Job Title | Location | Description | Posted** |
---|---|---|---|
Senior Security Engineer (MSP or MSSP) - Mexico (Remote)
Echelon Risk + Cyber |
Ciudad Juárez, Chihuahua, Mexico
|
Join to apply for the Senior Security Engineer (MSP or MSSP) - Mexico (Remote) role at Echelon Risk + Cyber. Overview At Echelon Risk + Cyber we defend basic human rights to security and privacy. We seek a highly skilled and experienced Senior Security Engineer to join our cybersecurity consulting firm. The team member will identify opportunities for clients and for Echelon with integrity be passionate about cybersecurity and act as an Entrepreneurial Problem Solver to build creative solutions with the team. You will have opportunities to work with cutting-edge technology and engage in meaningful work with the ability to contribute from the ground up and make an impact across the organization. What You Will Do Implement and enforce security policies and procedures based on industry standards. Conduct regular security assessments audits and ensure compliance with security standards. Design and implement secure cloud solutions (Azure and AWS). Utilize Cloud Security Posture Management (CSPM) technologies. Ensure the security of SaaS platforms including email file sharing and 3rd party applications. Configure and manage security controls for servers and endpoints including deploying and managing endpoint protection solutions. Implement security policies for Mobile Device Management (MDM). Conduct regular vulnerability scans and automated penetration tests using in-house tools and develop remediation plans for identified vulnerabilities. Implement and manage IAM solutions including single sign-on (SSO) and privileged access management (PAM). Ensure proper user provisioning and access controls. Lead technical implementations of data protection services including Data Loss Prevention (DLP) solutions. Participate in the development and maintenance of disaster recovery plans and procedures. Review backups redundancy and replication solutions for availability and recovery perform regular recovery tests. Conduct security reviews assessments and hardening activities across endpoints servers network infrastructure and cloud services. Apply and enforce security configuration benchmarks (e.g. CIS NIST). Ensure compliance with regulatory requirements and industry standards. Implement and manage security information and event management (SIEM) systems. Deploy and maintain managed detection and response (MDR) intrusion detection systems (IDS) and intrusion prevention systems (IPS). Configure and manage network security policies across perimeter and internal network equipment including firewalls and wireless access points. Participate in incident response planning and tabletop exercises develop incident response plans and playbooks. Assist with the implementation and configuration of security awareness training programs and solutions. Work closely with clients to understand their security needs and provide tailored solutions. Collaborate with cross-functional teams to ensure security is integrated into IT infrastructure and develop technical security standards and procedures. Your Knowledge Skills And Abilities Bachelor's degree in Computer Science Information Security or related field. Relevant certifications: CCSP CISSP CEH CISM etc. Experience working in managed IT or Security services (MSP or MSSP) handling numerous clients and environments simultaneously. Strong understanding of security technologies and frameworks. Excellent problem-solving and analytical skills. Strong communication and interpersonal skills. Preferred Qualifications Familiarity with regulatory requirements such as FFIEC SOC 2 ISO 27001 GDPR CMMC HIPAA PCI-DSS etc. Familiarity with security frameworks such as CIS NIST ISO SOC2. Experience with enterprise security technologies (firewalls such as Palo Alto and FortiGate endpoint security tools such as CrowdStrike SentinelOne and FortiEDR). Experience working in or with a Security Operations Center (SOC). Experience participating in Security Assessments and Audit efforts. Familiarity with DevSecOps practices and tools. Ability to be agile and juggle multiple clients initiatives and priorities effectively. Skilled in gathering assessing and presenting technical security metrics and trends. Why Echelon? We are committed to creating an inclusive environment with unquestioned integrity. If you have a special need that requires accommodation please let your recruiter know. One of our core values is People with Personality and we want you to bring your full self to work. Benefits Access to private medical insurance through MetLife. Life insurance policy through MetLife. 30-day Christmas bonus and a monthly technology stipend. Contribution of 8% of the employee's salary to a savings fund. Flexible vacation policy to manage your schedule and rest when needed. Family-friendly benefits including 16 weeks of maternity leave eight weeks for non-birthing parent leave and employer-paid disability. Support for certifications continued learning conferences and more. We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions are made without regard to age race creed color religion gender national origin disability status veteran status sexual orientation gender identity or expression genetic information marital status citizenship status or any other basis as protected by law. Echelon Risk + Cyber is an Equal Opportunity Employer. Job Posted by ApplicantPro #J-18808-Ljbffr
|
|
Cyber Security Engineer (Remote)
ExecutivePlacements.com - The JOB Portal |
Beaverton, OR
|
Overview Token Metric's looking to hire a cyber security engineer with an analytical mind and a detailed understanding of cybersecurity methodologies. Cyber security engineers are expected to have meticulous attention to detail outstanding problem-solving skills work comfortably under pressure and deliver on tight deadlines. To ensure success a cyber security engineer must display an excellent understanding of technology infrastructures using Firewalls VPN Data Loss Prevention IDS/IPS Web-Proxy and Security Audits. Top candidates will be comfortable working with a variety of technologies security problems and troubleshooting of the network. Responsibilities Planning implementing managing monitoring and upgrading security measures for the protection of the organization's data systems and networks. Troubleshooting security and network problems. Responding to all system and/or network security breaches. Ensuring that the organization's data and infrastructure are protected by enabling the appropriate security controls. Participating in the change management process. Testing and identifying network and system vulnerabilities. Daily administrative tasks reporting and communication with the relevant departments in the organization. Requirements A degree in computer science IT systems engineering or related qualification. 2 years of work experience with incident detection incident response and forensics. Experience with Firewalls (functionality and maintenance) Office 365 Security VSX and Endpoint Security. Proficiency in Python C++ Java Ruby Node Go and/or Power Shell. Ability to work under pressure in a fast-paced environment. Strong attention to detail with an analytical mind and outstanding problem-solving skills. Great awareness of cybersecurity trends and hacking techniques. #J-18808-Ljbffr
|
|
Senior Application Security Engineer, Corporate Information Security- Remote (Anywhere in the U.S.)
GuidePoint Security |
Remote United States
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. General Description We are seeking a Senior Application Security Engineer to strengthen the integrity of our software development lifecycle and safeguard our products from emerging threats. In this role you'll collaborate across Engineering DevOps AI/ML and Security teams to embed security considerations from the earliest stages of design through to production and beyond leveraging artificial intelligence and advanced automation to enhance security effectiveness and efficiency. The Senior Application Security Engineer will demonstrate deep expertise in application security secure software design and cloud-native architecture leading by influence to embed security into the development lifecycle. This role will drive the adoption of modern DevSecOps practices threat modeling and secure coding programs that align with engineering goals and business priorities. This position is 100% remote and the Senior Application Security Engineer must be self-directed able to work both individually and as part of a multifunctional team and possess the necessary written and verbal communication skills to interact effectively with team members IT AI/ML teams and other internal customers. Roles and Responsibilities: Embed security into development: Collaborate closely with engineering teams to embed security throughout the SDLC—from architectural design and code implementation to CI/CD pipelines and peer reviews—ensuring security is an integral part of how software is built and shipped. Conduct thorough pull request reviews with security focus and contribute to secure coding practices through hands-on development experience. Find and fix vulnerabilities: Use both automated and manual approaches to identify risks including static and dynamic analysis (SAST/DAST) manual code reviews and penetration testing of web and mobile applications. Implement AI-powered vulnerability discovery and intelligent prioritization systems to enhance detection capabilities. Automate security checks: Integrate a robust set of security practices into the CI/CD workflow—covering Software Composition Analysis (SCA) secret detection Infrastructure as Code (IaC) scanning container/image scanning and dependency monitoring—to address issues early and continuously. Design and implement advanced automation workflows using modern development practices and AI/ML frameworks. Monitor and respond in production: Implement security telemetry and runtime monitoring to maintain visibility into production environments detect threats in real time and support rapid response during security incidents. Deploy AI-driven anomaly detection and automated response capabilities. Guide secure design: Participate in architecture reviews and threat modeling sessions to proactively identify design-level risks and shape secure system patterns. Apply deep knowledge of cybersecurity standards (NIST ISO 27001 SOC 2) and current threat landscape to guide security architecture decisions. Respond to security incidents: Work alongside engineering and security teams during investigations remediation efforts and post-incident reviews to strengthen long-term resilience. Shape the program: Define and track meaningful application security metrics to measure impact influence priorities and drive continuous improvement. Beyond metrics and tooling lead efforts in secure development practices risk-based decision-making and help foster a culture where security is thoughtfully embedded. Leverage AI-driven analytics for program insights and automated reporting. Required Experience: 8+ years of experience in application security software engineering or related fields with a strong foundation in integrating security across the SDLC and demonstrated expertise in AI/automation technologies. Strong development background with proficiency in multiple programming languages (Java Python JavaScript/TypeScript) and experience contributing to production codebases and conducting security-focused pull request reviews. Proven ability to embed security into CI/CD workflows and code reviews in collaboration with engineering teams. Deep understanding of cybersecurity standards frameworks and threat landscape with ability to apply this knowledge to guide security program development. Hands-on experience with SAST/DAST tools (e.g. Checkmarx CodeQL Fortify Burp Suite ZAP) and manual code reviews and pen testing including AI-powered security analysis tools. Experience automating security checks using SCA tools (Nexus Snyk Mend Black Duck Artifactory) secrets scanners (TruffleHog GitGuardian) IaC scanners (Checkov tfsec Bridgecrew) and container/image scanning (Grype Aqua Prisma Cloud)— or similar with ability to build custom automation and integrate AI/ML capabilities. Familiarity with integrating security into pipelines using GitHub Actions GitLab CI Jenkins CircleCI or equivalent with DevSecOps expertise and modern development practices. Knowledge of security telemetry and runtime monitoring tools (e.g. Wiz Lacework Falco Datadog New Relic) for detecting and responding to threats in production. Skilled in architecture reviews and threat modeling (e.g. STRIDE PASTA) with the ability to guide secure design decisions. Strong understanding of OWASP Top 10 CWE and secure coding standards experience delivering developer training and hands-on guidance. Able to support incident response efforts and contribute to remediation root cause analysis and hardening. Travel Requirements: Up to 10% travel We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
|
Senior Security Engineer (MSP or MSSP) - Mexico (Remote)
Echelon Risk + Cyber |
Querétaro, Querétaro, Mexico
|
Join to apply for the Senior Security Engineer (MSP or MSSP) - Mexico (Remote) role at Echelon Risk + Cyber. Overview At Echelon Risk + Cyber we defend basic human rights to security and privacy. We seek a highly skilled and experienced Senior Security Engineer to join our cybersecurity consulting firm. The team member will identify opportunities for clients and for Echelon with integrity be passionate about cybersecurity and act as an Entrepreneurial Problem Solver to build creative solutions with the team. You will have opportunities to work with cutting-edge technology and engage in meaningful work with the ability to contribute from the ground up and make an impact across the organization. What You Will Do Implement and enforce security policies and procedures based on industry standards. Conduct regular security assessments audits and ensure compliance with security standards. Design and implement secure cloud solutions (Azure and AWS). Utilize Cloud Security Posture Management (CSPM) technologies. Ensure the security of SaaS platforms including email file sharing and 3rd party applications. Configure and manage security controls for servers and endpoints including deploying and managing endpoint protection solutions. Implement security policies for Mobile Device Management (MDM). Conduct regular vulnerability scans and automated penetration tests using in-house tools and develop remediation plans for identified vulnerabilities. Implement and manage IAM solutions including single sign-on (SSO) and privileged access management (PAM). Ensure proper user provisioning and access controls. Lead technical implementations of data protection services including Data Loss Prevention (DLP) solutions. Participate in the development and maintenance of disaster recovery plans and procedures. Review backups redundancy and replication solutions for availability and recovery perform regular recovery tests. Conduct security reviews assessments and hardening activities across endpoints servers network infrastructure and cloud services. Apply and enforce security configuration benchmarks (e.g. CIS NIST). Ensure compliance with regulatory requirements and industry standards. Implement and manage security information and event management (SIEM) systems. Deploy and maintain managed detection and response (MDR) intrusion detection systems (IDS) and intrusion prevention systems (IPS). Configure and manage network security policies across perimeter and internal network equipment including firewalls and wireless access points. Participate in incident response planning and tabletop exercises develop incident response plans and playbooks. Assist with the implementation and configuration of security awareness training programs and solutions. Work closely with clients to understand their security needs and provide tailored solutions. Collaborate with cross-functional teams to ensure security is integrated into IT infrastructure and develop technical security standards and procedures. Your Knowledge Skills And Abilities Bachelor's degree in Computer Science Information Security or related field. Relevant certifications: CCSP CISSP CEH CISM etc. Experience working in managed IT or Security services (MSP or MSSP) handling numerous clients and environments simultaneously. Strong understanding of security technologies and frameworks. Excellent problem-solving and analytical skills. Strong communication and interpersonal skills. Preferred Qualifications Familiarity with regulatory requirements such as FFIEC SOC 2 ISO 27001 GDPR CMMC HIPAA PCI-DSS etc. Familiarity with security frameworks such as CIS NIST ISO SOC2. Experience with enterprise security technologies (firewalls such as Palo Alto and FortiGate endpoint security tools such as CrowdStrike SentinelOne and FortiEDR). Experience working in or with a Security Operations Center (SOC). Experience participating in Security Assessments and Audit efforts. Familiarity with DevSecOps practices and tools. Ability to be agile and juggle multiple clients initiatives and priorities effectively. Skilled in gathering assessing and presenting technical security metrics and trends. Why Echelon? We are committed to creating an inclusive environment with unquestioned integrity. If you have a special need that requires accommodation please let your recruiter know. One of our core values is People with Personality and we want you to bring your full self to work. Benefits Access to private medical insurance through MetLife. Life insurance policy through MetLife. 30-day Christmas bonus and a monthly technology stipend. Contribution of 8% of the employee's salary to a savings fund. Flexible vacation policy to manage your schedule and rest when needed. Family-friendly benefits including 16 weeks of maternity leave eight weeks for non-birthing parent leave and employer-paid disability. Support for certifications continued learning conferences and more. We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions are made without regard to age race creed color religion gender national origin disability status veteran status sexual orientation gender identity or expression genetic information marital status citizenship status or any other basis as protected by law. Echelon Risk + Cyber is an Equal Opportunity Employer. Job Posted by ApplicantPro #J-18808-Ljbffr
|
|
Senior Information Security Engineer Supporting Remote Access
Wells Fargo |
Minneapolis, MN
|
About This Role Wells Fargo is seeking a Senior Information Security Engineer Supporting Remote Access in Technology as part of Technology Infrastructure Secure Access Technologies team. Learn more about the career areas and lines of business at wellsfargojobs.com . The Senior Information Security Engineer is responsible for designing implementing and maintaining secure remote access and infrastructure solutions that protect enterprise systems and data. This role combines deep technical expertise with operational discipline and cross-functional collaboration to support a globally distributed support model. In This Role You Will Lead or participate in computer security incident response activities for moderately complex events Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies Provide security consulting on medium to large Enterprise projects for internal clients to ensure conformity with corporate information security policy and standards Design document test maintain and provide issue resolution recommendations for moderately complex security solutions related to networking cryptography cloud authentication and directory services email internet applications and endpoint security and remote access Review and correlate security logs Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability integrity confidentiality risk management threat identification modeling monitoring incident response access management and business continuity Identify security vulnerabilities and issues perform risk assessments and evaluate remediation alternatives Collaborate and consult with peers colleagues and managers to resolve issues and achieve goals Required Qualifications: 4+ years of Information Security Engineering experience or equivalent demonstrated through one or a combination of the following: work experience training military experience education 2+ years of secure remote access technology support experience 2+ years of firewall technology support and management experience Desired Qualifications: 4+ years of information technology experience 2+ years of Palo Alto GlobalProtect experience 2+ years of experience in cryptography 2+ years of digital certificate management experience 2+ years of experience with all or some of the following practices: security requirements threat modeling statistical analysis and technology design 2+ years of identity and access management (IAM) experience 1+ years of experience working with various identity providers (IDP) and technologies 1+ years of experience with endpoint security including posture awareness Knowledge and experience in working with various information security tools and systems Knowledge and understanding of secure SDLC (System Development Life Cycle) methodologies Knowledge and understanding of Zero Trust Network Access concepts systems methodologies Ability to manage multiple priorities in a fast-paced dynamic environment Outstanding problem solving and analytical skills with ability to turn findings into strategic imperatives Highly refined and professional verbal and written communications Excellent interpersonal skills including those related to conflict resolution Act as a team lead and oversee major team projects and initiatives Oversee the development and implementation of new process and procedures supporting secure connectivity solutions Contribute to defining and implementing secure remote access guidelines and procedures Apply knowledge of information security and remote access technologies to drive organizational change Contribute to governance oversight and design guidelines Job Expectations: Ability to work in office 3 days a week Participate in the Engineering on-call rotation Ability to work off hours and occasional weekends to support change activities This role does not support visa sponsorship or transfers Pay Range Reflected is the base pay range offered for this position. Pay may vary depending on factors including but not limited to achievements skills experience or work location. The range listed is just one component of the compensation package offered to candidates. $100000.00 - $196000.00 Benefits Wells Fargo provides eligible employees with a comprehensive set of benefits many of which are listed below. Visit Benefits - Wells Fargo Jobs for an overview of the following benefit plans and programs offered to employees. Health benefits 401(k) Plan Paid time off Disability benefits Life insurance critical illness insurance and accident insurance Parental leave Critical caregiving leave Discounts and savings Commuter benefits Tuition reimbursement Scholarships for dependent children Adoption reimbursement Posting End Date: 19 Oct 2025 Job posting may come down early due to volume of applicants. We Value Equal Opportunity Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender identity national origin disability status as a protected veteran or any other legally protected characteristic. Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit Market Financial Crimes Operational Regulatory Compliance) which includes effectively following and adhering to applicable Wells Fargo policies and procedures appropriately fulfilling risk and compliance obligations timely and effective escalation and remediation of issues and making sound risk decisions. There is emphasis on proactive monitoring governance risk identification and escalation as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements. Applicants With Disabilities To request a medical accommodation during the application or interview process visit Disability Inclusion at Wells Fargo . Drug and Alcohol Policy Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more. Wells Fargo Recruitment And Hiring Requirements Third-Party recordings are prohibited unless authorized by Wells Fargo. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process. Reference Number R-473166-7
|
|
Senior Cloud Security Engineer (Remote - EU)
Jobgether |
|
This position is posted by Jobgether on behalf of a partner company. We are currently looking for a Senior Cloud Security Engineer in the European Union. We are seeking a Senior Cloud Security Engineer to strengthen the security posture of highly available multi-cloud payment systems. In this role you will design implement and manage defensive security controls while advising engineering teams on best practices and risk trade-offs. You will work with Kubernetes clusters public and private cloud environments and distributed systems ensuring long-term security hardening. This position requires a deep understanding of Linux cloud security and operational security practices along with the ability to collaborate across engineering and InfoSec teams. You will participate in incident response threat modeling and proactive security improvements in a fast-paced remote-first environment. Accountabilities Design implement and maintain defensive security controls across multi-cloud and Kubernetes environments Advise engineering teams on security best practices risk management and prioritization of security features Participate in on-call rotation for security tooling failures and second-line incident response Support threat modeling vulnerability assessments and the development of secure cloud architectures Collaborate with R&D and platform engineers to integrate security into CI/CD pipelines and infrastructure Monitor and evaluate security posture across AWS GCP Azure and private data centers Contribute to knowledge sharing and security awareness across engineering teams Requirements Extensive experience with Linux and Kubernetes including multi-cluster deployments and custom configurations Strong expertise in at least one public cloud (AWS GCP or Azure) and long-term security hardening practices Background in software engineering at scale with familiarity in secure system design Experience with CI/CD security IaC tools (Terraform) and operational security tooling Excellent communication skills and the ability to influence security practices across engineering teams Proactive mindset with attention to detail and problem-solving capabilities Desirable: experience in offensive security red teaming penetration testing data center security and supply chain/CI/CD risk mitigation Benefits Benefits Competitive salary with equity or incentive schemes Fully remote role with flexibility across the European Union Collaborative inclusive and growth-oriented work environment Opportunities to work on cutting-edge cloud security and distributed systems Participation in a diverse team with strong focus on professional development and mentorship Involvement in shaping secure infrastructure and security culture across the organization Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching. When you apply your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly. 🔍 Our AI evaluates your CV and LinkedIn profile thoroughly analyzing your skills experience and achievements. 📊 It compares your profile to the job's core requirements and past success factors to determine your match score. 🎯 Based on this analysis we automatically shortlist the 3 candidates with the highest match to the role. 🧠 When necessary our human team may perform an additional manual review to ensure no strong profile is missed. The process is transparent skills-based and free of bias — focusing solely on your fit for the role. Once the shortlist is completed we share it directly with the company that owns the job opening. The final decision and next steps (such as interviews or additional assessments) are then made by their internal hiring team. Thank you for your interest!
|
|
Security Engineer (Palo Alto XSOAR) - North Central region (Remote in the U.S.)
GuidePoint Security |
Remote United States
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. Security Engineers (Palo Alto XSOAR) at GuidePoint Security are experienced professionals who are autonomous experienced self-driven security fanatics. Our Security Engineers (Palo Alto XSOAR) are materially involved in the complete security technologies opportunity lifecycle from pre-sales through delivery and have the freedom and control over how engagements are scoped and delivered. Our unique position as both a Value-Added Reseller (VAR) AND a professional services organization also requires our Security Engineers to continually expand their knowledge and experience with the latest cutting-edge information security technologies. This helps satisfy our Security Engineers (Palo Alto XSOAR) desire to constantly expand their knowledge and better meet the needs of our clients. Role and responsibilities: Palo Alto XSOAR architecture implementation and troubleshooting Proficiency developing log ingestion and aggregation strategies. Expertise developing SOC and security-focused content and automation. Familiarity with key security events on common IT platforms General networking and security troubleshooting (firewalls routing NAT etc.) Scripting and development skills (BASH Perl Python or Java) with strong knowledge of regular expressions Ability to autonomously prioritize and successfully deliver across a portfolio of projects. Required experience / certifications: 3-5 years of Palo Alto XSOAR architecture implementation and troubleshooting Palo Alto Networks Certified Security Automation Engineer a plus SOC or operations experience Experience with other Information Security solutions including DLP NAC SASE NGFW EDR XDR SIEM Experience authoring security runbooks policy and best practice documentation Education: Bachelor's degree in a relevant discipline or equivalent professional experience We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
|
Associate M365 Cloud Security Engineer- Remote (Anywhere in the U.S.)
GuidePoint Security |
Tampa, FL
|
GuidePoint Security provides trusted cybersecurity expertise solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered holistic approach for evaluating security posture and ecosystems GuidePoint enables some of the nation's top organizations such as Fortune 500 companies and U.S. government agencies to identify threats optimize resources and integrate best-fit solutions that mitigate risk. Overview We're seeking a motivated Associate Microsoft 365 Security Engineer to join our security and collaboration team. This role is ideal for someone with foundational experience in Microsoft 365 administration who is ready to deepen their expertise in securing cloud productivity environments. You'll work alongside senior engineers to design implement and maintain security controls across the Microsoft 365 ecosystem — ensuring our users stay productive while our data stays protected. Key Responsibilities Assist in the configuration monitoring and optimization of Microsoft 365 security features including: + Microsoft Entra ID (Azure AD) Conditional Access + Microsoft Defender for Office 365 Endpoint and Identity + Microsoft Purview compliance and DLP policies + Intune device compliance and app protection policies Support security incident investigations related to M365 services. Help maintain identity governance (role assignments access reviews privileged identity management). Participate in security posture assessments and remediation efforts. Assist with email security configuration phishing simulations and threat analysis. Document configurations processes and troubleshooting steps. Stay current with Microsoft 365 security updates and best practices. Required Qualifications 1–3 years of experience administering Microsoft 365 services (Exchange Online SharePoint Online Teams OneDrive). Basic understanding of cloud security principles and identity management. Familiarity with Microsoft Entra ID Conditional Access and MFA. Exposure to Intune for device and application management. Strong troubleshooting skills and attention to detail. Excellent communication skills for both technical and non-technical audiences. Preferred Qualifications Microsoft 365 Certified: Security Administrator Associate (SC-900 SC-200 or MS-500). Experience with PowerShell scripting for automation. Familiarity with Microsoft Sentinel or other SIEM platforms. Understanding of compliance frameworks (e.g. ISO 27001 NIST GDPR). Soft Skills Eagerness to learn and grow in a fast-paced environment. Collaborative mindset with the ability to work in cross-functional teams. Proactive problem-solving and ownership of assigned tasks. We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing profitable privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011 GuidePoint has grown to over 1000 employees established strategic partnerships with leading security vendors and serves as a trusted advisor to more than 4200 customers. Firmly-defined core values drive all aspects of the business which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint your colleagues are knowledgeable skilled and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only some travel may be required for certain positions working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family) and GPS will contribute in one lump sum: ($500 per EE annually / $1000 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
|
|
Senior Security Engineer (MSP or MSSP) - Mexico (Remote)
Echelon Risk + Cyber |
Ecatepec de Morelos, México, Mexico
|
Join to apply for the Senior Security Engineer (MSP or MSSP) - Mexico (Remote) role at Echelon Risk + Cyber. Overview At Echelon Risk + Cyber we defend basic human rights to security and privacy. We seek a highly skilled and experienced Senior Security Engineer to join our cybersecurity consulting firm. The team member will identify opportunities for clients and for Echelon with integrity be passionate about cybersecurity and act as an Entrepreneurial Problem Solver to build creative solutions with the team. You will have opportunities to work with cutting-edge technology and engage in meaningful work with the ability to contribute from the ground up and make an impact across the organization. What You Will Do Implement and enforce security policies and procedures based on industry standards. Conduct regular security assessments audits and ensure compliance with security standards. Design and implement secure cloud solutions (Azure and AWS). Utilize Cloud Security Posture Management (CSPM) technologies. Ensure the security of SaaS platforms including email file sharing and 3rd party applications. Configure and manage security controls for servers and endpoints including deploying and managing endpoint protection solutions. Implement security policies for Mobile Device Management (MDM). Conduct regular vulnerability scans and automated penetration tests using in-house tools and develop remediation plans for identified vulnerabilities. Implement and manage IAM solutions including single sign-on (SSO) and privileged access management (PAM). Ensure proper user provisioning and access controls. Lead technical implementations of data protection services including Data Loss Prevention (DLP) solutions. Participate in the development and maintenance of disaster recovery plans and procedures. Review backups redundancy and replication solutions for availability and recovery perform regular recovery tests. Conduct security reviews assessments and hardening activities across endpoints servers network infrastructure and cloud services. Apply and enforce security configuration benchmarks (e.g. CIS NIST). Ensure compliance with regulatory requirements and industry standards. Implement and manage security information and event management (SIEM) systems. Deploy and maintain managed detection and response (MDR) intrusion detection systems (IDS) and intrusion prevention systems (IPS). Configure and manage network security policies across perimeter and internal network equipment including firewalls and wireless access points. Participate in incident response planning and tabletop exercises develop incident response plans and playbooks. Assist with the implementation and configuration of security awareness training programs and solutions. Work closely with clients to understand their security needs and provide tailored solutions. Collaborate with cross-functional teams to ensure security is integrated into IT infrastructure and develop technical security standards and procedures. Your Knowledge Skills And Abilities Bachelor's degree in Computer Science Information Security or related field. Relevant certifications: CCSP CISSP CEH CISM etc. Experience working in managed IT or Security services (MSP or MSSP) handling numerous clients and environments simultaneously. Strong understanding of security technologies and frameworks. Excellent problem-solving and analytical skills. Strong communication and interpersonal skills. Preferred Qualifications Familiarity with regulatory requirements such as FFIEC SOC 2 ISO 27001 GDPR CMMC HIPAA PCI-DSS etc. Familiarity with security frameworks such as CIS NIST ISO SOC2. Experience with enterprise security technologies (firewalls such as Palo Alto and FortiGate endpoint security tools such as CrowdStrike SentinelOne and FortiEDR). Experience working in or with a Security Operations Center (SOC). Experience participating in Security Assessments and Audit efforts. Familiarity with DevSecOps practices and tools. Ability to be agile and juggle multiple clients initiatives and priorities effectively. Skilled in gathering assessing and presenting technical security metrics and trends. Why Echelon? We are committed to creating an inclusive environment with unquestioned integrity. If you have a special need that requires accommodation please let your recruiter know. One of our core values is People with Personality and we want you to bring your full self to work. Benefits Access to private medical insurance through MetLife. Life insurance policy through MetLife. 30-day Christmas bonus and a monthly technology stipend. Contribution of 8% of the employee's salary to a savings fund. Flexible vacation policy to manage your schedule and rest when needed. Family-friendly benefits including 16 weeks of maternity leave eight weeks for non-birthing parent leave and employer-paid disability. Support for certifications continued learning conferences and more. We value a diverse workforce and a culture of inclusivity and belonging. All employment decisions are made without regard to age race creed color religion gender national origin disability status veteran status sexual orientation gender identity or expression genetic information marital status citizenship status or any other basis as protected by law. Echelon Risk + Cyber is an Equal Opportunity Employer. Job Posted by ApplicantPro #J-18808-Ljbffr
|
|
Senior Security Infrastructure Engineer
bluesight |
United States - Remote
|
At Bluesight our mission is to create groundbreaking solutions that increase efficiency safety and visibility for health systems hospital pharmacy and pharmaceutical manufacturers. We empower our customers to deliver the right medicine to the right patient at the right time every time. We are a high growth healthcare information technology company with a start-up 'vibe' but over 2000 customers using our proven solutions.Bluesight is looking for a talented and experienced Senior Security Engineer to join our team. As a member of the team you can expect to work in a highly visible cross-functional role. As an engineer on this team you’ll play an advisory role across the whole company and you’ll help all Bluesight product teams build secure-by-default architectures triage issues and remediate vulnerabilities on their systems.As Senior Security Engineer you’ll be responsible for building scanning and threat detection systems to monitor Bluesight’s AWS cloud deployment and other digital assets. You’ll train all Bluesight employees on security best practices conduct risk assessments of new vendor integrations and product launches and develop internal protocols controls and relationships to ensure customer assurance and trust. Most importantly you’ll build and maintain core standards around security privacy and confidentiality reflected in our compliance certifications and the automation to monitor and enforce these standards across Bluesight.We’re excited to share with you our passion for building scalable and secure products for our healthcare customers. Your perspective and experience will help shape our team’s goals. You will be responsible for contributing to operating and improving all things related to our security and compliance requirements for SOC2 HIPAA CGMP. Bluesight is a fully remote company this position and open to qualified applicants in the continental United States who are eligible to work in the United States without Visa sponsorship. ➡ Representative Duties: ➡ Build and manage well-architected and relevant cloud-based data classification and threat detection systems for assessing and resolving risk vectorsPartner with internal product teams to implement a secure-by-default design into their own productsPerform security audits and risk assessments identify vulnerabilities and create plans and preventative measures to protect against threats. Assist with responses to customer questions questionnaires and contract issues regarding compliance and security.Conduct reviews train employees and advise on matters related to security and compliance across BluesightLead security incident response teams and partner with Bluesight engineering teams to understand and resolve incidents that arise Promote a culture of operational excellence by monitoring our systems and code and being on-call to support the health of our servicesDesign security policies and procedures that will keep pace with the rapid growth of BluesightDocument your work and decision-making processes and lead presentations and discussions in a way that is easy for others to understandUphold a culture of collaboration transparency creativity inclusion and making data-driven decisions Qualifications and Requirements: ➡ 5+ years of experience in product or infrastructure security-related software engineering rolesProficiency in a programming language testing practices and thorough documentationExpertise with multiple technologies in the Bluesight Security System and our infrastructure as required: Cloud-based IaaS Systems - AWS required Vulnerability Mgmt. and Scanning (such as Nessus OpenVAS)SIEM and logging technology (such as Splunk Elastic LogRhythm SolarWinds)Enterprise VPN (such as Cisco AnyConnect Fortinet VPN Palo Alto Global Protect)Host-based security tools (such as Sophos ClamAV Wazuh/OSSEC Tripwire)Experience developing implementing and monitoring internal practices for SOC2 HIPAA or ISO information security compliance standardsAbility to represent Bluesight’s security posture and the maturity of our operations to customersSubject matter expertise in security best practices and the ability to quickly make correct risk assessments that prioritize the overall benefit to the companyTrack record of building self-service and high-quality tools with a customer-driven mindsetA desire to share your expertise through documentation and mentorshipA desire to work with individuals with diverse security ideas and prioritiesAutonomy and proactivity around driving work to completion in the face of ambiguity Preferred qualifications: ➡ Experience with cybersecurity frameworks such as NIST 800-53 CIS and CSFExperience securing data in a regulated industry (HIPAA FDA CGMP)Any code writing or projects that are public or shareable demonstrating your experience understanding or approach to security and compliance ➡ This position is a remote position and open to applicants in the continental United States.Why Bluesight?Bluesight’s culture is built on innovation and teamwork. There’s room to grow and opportunities to take initiative. You will partner with sharp motivated teammates looking to disrupt a massive industry—and have fun doing it. We truly believe that where you work and what you do matters. Join us as we revolutionize the hospital pharmacy landscape!-Competitive salary-Time off when you need it – unlimited vacation days!-Generous insurance coverage-401k program with a company match-Fun collaborative culture!EOE AA M/F/VET/DisabilityAll qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race religion color national origin sex protected veteran status disability or any other basis protected by federal state or local laws.
|
* unlock: sign-up / login and use the searches from your home page
** job listings updated in real time 🔥
Login & search by other job titles, a specific location or any keyword.
Powerful custom searches are available once you login.