Information Security Engineer, III

🕒 Março 31

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $91.438 - $118.750 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Conduent

Conduent

10.000+ funcionários

Fundada em 2017

🤝 B2B

🛍️ Comércio Eletrônico

🏛️ Governo

💰 Venture Round em 2009-01

B2B • eCommerce • Government

Conduent é uma provedora de soluções impulsionadas por tecnologia que simplifica as operações de negócios tanto para o setor público quanto para empresas privadas. A empresa se especializa em aprimorar a experiência do cliente por meio de automação e analytics, otimizar operações financeiras e oferecer soluções completas de RH. Com foco em aumentar a eficiência operacional, a Conduent entrega uma variedade de serviços, incluindo soluções de atendimento ao cliente (contact center), soluções para o setor de saúde (healthcare) e soluções para órgãos de transporte, atendendo de ponta a ponta às necessidades de seus clientes.

Descrição

• The Information Security Engineer III serves as a member of the NIST CISO Audit & Assurance team and will assist in the performance of internal audits, ensuring they comply with applicable Conduent and ISO security standards, regulations, and policies. • The internal auditor will be professional, independent, impartial, and fair in all interactions. • The NIST security resource is accountable for procedures and processes that ensure the integrity, confidentiality, and availability of assigned Business units’ information, applications, and infrastructure. • The resource will perform routine risk assessments, security audits, and vulnerability scans to identify, evaluate, document, and remediate organization risk, control gaps and vulnerabilities. • This position will be responsible for developing security reports, security recommendations, and security policies and procedures that are meaningful, defensible, and actionable for a variety of audiences as pertained to assigned business units. • Perform log collection, correlation, reviews, archival, retention, and monitoring of automated alerts for items such as, and not limited to: IPS/IDS alerts; change detection (FIM) alerts; application firewall alerts; malware alerts; rogue wireless network alerts; security system health alerts; exploit attempt alerts. • Participate and be an integral component of audit, compliance, and regulatory functions, including and not limited to: audits of system security to ensure compliance with Corporate security framework; NIST 800-53, ISO 27001/2, PCI-DSS; emerging country, state, and Federal privacy laws. • Primary POC in a vulnerability management program of the account that includes: external and internal vulnerability scans of applications and systems; external and internal penetration tests of applications and systems; documentation and remediation of identified vulnerabilities and exploits; routinely monitoring various communication avenues for security vulnerabilities and security patches; taking a risk-based approach comparing those security vulnerabilities and security patches across the operating environments; making recommendations to various IT teams on the mitigation process for those identified security vulnerabilities. • Coordinate with business units, operations, and technology teams for incident response, remediation, and improvement. • Acts as the initial point of contact to facilitate the handling of security audits and client requests. • Supports the creation of business continuity/disaster recovery plans, to include conducting disaster recovery tests, publishing test results, and making changes necessary to address deficiencies. • Maintain documentation that supports the annual Security compliance attestation as it is relevant to the assigned Business units.

🎯 Requisitos

• CIPP, CRISC, CISA, CISSP, CISM, ISO or any security/IT audit certification is a plus. • Minimum of Five (4 to 5) Years of experience in IT Security, or Security Auditing is required. • Knowledge and understanding of security controls across all security domains, such as access management, encryption, vulnerability management, authentication, authorization, network security, physical security, etc. • Ability to identify security risks in application, system, and network architecture, data flow, and processes or procedures. • Ability to assess the organizational impact of identified security risks and recommend solutions or mitigating controls. • Knowledge of security technologies, devices, and countermeasures, as well as the threats they are designed to counter. • Experience with developing security reports, recommendations, policies, and procedures that are meaningful, defensible, and actionable for a variety of audiences. • Familiarity with more than one framework (NIST 800-series, ISO 27000-series, PCI DSS and ISO, HIPAA, HITRUST, FISMA, FedRAMP other common security control frameworks). • Experience in PowerPoint, Word, Excel; experience with Visio and MS Project. • Communication skills (interpersonal, verbal, presentation written, email). Experience to write report segments and to participate in presentations. • Familiarity with security, workflow, and collaboration tools such Nessus Tenable, Splunk, SharePoint and ServiceNow (Snow) is a plus. • Positive attitude, team player, self-starter; takes initiative, ability to work independently and effectively with all levels of staff and management both internally and externally.

🏖️ Benefícios

• Health and Welfare Benefits: Our health and welfare benefits can be tailored to fit you and your family's needs and start on the first day of employment. • Retirement Savings: We will support you as you save for your future. • Career Growth Opportunities: We help you thrive, so together, we can grow. We provide opportunities to advance your career with a vast portfolio of businesses and a global footprint. • Paid time off: We provide attractive paid time off packages designed for you to enjoy your life away from work. • Great Work Environment: We are proud of our award-winning culture and the recognition we’ve received for our diversity efforts.

Candidatar-se

Vagas Similares

🕒 Março 31

Relay

11 - 50

₿ Cripto

🌐 Web 3

Security Engineer focused on defining and protecting infrastructure for a cross-chain payments protocol. Managing security posture, incident response, and compliance readiness for millions of users.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Arcadia

201 - 500

Senior Engineer – Security focusing on application and cloud security. Protecting healthcare data through security engineering and incident response.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $140.000 - $175.000 / ano

💰 $29.500.000 Venture Round em 2020-01

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🦅 Patrocina Visto H1B

info

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

AWS Cloud Security Engineer at Boston Medical Center responsible for implementing cloud security strategies and collaborating with internal teams to maintain security compliance.

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $89.500 - $130.000 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Upwind Security

51 - 200

🔐 Segurança

☁️ SaaS

Technical Account Manager building strong relationships with SaaS customers and ensuring successful onboarding. Leading technical deployments while driving engagement and satisfaction.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Março 31

Aledade, Inc.

501 - 1000

⚕️ Seguro de Saúde

🏢 Corporativo

Senior Security Engineer designing and maintaining security systems at Aledade, collaborating across teams to enhance security posture.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório