - essential
  • Ability to identify vulnerabilities using CWE or OWASP
  • Knowledge of operating systems and their hardening techniques
  • Understanding of development concepts such as CICD, Pipelines, and SDLC
  • Penetration testing knowledge is also super useful
  • Familiarity with Cloud Development Kit (CDK) and GitOps
  • Experience operating in a DevOps/agile team environment
  • Understanding of docker, Kubernetes, serverless architecture, and Helm
  • Exposure to platforms like Snowflake, MongoDB, Terraform Cloud, GitHub, and Databricks
  • Strong analytical skills, diligence, and attention to detail
  • Willingness to conduct research using vendor documentation
  • Capability to create and maintain high-quality documentation
  • Possession of an adversary mindset
  • Continuous learning attitude towards new technologies and methodologies
  • Strong problem-solving skills
  • Excellent communication and collaboration abilities
  • Ability to build and nurture relationships across cross-functional teams
Set Yourself Apart With:
  • Professional Security Certifications: CISSP, CCSP, CISA, CISM, ITIL
  • Relevant GCP certifications are highly desirable: GCP Professional Cloud Architect, GCP Professional Cloud Security Engineer.
  • Strong knowledge of industry standards as they relate to Cloud and Application security management to include ISO, NIST, and Cloud Security Alliance (CSA)
  • Experience working in regulated environments
  • Exposure to agile development, DevOps, SecOps and scrum teams
  • Hands-on-experience with cloud security designs on Azure
  • Development experience (python, Node)
  • Strong desire to learn and contribute solutions and ideas to broader team

Additional information
• Flexible vacation policy; time is not limited, allocated, or accrued
• 16 paid holidays throughout the year
• Generous parental leave and new parent transition program
• Tuition reimbursement
• Corporate gift matching program

Base Pay Range: USD 140,000 - 185,000 (varies depending on experience)

The range shown represents a grouping of relevant ranges currently in use at Publicis Sapient. Actual range for this position may differ, depending on location and specific skillset required for the work itself.

As part of our dedication to an inclusive and diverse workforce, Publicis Sapient is committed to Equal Employment Opportunity without regard for race, color, national origin, ethnicity, gender, protected veteran status, disability, sexual orientation, gender identity, or religion. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at or you may call us at +1- .
View Now

Cyber Security Threat Modeling Integration Engineer

10261 New York, New York Vimerse InfoTech Inc

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Cyber Security Threat Modeling Integration Engineer

Location: New York City, NY

Interview: Video

Visa: Any Visa (Except H1B)

Work Mode: Remote

Client: NYC Department of Information Technology and Telecommunications

2 Professional References are Mandatory

Mandatory Skills/ Experience
Note: Candidates who do not have the mandatory skills will not be considered

  • At least 4 years of experience in Cyber Threat Intelligence initiatives, including enhancing prevention, detection, response and recovery efforts through various technical and operational methods.
  • Proficient in Python.
  • Ability to leverage REST API's to build tool and platform integration.
  • Proficient in git version control and git life-cycle development.
  • Excellent verbal and written communication skills are required.
  • Basic understanding of Agile development model.
Desirable Skills/ Experience
  • Experience working with OpenCTI.
  • Experience developing parsers for text-based resources.
  • Understanding of public cloud platforms and experience with utilizing platforms such as Azure, AWS or Google Cloud.
  • Experience working in a security environment and/or supporting security teams from a technical standpoint.
  • Familiarity with using version control source-code repositories
Responsibilities
  • Develop and update custom parsers / connectors for the Operational Defense Intelligence Network (ODIN), CTI's primary internal workbench. These parsers / connectors are used to automate the importation of data and reports into ODIN from our internal and external intelligence and data sources, which are critical to core CTI functions and workflows, including disseminating intelligence to the Threat Observables and Reports (ThOR) platform. CTI requires development of several additional parsers / connectors to meet organizational requirements (including importing internal data sources) as well as support periodic updates and tuning of existing parsers / connectors. Access to shared threat intel and models provide a wider view into the network threat spectrum as provided by multiple threat models, vendors and industry partners.
  • Design and implement solutions that enhances the security posture of tools across multiple platforms.
  • Develop security content for tools and technologies that the Threat Management team relies on to ensure business as usual functioning.
  • Integrate innovative and custom technology to improve accuracy of alerts and notifications received by teams within Threat Management.
  • Create well documented and clearly articulated code, process and services documentation.
  • Understanding REST and SOAP API usage and implementing solutions utilizing APIs from Cyber Command utilized solutions, that enhance detection and response capabilities of the OTI Threat Management.
  • Work closely with Cyber Command Security Sciences team to ensure continuous improvement of the security posture of key tools and technologies that protect the City of New York.
  • Handle special projects and initiatives as assigned.
View Now

Information Security Officer - Architecture (m/w/d)

10261 New York, New York Fritz Drxlmaier GmbH & Co. KG

Posted today

Job Viewed

Tap Again To Close

Job Description

Unser Anspruch: Premium. Unsere Produkte: Komplexe Bordnetzsysteme, zentrale Elektrik- und Elektronikkomponenten, exklusives Interieur sowie Batteriesysteme fr die Elektromobilitt. Unsere Kunden: Audi, BMW, Jaguar, Land Rover, Maserati, Mercedes-Benz, MINI, Porsche, VW sowie kalifornische Automobilhersteller.

Anstellungsart: Vollzeit

Vertragsart: Unbefristet

In dieser Architektur-Rolle leiten Sie einen wesentlichen Beitrag zu unserer Cyber-Resilienz und stellen die Anforderungen der Informationssicherheit unternehmensweit sicher, indem Sie unter anderem den Weg in die Digitalisierung sicher gestalten oder innovative Lsungen fr die Cybersicherheit entwickeln und implementieren.

Ihre Aufgaben

  • Ausrichtung und Koordinierung der Informationssicherheitsfunktionen anhand der Unternehmensweiten Sicherheitsstrategie und Sicherheits-Roadmap
  • Untersttzung der Werke & Funktionen bei der Umsetzung der definierten Informationssicherheitsanforderungen, z.B. durch Beratung in Geschftsprojekten
  • Vorantreiben und Umsetzen von (globalen) Projekten zur Informationssicherheit um Sicherheitsrisiken zu mitigieren
  • Erarbeiten von Sicherheitslsungen, regionale Sensibilisierung und Simulationen von Cyber-Security-Bedrohungen
  • Erstellen eines Risikoprofils fr Projekte und Assets und deren Auswirkungen auf Bereiche der Informationssicherheit
  • Beobachten und Erkennen von Trends, um Konzepte zu entwickeln und Handlungsempfehlungen vorzuschlagen
  • Entwickeln von Informationssicherheitslsungen, Simulationen, Automatisierungen und Reporting-Tools in der Informationssicherheit.
  • Auswahl und Entscheidung ber die Ausrichtung der (IT-)Sicherheits-Tool-Landschaft auf die Bedrfnisse aller Funktionen
  • Sicherstellung der qualitativen Bewertung und Spezifikation in Projekten und Proof of Concepts
  • Definition, Umsetzung und kontinuierliche berprfung von Prozessen, Strategien und Techniken zum Schutz von Vermgenswerten und Informationen

Ihr Profil

  • Abgeschlossenes Studium (z.B. Informatik, Wirtschaftsinformatik, Cybersicherheit, Betriebswirtschaft) oder vergleichbarer beruflicher Werdegang
  • Mehrjhrige Berufserfahrung in der Informationssicherheit sowie fundierte Kenntnisse im Bereich IT-Infrastruktur und IT-Sicherheit
  • Gute Kenntnisse in gngigen Programmiersprachen
  • Sehr gute Kenntnisse ber IT/OT-Systeme und deren Sicherheitsarchitekturen
  • Breites Wissen im Themengebiet IT/OT-Security und in der Informationssicherheit
  • Sehr gute Deutsch- und Englischkenntnisse
  • Bereitschaft zu gelegentlichen Dienstreisen

Chancen und Aufstiegsmglichkeiten fr Mitarbeitende mit dem entsprechenden Anforderungsprofil.

Bewerbungen von geeigneten Schwerbehinderten/Gleichgestellten (m/w/d) sind ausdrcklich erwnscht.
Insofern Sie darauf hinweisen mchten, geben Sie dies bitte im Lebenslauf oder Anschreiben an.

Wir freuen uns auf Ihre Online-Bewerbung!

Ihr Ansprechpartner

#J-18808-Ljbffr
View Now

Senior Data Security Architect, Technology Architecture

10176 New York, New York Guardian Life

Posted 9 days ago

Job Viewed

Tap Again To Close

Job Description

**Overview**
Guardian is seeking a strategic and collaborative Senior Data Security Architect to lead the secure design, protection, and governance of enterprise data assets. This role requires deep expertise in data security technologies, regulatory compliance, and hands-on experience developing scalable data protection architectures. The successful candidate will work closely with data architects, data engineers, and data science teams to embed security and privacy into the entire data lifecycle
.
**You Will:**
+ Lead the definition and implementation of enterprise-wide data protection strategies, policies, and frameworks.
+ Partner with data architecture, engineering, and science teams to embed security into data platforms, pipelines, and ML workflows.
+ Oversee the adoption and enforcement of data retention and destruction policies in line with business and regulatory requirements.
+ Oversee secure implementation of encryption (in transit, at rest, and in use), tokenization, masking, and anonymization in collaboration with Cryptography and engineering teams
+ Provide architectural oversight for AI agents, LLM pipelines, and ensure adoption of Agentic security principles.
+ Support governance and compliance efforts (CCPA, HIPAA) through effective controls and audit readiness.
+ Collaborate with privacy, legal, and compliance teams to assess data risks across jurisdictions.
+ Provide architectural guidance for secure data lakes, AI/ML datasets, and entire data landscape.
+ Guide secure design for AI and GenAI systems-including secure model development, data protection, model governance, adversarial testing, and emerging risks (e.g., prompt injection, data leakage, data poisoning).
+ Evaluate and pilot emerging tools and technologies aligned with the organization's cybersecurity strategy-particularly in the Data technologies and AI security domains.
+ Maintain strong relationships with internal collaborators and external vendors to influence technology roadmaps and drive secure outcomes.
+ Develop and maintain prescriptive blueprints and reference architectures in collaboration with business and solution architects.
+ Deliver executive-level reporting on data security risks, strategy, and program effectiveness.
**You Have:**
+ Bachelor's or Master's degree in Cybersecurity, Computer Science, Information Systems, or related field.
+ 10+ years of experience in information security, with 5+ years in data security and privacy.
+ Proven experience with data protection technologies: encryption, tokenization, masking, DLP, data classification.
+ Strong experience securing data in cloud-based analytics environments, especially Databricks, Snowflake, or equivalent.
+ Understanding of MLOps pipelines and security controls across model training, validation, deployment, and drift monitoring.
+ Familiarity with AI/ML security principles including model inversion attacks, data poisoning, and inference risks.
+ Awareness of Agentic security considerations for autonomous agents, including alignment, containment, and safe delegation.
+ Strong knowledge of data protection frameworks and secure data lifecycle management.
+ Familiarity with data governance platforms (e.g., Collibra, Informatica, Microsoft Purview).
+ Proficient with cloud data services (AWS) and their native security features
+ Strong understanding of data privacy laws (HIPAA, CCPA).
+ Good interpersonal and communication skills with experience influencing multi-functional teams.
**Preferred Certifications**
+ CISSP, CISM, or CCSP
+ CIPP/US (Certified Information Privacy Professional)
+ GIAC Data Protection (GDAT), AWS Security Specialty, or equivalent
**Why Join Guardian**
At Guardian, you will shape the foundation of secure, trusted, and compliant data environments that power the future of our business. Be part of a purposeful team that values innovation, collaboration, and proactive risk management in the age of data and AI.
**Location**
+ Three days a week at a Guardian location in New York, NY, Bethlehem PA and Holmdel, NJ
**Salary Range:**
$116,350.00 - $191,155.00
The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.
**Our Promise**
At Guardian, you'll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.
**Inspire Well-Being**
As part of Guardian's Purpose - to inspire well-being - we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at . _Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits._
**Equal Employment Opportunity**
Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law.
**Accommodations**
Guardian is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Guardian also provides reasonable accommodations to qualified job applicants (and employees) to accommodate the individual's known limitations related to pregnancy, childbirth, or related medical conditions, unless doing so would create an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact .
**Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday.**
Every day, Guardian helps our 29 million customers realize their dreams through a range of insurance and financial products and services. Our Purpose, to inspire well-being, guides our dedication to the colleagues, consumers, and communities we serve. We know that people count, and we go above and beyond to prepare them for the life they want to live, focusing on their overall well-being - mind, body, and wallet. As one of the largest mutual insurance companies, we put our customers first. Behind every bright future is a GuardianTM. Learn more about Guardian at guardianlife.com .
View Now
Be The First To Know

About the latest Security architecture Jobs in New York !

Network Security Engineer

14266 Buffalo, New York Merchants Group

Posted today

Job Viewed

Tap Again To Close

Job Description

Description

Network Security Engineer

Hybrid Work Schedule

Buffalo, NY

Merchants Insurance Group is a leading Property and Casualty Insurer in the Northeast and is looking for an experienced Network Security Engineer for our Information Technology team to join our Corporate Headquarters located in Buffalo, New York.

The Network Security Engineer will become part of a dedicated Information Technology team focusing on the overall security and operation of the network to include reviewing and recommending cost effective, efficient and secure transfer of voice and data communications to and from the infrastructure.

Merchants Insurance Group, rated A- (Excellent) with a stable outlook by the A.M. Best Company, is proud to be one of Buffalo Business First’s Best Places to Work in Western New York (2023-2025), a Fast Track company (2019-2024), and a Top Private Company (2019-2025). Merchants has been granted Ward’s 50 designation as a top-performing property-casualty insurance company for four consecutive years. In October 2024, Newsweek and Statista included Merchants Insurance Group on their first-ever America’s Most Reliable Companies list, which highlights organizations that other companies can feel confident doing business with in 2025. Of 1,500 B2B companies evaluated, Merchants was one of only 300 companies to make the list.

Merchants offers its colleagues a Hybrid work schedule. The Hybrid work schedule requires 8 full days per month in the office, with the option to work the remaining days at home or in the office. This exciting Hybrid Work benefit offers colleagues a flexible work schedule with the ability to remain connected with their Merchants team and colleagues.

Essential Duties and Responsibilities include, but are not limited to:

  • Responsible for Level 2 help desk service by troubleshooting network and telecom problems with quick and appropriate resolution, identifying root cause and coordinating with vendors for outside support if necessary.

  • Provides analysis and monitoring of network infrastructure.

  • Responsible for installing and managing networking and voice equipment including but not limited to VoIP systems, Routers, Firewalls, Switches, and any other security devices necessary to guarantee the security of our environments.

  • Responsible for performing active network monitoring, security scans, performance tests, capacity planning, historical trends and baseline statistics.

  • Maintains security updates.

Qualifications & Skills:

  • Qualified candidates will have a 4 year degree or equivalent work related experience.

  • 5 years progressive experience in telecommunications field maintaining medium to large infrastructure, switches, routers, VoIP.

  • Ability to plan and prioritize tasks and coordinate installations.

  • Network knowledge of Cisco routers, Cisco ASA, Cisco Firepower, Cisco switches, Cisco CUCM, RADIUS, network security or equivalents.

  • Strong organizational and time management skills.

  • Excellent verbal and written communication skills.

Merchants Insurance Group Pay information:

Merchants Insurance Group offers a competitive pay scale. The actual compensation will be determined based upon experience and other factors permitted by law. The initial pay range for this position is $64,000 - $84,000.

Merchants Insurance Group Benefits:

  • Welcoming and positive work environment.

  • Flexible work arrangements, including flex scheduling and summer hours.

  • Hybrid work schedule. The Hybrid work schedule will require 8 full days per month in the office, with the option to work the remaining days per month at home or in the office.

  • Generous paid time off package.

  • Full Benefits: Health, Dental, Vision, Life Insurance, Short Term Disability, 401(k) employer match amount is 100% up to 6% of your annual contributions. You are immediately 100% vested in the employer match dollars.

  • Outstanding company bonus program.

  • Tuition Reimbursement.

And many more exciting company benefits! EOE

Qualifications

Experience

Preferred

  • 5 years: 5 years progressive experience in telecommunications field maintaining medium to large infrastructure, switches, routers, VoIP.

Equal Opportunity Employer

This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights ( notice from the Department of Labor.

View Now

Network Security Analyst

10261 New York, New York ShiftCode Analytics

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Title: Network Security Analyst
Location: NY, NY (Hybrid Onsite)
Duration: 12 + months contract
IV: Phone and Video
Visa: USC only
Rate: DOE

The consultant will work onsite in support of threat detection and vulnerability assessments, data analysis and Cisco Client/Stealthwatch.

Required Skills
  • Threat detection and vulnerability assessment experience
  • Experience with network segmentation, isolation, and analysis
  • Cisco Client/Stealthwatch administration
  • Experience with vulnerability management
Knowledge Of
  • BGP, OSPF
  • Cisco switching
  • Network segmentation and isolation
  • Physical access control systems
  • Video management systems
  • VMware and Windows infrastructure
  • End point credential management
  • Authentication, authorization and accounting (AAA)
  • Vulnerability and patch management
  • Privileged access management
  • Cybersecurity incident response plan/program
  • Containment / protection tools for OT environments (Forecscout)
  • Implementing deception technology (Honeypot/Honeynets)
  • TDI administration and management
View Now

Network Security Architect

10261 New York, New York Priamba

Posted 2 days ago

Job Viewed

Tap Again To Close

Job Description

Client: MTA Number of Openings: 2 Start: Immediate Location: remote with eventual onsite conversion in NYS Interview Mode: phone and / or video Position Description: A NYS agency located in New York, NY is looking for a Network Security Architect to support multiple projects focused on Network Security Architecture and Critical Infrastructure Systems for a 12 month contract. Requirements: • 10+ years of experience in a Network or Security Architecture role • Undergraduate degree in Computer Science, Engineering, or related field. • CISSP, CCNA, CCIE, and other relevant certifications preferred • Experience with network architecture within OT environments • Strong knowledge of TCP/IP networking and the OSI 7-layer model • Strategic planning and project management skills. • Knowledge of threat modeling and risk assessment strategies • Excellent inter-personal skills including the ability to work with individuals at all levels of the organization Preferred Qualifications Strong technical expertise in the following areas : • Firewalls (Cisco and Palo Alto preferred) • Network Intrusion Detection and Prevention Systems (IDS/IPS) • Packet decoding and analysis • Web Proxy Servers • SSL VPN and other Remote Access Solutions • Wireless Security (RF, 802.11, Bluetooth, etc.) Broad background in the following areas: • Physical Security • Firmware/Embedded Platform Security Responsibilities : • This position is responsible for assisting in the development, implementation, and support of security architectures and solutions including security frameworks and roadmaps within the corporate business and Operational units across the agencies. It also includes securing enterprise information by determining security requirements, planning, implementing, and testing security systems with a team player environment • Determine security requirements by evaluating business strategies and requirements; researching information security standards; conducting system security and vulnerability analyses; studying architecture/platform; identifying integration issues; preparing cost estimates • Plan security systems by evaluating network and security technologies; developing requirements for local area networks, wide area networks, virtual private networks, routers, firewalls, and related security and network devices; designs public key infrastructures, including use of certification authorities and digital signatures as well as hardware and software; adhering to industry standards • Implement security systems by specifying intrusion detection methodologies and equipment; directing equipment and software installation and calibration; preparing preventive and reactive measures; creating, transmitting, and maintaining keys; providing technical support; completing documentation • Upgrade security systems by monitoring security environment; evaluating and implementing enhancements • Prepare system security reports by collecting, analyzing, and summarizing data and trends • Track and understand emerging security practices and standards by participating in educational opportunities, reading professional publications and participating in professional organizations #J-18808-Ljbffr

View Now
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Security Architecture Jobs View All Jobs in New York