Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116 Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking Required 8 Years Enterprise Security Required 5 Years Azure Networking Required 3 Years WAF/NGFW Required 3 Years Supporting environments with 300+ Network Devices Desired 3 Years Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor Required Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) Required Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles Required Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP Required Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages Required Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. Required Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700), Required
09/28/2026
Full time
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471) This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116 Please send rates and a resume. Corp to Corp or w2 allowed. Enterprise Networking Required 8 Years Enterprise Security Required 5 Years Azure Networking Required 3 Years WAF/NGFW Required 3 Years Supporting environments with 300+ Network Devices Desired 3 Years Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor Required Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) Required Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def Required Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates Required Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles Required Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS Required Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP Required Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages Required Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers. Required Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700), Required
Job Description Job Description ProSync is seeking passionate Information System Security Specialist II to help provide mid level cybersecurity support for Navy information systems, networks, and mission environments. This role assists in implementing, maintaining, and monitoring security controls in accordance with DoD and federal cybersecurity policies. ProSync Technology Group, LLC (ProSync) is an award-winning, SDVOSB Defense Contracting company with a strong military heritage and a record of excellence in supporting the Department of Defense and the Intelligence Community. If you have prior military service or government contracting experience, are proud to serve and support our nation, and want to help support ProSync's mission to "Define and Redefine the State of Possible," please apply today! RESPONSIBILITIES The Information System Security Specialist is responsible for supporting all aspects of a Program Information Assurance (IA) processes tailored to include minimum qualification standards, fundamental awareness and familiarity to demonstrated competency with specific experience in Cyber Security, Engineering, Test & Evaluation, (T&E) and/or Security Control Assessor (SCA) under a Certification & Accreditation (C&A) and/or Assessment & Authorization (A&A) process. The specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior experience with the Defense Information Assurance & Certification Accreditation Process (DIACAP). Familiarity with security policies & guidance documents to assist with the preparation and maintenance of process artifacts, traceability documents purposed for compliance with Authority to Operate (ATO) requirements. The specialist is expected to evaluate security solutions to ensure they meet security requirements for processing up to classified information, and supervise and/or maintain the operational security posture for an information system or program. Support the development, documentation, and maintenance of system security plans, procedures, and authorization artifacts. Assist in implementing security controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). Conduct routine security assessments, vulnerability scans, and configuration checks to identify and report security risks. Support incident response activities, including evidence collection, initial triage, and coordination with senior cybersecurity personnel. Maintain awareness of system configurations, user access requirements, and security posture changes. Assist in preparing documentation for system authorization, continuous monitoring, and audit readiness. Provide user support on security procedures, access requirements, and proper handling of sensitive information. Requirements A minimum of 2 years of practical experience in a Cybersecurity, Engineering, T&E or A&A (formerly C&A) related field. Must have experience working with Information Assurance tools such as DISA Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS) A minimum Top Secret security clearance or higher with the ability to obtain a Top Secret w/ SCI is required to be considered for this position. EDUCATIONAL REQUIREMENTS A High school diploma or HS equivalency certificate is acceptable. CERTIFICATION REQUIREMENTS May be required to hold an Interim Security Control Assessor qualification. Benefits Join PROSYNC and enjoy our great benefits! Compensation We offer sign on bonuses! We also offer bonuses that are awarded quarterly to our employees and our compensation rates are highly competitive. Health & Retirement We offer a comprehensive Health Benefits package and 401K retirement plan so you can take care of yourself and your family, now and in the future. Other health-related benefits include an employee assistance program for those difficult times or when you need to take care of your mental health. Education Individual growth is a priority at ProSync. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification they need to propel them to the next level. Work/Life Balance A healthy work/life balance is essential for building and executing your work effectively at ProSync, but it's also necessary to allow you the room to pursue everything else you want to develop in your personal life. We offer generous Paid Time Off and 11 paid holidays a year. ProSync also provides flexible work options that work with your schedule and lifestyle.
09/28/2026
Full time
Job Description Job Description ProSync is seeking passionate Information System Security Specialist II to help provide mid level cybersecurity support for Navy information systems, networks, and mission environments. This role assists in implementing, maintaining, and monitoring security controls in accordance with DoD and federal cybersecurity policies. ProSync Technology Group, LLC (ProSync) is an award-winning, SDVOSB Defense Contracting company with a strong military heritage and a record of excellence in supporting the Department of Defense and the Intelligence Community. If you have prior military service or government contracting experience, are proud to serve and support our nation, and want to help support ProSync's mission to "Define and Redefine the State of Possible," please apply today! RESPONSIBILITIES The Information System Security Specialist is responsible for supporting all aspects of a Program Information Assurance (IA) processes tailored to include minimum qualification standards, fundamental awareness and familiarity to demonstrated competency with specific experience in Cyber Security, Engineering, Test & Evaluation, (T&E) and/or Security Control Assessor (SCA) under a Certification & Accreditation (C&A) and/or Assessment & Authorization (A&A) process. The specialist should demonstrate a working knowledge of the Risk Management Framework (RMF) process and/or include prior experience with the Defense Information Assurance & Certification Accreditation Process (DIACAP). Familiarity with security policies & guidance documents to assist with the preparation and maintenance of process artifacts, traceability documents purposed for compliance with Authority to Operate (ATO) requirements. The specialist is expected to evaluate security solutions to ensure they meet security requirements for processing up to classified information, and supervise and/or maintain the operational security posture for an information system or program. Support the development, documentation, and maintenance of system security plans, procedures, and authorization artifacts. Assist in implementing security controls and ensuring compliance with applicable cybersecurity frameworks (e.g., RMF, NIST, DoD directives). Conduct routine security assessments, vulnerability scans, and configuration checks to identify and report security risks. Support incident response activities, including evidence collection, initial triage, and coordination with senior cybersecurity personnel. Maintain awareness of system configurations, user access requirements, and security posture changes. Assist in preparing documentation for system authorization, continuous monitoring, and audit readiness. Provide user support on security procedures, access requirements, and proper handling of sensitive information. Requirements A minimum of 2 years of practical experience in a Cybersecurity, Engineering, T&E or A&A (formerly C&A) related field. Must have experience working with Information Assurance tools such as DISA Enterprise Mission Assurance Support Service (eMASS), Assured Compliance Assessment Solution (ACAS) A minimum Top Secret security clearance or higher with the ability to obtain a Top Secret w/ SCI is required to be considered for this position. EDUCATIONAL REQUIREMENTS A High school diploma or HS equivalency certificate is acceptable. CERTIFICATION REQUIREMENTS May be required to hold an Interim Security Control Assessor qualification. Benefits Join PROSYNC and enjoy our great benefits! Compensation We offer sign on bonuses! We also offer bonuses that are awarded quarterly to our employees and our compensation rates are highly competitive. Health & Retirement We offer a comprehensive Health Benefits package and 401K retirement plan so you can take care of yourself and your family, now and in the future. Other health-related benefits include an employee assistance program for those difficult times or when you need to take care of your mental health. Education Individual growth is a priority at ProSync. Employees are encouraged to take advantage of our company-sponsored continuing education program so they can get their degree or that next certification they need to propel them to the next level. Work/Life Balance A healthy work/life balance is essential for building and executing your work effectively at ProSync, but it's also necessary to allow you the room to pursue everything else you want to develop in your personal life. We offer generous Paid Time Off and 11 paid holidays a year. ProSync also provides flexible work options that work with your schedule and lifestyle.
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471). This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Requirements: Enterprise Networking - Required 8 Years. Enterprise Security - Required 5 Years. Azure Networking - Required 3 Years. WAF/NGFW - Required 3 Years. Supporting environments with 300+ Network Devices - Desired 3 Years. Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor - Required. Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) - Required. Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def - Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates - Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles - Required. Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS - Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP - Required. Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages - Required. Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers - Required. Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700) - Required.
09/28/2026
Full time
Job Description Job Description In Person Only interview. This job is Hybrid Mechanicsville, VA 23116 Our direct client has an opening for an Senior Network Security Engineer (807471). This position is up to 12 months, with the option of extension, 9120 Lockwood Boulevard Mechanicsville, VA 23116. Please send rates and a resume. Corp to Corp or w2 allowed. Requirements: Enterprise Networking - Required 8 Years. Enterprise Security - Required 5 Years. Azure Networking - Required 3 Years. WAF/NGFW - Required 3 Years. Supporting environments with 300+ Network Devices - Desired 3 Years. Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor - Required. Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel) - Required. Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, Def - Required. Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates - Required. Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles - Required. Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS - Required. Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP - Required. Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages - Required. Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers - Required. Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700) - Required.
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
09/28/2026
Full time
Job Description Job Description CoreWeave is The Essential Cloud for AI . Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, CoreWeave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, CoreWeave became a publicly traded company (Nasdaq: CRWV) in March 2025. Learn more at . What You'll Do: CoreWeave's Network Security team ensures network infrastructure is secure, resilient and compliant. Our team partners with engineering, product teams, and partners to build secure network solutions that protect critical infrastructure and continuously improve the security posture to meet the needs of our customers. With our growing reliance on connected technology, the need to keep critical systems secure, reliable, and resilient has never been more important. We are seeking an OT Security Engineer to join our team and play a pivotal role in safeguarding the operational technologies that support our datacenter networks. About the role: This position offers a unique opportunity to work at the crossroads of cyber security, operational technology (OT), engineering, and datacenter operations. As the network security engineer responsible for our operational technology networks, your responsibilities will include identifying and evaluating cybersecurity risks, designing and launching pragmatic security solutions, and embedding security controls directly into the operational systems and technologies supporting our infrastructure. You will work with suppliers and third parties in benchmarking their capabilities against expectations and industry standards. You will also lead efforts in partnering with peer security teams and partners in production engineering as you lead continuous improvement of security posture for operational technology network environments and the devices connected. This role requires both depth in understanding network security, and breadth of knowledge of the unique challenges that face the industry in securing the infrastructure that is the foundation of modern datacenters. You will act as a trusted partner who goes beyond advisory work to roll up your sleeves and deliver. Some things you will work on: Establishing standards for security expectations covering all operational technology networks and devices connected to them. This will include network segmentation, host isolation, network traversal controls, and remote connectivity. Providing solutions to complex security issues, manage multiple tasks, and prioritize effectively in a fast-paced environment. Creating an inventory and risk register that can be used as a baseline in understanding near term and long term objectives. Partnering with production engineering and business development teams evaluating priorities for risk reduction in current deployments, and risk avoidance by evolving standards for future growth. Executing and partnering with other parties in using penetration testing to evaluate effectiveness of existing controls. Coordinating with third parties and internal teams in addressing vulnerabilities via mitigation, isolation or other strategies to protect critical infrastructure in these environments. Researching industry risks and drive change in operational networks to continuously reduce risk Developing and test recovery models and response playbooks to handle compromise scenarios. Presenting technical security information to both technical and non-technical audiences, including external partners. Maintain technical documentation, reports, and security tooling with attention to detail. Who You Are: 5+ Years of experience in network infrastructure security (firewalls, ACLs, architecture, risk management) in a global network environment. Proficiency in at least one programming or scripting language (e.g., Go, Python, C/C++) for automation, code reviews, and tooling. Bachelor's degree in Computer Science or related field. Relevant certifications such as CISSP, CCNP, PCNSE are advantageous. Experience with operational technology networks (factory or industrial systems, building management systems, power, physical security systems, remote access, HVAC, etc.), factory networks or other similar environments. Strong technical knowledge of network firewalls, virtual private networks, network segmentation, and defense in depth. Able to navigate ambiguity, identify root causes, and solve complex security problems. Excellent written and verbal communication skills with strong technical documentation abilities. Capable of working independently while managing multiple priorities in a fast-paced environment. Strong desire to continuously learn and adopt new technologies and security techniques. Preferred: Prior experience with operational technology networks that span global locations Experience with the range of obscure solutions that are often deployed on operational technology networks. Deep understanding of business-wide security best practices and implementation strategies. Experience with network automation, agentic network tooling, and incident response automation. Wondering if you're a good fit? We believe in investing in our people, and value candidates who can bring their own diversified experiences to our teams - even if you aren't a 100% skill or experience match. Here are a few qualities we've found compatible with our team. If some of this describes you, we'd love to talk. You love to solve problems that few others would tackle. You're curious about critical network infrastructure that is the foundation of modern data centers. You're an expert in network security with a passion to explore the more exotic nature of operational technology. Why CoreWeave? At CoreWeave, we work hard, have fun, and move fast! We're in an exciting stage of hyper-growth that you will not want to miss out on. We're not afraid of a little chaos, and we're constantly learning. Our team cares deeply about how we build our product and how we work together, which is represented through our core values: Be Curious at Your Core Act Like an Owner Empower Employees Deliver Best-in-Class Client Experiences Achieve More Together We support and encourage an entrepreneurial outlook and independent thinking. We foster an environment that encourages collaboration and enables the development of innovative solutions to complex problems. As we get set for takeoff, the organization's growth opportunities are constantly expanding. You will be surrounded by some of the best talent in the industry, who will want to learn from you, too. Come join us! The base salary range for this role is $164,000 to $242,000. The starting salary will be determined based on job-related knowledge, skills, experience, and market location. We strive for both market alignment and internal equity when determining compensation. In addition to base salary, our total rewards package includes a discretionary bonus, equity awards, and a comprehensive benefits program (all based on eligibility). What We Offer The range we've posted represents the typical compensation range for this role. To determine actual compensation, we review the market rate for each candidate which can include a variety of factors. These include qualifications, experience, interview performance, and location. In addition to a competitive salary, we offer a variety of benefits to support your needs. The benefits below reflect our US-based offerings for full-time employees; for roles in other locations, benefits vary and are shared during the hiring process. These include: Medical, dental, and vision insurance - 100% paid for by CoreWeave Company-paid Life Insurance Voluntary supplemental life insurance Short and long-term disability insurance Flexible Spending Account Health Savings Account Tuition Reimbursement Ability to Participate in Employee Stock Purchase Program (ESPP) Mental Wellness Benefits through Spring Health Family-Forming support provided by Carrot Paid Parental Leave Flexible, full-service childcare support with Kinside 401(k) with a generous employer match Flexible PTO Catered lunch each day in our office and data center locations A casual work environment A work culture focused on innovative disruption California Applicants California Consumer Privacy Act Equal Opportunity & Accommodations CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace. All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information. As part of this commitment and consistent with the Americans with Disabilities Act (ADA) , CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed, please contact: . . click apply for full job details
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $165,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
09/28/2026
Full time
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $165,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
Job Description Job Description Company and Vision PlanetArt's vision is to be the leading seller of personalized and make-on-demand products worldwide. We provide consumers with unmatched tools and content and an unparalleled end-to-end customer experience that result in high-quality, meaningful finished products and memorable celebrations of live events. The company's brands include the popular FreePrints and FreePrints Photobooks apps and the industry leading SimplytoImpress card and stationery site, as well as Personal Creations, CafePress and ISeeMe! Visit to learn more about our brands. We have more than 500 team members across multiple offices, primarily in Calabasas CA, San Diego CA, Woodridge IL, Minneapolis, MN and Pleasanton, CA. We also have team members in two company-owned offices in China, as well as in Europe. Job Overview PlanetArt is seeking a Principal Staff Engineer-Web Platform to serve as a senior technical leader within our engineering organization and a key partner to the VP of Engineering. This is a highly hands-on role focused on building, operating, and scaling high-traffic ecommerce web platforms in a fast-moving production environment. Reporting directly to the VP of Engineering, this engineer will play a critical role in architecting, developing, troubleshooting, and maintaining our LAMP-based web applications and AWS infrastructure. The ideal candidate is equally comfortable writing production code, diagnosing complex site reliability issues, managing cloud infrastructure, and leading technical problem-solving during high-severity incidents. This role requires strong operational judgment and the ability to independently own production challenges across application, database, infrastructure, and deployment layers. The engineer will collaborate closely with our China-based development organization, serving as a senior US-based technical lead responsible for cross-team coordination, code quality, architectural guidance, and production stability. This is an ideal opportunity for an experienced engineer who thrives in high-scale ecommerce environments and enjoys combining deep application engineering with modern cloud operations and production ownership. PLEASE NOTE: Candidates much be local to or willing to relocate to the Calabasas area as we operate on a hybrid work model (3 days onsite, 2 remote) What You'll Do Key Responsibilities Full-Stack Platform Engineering: Design, develop, and maintain scalable features and services across our LAMP-based ecommerce platform, with a strong focus on reliability, performance, maintainability, and operational excellence. Production Operations & Incident Response : Act as a senior technical escalation point for complex production incidents, troubleshooting issues across application, infrastructure, networking, database, CDN, and deployment layers. Lead root cause analysis and drive long-term stability improvements. AWS Infrastructure Ownership : Manage and optimize AWS infrastructure, including deployment architecture, scaling strategies, observability, security, disaster recovery, and cost efficiency. Partner closely with DevOps and engineering leadership on operational best practices. High-Scale Performance Optimization : Monitor and improve application, database, and infrastructure performance for high-traffic consumer web applications. Identify bottlenecks and implement scalable solutions to improve uptime, latency, and system resilience. Cross-Functional Technical Leadership: Partner with Product, Design, Operations, and Customer Experience teams to translate business requirements into scalable technical solutions and ensure successful project execution. Global Engineering Collaboration : Work closely with the China-based engineering team to coordinate development efforts, conduct code reviews, align on architectural direction, manage releases, and maintain strong engineering communication across time zones. Code Quality & Engineering Standards : Champion high engineering standards through code reviews, testing strategies, documentation, observability, and operational best practices. Drive continuous improvement in system reliability and development processes. Technical Mentorship & Leadership : Provide technical mentorship and architectural guidance across the engineering organization. Influence technical direction through hands-on leadership, strong execution, and collaborative problem-solving. Requirements What You Should Have Skills, Qualifications, and Requirements Senior-Level Full-Stack Engineering Experience: 5+ years of professional experience building and operating large-scale web applications, including substantial hands-on experience with the LAMP stack (Linux, Apache, MySQL, PHP). Strong AWS & Cloud Operations Expertise : Deep hands-on experience with AWS services and production cloud environments, including EC2, RDS, S3, Lambda, CloudWatch, networking, scaling, monitoring, and infrastructure troubleshooting. Ecommerce & High-Traffic Website Experience : Experience supporting high-volume consumer-facing websites or ecommerce platforms, with a strong understanding of scalability, uptime, performance optimization, and operational reliability. Production Troubleshooting Expertise : Demonstrated ability to diagnose and resolve complex production issues under pressure, including database replication issues, performance degradation, infrastructure failures, deployment issues, and site outages. Distributed Systems & Database Knowledge : Strong understanding of distributed web architectures, database performance tuning, replication strategies, caching, queuing systems, and fault-tolerant system design. Global Team Collaboration: Experience working effectively with offshore or globally distributed engineering teams, with strong communication, coordination, and cross-cultural collaboration skills. Chinese Language Skills: Ability to communicate in Mandarin (spoken or written) is highly desirable to facilitate collaboration with our China-based engineering team. Engineering Best Practices: Strong understanding of software engineering fundamentals including Git workflows, CI/CD pipelines, automated testing, observability, code review practices, and secure development standards. Ownership Mentality: Self-directed engineer with strong operational instincts, excellent judgment, and the ability to independently own critical technical initiatives from design through production support. Technical Leadership: Demonstrated ability to influence engineering direction, mentor developers, and drive technical excellence through hands-on leadership rather than direct people management. What You Can Expect Working Conditions Work is performed in an office environment with low to moderate noise levels. Position requires regular, continuous use of computer. Position requires regular sitting and standing. Position requires regular interaction with team members through the following methods: in-person, phone, Zoom, Slack, or email. May require occasional travel. This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday). Benefits The compensation range for this position is $130,000-$220,000 annual salary. PlanetArt offers a comprehensive benefits package, including: Health, Dental, and Vision Insurance Life Insurance Pet Insurance Mental Health Insurance 401(k) with matching Comprehensive Time Off Program including Paid Time Off, Sick Days, Paid Holidays, and Floating Holidays Employee Product Discounts
09/28/2026
Full time
Job Description Job Description Company and Vision PlanetArt's vision is to be the leading seller of personalized and make-on-demand products worldwide. We provide consumers with unmatched tools and content and an unparalleled end-to-end customer experience that result in high-quality, meaningful finished products and memorable celebrations of live events. The company's brands include the popular FreePrints and FreePrints Photobooks apps and the industry leading SimplytoImpress card and stationery site, as well as Personal Creations, CafePress and ISeeMe! Visit to learn more about our brands. We have more than 500 team members across multiple offices, primarily in Calabasas CA, San Diego CA, Woodridge IL, Minneapolis, MN and Pleasanton, CA. We also have team members in two company-owned offices in China, as well as in Europe. Job Overview PlanetArt is seeking a Principal Staff Engineer-Web Platform to serve as a senior technical leader within our engineering organization and a key partner to the VP of Engineering. This is a highly hands-on role focused on building, operating, and scaling high-traffic ecommerce web platforms in a fast-moving production environment. Reporting directly to the VP of Engineering, this engineer will play a critical role in architecting, developing, troubleshooting, and maintaining our LAMP-based web applications and AWS infrastructure. The ideal candidate is equally comfortable writing production code, diagnosing complex site reliability issues, managing cloud infrastructure, and leading technical problem-solving during high-severity incidents. This role requires strong operational judgment and the ability to independently own production challenges across application, database, infrastructure, and deployment layers. The engineer will collaborate closely with our China-based development organization, serving as a senior US-based technical lead responsible for cross-team coordination, code quality, architectural guidance, and production stability. This is an ideal opportunity for an experienced engineer who thrives in high-scale ecommerce environments and enjoys combining deep application engineering with modern cloud operations and production ownership. PLEASE NOTE: Candidates much be local to or willing to relocate to the Calabasas area as we operate on a hybrid work model (3 days onsite, 2 remote) What You'll Do Key Responsibilities Full-Stack Platform Engineering: Design, develop, and maintain scalable features and services across our LAMP-based ecommerce platform, with a strong focus on reliability, performance, maintainability, and operational excellence. Production Operations & Incident Response : Act as a senior technical escalation point for complex production incidents, troubleshooting issues across application, infrastructure, networking, database, CDN, and deployment layers. Lead root cause analysis and drive long-term stability improvements. AWS Infrastructure Ownership : Manage and optimize AWS infrastructure, including deployment architecture, scaling strategies, observability, security, disaster recovery, and cost efficiency. Partner closely with DevOps and engineering leadership on operational best practices. High-Scale Performance Optimization : Monitor and improve application, database, and infrastructure performance for high-traffic consumer web applications. Identify bottlenecks and implement scalable solutions to improve uptime, latency, and system resilience. Cross-Functional Technical Leadership: Partner with Product, Design, Operations, and Customer Experience teams to translate business requirements into scalable technical solutions and ensure successful project execution. Global Engineering Collaboration : Work closely with the China-based engineering team to coordinate development efforts, conduct code reviews, align on architectural direction, manage releases, and maintain strong engineering communication across time zones. Code Quality & Engineering Standards : Champion high engineering standards through code reviews, testing strategies, documentation, observability, and operational best practices. Drive continuous improvement in system reliability and development processes. Technical Mentorship & Leadership : Provide technical mentorship and architectural guidance across the engineering organization. Influence technical direction through hands-on leadership, strong execution, and collaborative problem-solving. Requirements What You Should Have Skills, Qualifications, and Requirements Senior-Level Full-Stack Engineering Experience: 5+ years of professional experience building and operating large-scale web applications, including substantial hands-on experience with the LAMP stack (Linux, Apache, MySQL, PHP). Strong AWS & Cloud Operations Expertise : Deep hands-on experience with AWS services and production cloud environments, including EC2, RDS, S3, Lambda, CloudWatch, networking, scaling, monitoring, and infrastructure troubleshooting. Ecommerce & High-Traffic Website Experience : Experience supporting high-volume consumer-facing websites or ecommerce platforms, with a strong understanding of scalability, uptime, performance optimization, and operational reliability. Production Troubleshooting Expertise : Demonstrated ability to diagnose and resolve complex production issues under pressure, including database replication issues, performance degradation, infrastructure failures, deployment issues, and site outages. Distributed Systems & Database Knowledge : Strong understanding of distributed web architectures, database performance tuning, replication strategies, caching, queuing systems, and fault-tolerant system design. Global Team Collaboration: Experience working effectively with offshore or globally distributed engineering teams, with strong communication, coordination, and cross-cultural collaboration skills. Chinese Language Skills: Ability to communicate in Mandarin (spoken or written) is highly desirable to facilitate collaboration with our China-based engineering team. Engineering Best Practices: Strong understanding of software engineering fundamentals including Git workflows, CI/CD pipelines, automated testing, observability, code review practices, and secure development standards. Ownership Mentality: Self-directed engineer with strong operational instincts, excellent judgment, and the ability to independently own critical technical initiatives from design through production support. Technical Leadership: Demonstrated ability to influence engineering direction, mentor developers, and drive technical excellence through hands-on leadership rather than direct people management. What You Can Expect Working Conditions Work is performed in an office environment with low to moderate noise levels. Position requires regular, continuous use of computer. Position requires regular sitting and standing. Position requires regular interaction with team members through the following methods: in-person, phone, Zoom, Slack, or email. May require occasional travel. This is a hybrid position; employees are expected to be in the office three days per week (Monday, Tuesday, and Thursday) with the option of working remotely two days (Wednesday and Friday). Benefits The compensation range for this position is $130,000-$220,000 annual salary. PlanetArt offers a comprehensive benefits package, including: Health, Dental, and Vision Insurance Life Insurance Pet Insurance Mental Health Insurance 401(k) with matching Comprehensive Time Off Program including Paid Time Off, Sick Days, Paid Holidays, and Floating Holidays Employee Product Discounts
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
09/28/2026
Full time
Job Description Job Description Who we are The real world is the next frontier, and at Metropolis, we are creating the artificial intelligence to make it responsive. We are pioneering the Recognition Economy - a future where mundane repetition disappears and being known unlocks access, comfort and belonging everywhere you go. From transforming parking into a seamless drive-in, drive-out experience for millions of Members to expanding our intelligence layer across retail and hospitality, we are building a world that feels instinctive and magical. The future isn't coming; it's here, and we need builders, innovators and problem solvers to help us create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering function within our Corporate IT and Information Security organization. In this senior technical role, you will design, build, and manage a dedicated AWS environment to power our security tooling, automation, and operational infrastructure, while also supporting our expanding Oracle Cloud Infrastructure footprint. You will drive enterprise network security initiatives-including firewalls, segmentation, WAF technologies, and zero-trust architectures-to protect our corporate office networks and remote access environments. Collaborating closely with Corporate IT, Network Engineering, Central Cloud Infrastructure, and platform engineering teams, you will deliver resilient security infrastructure that safeguards our expanding technology ecosystem. What you'll do Design, build, and manage a dedicated AWS environment owned by Corporate IT and Information Security to support security tooling, automation, and operational workloads Support Oracle Cloud Infrastructure environments as part of broader enterprise transformation initiatives Lead enterprise network engineering and network security initiatives across corporate office networks, firewalls, segmentation, and wireless environments Implement and manage VPN, remote access, WAF technologies, and secure connectivity architectures Drive zero-trust initiatives and enhance enterprise network visibility and monitoring Manage identity, access, endpoint, and server security platforms across the enterprise Develop infrastructure-as-code and cloud automation to scale security operations infrastructure Execute vulnerability management programs and establish enterprise infrastructure hardening and operational resiliency Provide detection engineering and incident response support across security platforms Partner closely across Corporate IT, Network Engineering, Central Cloud Infrastructure, Enterprise Systems, and platform engineering teams What we're looking for Demonstrate strong AWS and cloud security experience Exhibit strong networking and network security experience Show experience with enterprise identity systems and access management Display experience with security engineering infrastructure and automation Support hybrid enterprise and cloud-native environments Utilize modern infrastructure and security tooling Maintain familiarity with regulated environments such as PCI and SOC Possess experience with scripting and programming Experience leveraging AI tools to transform static workflows into responsive, high-output processes While not required, these are a plus: Use Python as the preferred language for scripting and programming 4 Days in Office: Metropolis values in-person collaboration to drive innovation, strengthen culture, and enhance the Member experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at least four days a week, fostering organic interactions that spark creativity and connection When you join Metropolis, you'll join a team of world-class product leaders and engineers, building an ecosystem of technologies at the intersection of parking, mobility, and real estate. Our goal is to build an inclusive culture where everyone has a voice and the best idea wins. You will play a key role in building and maintaining this culture as our organization grows. The anticipated base salary for this position is $160,000.00 USD to $215,000.00 USD annually. The actual base salary offered is determined by a number of variables, including, as appropriate, the applicant's qualifications for the position, years of relevant experience, distinctive skills, level of education attained, certifications or other professional licenses held, and the location of residence and/or place of employment. Base salary is one component of Metropolis's total compensation package, which may also include access to or eligibility for healthcare benefits, a 401(k) plan, short-term and long-term disability coverage, basic life insurance, a lucrative stock option plan, bonus plans and more. Metropolis may utilize an automated employment decision tool (AEDT) to assess or evaluate your candidacy for employment or promotion. AEDTs are used to assist in assessing a candidate's application relative to the required job qualifications and responsibilities listed in the job posting. As part of this process, Metropolis retains data relevant to your candidacy, including personal information, for a period that is reasonably necessary for the use of the tool. If you are hired for the position, your data may become part of your employee records. Metropolis Technologies is an equal opportunity employer. We make all hiring decisions based on merit, qualifications, and business needs, without regard to race, color, religion, sex (including gender identity, sexual orientation, or pregnancy), national origin, disability, veteran status, or any other protected characteristic under federal, state, or local law.
Job Description Job Description Company Description About AbbVie AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at . on LinkedIn, Facebook, Instagram, X and YouTube. Job Description We are building a team that develops AI agents to solve hard security problems and you will be tackling the hardest ones. This is a hands-on, senior IC role. You will architect, build, and ship agentic AI systems that operate autonomously within security environments, while also driving the technical direction and standards for how these systems are built, tested, and secured. This is not a management role and not a pure research role. You will write code, ship systems, and get your hands dirty but you will be working on problems where there is no playbook yet. You will define the approach, build the proof of concept, harden it for production, and write the technical guidance others follow. Responsibilities: Architect and build AI agent systems for security operations autonomous detection, investigation, response, threat hunting, vulnerability analysis, and risk assessment Tackle the novel, high-complexity problems: adversarial robustness of agent systems, secure agent-to-agent communication, guardrails for autonomous decision-making in high-stakes security contexts Develop frameworks, tooling, and patterns for building secure and reliable agentic AI systems then use them yourself Conduct original research and experimentation on agentic AI applied to offensive and defensive security, translating findings into working code Build proof-of-concept exploits and adversarial tests against agentic AI systems to identify failure modes and inform defensive design Develop and publish technical guidance and policy for agentic AI security grounded in systems you have built and broken Independently author security position papers on emerging technologies strategic, high-level documents that frame organizational thinking on new threat domains and drive downstream policy and technical guidance Serve as a subject matter expert and key driver of the AI Cybersecurity Maturity program, spanning application security, training, AI controls and infrastructure, AI discovery and inventory, operations and incident response, and policy and procedure development Integrate LLMs, custom models, and security tooling (SIEM, EDR, SOAR, cloud platforms, vulnerability scanners) into agent architectures Evaluate and adopt emerging AI capabilities (new models, frameworks, techniques) and determine their applicability to security problems Set technical direction for agent development practices, including evaluation frameworks, testing methodologies, and deployment patterns Mentor and elevate other engineers on the team through code review, design guidance, and technical leadership Qualifications Required: Bachelor's Degree with 9 years' experience; Master's Degree with 8 years' experience; PhD with 4 years' experience. Respective years of experience in cybersecurity, security engineering, or security research with substantial hands-on technical depth Strong software engineering skills you ship production systems, not just prototypes. Python required; additional languages a plus Deep expertise in at least two of: security operations, application security, threat intelligence, vulnerability research, detection engineering, offensive security, cloud security Demonstrated experience building AI agents and AI/ML-powered security tools or automation that operated at scale Hands-on experience with agentic coding tools (e.g., Claude Code, Cursor, GitHub Copilot, Aider, or similar) as part of your daily development workflow you build with agents, not just build agents Track record of original technical work published research, open-source tooling, conference presentations, or equivalent evidence of independent technical contribution Ability to work at the intersection of security and AI: you understand both the security implications of AI systems and how to apply AI to security problems Experience developing technical standards, frameworks, or guidance that others adopted Strong written and verbal communication you can explain complex technical concepts to both engineers and senior leadership, and you can write strategically about emerging technology risks at a level that shapes organizational direction Preferred: Experience with agent orchestration and autonomous systems (custom frameworks, LangChain, AutoGen, MCP, or similar) Background in adversarial ML, AI red teaming, or AI safety Familiarity with security compliance frameworks (NIST, ISO 27001, SOX) and how they apply to AI systems Published work (Black Hat, DEF CON, OWASP, academic journals, or equivalent venues) Experience in regulated industries (financial services, healthcare, critical infrastructure, government/defense) Contributions to open-source security projects OWASP, MITRE ATT&CK, or similar framework expertise applied in production environments Security clearance eligibility (not required) Additional Information Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees. This job is eligible to participate in our long-term incentive programs. Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law. AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled. US & Puerto Rico only - to learn more, visit -us/equal-employment-opportunity-employer.html US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: -us/reasonable- accommodations.html
09/28/2026
Full time
Job Description Job Description Company Description About AbbVie AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at . on LinkedIn, Facebook, Instagram, X and YouTube. Job Description We are building a team that develops AI agents to solve hard security problems and you will be tackling the hardest ones. This is a hands-on, senior IC role. You will architect, build, and ship agentic AI systems that operate autonomously within security environments, while also driving the technical direction and standards for how these systems are built, tested, and secured. This is not a management role and not a pure research role. You will write code, ship systems, and get your hands dirty but you will be working on problems where there is no playbook yet. You will define the approach, build the proof of concept, harden it for production, and write the technical guidance others follow. Responsibilities: Architect and build AI agent systems for security operations autonomous detection, investigation, response, threat hunting, vulnerability analysis, and risk assessment Tackle the novel, high-complexity problems: adversarial robustness of agent systems, secure agent-to-agent communication, guardrails for autonomous decision-making in high-stakes security contexts Develop frameworks, tooling, and patterns for building secure and reliable agentic AI systems then use them yourself Conduct original research and experimentation on agentic AI applied to offensive and defensive security, translating findings into working code Build proof-of-concept exploits and adversarial tests against agentic AI systems to identify failure modes and inform defensive design Develop and publish technical guidance and policy for agentic AI security grounded in systems you have built and broken Independently author security position papers on emerging technologies strategic, high-level documents that frame organizational thinking on new threat domains and drive downstream policy and technical guidance Serve as a subject matter expert and key driver of the AI Cybersecurity Maturity program, spanning application security, training, AI controls and infrastructure, AI discovery and inventory, operations and incident response, and policy and procedure development Integrate LLMs, custom models, and security tooling (SIEM, EDR, SOAR, cloud platforms, vulnerability scanners) into agent architectures Evaluate and adopt emerging AI capabilities (new models, frameworks, techniques) and determine their applicability to security problems Set technical direction for agent development practices, including evaluation frameworks, testing methodologies, and deployment patterns Mentor and elevate other engineers on the team through code review, design guidance, and technical leadership Qualifications Required: Bachelor's Degree with 9 years' experience; Master's Degree with 8 years' experience; PhD with 4 years' experience. Respective years of experience in cybersecurity, security engineering, or security research with substantial hands-on technical depth Strong software engineering skills you ship production systems, not just prototypes. Python required; additional languages a plus Deep expertise in at least two of: security operations, application security, threat intelligence, vulnerability research, detection engineering, offensive security, cloud security Demonstrated experience building AI agents and AI/ML-powered security tools or automation that operated at scale Hands-on experience with agentic coding tools (e.g., Claude Code, Cursor, GitHub Copilot, Aider, or similar) as part of your daily development workflow you build with agents, not just build agents Track record of original technical work published research, open-source tooling, conference presentations, or equivalent evidence of independent technical contribution Ability to work at the intersection of security and AI: you understand both the security implications of AI systems and how to apply AI to security problems Experience developing technical standards, frameworks, or guidance that others adopted Strong written and verbal communication you can explain complex technical concepts to both engineers and senior leadership, and you can write strategically about emerging technology risks at a level that shapes organizational direction Preferred: Experience with agent orchestration and autonomous systems (custom frameworks, LangChain, AutoGen, MCP, or similar) Background in adversarial ML, AI red teaming, or AI safety Familiarity with security compliance frameworks (NIST, ISO 27001, SOX) and how they apply to AI systems Published work (Black Hat, DEF CON, OWASP, academic journals, or equivalent venues) Experience in regulated industries (financial services, healthcare, critical infrastructure, government/defense) Contributions to open-source security projects OWASP, MITRE ATT&CK, or similar framework expertise applied in production environments Security clearance eligibility (not required) Additional Information Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees. This job is eligible to participate in our long-term incentive programs. Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law. AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled. US & Puerto Rico only - to learn more, visit -us/equal-employment-opportunity-employer.html US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: -us/reasonable- accommodations.html
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
09/28/2026
Full time
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
Job Description Job Description ABOUT FTAI AVIATION LTD. (NASDAQ: FTAI) FTAI owns and maintains commercial jet engines with a focus on the Maintenance, Repair and Exchange (MRE) of CFM56 and V2500 engines. FTAI's propriety portfolio of products, including The Module Factory and a joint venture to distribute engine PMA helps make CFM56 and V2500 engine maintenance simpler, more cost-effective, significantly faster, and more environmentally friendly. Additionally, FTAI owns and leases jet aircraft which often facilitates the acquisition of engines at attractive prices. FTAI invests in aviation assets and aerospace products that generate strong and stable cash flows with the potential for earnings growth and asset appreciation. FTAI operates globally and has offices in New York, Miami, Montreal, California, Singapore, Dubai, United Kingdom and Ireland. JOB OVERVIEW We are seeking a Principal Security Engineer to lead the security program for a public, multi-site organization in a regulated environment. This is a hands-on individual-contributor role that both implements technical controls and drives the policies behind them. Partnering with the MSP, vCISO, IT, and Legal, you will set technical direction and execute it-tuning controls, maturing policy, and aligning the program to recognized frameworks and regulatory requirements Responsibilities: Drive the technical cybersecurity strategy and roadmap; report security posture and material risk to senior leadership Design, configure, and maintain hands-on controls across network, endpoint, identity, and cloud (firewall rules, segmentation, VPNs, IDS/IPS, EDR, MFA) Develop and maintain security policies aligned to NIST CSF, ISO 27001, and CIS and to regulatory requirements, ensuring controls actually enforce them Manage and tune the security stack (SIEM, EDR, email security); build detection rules, alerts, and dashboards Lead incident response end to end and drive risk-based vulnerability and patch management to closure across infrastructure, endpoints, and cloud Own the controls framework and third-party/vendor risk program, coordinating with internal audit/GRC and the legal team Collaborate with MSP and vCISO (managing scope, SLAs, escalation) while keeping core decisions in-house Harden identity infrastructure (AD/Entra ID) and run the security awareness program across sites Qualifications: 7+ years across IT and cybersecurity, including a hands-on technical foundation and 3+ years driving a security program as a senior individual contributor Proven ability to both implement technical controls and author the policies and governance behind them Experience securing a public and/or regulated, multi-site environment (e.g., SOX, FINRA, FAA), including audit and control ownership Command of NIST CSF, ISO 27001, CIS, and SOX/ITGC, with experience owning control evidence through external audits Strong cloud (Azure and/or AWS) and enterprise network security-firewalls, VPNs, segmentation, and IDS/IPS Hands-on with SIEM (e.g., Microsoft Sentinel) and endpoint protection (e.g., SentinelOne), plus scripting (PowerShell and/or Python) and identity hardening (AD/Entra ID)
09/28/2026
Full time
Job Description Job Description ABOUT FTAI AVIATION LTD. (NASDAQ: FTAI) FTAI owns and maintains commercial jet engines with a focus on the Maintenance, Repair and Exchange (MRE) of CFM56 and V2500 engines. FTAI's propriety portfolio of products, including The Module Factory and a joint venture to distribute engine PMA helps make CFM56 and V2500 engine maintenance simpler, more cost-effective, significantly faster, and more environmentally friendly. Additionally, FTAI owns and leases jet aircraft which often facilitates the acquisition of engines at attractive prices. FTAI invests in aviation assets and aerospace products that generate strong and stable cash flows with the potential for earnings growth and asset appreciation. FTAI operates globally and has offices in New York, Miami, Montreal, California, Singapore, Dubai, United Kingdom and Ireland. JOB OVERVIEW We are seeking a Principal Security Engineer to lead the security program for a public, multi-site organization in a regulated environment. This is a hands-on individual-contributor role that both implements technical controls and drives the policies behind them. Partnering with the MSP, vCISO, IT, and Legal, you will set technical direction and execute it-tuning controls, maturing policy, and aligning the program to recognized frameworks and regulatory requirements Responsibilities: Drive the technical cybersecurity strategy and roadmap; report security posture and material risk to senior leadership Design, configure, and maintain hands-on controls across network, endpoint, identity, and cloud (firewall rules, segmentation, VPNs, IDS/IPS, EDR, MFA) Develop and maintain security policies aligned to NIST CSF, ISO 27001, and CIS and to regulatory requirements, ensuring controls actually enforce them Manage and tune the security stack (SIEM, EDR, email security); build detection rules, alerts, and dashboards Lead incident response end to end and drive risk-based vulnerability and patch management to closure across infrastructure, endpoints, and cloud Own the controls framework and third-party/vendor risk program, coordinating with internal audit/GRC and the legal team Collaborate with MSP and vCISO (managing scope, SLAs, escalation) while keeping core decisions in-house Harden identity infrastructure (AD/Entra ID) and run the security awareness program across sites Qualifications: 7+ years across IT and cybersecurity, including a hands-on technical foundation and 3+ years driving a security program as a senior individual contributor Proven ability to both implement technical controls and author the policies and governance behind them Experience securing a public and/or regulated, multi-site environment (e.g., SOX, FINRA, FAA), including audit and control ownership Command of NIST CSF, ISO 27001, CIS, and SOX/ITGC, with experience owning control evidence through external audits Strong cloud (Azure and/or AWS) and enterprise network security-firewalls, VPNs, segmentation, and IDS/IPS Hands-on with SIEM (e.g., Microsoft Sentinel) and endpoint protection (e.g., SentinelOne), plus scripting (PowerShell and/or Python) and identity hardening (AD/Entra ID)
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
09/28/2026
Full time
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
09/28/2026
Full time
Job Description Job Description Benefits: Competitive salary 6-Month Contract-to-Hire (CTH) Experience Level Senior Level (5 or more years of experience) Role Overview The Network Security Engineer serves as a technical Subject Matter Expert (SME) responsible for designing, deploying, administering, and optimizing enterprise network security infrastructure. This role focuses on architecting and managing Palo Alto Networks Next-Generation Firewalls (NGFWs), Cisco Firepower/ASA firewalls, Cisco ISE (Identity Services Engine), VPN infrastructure, and SD-WAN security to protect network perimeters and secure multi-site data flows across a regulated financial institution. Key Responsibilities Firewall Engineering & Perimeter Defense • Design, deploy, and manage Palo Alto Networks Next-Generation Firewalls (NGFWs) using Panorama, configuring NAT, App-ID, User-ID, Threat Prevention, URL Filtering, and WildFire. • Administer and maintain Cisco ASA and Firepower (FTD/FMC) firewalls, managing access control policies, IPS tuning, and platform lifecycle upgrades. • Lead investigations and incident responses for network-layer security alerts, policy violations, and anomalies. Network Access Control & Secure Connectivity • Administer Cisco Identity Services Engine (ISE) for Network Access Control (NAC), 802.1X authentication, RADIUS/TACACS+, device profiling, and guest access. • Manage and maintain VPN infrastructure (Cisco AnyConnect / Secure Access and site-to-site IPSec tunnels), supporting certificate-based authentication and split-tunnel configurations. • Configure and secure Cisco Catalyst SD-WAN environments, enforcing application-aware policies, traffic segmentation, and encrypted transport. • Administer Cisco Umbrella / Secure Access DNS-layer security, category-based controls, and web filtering policies. Architecture, Compliance, & Change Management • Collaborate with Cloud, Infrastructure, and Information Security teams to implement network segmentation, zero-trust controls, and security standards aligned with PCI-DSS, SOX, and NIST frameworks. • Author, review, and execute ITIL-aligned change management requests, presenting to Change Advisory Boards (CAB) and conducting post-implementation reviews. • Maintain comprehensive technical documentation, including firewall rulesets, network security architecture diagrams, runbooks, and standard operating procedures (SOPs). Required Qualifications • 5 or more years of hands-on experience in network security engineering, enterprise firewall administration, and perimeter security (CCNP Security-level expertise). • 3 or more years of hands-on experience designing, deploying, and managing Palo Alto Networks NGFWs and Panorama. • Solid hands-on experience administering Cisco ASA and Firepower (FTD/FMC) firewall environments, access control policies, and platform upgrades. • Strong working knowledge of Cisco ISE for NAC, 802.1X, RADIUS/TACACS+, and device profiling. • Experience configuring and troubleshooting enterprise VPN solutions (Cisco AnyConnect, Secure Access, IPSec site-to-site tunnels). • Solid understanding of core networking protocols, routing, and security concepts (TCP/IP, BGP, EIGRP, ACLs, NAT, SSL/TLS inspection, network micro-segmentation). • Experience working within an ITIL-based change management framework. • Must be legally authorized to work in the United States without current or future visa sponsorship. Preferred Qualifications • Industry certifications such as Palo Alto Networks Certified Network Security Engineer (PCNSE), Cisco Certified Network Professional Security (CCNP Security), or CCIE Security. • Familiarity with financial regulatory frameworks and compliance standards (e.g., FFIEC, PCI-DSS, SOX, NIST CSF). • Experience with Microsoft Azure networking and cloud security (Azure Firewall, NSGs, Virtual WAN, ExpressRoute). • Experience utilizing automation scripts (e.g., Python, Ansible) for firewall configuration and policy management. Core Skills & Attributes • Exceptional analytical, problem-solving, and root-cause diagnostic abilities for complex network security issues. • High accountability and attention to detail when executing production changes and maintaining documentation. • Excellent interpersonal and communication skills to collaborate with cross-functional IT teams, security leaders, and external auditors. • Self-driven approach to continuous learning and staying current with evolving cybersecurity threats. Flexible work from home options available.
Job Description Job Description Company Description About AbbVie AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at . on LinkedIn, Facebook, Instagram, X and YouTube. Job Description As a discipline expert and technology leader, the Principal AI Engineer II will define and advance the strategy, architecture, and engineering practices required to develop, deploy, and scale artificial intelligence solutions across AbbVie. This role will investigate, identify, and implement state-of-the-art technology platforms that drive productivity and efficiency gains in own function and throughout multiple business areas. Technical leader acting at a group, department, and cross-functional levels. Responsible for managing the Data, Solutions, Business, and/or technology environments and tying them to the Enterprise Architecture and other architectures designs. Responsibilities: Define and advance AI engineering strategy, architecture, standards, and roadmaps aligned with AbbVie's business and technology objectives. Architect and build secure, scalable, reusable AI platforms, services, developer tools, and components that support enterprise adoption. Lead production-grade AI solutions from ideation and prototyping through development, testing, validation, deployment, monitoring, continuous improvement, and retirement. Integrate AI platforms with AWS services and enterprise data, software, security, identity, and infrastructure environments. Establish practices for evaluation, testing, versioning, release management, observability, performance monitoring, incident response, and operational support. Apply risk-based approaches to compliance, GxP, data integrity, privacy, cybersecurity, documentation, traceability, human oversight, and responsible AI. Partner with Quality, Regulatory, Legal, Privacy, Information Security, scientific, technical, and business stakeholders to deliver fit-for-purpose solutions. Serve as a trusted technical advisor, facilitate alignment, influence decisions without direct authority, and communicate complex tradeoffs and recommendations to technical and non-technical audiences. Evaluate emerging technologies, lead innovation and proof-of-concept efforts, and guide promising solutions into sustainable production capabilities. Mentor engineers, advance engineering maturity, promote knowledge sharing, and represent AbbVie in relevant technical communities and partner engagements. Qualifications Required Bachelor's degree with 9 years' experience, Master's degree with 8 years' experience, or PhD with 4 years' in Computer Science, Artificial Intelligence, Machine Learning, Data Science, Engineering, or a related technical discipline. Demonstrated experience designing, deploying, and operating production-scale AI and machine learning systems. Strong experience in AI/platform engineering, including scalable platforms, reusable components, and production-grade AI solutions. Demonstrated experience designing, building, deploying, and supporting solutions using AWS systems and services. Strong software and cloud engineering practices, including secure design, automated testing, CI/CD, containerization, monitoring, and operational support. Experience working in a regulated environment, preferably pharmaceutical, biotechnology, healthcare, medical device, or life sciences. Experience supporting the full solution lifecycle, including feasibility, design, development, testing, validation, deployment, and ongoing operations. Strong understanding of risk management, validation, change control, data integrity, cybersecurity, privacy, documentation, and quality requirements. Demonstrated ability to manage complex stakeholders, influence technical and business decisions, and collaborate across organizational boundaries. Excellent communication skills with senior leaders, technical teams, scientific experts, business partners, and external collaborators. Demonstrated innovation and mentoring experience, including advancing engineering practices and delivering measurable impact. Preferred Experience with enterprise AI governance, responsible AI, model validation, human oversight, and AI lifecycle management. Experience with MLOps and production engineering, including model evaluation, APIs, microservices, CI/CD, observability, and infrastructure as code. Open-source contributions or technical thought leadership through publications, patents, or industry working groups. Experience leading cross-functional product development from feasibility through validation and production implementation. Enterprise AI or platform experience, including AWS architecture, governance, security, and integration with enterprise environments. Additional Information Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees. This job is eligible to participate in our long-term incentive programs. Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law. AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled. US & Puerto Rico only - to learn more, visit -us/equal-employment-opportunity-employer.html US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: -us/reasonable- accommodations.html
09/28/2026
Full time
Job Description Job Description Company Description About AbbVie AbbVie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas including immunology, oncology and neuroscience - and products and services in our Allergan Aesthetics portfolio. For more information about AbbVie, please visit us at . on LinkedIn, Facebook, Instagram, X and YouTube. Job Description As a discipline expert and technology leader, the Principal AI Engineer II will define and advance the strategy, architecture, and engineering practices required to develop, deploy, and scale artificial intelligence solutions across AbbVie. This role will investigate, identify, and implement state-of-the-art technology platforms that drive productivity and efficiency gains in own function and throughout multiple business areas. Technical leader acting at a group, department, and cross-functional levels. Responsible for managing the Data, Solutions, Business, and/or technology environments and tying them to the Enterprise Architecture and other architectures designs. Responsibilities: Define and advance AI engineering strategy, architecture, standards, and roadmaps aligned with AbbVie's business and technology objectives. Architect and build secure, scalable, reusable AI platforms, services, developer tools, and components that support enterprise adoption. Lead production-grade AI solutions from ideation and prototyping through development, testing, validation, deployment, monitoring, continuous improvement, and retirement. Integrate AI platforms with AWS services and enterprise data, software, security, identity, and infrastructure environments. Establish practices for evaluation, testing, versioning, release management, observability, performance monitoring, incident response, and operational support. Apply risk-based approaches to compliance, GxP, data integrity, privacy, cybersecurity, documentation, traceability, human oversight, and responsible AI. Partner with Quality, Regulatory, Legal, Privacy, Information Security, scientific, technical, and business stakeholders to deliver fit-for-purpose solutions. Serve as a trusted technical advisor, facilitate alignment, influence decisions without direct authority, and communicate complex tradeoffs and recommendations to technical and non-technical audiences. Evaluate emerging technologies, lead innovation and proof-of-concept efforts, and guide promising solutions into sustainable production capabilities. Mentor engineers, advance engineering maturity, promote knowledge sharing, and represent AbbVie in relevant technical communities and partner engagements. Qualifications Required Bachelor's degree with 9 years' experience, Master's degree with 8 years' experience, or PhD with 4 years' in Computer Science, Artificial Intelligence, Machine Learning, Data Science, Engineering, or a related technical discipline. Demonstrated experience designing, deploying, and operating production-scale AI and machine learning systems. Strong experience in AI/platform engineering, including scalable platforms, reusable components, and production-grade AI solutions. Demonstrated experience designing, building, deploying, and supporting solutions using AWS systems and services. Strong software and cloud engineering practices, including secure design, automated testing, CI/CD, containerization, monitoring, and operational support. Experience working in a regulated environment, preferably pharmaceutical, biotechnology, healthcare, medical device, or life sciences. Experience supporting the full solution lifecycle, including feasibility, design, development, testing, validation, deployment, and ongoing operations. Strong understanding of risk management, validation, change control, data integrity, cybersecurity, privacy, documentation, and quality requirements. Demonstrated ability to manage complex stakeholders, influence technical and business decisions, and collaborate across organizational boundaries. Excellent communication skills with senior leaders, technical teams, scientific experts, business partners, and external collaborators. Demonstrated innovation and mentoring experience, including advancing engineering practices and delivering measurable impact. Preferred Experience with enterprise AI governance, responsible AI, model validation, human oversight, and AI lifecycle management. Experience with MLOps and production engineering, including model evaluation, APIs, microservices, CI/CD, observability, and infrastructure as code. Open-source contributions or technical thought leadership through publications, patents, or industry working groups. Experience leading cross-functional product development from feasibility through validation and production implementation. Enterprise AI or platform experience, including AWS architecture, governance, security, and integration with enterprise environments. Additional Information Applicable only to applicants applying to a position in any location with pay disclosure requirements under state or local law: The compensation range described below is the range of possible base pay compensation that the Company believes in good faith it will pay for this role at the time of this posting based on the job grade for this position. Individual compensation paid within this range will depend on many factors including geographic location, and we may ultimately pay more or less than the posted range. This range may be modified in the future. We offer a comprehensive package of benefits including paid time off (vacation, holidays, sick), medical/dental/vision insurance and 401(k) to eligible employees. This job is eligible to participate in our long-term incentive programs. Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, incentive, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole and absolute discretion unless and until paid and may be modified at the Company's sole and absolute discretion, consistent with applicable law. AbbVie is an equal opportunity employer and is committed to operating with integrity, driving innovation, transforming lives and serving our community. Equal Opportunity Employer/Veterans/Disabled. US & Puerto Rico only - to learn more, visit -us/equal-employment-opportunity-employer.html US & Puerto Rico applicants seeking a reasonable accommodation, click here to learn more: -us/reasonable- accommodations.html
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
09/28/2026
Full time
Job Description Job Description As a Senior Network Security Engineer at Penumbra, you will play a critical role in determining the company's long term goals. You will be a key member of the Information Security and Compliance team. This is a highly technical, hands-on role. The Sr. Network Engineer will collaborate with Security, IT, Manufacturing, and Engineering teams and be responsible for engineering solutions and supporting operational activities across a hybrid cloud environment. The role responsibilities include ensuring compliance with legal and regulatory requirements and maintaining company security policies, standards, and industry's best practices. What You'll Work On • Ensure the network security of on-premises and cloud-based systems, networks, infrastructure, and services. • Enforce secure design standards and specifications for services, systems, and products. • Responsible for network security solutions, control designs, and enforcement across our environment. • Design and perform security assessments, configuration verification, configuration reporting, and other activities to validate control effectiveness. • Engage and share results of security audits with the Information Security and business partners to promote changes vital to improve risk posture. • Collaborate with cross-functional teams to develop and implement security measures supporting on-prem and cloud systems. • Develop roadmaps, standards, and documentation for technical solutions and existing configurations. Serve as the subject matter expert across the network security environment. • Respond to and lead, as appropriate, incident response activities for security incidents. • Collaborate with IT and line of business teams to integrate security into new and existing systems, processes, and initiatives. • Manage and configure security services, e.g., firewalls, intrusion detection/prevention systems, threat prevention technologies, VPNs, and other network security appliances. • Create and maintain documentation for security procedures, designs, and protocols, conduct security training and awareness for staff as appropriate to the role. • Stay current with emerging security threats and technologies in the security landscape. Ensure compliance with regulatory requirements and industry standards in the Company's environment. What You Contribute • A Bachelor's degree in computer science or related field with 10+ years of related experience, or equivalent combination of education and experience. • Master's degree preferred in Computer Science or Engineering with an emphasis in Computer Security or a related field • Highly analytical and results and process-oriented mindset strongly desired • 10+ years of hands-on design, enforcement and testing/validation of offensive security, defensive security, systems, and solutions engineering in a large enterprise • 5+ years of hands-on security experience with cloud platforms, i.e., Azure, AWS or Google Cloud Platform services, automation, or IaC • 5+ years of hands-on experience network security experience and expert-level knowledge on security technologies such as Palo Alto Firewalls, Cisco ISE, IPS, CASB, VPN management, SAML/OIDC NAC 802.1X, SIEM, SOAR, Radius/TACACS+, directory services • Proficient with network topologies, routing protocols, i.e., OSPF, BGP, ISIS, SDN, and tunneling technologies. • Proficient with diagramming and threat models, ability and competency to design and implement controls at scale based on risks • Proficient in conducting solutions architecture, security design reviews, passionate about security and privacy research, technologies, and methods. • Possess an understanding of past and emerging security exploits, threat actor motivations, and trends • Understanding security and compliance frameworks, security engineering, software delivery, and SDLC in a hybrid environment • Outstanding ethical standards and integrity. • Excellent communicator with strong oral, written, and interpersonal communication skills • High degree of accuracy and attention to detail • Proficiency with Microsoft Word, Excel, Visio, and PowerPoint • Excellent organizational skills with the ability to prioritize assignments while handling various projects simultaneously. Working Conditions General office environment. Willingness and ability to work on site. May have business travel up to 10%. Requires some lifting and moving of up to 10 pounds Must be able to move between buildings and floors. Must be able to remain stationary and use a computer or other standard office equipment, such as a printer or copy machine, for an extensive period of time each day. Must be able to read, prepare emails, and produce documents and spreadsheets. Must be able to move within the office and access file cabinets or supplies, as needed. Must be able to communicate and exchange accurate information with employees at all levels on a daily basis. Annual Base Salary Range: $146,000 - $220,000/ year We offer a competitive compensation package plus a benefits and equity program, when applicable. Individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. What We Offer • A collaborative teamwork environment where learning is constant, and performance is rewarded. • The opportunity to be part of the team that is revolutionizing the treatment of some of the world's most devastating diseases. • A generous benefits package for eligible employees that includes medical, dental, vision, life, AD&D, short and long-term disability insurance, 401(k) with employer match, paid parental leave, eleven paid company holidays per year, a minimum of fifteen days of accrued vacation per year, which increases with tenure, and paid sick time in compliance with applicable law(s). Penumbra, Inc., headquartered in Alameda, California, is a global healthcare company focused on innovative therapies. Penumbra designs, develops, manufactures, and markets novel products and has a broad portfolio that addresses challenging medical conditions in markets with significant unmet need. Penumbra sells its products to hospitals and healthcare providers primarily through its direct sales organization in the United States, most of Europe, Canada, and Australia, and through distributors in select international markets. The Penumbra logo is a trademark of Penumbra, Inc. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, age, disability, military or veteran status, or any other characteristic protected by federal, state, or local laws. If you reside in the State of California, please also refer to Penumbra's Privacy Notice for California Residents. For additional information on Penumbra's commitment to being an equal opportunity employer, please see Penumbra's AAP Policy Statement.
Machine Learning Engineer 5 (Senior Manager, IC) In Risk Tech, we provide the foundation for Capital One to thrive in an uncertain world. Our engaged, empowered, and intelligent people produce outstanding products, working toward the common goal of transforming risk management with technology. We build data-driven tools that use machine learning to prevent risks & automatically detect issues before they impact our customers, our business, or our communities. In this role at Risk Tech, you will work with our GRC team and partners across the company to build and deploy proprietary solutions for Risk management that are powered by state-of-the-art AI technology. Our products, enhanced with the transformative power of AI, are central to our business and deliver tremendous customer value. Do you love building and pioneering in the AI and technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and iterative delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Machine Learning Engineers who are passionate about leveraging cutting-edge open source frameworks, advanced algorithms, and emerging technologies to join our team. As a Machine Learning Engineer, you'll have the opportunity to be on the forefront of driving major AI transformations and scaling production models across Capital One. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Build and scale massive multi-tenant platforms that enable running large footprint ML model training and/or serving at scale Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree or higher in Computer Science, Machine Learning or a related quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Engineering) At least 6 years of experience programming with Python, Java, Golang, or C++ At least 6 years of Machine Learning experience using industry standard frameworks PyTorch or Tensorflow and libraries (Pandas, NumPy, Scikit-learn) At least 6 years of experience using and operating large scale distributed systems (Spark, Ray) to prepare AI/ML data At least 4 years of experience deploying and operating Machine Learning solutions in production and operating production services in the cloud (AWS, GCP, Azure) and using Kubernetes to manage large scale containerized ML software systems Preferred Qualifications: Master's or doctoral degree in computer science, electrical engineering, mathematics, or related field 5+ years of experience optimizing ML algorithms, configurations, and infrastructure 5+ years of experience following software development best practices including source control, testing, code reviews, CI/CD, etc. 5+ years of experience building resilient software solutions with pre-production testing, advanced deployment techniques (one-box, blue/green, gradual dial-up), monitoring, alarms, and preparing incident response plans 5+ years of experience working with Machine Learning techniques (Supervised, semi-supervised, and unsupervised, reinforcement learning, etc.) model types (Regression, Classification, Clustering, etc.), model Architectures (RNNs, CNNs, LSTMs, Transformers), training concepts (loss function, hyperparameters, regularization), and how to evaluate model accuracy and diagnose and address common issues (underfitting, overfitting) 5+ years of experience designing, implementing, and scaling production-ready data pipelines for training and evaluating ML models ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents Ability to communicate complex technical and machine learning concepts clearly to a variety of audiences Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $229,900 - $262,400 for Machine Learning Engineer 5 Richmond, VA: $209,000 - $238,500 for Machine Learning Engineer 5 Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
09/28/2026
Full time
Machine Learning Engineer 5 (Senior Manager, IC) In Risk Tech, we provide the foundation for Capital One to thrive in an uncertain world. Our engaged, empowered, and intelligent people produce outstanding products, working toward the common goal of transforming risk management with technology. We build data-driven tools that use machine learning to prevent risks & automatically detect issues before they impact our customers, our business, or our communities. In this role at Risk Tech, you will work with our GRC team and partners across the company to build and deploy proprietary solutions for Risk management that are powered by state-of-the-art AI technology. Our products, enhanced with the transformative power of AI, are central to our business and deliver tremendous customer value. Do you love building and pioneering in the AI and technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and iterative delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Machine Learning Engineers who are passionate about leveraging cutting-edge open source frameworks, advanced algorithms, and emerging technologies to join our team. As a Machine Learning Engineer, you'll have the opportunity to be on the forefront of driving major AI transformations and scaling production models across Capital One. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Build and scale massive multi-tenant platforms that enable running large footprint ML model training and/or serving at scale Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree or higher in Computer Science, Machine Learning or a related quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Engineering) At least 6 years of experience programming with Python, Java, Golang, or C++ At least 6 years of Machine Learning experience using industry standard frameworks PyTorch or Tensorflow and libraries (Pandas, NumPy, Scikit-learn) At least 6 years of experience using and operating large scale distributed systems (Spark, Ray) to prepare AI/ML data At least 4 years of experience deploying and operating Machine Learning solutions in production and operating production services in the cloud (AWS, GCP, Azure) and using Kubernetes to manage large scale containerized ML software systems Preferred Qualifications: Master's or doctoral degree in computer science, electrical engineering, mathematics, or related field 5+ years of experience optimizing ML algorithms, configurations, and infrastructure 5+ years of experience following software development best practices including source control, testing, code reviews, CI/CD, etc. 5+ years of experience building resilient software solutions with pre-production testing, advanced deployment techniques (one-box, blue/green, gradual dial-up), monitoring, alarms, and preparing incident response plans 5+ years of experience working with Machine Learning techniques (Supervised, semi-supervised, and unsupervised, reinforcement learning, etc.) model types (Regression, Classification, Clustering, etc.), model Architectures (RNNs, CNNs, LSTMs, Transformers), training concepts (loss function, hyperparameters, regularization), and how to evaluate model accuracy and diagnose and address common issues (underfitting, overfitting) 5+ years of experience designing, implementing, and scaling production-ready data pipelines for training and evaluating ML models ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents Ability to communicate complex technical and machine learning concepts clearly to a variety of audiences Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $229,900 - $262,400 for Machine Learning Engineer 5 Richmond, VA: $209,000 - $238,500 for Machine Learning Engineer 5 Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Machine Learning Engineer 5 (Senior Manager, IC) In Risk Tech, we provide the foundation for Capital One to thrive in an uncertain world. Our engaged, empowered, and intelligent people produce outstanding products, working toward the common goal of transforming risk management with technology. We build data-driven tools that use machine learning to prevent risks & automatically detect issues before they impact our customers, our business, or our communities. In this role at Risk Tech, you will work with our GRC team and partners across the company to build and deploy proprietary solutions for Risk management that are powered by state-of-the-art AI technology. Our products, enhanced with the transformative power of AI, are central to our business and deliver tremendous customer value. Do you love building and pioneering in the AI and technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and iterative delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Machine Learning Engineers who are passionate about leveraging cutting-edge open source frameworks, advanced algorithms, and emerging technologies to join our team. As a Machine Learning Engineer, you'll have the opportunity to be on the forefront of driving major AI transformations and scaling production models across Capital One. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Build and scale massive multi-tenant platforms that enable running large footprint ML model training and/or serving at scale Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree or higher in Computer Science, Machine Learning or a related quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Engineering) At least 6 years of experience programming with Python, Java, Golang, or C++ At least 6 years of Machine Learning experience using industry standard frameworks PyTorch or Tensorflow and libraries (Pandas, NumPy, Scikit-learn) At least 6 years of experience using and operating large scale distributed systems (Spark, Ray) to prepare AI/ML data At least 4 years of experience deploying and operating Machine Learning solutions in production and operating production services in the cloud (AWS, GCP, Azure) and using Kubernetes to manage large scale containerized ML software systems Preferred Qualifications: Master's or doctoral degree in computer science, electrical engineering, mathematics, or related field 5+ years of experience optimizing ML algorithms, configurations, and infrastructure 5+ years of experience following software development best practices including source control, testing, code reviews, CI/CD, etc. 5+ years of experience building resilient software solutions with pre-production testing, advanced deployment techniques (one-box, blue/green, gradual dial-up), monitoring, alarms, and preparing incident response plans 5+ years of experience working with Machine Learning techniques (Supervised, semi-supervised, and unsupervised, reinforcement learning, etc.) model types (Regression, Classification, Clustering, etc.), model Architectures (RNNs, CNNs, LSTMs, Transformers), training concepts (loss function, hyperparameters, regularization), and how to evaluate model accuracy and diagnose and address common issues (underfitting, overfitting) 5+ years of experience designing, implementing, and scaling production-ready data pipelines for training and evaluating ML models ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents Ability to communicate complex technical and machine learning concepts clearly to a variety of audiences Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $229,900 - $262,400 for Machine Learning Engineer 5 Richmond, VA: $209,000 - $238,500 for Machine Learning Engineer 5 Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
09/28/2026
Full time
Machine Learning Engineer 5 (Senior Manager, IC) In Risk Tech, we provide the foundation for Capital One to thrive in an uncertain world. Our engaged, empowered, and intelligent people produce outstanding products, working toward the common goal of transforming risk management with technology. We build data-driven tools that use machine learning to prevent risks & automatically detect issues before they impact our customers, our business, or our communities. In this role at Risk Tech, you will work with our GRC team and partners across the company to build and deploy proprietary solutions for Risk management that are powered by state-of-the-art AI technology. Our products, enhanced with the transformative power of AI, are central to our business and deliver tremendous customer value. Do you love building and pioneering in the AI and technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and iterative delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Machine Learning Engineers who are passionate about leveraging cutting-edge open source frameworks, advanced algorithms, and emerging technologies to join our team. As a Machine Learning Engineer, you'll have the opportunity to be on the forefront of driving major AI transformations and scaling production models across Capital One. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Build and scale massive multi-tenant platforms that enable running large footprint ML model training and/or serving at scale Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree or higher in Computer Science, Machine Learning or a related quantitative field (Statistics, Economics, Operations Research, Analytics, Mathematics, Engineering) At least 6 years of experience programming with Python, Java, Golang, or C++ At least 6 years of Machine Learning experience using industry standard frameworks PyTorch or Tensorflow and libraries (Pandas, NumPy, Scikit-learn) At least 6 years of experience using and operating large scale distributed systems (Spark, Ray) to prepare AI/ML data At least 4 years of experience deploying and operating Machine Learning solutions in production and operating production services in the cloud (AWS, GCP, Azure) and using Kubernetes to manage large scale containerized ML software systems Preferred Qualifications: Master's or doctoral degree in computer science, electrical engineering, mathematics, or related field 5+ years of experience optimizing ML algorithms, configurations, and infrastructure 5+ years of experience following software development best practices including source control, testing, code reviews, CI/CD, etc. 5+ years of experience building resilient software solutions with pre-production testing, advanced deployment techniques (one-box, blue/green, gradual dial-up), monitoring, alarms, and preparing incident response plans 5+ years of experience working with Machine Learning techniques (Supervised, semi-supervised, and unsupervised, reinforcement learning, etc.) model types (Regression, Classification, Clustering, etc.), model Architectures (RNNs, CNNs, LSTMs, Transformers), training concepts (loss function, hyperparameters, regularization), and how to evaluate model accuracy and diagnose and address common issues (underfitting, overfitting) 5+ years of experience designing, implementing, and scaling production-ready data pipelines for training and evaluating ML models ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents Ability to communicate complex technical and machine learning concepts clearly to a variety of audiences Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $229,900 - $262,400 for Machine Learning Engineer 5 Richmond, VA: $209,000 - $238,500 for Machine Learning Engineer 5 Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Job Description Job Description This position must meet Export Control compliance requirements, therefore a "US Person" as defined by 22 C.F.R. 120.15 is required. "US Person" includes US Citizen, lawful permanent resident, refugee, or asylee. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Canyon AeroConnect stands as one of the world's leading suppliers of avionic-standard aircraft communications, navigation and audio/intercom systems. Canyon's products have been widely adopted and proven in-service across a wide range of civilian, paramilitary and military fixed-wing and rotorcraft applications. Over the years, we've become known as the benchmark in aircraft tactical communication and audio equipment for Air Ambulance, Law Enforcement, SAR, EMS, Electronic News Gathering, Military and Marine applications. Products include digital and analog radio/audio management systems, Tac/Com, VHF/UHF radio systems, intercoms, data interface accessories, and aural warning. We are seeking dynamic thinkers who could be integral team members for our high-tech avionics' products. Role purpose (position scope): The Information Security Specialist (Information Systems Security Officer) helps build and operate the internal security program and technology operations. This hands-on role works across security operations, identity and access management, endpoint and network defense, vendor risk, compliance, and end-user enablement. The position works closely with IT, engineering, and business teams to keep the company secure without slowing it down and is intended for an individual who wants to grow into a senior internal security role over time. Key Responsibilities: Support day-to-day security operations, including SIEM and EDR alert triage, log review, and incident-response investigations. Help administer identity and access management systems, including SSO, MFA, directory services, onboarding, transfers, offboarding, periodic access reviews, and cleanup of stale accounts and entitlements. Maintain and improve endpoint security, including EDR health, patch management, configuration baselines, and disk encryption. Assist with firewall rule reviews, VPN administration, network segmentation, and monitoring for misconfigurations. Support vulnerability scanning, prioritization, remediation coordination, and metric tracking. Support compliance activities such as CMMC and NIST by collecting evidence, maintaining policies, completing customer security questionnaires, and preparing for applicable audits. Support vendor risk management by reviewing third-party security documentation and tracking risk acceptances. Develop and deliver security awareness content, including phishing simulations, onboarding training, and internal guidance. Serve as a point of contact for security questions, suspicious emails, lost devices, and access requests. Document security processes, runbooks, and System Security Plan (SSP) so the program can scale as the company grows. Participate in the on-call rotation. Required Qualifications: At least one year of experience in information security, IT operations, or a closely related field Solid fundamentals in networking, operating systems, and authentication protocols. Familiarity with compliance frameworks, especially CMMC and applicable European requirements such as Cyber Essentials. Ability to script in Python, PowerShell, or Bash for automation and ad hoc tasks. Strong written and verbal communication skills, including the ability to explain security concepts to non-technical audiences. Experience supporting and managing highly regulated and secured network systems. Self-directed and comfortable providing Tier 2 helpdesk support as well as working across teams in a fast-moving environment. Willingness to be part of the on-call rotation and respond to cyber incidents during evening or weekends. Ability to obtain industry certifications such as CCNA, CompTIA Security+, or Network+ within the next 12 months. Preferred Qualifications: Three or more years of experience in information security, AI, or a closely related field, with hands-on exposure to multiple security domains. Working knowledge of SIEM, EDR, vulnerability scanners, identity providers such as Okta or Entra ID, and cloud platforms such as AWS, Azure, or GCP. Experience supporting or leading audits. Exposure to cloud security posture management. Familiarity with offensive security concepts and tooling highly regulated and secured network systems. Industry certification such as CISSP, CISM, CCIE, CCNP Security, CISA, CRISC, or similar. Compliance Considerations: The role may support applicable information-security and regulatory requirements identified for the business, including ITAR, CMMC, NIS2, Cyber Essentials and Cyber Essentials Plus, CMS, DCPP, and ISO/IEC 27001. Work Environment: This is an on-site position at the designated company location. Direct Reports No direct reports. The position may provide technical direction, peer review, or mentoring consistent with the assigned level. Physical Demands Tasks involve light physical effort in sedentary to light work and may involve lifting, carrying, pushing, or pulling objects or materials weighing 5-10 lb. Tasks may involve extended periods at a keyboard or workstation. Work Environment Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the job duties described above, the employee mainly works in an office, lab, or factory setting that is relatively quiet and has temperature-control systems. This job description is not intended to be all inclusive of every job function, duty and responsibility. Duties may increase, decrease and/or change as deemed necessary to support the department operations.
09/28/2026
Full time
Job Description Job Description This position must meet Export Control compliance requirements, therefore a "US Person" as defined by 22 C.F.R. 120.15 is required. "US Person" includes US Citizen, lawful permanent resident, refugee, or asylee. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Canyon AeroConnect stands as one of the world's leading suppliers of avionic-standard aircraft communications, navigation and audio/intercom systems. Canyon's products have been widely adopted and proven in-service across a wide range of civilian, paramilitary and military fixed-wing and rotorcraft applications. Over the years, we've become known as the benchmark in aircraft tactical communication and audio equipment for Air Ambulance, Law Enforcement, SAR, EMS, Electronic News Gathering, Military and Marine applications. Products include digital and analog radio/audio management systems, Tac/Com, VHF/UHF radio systems, intercoms, data interface accessories, and aural warning. We are seeking dynamic thinkers who could be integral team members for our high-tech avionics' products. Role purpose (position scope): The Information Security Specialist (Information Systems Security Officer) helps build and operate the internal security program and technology operations. This hands-on role works across security operations, identity and access management, endpoint and network defense, vendor risk, compliance, and end-user enablement. The position works closely with IT, engineering, and business teams to keep the company secure without slowing it down and is intended for an individual who wants to grow into a senior internal security role over time. Key Responsibilities: Support day-to-day security operations, including SIEM and EDR alert triage, log review, and incident-response investigations. Help administer identity and access management systems, including SSO, MFA, directory services, onboarding, transfers, offboarding, periodic access reviews, and cleanup of stale accounts and entitlements. Maintain and improve endpoint security, including EDR health, patch management, configuration baselines, and disk encryption. Assist with firewall rule reviews, VPN administration, network segmentation, and monitoring for misconfigurations. Support vulnerability scanning, prioritization, remediation coordination, and metric tracking. Support compliance activities such as CMMC and NIST by collecting evidence, maintaining policies, completing customer security questionnaires, and preparing for applicable audits. Support vendor risk management by reviewing third-party security documentation and tracking risk acceptances. Develop and deliver security awareness content, including phishing simulations, onboarding training, and internal guidance. Serve as a point of contact for security questions, suspicious emails, lost devices, and access requests. Document security processes, runbooks, and System Security Plan (SSP) so the program can scale as the company grows. Participate in the on-call rotation. Required Qualifications: At least one year of experience in information security, IT operations, or a closely related field Solid fundamentals in networking, operating systems, and authentication protocols. Familiarity with compliance frameworks, especially CMMC and applicable European requirements such as Cyber Essentials. Ability to script in Python, PowerShell, or Bash for automation and ad hoc tasks. Strong written and verbal communication skills, including the ability to explain security concepts to non-technical audiences. Experience supporting and managing highly regulated and secured network systems. Self-directed and comfortable providing Tier 2 helpdesk support as well as working across teams in a fast-moving environment. Willingness to be part of the on-call rotation and respond to cyber incidents during evening or weekends. Ability to obtain industry certifications such as CCNA, CompTIA Security+, or Network+ within the next 12 months. Preferred Qualifications: Three or more years of experience in information security, AI, or a closely related field, with hands-on exposure to multiple security domains. Working knowledge of SIEM, EDR, vulnerability scanners, identity providers such as Okta or Entra ID, and cloud platforms such as AWS, Azure, or GCP. Experience supporting or leading audits. Exposure to cloud security posture management. Familiarity with offensive security concepts and tooling highly regulated and secured network systems. Industry certification such as CISSP, CISM, CCIE, CCNP Security, CISA, CRISC, or similar. Compliance Considerations: The role may support applicable information-security and regulatory requirements identified for the business, including ITAR, CMMC, NIS2, Cyber Essentials and Cyber Essentials Plus, CMS, DCPP, and ISO/IEC 27001. Work Environment: This is an on-site position at the designated company location. Direct Reports No direct reports. The position may provide technical direction, peer review, or mentoring consistent with the assigned level. Physical Demands Tasks involve light physical effort in sedentary to light work and may involve lifting, carrying, pushing, or pulling objects or materials weighing 5-10 lb. Tasks may involve extended periods at a keyboard or workstation. Work Environment Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the job duties described above, the employee mainly works in an office, lab, or factory setting that is relatively quiet and has temperature-control systems. This job description is not intended to be all inclusive of every job function, duty and responsibility. Duties may increase, decrease and/or change as deemed necessary to support the department operations.
Job Description Job Description Description: OCH Technologies is seeking an NCO Technical Lead responsible for leading the day-to-day operational cybersecurity and threat intelligence functions supporting the FAA's National Cybersecurity Operations mission. The lead will run the operational side: monitor threat intelligence feeds, coordinate incident response, analyze emerging threats against NAS infrastructure, and provide technical guidance to the broader cybersecurity team. This position supports a proposal effort and is contingent upon award, customer approval, and successful onboarding requirements. Location Hybrid - Air Traffic Control System Command Center (ATCSCC) Washington, DC OR Leesburg, VA This position has the potential to travel up to 20%. Core Responsibilities & Duties Provide day-to-day technical oversight, coordination, and guidance to contractor personnel performing operational cybersecurity and threat intelligence functions. Lead all activities supporting the National Cybersecurity Operations (NCO) mission including threat intelligence collection and analysis, threat hunting, and incident response coordination. Monitor and analyze cyber threat intelligence relevant to FAA and NAS systems. Produce actionable intelligence products that inform assessment priorities and defensive posture decisions. Coordinate incident response activities when potential security events are identified. Ensure response actions follow established procedures and are documented. Attend all Program Management Reviews with the Program Manager and report on NCO operational support activities, threat intelligence findings, deliverables, and technical issues. Maintain awareness of emerging cyber threats targeting critical infrastructure, aviation systems, and government networks. Brief FAA leadership on threat trends and recommended defensive actions. Collaborate with the Security Assessment Lead and Penetration Testing Lead to ensure assessment and testing priorities reflect the current threat landscape. Develop and maintain standard operating procedures for NCO functions including escalation criteria, reporting templates, and coordination protocols. Manage and oversee contractor staff performing NCO functions. Ensure personnel maintain required qualifications and training. Responsibilities may evolve over time to support team and organizational goals but will remain consistent with the overall scope of the role. Requirements: Minimum Qualifications Education Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution Experience At least fifteen (15)+ years of cybersecurity experience with at least 5 years of management and supervisory responsibility over operational cybersecurity, threat intelligence teams, or SOC/CIRT functions. At least 2 years of relevant experience must be recent (performed within the last 3 years). Demonstrated experience leading incident response and threat intelligence operations in a federal or critical infrastructure environment. Strong understanding of cyber threat intelligence frameworks (MITRE ATT&CK, Diamond Model, Cyber Kill Chain) and experience producing actionable intelligence products. Experience with SIEM platforms, threat intelligence platforms, and endpoint detection and response (EDR) tools. Knowledge of network defense monitoring, log analysis, and anomaly detection in complex, multi-segment network environments. Security Clearance Requirement Candidate must have the ability to obtain and maintain a Public Trust Active Secret clearance preferred Certifications Security certification such as CISSP, CISM, or CASP required GCIH (GIAC Certified Incident Handler) or GCTI (GIAC Cyber Threat Intelligence) strongly preferred GCFA, GNFA, or GCIA preferred for forensics/network analysis depth CND, CNDA, GDAT, GDSA, GCED, GCFA are directly relevant Preferred Qualifications Prior experience supporting FAA, DoD, or other critical infrastructure cybersecurity operations. Experience with aviation-specific cyber threats or operational technology (OT/ICS) threat analysis. Familiarity with FAA Security Operations Center (SOC) operations. Experience coordinating with federal threat intelligence sharing organizations (US-CERT, CISA, sector ISACs). Modern threat intelligence platforms (MISP, OpenCTI) for structured threat data management and sharing. SOAR platforms (Cortex XSOAR, Splunk SOAR, Tines) for automated incident response workflows and playbook execution. EDR/XDR tools (CrowdStrike Falcon, SentinelOne, Carbon Black) for endpoint-level detection and response in operational environments. AI/ML-based anomaly detection and threat hunting tools for identifying novel attack patterns across complex, multi-segment network environments. Attack surface management platforms for continuous external exposure monitoring of NAS-connected assets. Other Required Skills and Abilities Understanding of federal cybersecurity policy (FISMA, NIST CSF, CDM program) and how operational cybersecurity functions support broader agency security objectives. Strong written and verbal communication skills. Ability to brief senior leadership on threat landscape and operational status. About Us : At OCH, we are more than just a government contracting firm; we are innovators and leaders in providing cutting-edge IT services and cybersecurity solutions. Driven by a set of fundamental values, we excel in creating secure, efficient, and forward-thinking solutions that empower the government agencies we work with. Our commitment to maintaining the highest standards of integrity, adapting swiftly to new challenges, and focusing on the people we serve ensures that we consistently exceed expectations and lead the industry in innovation and reliability. What Defines Us: Integrity - We act with unwavering honesty, ensuring every decision is rooted ethically. Adaptable - We swiftly adapt to changes, seizing opportunities to innovate and lead. People-Focused - We prioritize relationships, championing growth and mutual success. Accountable - We own our outcomes, striving for excellence through continuous improvement. Collaborative - We cultivate teamwork, harnessing diverse talents to forge groundbreaking solutions. Why Join Us? Step into a role at OCH where your contributions make a tangible impact. Join a team that values creativity and initiative, offering a platform to transform the landscape of government IT services. Here, your work is not just a career-it's a mission. Embrace the opportunity to grow, innovate, and excel alongside industry leaders who are as passionate about technology as they are about making a difference. Plus, we offer a comprehensive benefits package designed to support your wellbeing and work-life balance, including: Paid time off and Holidays Medical, Dental, and Vision Insurance Paid Parental Leave Short-term disability, long-term disability, and life insurance - Employer Paid! 401(k) Additional Voluntary Life Insurance Tuition Reimbursement & More! E-Verify Participation: OCH Technologies, LLC is a participant of E-Verify to verify the identity and employment eligibility of newly hired employees. Veteran's Preference and Accessibility Statement : At OCH Technologies, we deeply respect and appreciate the unique skills and experiences that veterans bring to our team. As a federal contractor, we encourage qualified veterans to apply and provide preference where permitted by law. Your service and dedication are valued here. We are committed to creating a workplace that is open, welcoming, and accessible to everyone. In accordance with the Americans with Disabilities Act (ADA) and Section 503 of the Rehabilitation Act, we provide reasonable accommodations throughout the hiring process to ensure individuals with disabilities can apply without barriers. If you need assistance or an accommodation, please contact us at . OCH Technologies, LLC is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, disability, gender identity, or any other protected characteristic as outlined by federal, state, or local laws.
09/26/2026
Full time
Job Description Job Description Description: OCH Technologies is seeking an NCO Technical Lead responsible for leading the day-to-day operational cybersecurity and threat intelligence functions supporting the FAA's National Cybersecurity Operations mission. The lead will run the operational side: monitor threat intelligence feeds, coordinate incident response, analyze emerging threats against NAS infrastructure, and provide technical guidance to the broader cybersecurity team. This position supports a proposal effort and is contingent upon award, customer approval, and successful onboarding requirements. Location Hybrid - Air Traffic Control System Command Center (ATCSCC) Washington, DC OR Leesburg, VA This position has the potential to travel up to 20%. Core Responsibilities & Duties Provide day-to-day technical oversight, coordination, and guidance to contractor personnel performing operational cybersecurity and threat intelligence functions. Lead all activities supporting the National Cybersecurity Operations (NCO) mission including threat intelligence collection and analysis, threat hunting, and incident response coordination. Monitor and analyze cyber threat intelligence relevant to FAA and NAS systems. Produce actionable intelligence products that inform assessment priorities and defensive posture decisions. Coordinate incident response activities when potential security events are identified. Ensure response actions follow established procedures and are documented. Attend all Program Management Reviews with the Program Manager and report on NCO operational support activities, threat intelligence findings, deliverables, and technical issues. Maintain awareness of emerging cyber threats targeting critical infrastructure, aviation systems, and government networks. Brief FAA leadership on threat trends and recommended defensive actions. Collaborate with the Security Assessment Lead and Penetration Testing Lead to ensure assessment and testing priorities reflect the current threat landscape. Develop and maintain standard operating procedures for NCO functions including escalation criteria, reporting templates, and coordination protocols. Manage and oversee contractor staff performing NCO functions. Ensure personnel maintain required qualifications and training. Responsibilities may evolve over time to support team and organizational goals but will remain consistent with the overall scope of the role. Requirements: Minimum Qualifications Education Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, Mathematics, or Physics from an accredited institution Experience At least fifteen (15)+ years of cybersecurity experience with at least 5 years of management and supervisory responsibility over operational cybersecurity, threat intelligence teams, or SOC/CIRT functions. At least 2 years of relevant experience must be recent (performed within the last 3 years). Demonstrated experience leading incident response and threat intelligence operations in a federal or critical infrastructure environment. Strong understanding of cyber threat intelligence frameworks (MITRE ATT&CK, Diamond Model, Cyber Kill Chain) and experience producing actionable intelligence products. Experience with SIEM platforms, threat intelligence platforms, and endpoint detection and response (EDR) tools. Knowledge of network defense monitoring, log analysis, and anomaly detection in complex, multi-segment network environments. Security Clearance Requirement Candidate must have the ability to obtain and maintain a Public Trust Active Secret clearance preferred Certifications Security certification such as CISSP, CISM, or CASP required GCIH (GIAC Certified Incident Handler) or GCTI (GIAC Cyber Threat Intelligence) strongly preferred GCFA, GNFA, or GCIA preferred for forensics/network analysis depth CND, CNDA, GDAT, GDSA, GCED, GCFA are directly relevant Preferred Qualifications Prior experience supporting FAA, DoD, or other critical infrastructure cybersecurity operations. Experience with aviation-specific cyber threats or operational technology (OT/ICS) threat analysis. Familiarity with FAA Security Operations Center (SOC) operations. Experience coordinating with federal threat intelligence sharing organizations (US-CERT, CISA, sector ISACs). Modern threat intelligence platforms (MISP, OpenCTI) for structured threat data management and sharing. SOAR platforms (Cortex XSOAR, Splunk SOAR, Tines) for automated incident response workflows and playbook execution. EDR/XDR tools (CrowdStrike Falcon, SentinelOne, Carbon Black) for endpoint-level detection and response in operational environments. AI/ML-based anomaly detection and threat hunting tools for identifying novel attack patterns across complex, multi-segment network environments. Attack surface management platforms for continuous external exposure monitoring of NAS-connected assets. Other Required Skills and Abilities Understanding of federal cybersecurity policy (FISMA, NIST CSF, CDM program) and how operational cybersecurity functions support broader agency security objectives. Strong written and verbal communication skills. Ability to brief senior leadership on threat landscape and operational status. About Us : At OCH, we are more than just a government contracting firm; we are innovators and leaders in providing cutting-edge IT services and cybersecurity solutions. Driven by a set of fundamental values, we excel in creating secure, efficient, and forward-thinking solutions that empower the government agencies we work with. Our commitment to maintaining the highest standards of integrity, adapting swiftly to new challenges, and focusing on the people we serve ensures that we consistently exceed expectations and lead the industry in innovation and reliability. What Defines Us: Integrity - We act with unwavering honesty, ensuring every decision is rooted ethically. Adaptable - We swiftly adapt to changes, seizing opportunities to innovate and lead. People-Focused - We prioritize relationships, championing growth and mutual success. Accountable - We own our outcomes, striving for excellence through continuous improvement. Collaborative - We cultivate teamwork, harnessing diverse talents to forge groundbreaking solutions. Why Join Us? Step into a role at OCH where your contributions make a tangible impact. Join a team that values creativity and initiative, offering a platform to transform the landscape of government IT services. Here, your work is not just a career-it's a mission. Embrace the opportunity to grow, innovate, and excel alongside industry leaders who are as passionate about technology as they are about making a difference. Plus, we offer a comprehensive benefits package designed to support your wellbeing and work-life balance, including: Paid time off and Holidays Medical, Dental, and Vision Insurance Paid Parental Leave Short-term disability, long-term disability, and life insurance - Employer Paid! 401(k) Additional Voluntary Life Insurance Tuition Reimbursement & More! E-Verify Participation: OCH Technologies, LLC is a participant of E-Verify to verify the identity and employment eligibility of newly hired employees. Veteran's Preference and Accessibility Statement : At OCH Technologies, we deeply respect and appreciate the unique skills and experiences that veterans bring to our team. As a federal contractor, we encourage qualified veterans to apply and provide preference where permitted by law. Your service and dedication are valued here. We are committed to creating a workplace that is open, welcoming, and accessible to everyone. In accordance with the Americans with Disabilities Act (ADA) and Section 503 of the Rehabilitation Act, we provide reasonable accommodations throughout the hiring process to ensure individuals with disabilities can apply without barriers. If you need assistance or an accommodation, please contact us at . OCH Technologies, LLC is proud to be an equal opportunity employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, disability, gender identity, or any other protected characteristic as outlined by federal, state, or local laws.
Job Description Job Description Information Systems Security Manager / Specialist Location: Arlington, VA Must have an active Top Secret Clearance Node provides HIRT remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis capabilities. Node is seeking an Information Systems Security Specialist to support this critical customer mission. Responsibilities: -Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology systems -Assisting technical/management leadership on major tasks or technology assignments -Establishing goals and plans that meet project objectives -Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met -Participating in client negotiations and interfacing with senior management -Supporting decision making and domain knowledge that may have a critical impact on overall project implementation -Providing support to plan, coordinate, and implement a cybersecurity lab's information security -Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems -Assisting the efforts of security staff to design, develop, engineer and implement solutions to security requirements -Implementing and development of the DHS IT security standards -Gathering and organizing technical information about the lab's mission goals and needs, existing security products, and ongoing programs -Performing risk analyses which also includes risk assessment -Planning and leading major technology assignments -Evaluating performance results and recommends major changes affecting short-term project growth and success -Functioning as a cyber technical expert across multiple project assignments -Working closely with ISSM and CISO to respond to Data Calls and satisfy requirements of ATOs Requirements Required Skills: - U.S. Citizenship - Must have an active TS/SCI clearance - Must be able to obtain DHS Suitability - 5+ years of directly relevant experience in information security management - Hands on experience with Linux operating systems or Amazon Web Services - Experience supporting the NIST Risk Management Framework (RMF) process and contributing to a full ATO effort from initiation through authorization, including development of security documentation, control implementation statements, supporting assessment (audit) activities, and performing full POA&M management - Beginning to end Knowledge of RMF and Assessment and Authorization (A&A) documentation to include SSP, Contingency, Incident & Configuration Mgmt planning and execution - Experience working on multiple complex assignments which are broad in nature, requiring originality and innovation in determining how to accomplish tasks - Ability to apply a comprehensive knowledge across key tasks and high impact assignments - Knowledge of Computer Network Defense (CND) policies, procedures & regulations - Knowledge of defense-in-depth principles and network security architecture - Knowledge of ATO requirements and strong experience with POAMs. - Knowledge and experience with full range of Microsoft Office products (Word, Excel, Powerpoint, and Visio) - Knowledge of boundary protection and network segmentation - Knowledge of authentication and access management techniques - Experience with implementing and assessing security controls for hardware, software, and network deployments - Must be able to work collaboratively with internal and external stakeholders across physical locations Desired Skills: - Experience with Risk Management Framework software (CSAM, Xacta, Archer, RegScale) - Experience with host and network scanning software (Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp) - Experience with Endpoint Protection tools like CrowdStrike or CarbonBlack - Working knowledge of SIEM tools like Splunk, SOAR, or ELK - Familiarity with role-based account processing operations - Familiarity with zero trust architectures - Familiarity with scripting languages (python, AWS CLI, Lambda, bash, powershell) Required Education: BS Information Management, Cybersecurity, Computer Science or related degree, or High School Diploma and 7+ years of information security management experience. Desired Certifications: - DoD 8140.01 IAT Level III, CISSP, AWS, Cisco, Microsoft Benefits Medical Dental Vision Basic Life Health Saving Account 401K Matching Three weeks of PTO/Sick 11 Paid Holidays Pre-Approved Online Training
09/26/2026
Full time
Job Description Job Description Information Systems Security Manager / Specialist Location: Arlington, VA Must have an active Top Secret Clearance Node provides HIRT remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis capabilities. Node is seeking an Information Systems Security Specialist to support this critical customer mission. Responsibilities: -Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology systems -Assisting technical/management leadership on major tasks or technology assignments -Establishing goals and plans that meet project objectives -Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met -Participating in client negotiations and interfacing with senior management -Supporting decision making and domain knowledge that may have a critical impact on overall project implementation -Providing support to plan, coordinate, and implement a cybersecurity lab's information security -Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems -Assisting the efforts of security staff to design, develop, engineer and implement solutions to security requirements -Implementing and development of the DHS IT security standards -Gathering and organizing technical information about the lab's mission goals and needs, existing security products, and ongoing programs -Performing risk analyses which also includes risk assessment -Planning and leading major technology assignments -Evaluating performance results and recommends major changes affecting short-term project growth and success -Functioning as a cyber technical expert across multiple project assignments -Working closely with ISSM and CISO to respond to Data Calls and satisfy requirements of ATOs Requirements Required Skills: - U.S. Citizenship - Must have an active TS/SCI clearance - Must be able to obtain DHS Suitability - 5+ years of directly relevant experience in information security management - Hands on experience with Linux operating systems or Amazon Web Services - Experience supporting the NIST Risk Management Framework (RMF) process and contributing to a full ATO effort from initiation through authorization, including development of security documentation, control implementation statements, supporting assessment (audit) activities, and performing full POA&M management - Beginning to end Knowledge of RMF and Assessment and Authorization (A&A) documentation to include SSP, Contingency, Incident & Configuration Mgmt planning and execution - Experience working on multiple complex assignments which are broad in nature, requiring originality and innovation in determining how to accomplish tasks - Ability to apply a comprehensive knowledge across key tasks and high impact assignments - Knowledge of Computer Network Defense (CND) policies, procedures & regulations - Knowledge of defense-in-depth principles and network security architecture - Knowledge of ATO requirements and strong experience with POAMs. - Knowledge and experience with full range of Microsoft Office products (Word, Excel, Powerpoint, and Visio) - Knowledge of boundary protection and network segmentation - Knowledge of authentication and access management techniques - Experience with implementing and assessing security controls for hardware, software, and network deployments - Must be able to work collaboratively with internal and external stakeholders across physical locations Desired Skills: - Experience with Risk Management Framework software (CSAM, Xacta, Archer, RegScale) - Experience with host and network scanning software (Nessus, Security Center, Tenable Vulnerability Management, nmap, Wiz, burp) - Experience with Endpoint Protection tools like CrowdStrike or CarbonBlack - Working knowledge of SIEM tools like Splunk, SOAR, or ELK - Familiarity with role-based account processing operations - Familiarity with zero trust architectures - Familiarity with scripting languages (python, AWS CLI, Lambda, bash, powershell) Required Education: BS Information Management, Cybersecurity, Computer Science or related degree, or High School Diploma and 7+ years of information security management experience. Desired Certifications: - DoD 8140.01 IAT Level III, CISSP, AWS, Cisco, Microsoft Benefits Medical Dental Vision Basic Life Health Saving Account 401K Matching Three weeks of PTO/Sick 11 Paid Holidays Pre-Approved Online Training
Job Description Job Description Pay: $50.64 - $83.55 hourly, depending on experience Benefits: Medical, Dental, Vision, Paid Time Off, Paid Holidays, Employee Assistance Program, and other company-sponsored benefits Security Clearance: Ability to obtain and maintain a government security clearance if required Are you an experienced cybersecurity professional who thrives on protecting mission-critical systems, managing risk, and ensuring compliance in complex environments? PEMCCO is seeking an Senior Information Security Specialist to lead security, compliance, risk management, and authorization activities supporting government information systems and networks. This role is ideal for a cybersecurity leader who enjoys guiding security initiatives, managing Risk Management Framework (RMF) efforts, assessing risk, and helping organizations maintain strong and compliant security postures. This opportunity is a strong fit for candidates with experience in information assurance, cybersecurity, information security, RMF, Assessment & Authorization (A&A), compliance management, vulnerability management, continuous monitoring, or system security engineering. About PEMCCO PEMCCO supports complex technical and operational programs by providing skilled professionals who help customers achieve mission success. We offer opportunities to work on impactful projects, collaborate with experienced teams, and contribute to innovative solutions that support critical government operations. Job Overview As a Senior Information Security Specialist, you will serve as a senior cybersecurity professional responsible for supporting the security and compliance of mission-critical information systems. You will work closely with program leadership, engineers, system administrators, developers, and government stakeholders to ensure cybersecurity requirements are implemented and maintained throughout the system lifecycle. This position offers the opportunity to lead cybersecurity initiatives, influence risk management decisions, support authorization activities, and play a critical role in protecting systems that support important government missions. What You'll Do Lead information system security activities throughout the system lifecycle Manage and support Risk Management Framework (RMF) and Assessment & Authorization (A&A) processes Develop, review, and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action & Milestones (POA&Ms), and related cybersecurity documentation Conduct security assessments, compliance reviews, vulnerability analyses, and risk assessments Evaluate implemented security controls and recommend corrective actions and improvements Identify, document, track, and support remediation of security vulnerabilities and compliance deficiencies Support continuous monitoring activities and maintain awareness of system security posture Coordinate with system owners, engineers, developers, administrators, and stakeholders to ensure security requirements are integrated throughout the system lifecycle Advise leadership on cybersecurity risks, compliance requirements, and security strategies Support incident response activities, security investigations, and remediation efforts Ensure compliance with cybersecurity policies, regulations, standards, and contractual requirements Support cybersecurity audits, inspections, and authorization reviews Prepare security reports, briefings, risk assessments, and recommendations for leadership and customers Provide technical guidance and mentorship to cybersecurity personnel What You Bring Required Qualifications Bachelor's degree in Cybersecurity, Information Assurance, Information Systems, Information Technology, Computer Science, Engineering, or a related field Ten (10) years of experience in information assurance, information security, cybersecurity, system security, RMF, compliance, or a related field Advanced knowledge of information assurance and cybersecurity principles Advanced knowledge of Risk Management Framework (RMF) processes and security authorization requirements Knowledge of NIST, DoD, and federal cybersecurity policies, standards, and regulations Knowledge of security controls, vulnerability management, risk assessment, and compliance methodologies Ability to identify, assess, and mitigate cybersecurity risks and vulnerabilities Ability to interpret and apply security policies, standards, and procedures Strong analytical, organizational, and problem-solving skills Ability to evaluate security control effectiveness and recommend improvements Strong written and verbal communication skills Ability to communicate effectively with both technical and non-technical audiences Ability to prepare and review security documentation, assessments, and reports Ability to lead cybersecurity efforts and coordinate activities among multiple stakeholders Ability to obtain and maintain a government security clearance if required Must meet applicable DoD 8140 workforce qualification requirements if required by contract Preferred Experience Master's degree in Cybersecurity, Information Assurance, Information Systems, Information Technology, Computer Science, Engineering, or a related discipline Experience supporting Department of Defense or Federal Government programs Experience leading RMF and Assessment & Authorization activities Experience developing and maintaining cybersecurity documentation and authorization packages Experience supporting continuous monitoring and vulnerability management programs Experience conducting cybersecurity assessments, inspections, audits, and compliance reviews Experience mentoring cybersecurity and information assurance professionals Why Join PEMCCO? Support critical government and customer missions through strong cybersecurity leadership Play a key role in protecting information systems, networks, and sensitive data Lead compliance, authorization, and risk management initiatives that impact mission success Collaborate with experienced cybersecurity, engineering, and technology professionals Expand your expertise across multiple cybersecurity disciplines Mentor and support the development of cybersecurity talent Build a rewarding career in a collaborative and mission-focused environment Work Environment Professional office and technical work environments Work may be performed at company facilities, customer locations, or designated project sites as needed Regular use of computers, cybersecurity tools, and communication systems Frequent collaboration with engineers, administrators, program leaders, customers, and stakeholders Benefits Medical Insurance Dental Insurance Vision Insurance Paid Time Off Paid Holidays Employee Assistance Program Additional company-sponsored benefits Apply Today If you're an experienced cybersecurity professional looking to lead security initiatives, support mission-critical systems, and help organizations manage risk and maintain compliance, we encourage you to apply. Join PEMCCO and help protect the systems, networks, and information that support mission success. Equal Opportunity Employer PEMCCO, Inc. is an equal opportunity employer. The Company does not discriminate on the basis of race, color, sex, sexual orientation, gender identity or expression, religion, national origin, age, disability, genetic information, military or veteran status, pregnancy, childbirth and related medical conditions, or any other characteristic protected by applicable federal, state, or local law.
09/26/2026
Full time
Job Description Job Description Pay: $50.64 - $83.55 hourly, depending on experience Benefits: Medical, Dental, Vision, Paid Time Off, Paid Holidays, Employee Assistance Program, and other company-sponsored benefits Security Clearance: Ability to obtain and maintain a government security clearance if required Are you an experienced cybersecurity professional who thrives on protecting mission-critical systems, managing risk, and ensuring compliance in complex environments? PEMCCO is seeking an Senior Information Security Specialist to lead security, compliance, risk management, and authorization activities supporting government information systems and networks. This role is ideal for a cybersecurity leader who enjoys guiding security initiatives, managing Risk Management Framework (RMF) efforts, assessing risk, and helping organizations maintain strong and compliant security postures. This opportunity is a strong fit for candidates with experience in information assurance, cybersecurity, information security, RMF, Assessment & Authorization (A&A), compliance management, vulnerability management, continuous monitoring, or system security engineering. About PEMCCO PEMCCO supports complex technical and operational programs by providing skilled professionals who help customers achieve mission success. We offer opportunities to work on impactful projects, collaborate with experienced teams, and contribute to innovative solutions that support critical government operations. Job Overview As a Senior Information Security Specialist, you will serve as a senior cybersecurity professional responsible for supporting the security and compliance of mission-critical information systems. You will work closely with program leadership, engineers, system administrators, developers, and government stakeholders to ensure cybersecurity requirements are implemented and maintained throughout the system lifecycle. This position offers the opportunity to lead cybersecurity initiatives, influence risk management decisions, support authorization activities, and play a critical role in protecting systems that support important government missions. What You'll Do Lead information system security activities throughout the system lifecycle Manage and support Risk Management Framework (RMF) and Assessment & Authorization (A&A) processes Develop, review, and maintain System Security Plans (SSPs), Security Assessment Reports (SARs), Plans of Action & Milestones (POA&Ms), and related cybersecurity documentation Conduct security assessments, compliance reviews, vulnerability analyses, and risk assessments Evaluate implemented security controls and recommend corrective actions and improvements Identify, document, track, and support remediation of security vulnerabilities and compliance deficiencies Support continuous monitoring activities and maintain awareness of system security posture Coordinate with system owners, engineers, developers, administrators, and stakeholders to ensure security requirements are integrated throughout the system lifecycle Advise leadership on cybersecurity risks, compliance requirements, and security strategies Support incident response activities, security investigations, and remediation efforts Ensure compliance with cybersecurity policies, regulations, standards, and contractual requirements Support cybersecurity audits, inspections, and authorization reviews Prepare security reports, briefings, risk assessments, and recommendations for leadership and customers Provide technical guidance and mentorship to cybersecurity personnel What You Bring Required Qualifications Bachelor's degree in Cybersecurity, Information Assurance, Information Systems, Information Technology, Computer Science, Engineering, or a related field Ten (10) years of experience in information assurance, information security, cybersecurity, system security, RMF, compliance, or a related field Advanced knowledge of information assurance and cybersecurity principles Advanced knowledge of Risk Management Framework (RMF) processes and security authorization requirements Knowledge of NIST, DoD, and federal cybersecurity policies, standards, and regulations Knowledge of security controls, vulnerability management, risk assessment, and compliance methodologies Ability to identify, assess, and mitigate cybersecurity risks and vulnerabilities Ability to interpret and apply security policies, standards, and procedures Strong analytical, organizational, and problem-solving skills Ability to evaluate security control effectiveness and recommend improvements Strong written and verbal communication skills Ability to communicate effectively with both technical and non-technical audiences Ability to prepare and review security documentation, assessments, and reports Ability to lead cybersecurity efforts and coordinate activities among multiple stakeholders Ability to obtain and maintain a government security clearance if required Must meet applicable DoD 8140 workforce qualification requirements if required by contract Preferred Experience Master's degree in Cybersecurity, Information Assurance, Information Systems, Information Technology, Computer Science, Engineering, or a related discipline Experience supporting Department of Defense or Federal Government programs Experience leading RMF and Assessment & Authorization activities Experience developing and maintaining cybersecurity documentation and authorization packages Experience supporting continuous monitoring and vulnerability management programs Experience conducting cybersecurity assessments, inspections, audits, and compliance reviews Experience mentoring cybersecurity and information assurance professionals Why Join PEMCCO? Support critical government and customer missions through strong cybersecurity leadership Play a key role in protecting information systems, networks, and sensitive data Lead compliance, authorization, and risk management initiatives that impact mission success Collaborate with experienced cybersecurity, engineering, and technology professionals Expand your expertise across multiple cybersecurity disciplines Mentor and support the development of cybersecurity talent Build a rewarding career in a collaborative and mission-focused environment Work Environment Professional office and technical work environments Work may be performed at company facilities, customer locations, or designated project sites as needed Regular use of computers, cybersecurity tools, and communication systems Frequent collaboration with engineers, administrators, program leaders, customers, and stakeholders Benefits Medical Insurance Dental Insurance Vision Insurance Paid Time Off Paid Holidays Employee Assistance Program Additional company-sponsored benefits Apply Today If you're an experienced cybersecurity professional looking to lead security initiatives, support mission-critical systems, and help organizations manage risk and maintain compliance, we encourage you to apply. Join PEMCCO and help protect the systems, networks, and information that support mission success. Equal Opportunity Employer PEMCCO, Inc. is an equal opportunity employer. The Company does not discriminate on the basis of race, color, sex, sexual orientation, gender identity or expression, religion, national origin, age, disability, genetic information, military or veteran status, pregnancy, childbirth and related medical conditions, or any other characteristic protected by applicable federal, state, or local law.