
201 - 500 employees
đź Consulting
Consulting
UMS is a company that focuses on enhancing utility performance through innovative solutions tailored for water and energy management. They specialize in areas such as advanced metering, water conservation, and smart metering, providing services that include meter installation, testing, and data management. UMS is dedicated to addressing the challenges faced by utility providers, including outdated infrastructure and non-revenue water loss, with expertise that supports both utilities and the communities they serve.
đĽ 0 minutes ago
đşđ¸ United States â Remote
đľ $65k - $75k / year
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đť Ghost score 2%
Improve your chances of getting an interview by checking your resume score before you apply.

201 - 500 employees
đź Consulting
Consulting
UMS is a company that focuses on enhancing utility performance through innovative solutions tailored for water and energy management. They specialize in areas such as advanced metering, water conservation, and smart metering, providing services that include meter installation, testing, and data management. UMS is dedicated to addressing the challenges faced by utility providers, including outdated infrastructure and non-revenue water loss, with expertise that supports both utilities and the communities they serve.
⢠Manage and support the institutional cybersecurity risk program ⢠Maintain the risk register and document risks ⢠Develop and track Plans of Action and Milestones (POA&Ms) ⢠Coordinate corrective actions with systems and data owners ⢠Manage cybersecurity risk reviews for new solutions, services, and technology acquisitions ⢠Intake and triage risk review requests ⢠Conduct or coordinate security risk assessments, including third-party and vendor reviews using HECVAT, SOC 2 reports, and similar assurance documentation ⢠Document findings and recommendations and route risk acceptance and approval decisions ⢠Map and maintain cybersecurity controls against NIST SP 800-171, CIS Controls, FERPA, HIPAA, CJIS, PCI, GLBA Safeguards Rule, and other standards ⢠Develop, review, and maintain cybersecurity policies, standards, procedures, and guidelines ⢠Monitor compliance and coordinate audit readiness, evidence collection, and documentation ⢠Liaise with internal and external auditors and regulatory entities ⢠Manage cybersecurity exception and risk acceptance processes ⢠Facilitate periodic risk reviews and escalate overdue items ⢠Coordinate remediation of audit, risk assessment, and compliance findings ⢠Develop cybersecurity metrics, dashboards, and reports for monitoring, executive decision-making, and governance ⢠Lead cybersecurity awareness and training initiatives, including phishing simulations, campaigns, onboarding, annual education, and role-based training ⢠Support cybersecurity engagement, outreach, and a cybersecurity champions network ⢠Prepare reports, briefings, and presentations for executive leadership and governance bodies ⢠Leverage artificial intelligence and automation to improve analysis, reporting, workflows, and cybersecurity program operations ⢠Collaborate across Information Technology, academic departments, administrative units, and external partners
⢠Bachelor's degree in Cybersecurity, Information Systems, Information Technology, Risk Management, or a related field, or an equivalent combination of education and experience ⢠Five years of professional experience in cybersecurity, IT risk management, compliance, or information security program support ⢠Experience with audit preparation and evidence documentation practices ⢠Knowledge of cybersecurity frameworks and standards, including NIST, CIS Controls, ISO standards, and applicable regulatory requirements ⢠Knowledge of cybersecurity risk assessment methodologies and security control frameworks ⢠Experience maintaining risk registers, POA&Ms, or corrective action tracking, and supporting risk acceptance or exception processes ⢠Ability to analyze cybersecurity risks and develop practical mitigation recommendations ⢠Ability to develop policies, procedures, and governance documentation ⢠Ability to develop reports, dashboards, and metrics for leadership and governance audiences ⢠Strong written communication skills, including policy documentation and executive-level reporting ⢠Ability to collaborate with technical and nontechnical stakeholders ⢠Demonstrated use of AI-assisted tools or automation to improve security workflows, processes, or reporting ⢠Familiarity with responsible use of artificial intelligence and automation, including data protection considerations ⢠Live in and be authorized to work in the United States ⢠U.S. work authorization must not require employer sponsorship now or in the future; applicants requiring visa sponsorship or OPT extensions are not eligible ⢠Submit a cover letter and resume or curriculum vitae ⢠Provide three references if selected for final stages ⢠Subject to appropriate background screenings
⢠Comprehensive health benefits, including medical, dental, vision, flexible spending accounts (FSA), and Health Savings Account (HSA) options ⢠Employer-paid basic life insurance and long-term disability coverage, with additional voluntary coverage options ⢠Retirement plan through TIAA with 10% employer contribution and additional tax-deferred retirement savings opportunities ⢠Vacation and sick leave ⢠13 paid holidays each year ⢠Tuition waiver program for employees, including graduate courses and Maine Law ⢠Substantial tuition discounts for eligible spouses and dependent children ⢠Employee Assistance Program (EAP) ⢠Wellness programs ⢠Professional development opportunities and career growth within Maine's public university system ⢠Pet insurance ⢠Home and auto insurance discounts ⢠Supplemental disability and life insurance options ⢠Fully remote work arrangement
Apply NowđĽ 1 minute ago
Security Engineer II strengthening cloud, endpoint, identity, and application security for GetixHealthâs healthcare revenue cycle services. Investigating incidents, managing security controls, and supporting regulated-industry compliance.
đşđ¸ United States â Remote
đľ $110k - $135k / year
đ° Private Equity Round - Getix on 2015-01
â° Full Time
đĄ Mid-level
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đĽ 6 minutes ago
Information Security Architect securing cloud applications and enterprise systems for a leading U.S. anesthesia practice. Advancing DevSecOps, threat modeling, and regulatory compliance across IT domains.
đĽ 14 minutes ago
Microsoft Sentinel consultant translating security telemetry into actionable guidance for Quisitive customers. Advising on Microsoft security posture, detection coverage, and risk reduction.
đĽ 25 minutes ago
Senior IAM cybersecurity engineer protecting Amentumâs hybrid enterprise infrastructure. Implementing identity controls across Entra ID, Okta, Active Directory, and multi-cloud environments.
đşđ¸ United States â Remote
đľ $120k - $149k / year
đ° Private Equity Round on 2020-01
â° Full Time
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đĽ 39 minutes ago
Senior cybersecurity leader modernizing security engineering, incident response, and compliance for EverCommerceâs global SaaS service-commerce platform. Remote anywhere in the United States.
đşđ¸ United States â Remote
đľ $225k - $275k / year
đ° Private Equity Round on 2019-07
â° Full Time
đ Senior
đŽââď¸ Cybersecurity / Security Engineer
đŚ H1B Visa Sponsor