it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

4 jobs found

Email me jobs like this
Refine Search
Current Search
senior associate forensic technology
Security Engineer II
Lennar Homes Irving, Texas
Systems Engineer II - Security THIS ROLE WILL BE BASED ON-SITE, IN OUR IRVING, TX. OFFICE We are Lennar Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500 company and consistently ranked among the top homebuilders in the United States. Join a Company that Empowers you to Build your Future The Systems Engineer II - Security is a mid-level position responsible for enhancing and maintaining the security of the organization's information technology infrastructure. The Systems Engineer II - Security role is responsible for designing, implementing, and operating enterprise identity and access controls across IAM, IGA, and PAM platforms to ensure the right users and workloads have the right access at the right time. This role reduces identity-related risk by enforcing least privilege, strengthening authentication, and governing privileged access in alignment with security and regulatory requirements. A career with purpose. A career built on making dreams come true. A career built on building zero defect homes, cost management, and adherence to schedules. Your Responsibilities on the Team Systems Security: Support enterprise IAM solutions that collectively deliver single sign-on (SSO), multifactor authentication (MFA), identity governance and administration, and privileged access management for all types of identities, including on-premises, hybrid, cloud-only, non-human (service accounts), and application-based credentials (API keys, tokens). Engineer and operate IGA capabilities, including joiner mover leaver workflows, access request and approval, automated provisioning/de provisioning, and role based access control (RBAC/ABAC) Implement and manage PAM platforms for privileged account onboarding, credential vaulting, password rotation, session monitoring/recording, and just in time (JIT) elevation. Design and implement identity and access controls for AI agents and non-human identities (service accounts, bots, APIs, workloads), including lifecycle management, secrets management, least-privilege roles, and monitoring of machine-to-machine access in alignment with Zero Trust principles. Monitor identity and privileged access activities, analyze logs and alerts, and support incident response and forensic investigations related to compromised identities or misuse of privilege. Support audit, compliance, and certification efforts by providing evidence, improving control design, and remediating findings related to IAM, IGA, and PAM. Troubleshoot complex IAM/IGA/PAM issues, perform root cause analysis, and drive continuous improvement and modernization of identity platforms. Collaborate with security architecture, infrastructure, application, and DevOps teams to embed identity security and Zero Trust principles in new solutions and strategic programs. Document architectures, standards, runbooks, and knowledge articles, and provide guidance and training to operations and application teams on identity security best practices Participate in Proof of Concepts and product evaluations of new and emerging Identity security services and technologies. May provide mentorship and support to various junior security engineers and security operations team members. Requirements Education: Bachelor's degree required in Computer Science, Cybersecurity, Engineering, or related field. Experience: 4-5 years of hands-on cybersecurity engineering experience with exposure to IAM. 4+ years of relevant work experience in security engineering, with a focus on concepts and technologies in Identity & Access Management (IAM) like SailPoint, Delinea, CyberArk, Entra ID, Ping Identities 2+ years of relevant work experience with Identity and Access Management solutions, including the implementation and configuration of solutions for Single Sign-On (SSO), Multifactor Authentication (MFA), and various identity integration protocols (SAML, OIDC). Experience building and maintaining SailPoint connectors, aggregation and provisioning jobs, roles/entitlements, and workflows for HR-driven JML processes. Experience administering Microsoft Entra ID, including users, groups, roles, app registrations, and enterprise applications. Working knowledge of solutions for Identity Governance and Administration, Privileged Access Management, and access control models such as RBAC, ABAC, PBAC, and FGAC Certifications: Any Certified Information Systems Security Professional (CISSP), CompTIA Security+, Certified Identity and Access Manager (CIAM), or similar advanced cloud security certifications preferred. Additional Skills, Knowledge, and Experience: Working knowledge of cloud-based Identity Providers, access controls, and hybrid federated IAM architectures. Experience in designing, configuring, and administering SailPoint Identity Security Cloud for identity lifecycle, access request, certifications, and policy/SoD controls. Strong knowledge and experience with Microsoft Active Directory (AD) Domain Services, management of AD users and security groups, and security best practices for configuring AD infrastructure, policies, group policy objects. Experience with implementing access control mechanisms, such as authentication policies, identity lifecycle management (provisioning, deprovisioning), and methods for authorization management. Strong skills in developing visual design documentation (Visio, Lucid), oral presentation skills, problem solving / critical thinking, and decision-making skills. Strong verbal and written communication skills. Ability to facilitate productive meetings and work comfortably in a team-oriented environment. Personal Attributes: Team Player: Ability to work collaboratively with senior engineers, IT teams, and other stakeholders to achieve shared goals. Communication: Effective written and verbal communication skills, with the ability to explain technical concepts to non-technical audiences. Ability to leverage communication skills to ensure a strong commitment to customer service. Detail-Oriented: Attention to detail and consideration of the non-technical components necessary for successfully executing projects and initiatives. Adaptability: Ability to balance multiple competing prioities in a fast-paced environment. Minimal Supervision: Comfortable with executing workstreams independently with a positive and self-motivated drive. Exercise sound judgement in complex situations. Additional Requirements: Continuous Learning: Commitment to staying current with industry trends and pursuing relevant certifications and training. Travel: Willingness to travel occasionally This role is ideal for a motivated systems security engineer looking to use and build upon their existing technical skillsets. This role will deliver significant and essential security services necessary to protect the business operations of a large-scale enterprise. If you are passionate about cybersecurity and eager to grow in a fast-paced, collaborative environment, we encourage you to apply. Life at Lennar At Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone's Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar's policies and applicable plan terms. Visit to view our suite of benefits. Join the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview LinkedIn for the latest job opportunities. Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.
08/03/2026
Full time
Systems Engineer II - Security THIS ROLE WILL BE BASED ON-SITE, IN OUR IRVING, TX. OFFICE We are Lennar Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500 company and consistently ranked among the top homebuilders in the United States. Join a Company that Empowers you to Build your Future The Systems Engineer II - Security is a mid-level position responsible for enhancing and maintaining the security of the organization's information technology infrastructure. The Systems Engineer II - Security role is responsible for designing, implementing, and operating enterprise identity and access controls across IAM, IGA, and PAM platforms to ensure the right users and workloads have the right access at the right time. This role reduces identity-related risk by enforcing least privilege, strengthening authentication, and governing privileged access in alignment with security and regulatory requirements. A career with purpose. A career built on making dreams come true. A career built on building zero defect homes, cost management, and adherence to schedules. Your Responsibilities on the Team Systems Security: Support enterprise IAM solutions that collectively deliver single sign-on (SSO), multifactor authentication (MFA), identity governance and administration, and privileged access management for all types of identities, including on-premises, hybrid, cloud-only, non-human (service accounts), and application-based credentials (API keys, tokens). Engineer and operate IGA capabilities, including joiner mover leaver workflows, access request and approval, automated provisioning/de provisioning, and role based access control (RBAC/ABAC) Implement and manage PAM platforms for privileged account onboarding, credential vaulting, password rotation, session monitoring/recording, and just in time (JIT) elevation. Design and implement identity and access controls for AI agents and non-human identities (service accounts, bots, APIs, workloads), including lifecycle management, secrets management, least-privilege roles, and monitoring of machine-to-machine access in alignment with Zero Trust principles. Monitor identity and privileged access activities, analyze logs and alerts, and support incident response and forensic investigations related to compromised identities or misuse of privilege. Support audit, compliance, and certification efforts by providing evidence, improving control design, and remediating findings related to IAM, IGA, and PAM. Troubleshoot complex IAM/IGA/PAM issues, perform root cause analysis, and drive continuous improvement and modernization of identity platforms. Collaborate with security architecture, infrastructure, application, and DevOps teams to embed identity security and Zero Trust principles in new solutions and strategic programs. Document architectures, standards, runbooks, and knowledge articles, and provide guidance and training to operations and application teams on identity security best practices Participate in Proof of Concepts and product evaluations of new and emerging Identity security services and technologies. May provide mentorship and support to various junior security engineers and security operations team members. Requirements Education: Bachelor's degree required in Computer Science, Cybersecurity, Engineering, or related field. Experience: 4-5 years of hands-on cybersecurity engineering experience with exposure to IAM. 4+ years of relevant work experience in security engineering, with a focus on concepts and technologies in Identity & Access Management (IAM) like SailPoint, Delinea, CyberArk, Entra ID, Ping Identities 2+ years of relevant work experience with Identity and Access Management solutions, including the implementation and configuration of solutions for Single Sign-On (SSO), Multifactor Authentication (MFA), and various identity integration protocols (SAML, OIDC). Experience building and maintaining SailPoint connectors, aggregation and provisioning jobs, roles/entitlements, and workflows for HR-driven JML processes. Experience administering Microsoft Entra ID, including users, groups, roles, app registrations, and enterprise applications. Working knowledge of solutions for Identity Governance and Administration, Privileged Access Management, and access control models such as RBAC, ABAC, PBAC, and FGAC Certifications: Any Certified Information Systems Security Professional (CISSP), CompTIA Security+, Certified Identity and Access Manager (CIAM), or similar advanced cloud security certifications preferred. Additional Skills, Knowledge, and Experience: Working knowledge of cloud-based Identity Providers, access controls, and hybrid federated IAM architectures. Experience in designing, configuring, and administering SailPoint Identity Security Cloud for identity lifecycle, access request, certifications, and policy/SoD controls. Strong knowledge and experience with Microsoft Active Directory (AD) Domain Services, management of AD users and security groups, and security best practices for configuring AD infrastructure, policies, group policy objects. Experience with implementing access control mechanisms, such as authentication policies, identity lifecycle management (provisioning, deprovisioning), and methods for authorization management. Strong skills in developing visual design documentation (Visio, Lucid), oral presentation skills, problem solving / critical thinking, and decision-making skills. Strong verbal and written communication skills. Ability to facilitate productive meetings and work comfortably in a team-oriented environment. Personal Attributes: Team Player: Ability to work collaboratively with senior engineers, IT teams, and other stakeholders to achieve shared goals. Communication: Effective written and verbal communication skills, with the ability to explain technical concepts to non-technical audiences. Ability to leverage communication skills to ensure a strong commitment to customer service. Detail-Oriented: Attention to detail and consideration of the non-technical components necessary for successfully executing projects and initiatives. Adaptability: Ability to balance multiple competing prioities in a fast-paced environment. Minimal Supervision: Comfortable with executing workstreams independently with a positive and self-motivated drive. Exercise sound judgement in complex situations. Additional Requirements: Continuous Learning: Commitment to staying current with industry trends and pursuing relevant certifications and training. Travel: Willingness to travel occasionally This role is ideal for a motivated systems security engineer looking to use and build upon their existing technical skillsets. This role will deliver significant and essential security services necessary to protect the business operations of a large-scale enterprise. If you are passionate about cybersecurity and eager to grow in a fast-paced, collaborative environment, we encourage you to apply. Life at Lennar At Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone's Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar's policies and applicable plan terms. Visit to view our suite of benefits. Join the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview LinkedIn for the latest job opportunities. Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.
Sr. Cybersecurity Incident Response Specialist
BERING STRAITS PROFESSIONAL SERVICES LLC Washington, Washington DC
About Bering Straits Professional Services Paragon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon's experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients' projects in line with local, state and federal guidelines and regulations. About this position: Sr. Cybersecurity Incident Response Specialist Location - Washington, DC The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position. Wage/Salary Range: $100k - $120k Applicants will be notified via phone or email within ten (10) business days of submittal. Essential Duties & Responsibilities Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization's Network, Systems, Applications, and Web services. Provide senior level cybersecurity incident response expertise in support of the client's Incident Response processes and procedures. Develop operational baselines such data flows and application interactions to enhance SOC's ability to respond to incidents. Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800-61 and Government guidance. Follow current guidance from NIST 800-61, Federal Incident Notification Guidelines, CISA's Incident Response and Vulnerability Playbook, and client guidance. Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards. Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity. Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client's incident response program. Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents. Implement cybersecurity mitigations leveraging client tools and systems. Create and escalate cybersecurity-related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines. Manage, coordinate, and respond to FOIA, audits, data calls, e-discovery and information requests. Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis. Review and handle phishing messages reported by client staff. Required (Minimum Necessary) Qualifications Education Requirements: High School or GED-General Educational Development-GED Diploma Bachelor's degree in computer science or equivalent is preferred Level of Experience Requirements: Minimum of five years hands-on experience Proven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments. Knowledge, Skills, Abilities, and Other Characteristics Proficiency with SIEM, EDR/XDR platforms, and forensic tools. Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies. Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity. Familiarity with malware analysis, reverse engineering basics, and memory analysis concepts Experience developing and tuning detection rules, playbooks, and automated response workflows. Working knowledge of incident response frameworks (e.g., NIST SP 800-61, SANS). Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting. Understanding of basic computer and networking technologies. Windows and Linux/Unix operating systems Networking technologies (routing, switching, VLANs, subnets, firewalls) Common networking protocols - SSH, SMB, SMTP, FTP/SFTP, HTTP/HTTPS, DNS, etc. Common enterprise technologies - Active Directory, Group Policy, and the Microsoft Azure suite of cloud services. Understanding of current system logging technology and retrieving information from a plethora of technology platforms. Ability to work well in a team environment. Self-starter with ability to work with little supervision. Willingness to take on and adapt to new, open-ended tasks for which there is no current standard operating procedure. Ability to research independently and self-teach. Strong analytical and decision-making skills under pressure. Excellent written and verbal communication, including incident documentation and executive briefings. Ability to lead investigations, mentor junior analysts, and collaborate with cross-functional teams. Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required. Preferred Interest in security/hacking culture. Ability to "think like an attacker" General cybersecurity certifications (one or more of the following preferred): CompTIA Security+ CompTIA Cybersecurity Analyst (CySA+) Certified Ethical Hacker (CEH) GIAC Certified Incident Handler (GCIH) Any cloud security certification, especially: CompTIA Cloud+ Certified Cloud Security Professional (CCSP) Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK) Any Microsoft 365/Azure cybersecurity certification, especially: Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) Microsoft Certified: Azure Fundamentals (AZ-900) Microsoft Certified: Azure Security Engineer Associate (AZ-500) Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender. Knowledge of common enterprise technologies, policies, and concepts such as: Microsoft Sentinel SIEM Kusto Query Language (KQL) Mobile device technologies (iOS, Android) Scripting experience (PowerShell, Python, etc.) Microsoft Power BI Azure DevOps Artificial Intelligence (AI) / Machine Learning (ML) expertise In-depth knowledge of AI and ML concepts. How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities. Experience with specific AI services offered within Microsoft Azure. Supervisory Responsibilities This position will not have supervisory responsibilities. DOT Covered/Safety-Sensitive Role Requirements This position is not subject to federal requirements regarding Department of Transportation "safety-sensitive" functions. Necessary Physical Requirements The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this role. Employees must always maintain a constant state of mental alertness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about. Work Environment The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Physical Setting: Washington DC Schedule and Flexibility: Full Time in Office Additional Qualifying Factors As a condition of employment, you will be required to pass a pre-employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations. Shareholder Preference BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job. Bering Straits Native Corporation is an equal opportunity employer. All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law.
08/03/2026
Full time
About Bering Straits Professional Services Paragon offers a wide range of environmental investigation, consulting, compliance, and remediation services as well as IT solutions, Facility O&M, Materiel Support, Supply and Security to both private- and public-sector clients throughout Alaska and the Continental U.S. Paragon's experienced professional staff is dedicated to producing high-quality documentation and providing safe field execution to support its clients' projects in line with local, state and federal guidelines and regulations. About this position: Sr. Cybersecurity Incident Response Specialist Location - Washington, DC The Essential Duties and Responsibilities are intended to present a descriptive list of the range of duties performed for this position and are not intended to reflect all duties performed within the job. Other duties may be assigned. To perform this job successfully, an individual must be able to satisfactorily perform each essential duty. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions of the position. Wage/Salary Range: $100k - $120k Applicants will be notified via phone or email within ten (10) business days of submittal. Essential Duties & Responsibilities Member of the SOC team which provides 24 hours per day, 7 days per week, 365 days per year monitoring and incident response services for the organization's Network, Systems, Applications, and Web services. Provide senior level cybersecurity incident response expertise in support of the client's Incident Response processes and procedures. Develop operational baselines such data flows and application interactions to enhance SOC's ability to respond to incidents. Prepare and manage playbooks and relevant scenarios in addition to narratives and visual diagrams and review continuously, in compliance with NIST SP 800-61 and Government guidance. Follow current guidance from NIST 800-61, Federal Incident Notification Guidelines, CISA's Incident Response and Vulnerability Playbook, and client guidance. Monitor system status and sensor data from deployed sensors and triage for validity from Security Information and Event Management (SIEM) System, email, texts, phone calls and all enterprise managed dashboards. Analyze all sources including network traffic, identity, fault, performance, and bandwidth information, alerts and data to augment detection of network anomalies and unauthorized activity. Meet regularly with client stakeholders to develop content, analytic rules, alerts, dashboards, automation and identify ways to improve availability and efficiency of client's incident response program. Categorize, Prioritize, and Report on cybersecurity events in accordance with (IAW) SOPs and other relevant policies documents. Implement cybersecurity mitigations leveraging client tools and systems. Create and escalate cybersecurity-related investigations to both internal and external entities such as DHS or other Government Agencies with client and Federal defined timelines. Manage, coordinate, and respond to FOIA, audits, data calls, e-discovery and information requests. Schedule and execute incident response tabletop exercises with each client FISMA system on an annual basis. Review and handle phishing messages reported by client staff. Required (Minimum Necessary) Qualifications Education Requirements: High School or GED-General Educational Development-GED Diploma Bachelor's degree in computer science or equivalent is preferred Level of Experience Requirements: Minimum of five years hands-on experience Proven experience detecting, triaging, and responding to cyber incidents across enterprise networks and cloud environments. Knowledge, Skills, Abilities, and Other Characteristics Proficiency with SIEM, EDR/XDR platforms, and forensic tools. Strong understanding of threat actor TTPs, MITRE ATT&CK framework, and incident containment strategies. Ability to analyze network traffic, logs, and endpoint telemetry to identify malicious activity. Familiarity with malware analysis, reverse engineering basics, and memory analysis concepts Experience developing and tuning detection rules, playbooks, and automated response workflows. Working knowledge of incident response frameworks (e.g., NIST SP 800-61, SANS). Understanding of vulnerability management, threat intelligence integration, and SOC metrics/reporting. Understanding of basic computer and networking technologies. Windows and Linux/Unix operating systems Networking technologies (routing, switching, VLANs, subnets, firewalls) Common networking protocols - SSH, SMB, SMTP, FTP/SFTP, HTTP/HTTPS, DNS, etc. Common enterprise technologies - Active Directory, Group Policy, and the Microsoft Azure suite of cloud services. Understanding of current system logging technology and retrieving information from a plethora of technology platforms. Ability to work well in a team environment. Self-starter with ability to work with little supervision. Willingness to take on and adapt to new, open-ended tasks for which there is no current standard operating procedure. Ability to research independently and self-teach. Strong analytical and decision-making skills under pressure. Excellent written and verbal communication, including incident documentation and executive briefings. Ability to lead investigations, mentor junior analysts, and collaborate with cross-functional teams. Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Accordingly, U.S. Citizenship is required. Preferred Interest in security/hacking culture. Ability to "think like an attacker" General cybersecurity certifications (one or more of the following preferred): CompTIA Security+ CompTIA Cybersecurity Analyst (CySA+) Certified Ethical Hacker (CEH) GIAC Certified Incident Handler (GCIH) Any cloud security certification, especially: CompTIA Cloud+ Certified Cloud Security Professional (CCSP) Cloud Security Alliance Certificate of Cloud Security Knowledge (CCSK) Any Microsoft 365/Azure cybersecurity certification, especially: Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) Microsoft Certified: Azure Fundamentals (AZ-900) Microsoft Certified: Azure Security Engineer Associate (AZ-500) Familiarity with the Microsoft 365 and Microsoft Azure suite of products, including Microsoft Sentinel and Microsoft 365 Defender. Knowledge of common enterprise technologies, policies, and concepts such as: Microsoft Sentinel SIEM Kusto Query Language (KQL) Mobile device technologies (iOS, Android) Scripting experience (PowerShell, Python, etc.) Microsoft Power BI Azure DevOps Artificial Intelligence (AI) / Machine Learning (ML) expertise In-depth knowledge of AI and ML concepts. How to practically apply AI/ML technologies to enhance cyber threat hunting and incident response capabilities. Experience with specific AI services offered within Microsoft Azure. Supervisory Responsibilities This position will not have supervisory responsibilities. DOT Covered/Safety-Sensitive Role Requirements This position is not subject to federal requirements regarding Department of Transportation "safety-sensitive" functions. Necessary Physical Requirements The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this role. Employees must always maintain a constant state of mental alertness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Essential and marginal functions may require maintaining physical condition necessary for bending, stooping, sitting, walking or standing for prolonged periods of time; most of time is spent sitting in a comfortable position with frequent opportunity to move about. Work Environment The work environmental characteristics described here are representative of those that must be borne by an employee to successfully perform the essential functions of the role. Employees must always maintain a constant state of situational awareness. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Physical Setting: Washington DC Schedule and Flexibility: Full Time in Office Additional Qualifying Factors As a condition of employment, you will be required to pass a pre-employment drug screening and have acceptable background check results. If applicable to the contract, you must also obtain and maintain the appropriate clearance levels required and must also be able to obtain access to military installations. Shareholder Preference BSNC gives hiring, promotion, training, and retention preference to BSNC shareholders, shareholder descendants and shareholder spouses who meet the minimum qualifications for the job. Bering Straits Native Corporation is an equal opportunity employer. All applicants will receive consideration for employment without regard to any status protected by state or federal law, or any other basis prohibited by law.
The Senior Associate, Information Security - Forensics
Publicis Re:Sources Global New York, New York
Company description Publicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients. Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,200+ employees globally. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management. We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at . The Publicis Re:Sources Guiding Principles define who we are and what we stand for. They reflect the mindset and behaviors that shape how we work, how we support one another, and how we drive progress together. People First, Driving Success Together Problem Solving Mindset Respect Each Other Partner and Collaborate as One Team Commit to Quality and Standards Innovate and Embrace the Future Job description The Senior Associate, Information Security - Forensics is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff. Salary Range: $100-125K/yr Visa Sponsorship is not available for this position Incident Commander to lead investigation and response of cyber security incidents. Analyze compromised/potentially compromised systems utilizing forensics tools. Coordinate evidence/data gathering and document security incident reports. Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management. Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response. Perform complex forensic investigations into system breaches, data leaks, and system weaknesses. Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis. Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools. Job requirements EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity. Experience with forensics tools such as FTK, EnCase, Autopsy to collect and analyze file system artifacts, process history, application artifacts, memory collection and analysis for physical and cloud systems (Windows, Mac, Linux). 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant. Experience with cloud environments such as: Azure, AWS, GCP - knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc. Familiarity with the MITRE ATT&CK or related frameworks. Experience developing and managing incident response programs with focus on efficiency through AI development. Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports. Proficient in social engineering, phishing, and related fraud schemes. Strong general knowledge of security concepts and expertise in network and web application security issues. Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment. Additional Information All your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an at-will relations.
08/03/2026
Full time
Company description Publicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients. Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,200+ employees globally. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management. We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at . The Publicis Re:Sources Guiding Principles define who we are and what we stand for. They reflect the mindset and behaviors that shape how we work, how we support one another, and how we drive progress together. People First, Driving Success Together Problem Solving Mindset Respect Each Other Partner and Collaborate as One Team Commit to Quality and Standards Innovate and Embrace the Future Job description The Senior Associate, Information Security - Forensics is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff. Salary Range: $100-125K/yr Visa Sponsorship is not available for this position Incident Commander to lead investigation and response of cyber security incidents. Analyze compromised/potentially compromised systems utilizing forensics tools. Coordinate evidence/data gathering and document security incident reports. Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management. Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response. Perform complex forensic investigations into system breaches, data leaks, and system weaknesses. Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis. Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools. Job requirements EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity. Experience with forensics tools such as FTK, EnCase, Autopsy to collect and analyze file system artifacts, process history, application artifacts, memory collection and analysis for physical and cloud systems (Windows, Mac, Linux). 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant. Experience with cloud environments such as: Azure, AWS, GCP - knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc. Familiarity with the MITRE ATT&CK or related frameworks. Experience developing and managing incident response programs with focus on efficiency through AI development. Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports. Proficient in social engineering, phishing, and related fraud schemes. Strong general knowledge of security concepts and expertise in network and web application security issues. Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment. Additional Information All your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an at-will relations.
Senior Associate, Information Security - Forensics
Publicis Re:Sources Global Boston, Massachusetts
Company description Publicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients. Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,200+ employees globally. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management. We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at . The Publicis Re:Sources Guiding Principles define who we are and what we stand for. They reflect the mindset and behaviors that shape how we work, how we support one another, and how we drive progress together. People First, Driving Success Together Problem Solving Mindset Respect Each Other Partner and Collaborate as One Team Commit to Quality and Standards Innovate and Embrace the Future Visa Sponsorship is not available for this position including H1b or OPT EAD Job description The Senior Associate, Information Security - Forensics is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff. Incident Commander to lead investigation and response of cyber security incidents. Analyze compromised/potentially compromised systems utilizing forensics tools. Coordinate evidence/data gathering and document security incident reports. Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management. Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response. Perform complex forensic investigations into system breaches, data leaks, and system weaknesses. Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis. Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools. Job requirements EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity. Experience with forensics tools such as FTK, EnCase, Autopsy to collect and analyze file system artifacts, process history, application artifacts, memory collection and analysis for physical and cloud systems (Windows, Mac, Linux). 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant. Experience with cloud environments such as: Azure, AWS, GCP - knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc. Familiarity with the MITRE ATT&CK or related frameworks. Experience developing and managing incident response programs with focus on efficiency through AI development. Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports. Proficient in social engineering, phishing, and related fraud schemes. Strong general knowledge of security concepts and expertise in network and web application security issues. Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment. Additional Information All your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an at-will relations. Salary Range: $100-120K/yr
08/03/2026
Full time
Company description Publicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best: innovate and transform for their clients. Formed in 1998 as a small team to service a few Publicis Groupe firms, Publicis Re:Sources has grown to 6,200+ employees globally. We provide technology solutions and business services including finance, accounting, legal, benefits, procurement, tax, real estate, treasury and risk management. We continually transform to keep pace with our ever-changing communications industry and thrive on a spirit of innovation felt around the globe. Learn more about Publicis Re:Sources and the Publicis Groupe agencies we support at . The Publicis Re:Sources Guiding Principles define who we are and what we stand for. They reflect the mindset and behaviors that shape how we work, how we support one another, and how we drive progress together. People First, Driving Success Together Problem Solving Mindset Respect Each Other Partner and Collaborate as One Team Commit to Quality and Standards Innovate and Embrace the Future Visa Sponsorship is not available for this position including H1b or OPT EAD Job description The Senior Associate, Information Security - Forensics is part of a global team and is responsible for incident response of cyber security incidents that are associated with our businesses, clients, and vendors; is technically skilled and ensures incident containment, remediation, and closure. This individual will be expected to work closely with the legal, data privacy, business, and client teams. They should be comfortable with interacting with senior executives, including C-level staff. Incident Commander to lead investigation and response of cyber security incidents. Analyze compromised/potentially compromised systems utilizing forensics tools. Coordinate evidence/data gathering and document security incident reports. Manage, review, and present written and oral reports in a pertinent, concise, and accurate manner for distribution to management. Maintain current knowledge of tools and best practices in advanced persistent threats, tools, techniques, procedures of attackers, forensics, and incident response. Perform complex forensic investigations into system breaches, data leaks, and system weaknesses. Provide technical expertise to staff on security incident monitoring, triage, response, threat & vulnerability management, and security analysis. Provide strategic direction on types of Incident Management activities that will drive efficiencies across company, including automation with AI tools. Job requirements EDR Experience- CrowdStrike and/or SentinelOne with experience investigating and analyzing malware and other malicious activity. Experience with forensics tools such as FTK, EnCase, Autopsy to collect and analyze file system artifacts, process history, application artifacts, memory collection and analysis for physical and cloud systems (Windows, Mac, Linux). 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant. Experience with cloud environments such as: Azure, AWS, GCP - knowing how to collect and analyze logs from Guard Duty/ Defender and CloudTrail, etc. Familiarity with the MITRE ATT&CK or related frameworks. Experience developing and managing incident response programs with focus on efficiency through AI development. Strong communication skills with confidence leading Incident Response calls with different stakeholders; followed by producing detailed incident reports. Proficient in social engineering, phishing, and related fraud schemes. Strong general knowledge of security concepts and expertise in network and web application security issues. Experience with a scripting language such as Python, Bash, PowerShell, or other scripting language in an incident handling environment. Additional Information All your information will be kept confidential according to EEO guidelines. This job description in no way states or implies that these are the only duties to be performed by the employee(s) currently in this position. Employee(s) will be required to follow any other job related instructions and to perform any other job-related duties requested by any person authorized to give instructions or assignments. A review of this position has excluded the marginal functions of the position that are incidental to the performance of fundamental job duties. All duties and responsibilities are essential job functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities. To perform this job successfully, the incumbent(s) will possess the skills, aptitudes, and abilities to perform each duty proficiently. Some requirements may exclude individuals who pose a direct threat or significant risk to the health or safety of themselves or others. The requirements listed in this document are the minimum levels of knowledge, skills, or abilities. This document does not create an employment contract, implied or otherwise, other than an at-will relations. Salary Range: $100-120K/yr

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board